HOL LogoGuard

Explore HOL

  • HOL home
  • AI agent registry
  • AI plugins
  • Open standards
  • HOL members

Guard product

  • Guard overviewLocal security and control for AI agents and the tools they use.
  • FeaturesRuntime protection, policy routing, review, and evidence.

Explore Guard

  • Product previewWalk through Guard surfaces in read-only demo mode.
  • ComparisonCompare Guard with native controls and AI security vendors.

AI tools

  • All AI toolsEvery supported AI tool and how Guard applies policy to it.
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensionsBrowse command and MCP coverage with owners and stated limits.
  • Command coverageShell command protection across clouds, databases, backups, and packages.
  • MCP server coverageSee how Guard maps risk state across MCP tools and servers.
  • Core safetyThe safety floor listings that ship with Guard.
  • Data and resilienceBackup and storage command protection.
  • Cloud and infrastructureAWS, Azure, GCP, Kubernetes, and more.

Security

  • AI security hubSecurity research, advisories, and agent safety coverage.
  • AI tool securitySecurity profiles for each supported coding agent.
  • Safe labsHands-on attack simulations with safe boundaries.
  • Redacted warningsReal blocked actions with sensitive details removed.
  • AdvisoriesCoordinated disclosure reports for AI tooling.
  • Active CVEsSearch active CVEs affecting AI tooling.

Learn

  • Security guidesPractical guides for securing AI agent workflows.
  • DocsInstall, configure, and operate Guard with confidence.
  • ResearchPublished security research, benchmarks, and methodology.

Community

  • ReleasesVersion history, shipped changes and upgrade notes.
  • ContributorsThe people and contributions behind HOL Guard.
  • AffiliatesShare Guard with your audience and earn from referrals.
  • SponsorKeep agent security open: sponsor a project, place a banner, or fund a security initiative.
PricingEnterpriseOpen AppInstall Guard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • OWASP MCP mapping
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
Guard
  • Guard Overview
  • Releases
  • Contributors
  • Install Guard
  • Pricing
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Sep 29, 2026, 9:05 AM 40,862 active 1,504 known exploited

Catalog summary

40,862

Active CVEs

21,035

Critical + high

1,504

Known exploited

19

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 6,151–6,200 of 40,862 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-12101High
    Security vulnerabilities have been addressed in IBM Verify Identity Access and IBM Security Verify Access
    CVSS 8.1
    IBM/Security Verify Access, IBM/Security Verify Access Container +2generic
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 20, 2026View HOL analysis
  2. CVE-2026-55225High
    Strimzi: Cross-namespace privilege escalation via `Kafka.spec.entityOperator`
    CVSS 8.0
    io.strimzi:strimzi, strimzi/strimzi-kafka-operatorgeneric · maven
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  3. CVE-2026-12150High
    IBM MQ queue manager is vulnerable to denial of service
    CVSS 7.0
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  4. CVE-2026-12351Critical
    IBM MQ is vulnerable to unauthenticated remote code execution via JNDI injection
    CVSS 9.8
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  5. CVE-2026-55226Medium
    Strimzi: Unrestricted access to all Secrets within namespace watched by the Topic operator
    CVSS 5.4
    io.strimzi:strimzi, strimzi/strimzi-kafka-operatorgeneric · maven
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  6. CVE-2026-54251High
    netty-incubator-codec-ohttp: [OHttpServerCodec] Native Direct-Memory Leak on AEAD Decryption Failure Leads to Gateway Denial of Service
    CVSS 8.7
    io.netty.incubator/netty-incubator-codec-ohttp, io.netty.incubator:netty-incubator-codec-ohttp +1generic · maven
    PublishedSep 15, 2026First seen at HOL Aug 20, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  7. CVE-2026-12354High
    IBM MQ Resource Adapter IVT message-driven bean is vulnerable to remote code execution via JNDI injection
    CVSS 7.5
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  8. CVE-2026-12355High
    IBM MQ Resource Adapter IVT servlet is vulnerable to unauthenticated remote code execution
    CVSS 8.1
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  9. CVE-2026-12358High
    Security vulnerabilities have been addressed in IBM Verify Identity Access and IBM Security Verify Access
    CVSS 7.5
    IBM/Security Verify Access, IBM/Security Verify Access Container +2generic
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  10. CVE-2026-54050Medium
    Sakai: IDOR in Profile Image Deletion Allows Any Authenticated User to Delete Any User's Profile Image
    CVSS 6.5
    org.sakaiproject.profile2:profile2-api, org.sakaiproject.profile2:profile2-impl +1generic · maven
    PublishedSep 15, 2026First seen at HOL Aug 25, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  11. CVE-2026-44300High
    OpenCost ServiceKey Endpoint Unauthorized Credential Overwrite/Injection
    CVSS 8.8
    github.com/opencost/opencost, opencost/opencostgeneric · go
    PublishedSep 15, 2026First seen at HOL Jul 15, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  12. CVE-2026-12666High
    IBM MQ Java messaging is vulnerable to XML external entity injection
    CVSS 8.1
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  13. CVE-2026-12667High
    IBM MQ .NET client is vulnerable to XML external entity injection
    CVSS 7.1
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  14. CVE-2026-12728High
    IBM MQ Java messaging is vulnerable to remote code execution
    CVSS 8.8
    IBM/MQgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  15. CVE-2026-12742Medium
    Multiple secuirty vulnerabilies addressed with IBM Business Automation Workflow August 2026
    CVSS 5.4
    IBM/Business Automation Workflow containers and traditionalgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  16. CVE-2026-88765High
    Improper Neutralization of Special Elements used in a Command ('Command Injection') in GitLab
    CVSS 8.5
    GitLab/GitLabgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  17. CVE-2026-12749Unknown severity
    Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for August 2026.
    Not scoredSource severity not reported
    IBM/Cloud Pak for Business Automationgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 20, 2026View HOL analysis
  18. CVE-2026-12750Medium
    Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for August 2026.
    CVSS 6.4
    IBM/Cloud Pak for Business Automationgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  19. CVE-2026-12751Medium
    Multiple security vulnerabilities are addressed with IBM Cloud Pak for Business Automation iFixes for August 2026.
    CVSS 5.4
    IBM/Cloud Pak for Business Automationgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  20. CVE-2026-12752High
    Multiple security vulnerabilities addressed with IBM Business Automation Workflow August 2026
    CVSS 7.1
    IBM/Business Automation Workflow containers and traditionalgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  21. CVE-2026-53941Medium
    Inspektor Gadget Uprobe gadgets: unprivileged container's ld.so.cache causes high CPU utilization and container startup DoS
    CVSS 6.9
    github.com/inspektor-gadget/inspektor-gadget, inspektor-gadget/inspektor-gadgetgeneric · go
    PublishedSep 15, 2026First seen at HOL Aug 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  22. CVE-2026-44778Low
    Inspektor Gadget: Unprivileged container can crash USDT note parser via crafted ELF
    CVSS 2.9
    github.com/inspektor-gadget/inspektor-gadget, inspektor-gadget/inspektor-gadgetgeneric · go
    PublishedSep 15, 2026First seen at HOL Jun 22, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  23. CVE-2026-21588High
    CISA ADP Vulnrichment
    CVSS 7.1
    Atlassian/Confluence Data Centergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  24. CVE-2026-21587High
    CISA ADP Vulnrichment
    CVSS 7.1
    Atlassian/Jira Service Management Data Centergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  25. CVE-2026-21586High
    CISA ADP Vulnrichment
    CVSS 7.1
    Atlassian/Confluence Data Centergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  26. CVE-2026-58201High
    Lokka: Azure Resource Manager URL path validation issue
    CVSS 8.7
    @merill/lokka, merill/lokkageneric · npm
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  27. CVE-2026-53710Critical
    MCP Context Forge: RestrictedPython sandbox bypass via getattr builtin in python_sandbox_server
    CVSS 10.0
    IBM/mcp-context-forge, mcp-contextforge-gatewaygeneric · pip · pypi
    PublishedSep 15, 2026First seen at HOL Aug 26, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  28. CVE-2026-81897High
    Concrete CMS below version 9.5.3 is vulnerable to Stored XSS via Express form Text control save_control
    CVSS 7.7
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  29. CVE-2026-55863Medium
    motionEye: Missing authentication on ActionHandler allows unauthenticated camera action execution
    CVSS 5.3
    motioneye, motioneye-project/motioneyegeneric · pip
    PublishedSep 15, 2026First seen at HOL Jun 23, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  30. CVE-2026-46488Critical
    motionEye: Authentication possible via password hash
    CVSS 9.1
    motioneye, motioneye-project/motioneyegeneric · pip
    PublishedSep 15, 2026First seen at HOL Jun 22, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  31. CVE-2026-91855Medium
    Open5GS PFCP Message handler.c denial of service
    CVSS 5.3
    n/a/Open5GSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  32. CVE-2026-81896High
    Concrete CMS below version 9.5.3 is vulnerable to Stored XSS in Concrete CMS Form Submissions Report via Unescaped Question Label
    CVSS 8.4
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  33. CVE-2026-63443High
    Coder: Workspace agent API insecure redirect handling allowed cross-agent file read and write
    CVSS 8.3
    coder/coder, github.com/coder/coder +1generic · go
    PublishedSep 15, 2026First seen at HOL Jul 6, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  34. CVE-2024-58385Critical
    Yonyou U8 CRM SQL Injection via fillbacksettingedit.php
    CVSS 9.8
    Yonyou/U8 CRMgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 21, 2026View HOL analysis
  35. CVE-2023-54398Critical
    Yonyou U8 Cloud Java Deserialization RCE via FileManageServlet
    CVSS 9.8
    Yonyou/U8 Cloudgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  36. CVE-2026-18111High
    Concrete CMS below 9.5.4 allows privilege escalation because adding users and assigning groups do not require additional identity verification
    CVSS 8.5
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  37. CVE-2026-89026Critical
    Issabel Framework Hard-coded JWT Key RCE via pbxapi/manager/originate
    CVSS 9.8
    Issabel Foundation/Issabel Frameworkgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  38. CVE-2026-81895High
    Concrete CMS 9.5.2 and below is vulnerable to Stored SQL Injection in Concrete CMS Document Library Block via `fsID[]` in `setMode=any`
    CVSS 8.5
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  39. CVE-2026-54503Medium
    plone.app.textfield: Stored XSS by spoofing mime type
    CVSS 4.3
    plone.app.textfield, plone/plone.app.textfieldgeneric · pip
    PublishedSep 15, 2026First seen at HOL Jul 17, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  40. CVE-2026-53658Medium
    Fabric CA: LDAP Injection via Unescaped Username in GetUser Filter
    CVSS 6.3
    github.com/hyperledger/fabric-ca, hyperledger/fabric-cageneric · go
    PublishedSep 15, 2026First seen at HOL Aug 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  41. CVE-2026-59160High
    Yeger: Unauthenticated Network-Exposed Turborepo Task Execution via /api/run
    CVSS 8.8
    @yeger/turbo-graph, DerYeger/yegergeneric · npm
    PublishedSep 15, 2026First seen at HOL Sep 9, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  42. CVE-2026-81894High
    Concrete CMS 9.5.2 and below is vulnerable to Stored DOM-based Cross-site Scripting (XSS) in the Gallery block image Caption field
    CVSS 8.5
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  43. CVE-2026-55691High
    EmbedVideo Extension : Stored XSS via unsanitized class passed to template
    CVSS 8.6
    StarCitizenWiki/mediawiki-extensions-EmbedVideo, starcitizenwiki/embedvideocomposer · generic
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  44. CVE-2026-55690High
    EmbedVideo Extension: Stored XSS via unsanitized service name in exception text
    CVSS 7.5
    StarCitizenWiki/mediawiki-extensions-EmbedVideo, starcitizenwiki/embedvideocomposer · generic
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  45. CVE-2026-18110High
    Concrete CMS 9.0.0 through 9.5.2 is vulnerable to missing authorization in the user selector autocomplete endpoint (/ccm/system/user/autocomplete), allowing an unauthenticated attacker to retrieve the complete backend user directory — internal ID, username
    CVSS 8.7
    Concrete CMS/Concrete CMSgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  46. CVE-2026-55692High
    EmbedVideo Extension: Stored XSS via malformed src url with $wgEmbedVideoRequireConsent enabled
    CVSS 7.5
    StarCitizenWiki/mediawiki-extensions-EmbedVideo, starcitizenwiki/embedvideocomposer · generic
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  47. CVE-2026-54561Medium
    MCP Memory Keeper: Arbitrary local file read in mcp-memory-keeper context_import via unvalidated filePath
    CVSS 6.2
    mcp-memory-keeper, mkreyman/mcp-memory-keepergeneric · npm
    PublishedSep 15, 2026First seen at HOL Jul 17, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  48. CVE-2026-55149High
    Vouch Proxy: Unbounded Multipart Cookie Allocation DoS
    CVSS 7.5
    github.com/vouch/vouch-proxy, vouch/vouch-proxygeneric · go
    PublishedSep 15, 2026First seen at HOL Aug 20, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  49. CVE-2026-91854Medium
    code-projects Record Management System reg.php cross site scripting
    CVSS 5.3
    code-projects/Record Management Systemgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 22, 2026View HOL analysis
  50. CVE-2026-58200High
    @jhb.software/payload-cloudinary-plugin: Arbitrary Cloudinary API Parameter Signing
    CVSS 7.1
    @jhb.software/payload-cloudinary-plugin, jhb-software/payload-pluginsgeneric · npm
    PublishedSep 15, 2026First seen at HOL Jun 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
Page 124 of 818
Previous122123124125126Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard