HOL LogoGuard

Explore HOL

  • HOL home
  • AI agent registry
  • AI plugins
  • Open standards
  • HOL members

Guard product

  • Guard overviewLocal security and control for AI agents and the tools they use.
  • FeaturesRuntime protection, policy routing, review, and evidence.

Explore Guard

  • Product previewWalk through Guard surfaces in read-only demo mode.
  • ComparisonCompare Guard with native controls and AI security vendors.

AI tools

  • All AI toolsEvery supported AI tool and how Guard applies policy to it.
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensionsBrowse command and MCP coverage with owners and stated limits.
  • Command coverageShell command protection across clouds, databases, backups, and packages.
  • MCP server coverageSee how Guard maps risk state across MCP tools and servers.
  • Core safetyThe safety floor listings that ship with Guard.
  • Data and resilienceBackup and storage command protection.
  • Cloud and infrastructureAWS, Azure, GCP, Kubernetes, and more.

Security

  • AI security hubSecurity research, advisories, and agent safety coverage.
  • AI tool securitySecurity profiles for each supported coding agent.
  • Safe labsHands-on attack simulations with safe boundaries.
  • Redacted warningsReal blocked actions with sensitive details removed.
  • AdvisoriesCoordinated disclosure reports for AI tooling.
  • Active CVEsSearch active CVEs affecting AI tooling.

Learn

  • Security guidesPractical guides for securing AI agent workflows.
  • DocsInstall, configure, and operate Guard with confidence.
  • ResearchPublished security research, benchmarks, and methodology.

Community

  • ReleasesVersion history, shipped changes and upgrade notes.
  • ContributorsThe people and contributions behind HOL Guard.
  • AffiliatesShare Guard with your audience and earn from referrals.
  • SponsorKeep agent security open: sponsor a project, place a banner, or fund a security initiative.
PricingEnterpriseOpen AppInstall Guard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • OWASP MCP mapping
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
Guard
  • Guard Overview
  • Releases
  • Contributors
  • Install Guard
  • Pricing
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Sep 29, 2026, 11:26 AM 40,903 active 1,504 known exploited

Catalog summary

40,903

Active CVEs

21,047

Critical + high

1,504

Known exploited

19

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 6,451–6,500 of 40,903 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-92005Medium
    Use-after-free in the Audio/Video: Web Codecs component
    CVSS 5.3
    Affected software not mappedEcosystem not listed
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  2. CVE-2026-91926Low
    Gss-ntlmssp: gss-ntlmssp: memory leak in ntlm_decode_target_info via duplicated av_pair entries in ntlm challenge
    CVSS 3.7
    Affected software not mappedEcosystem not listed
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  3. CVE-2026-89308Critical
    Arbitrary command execution in TrxTimeATTENDANCE
    CVSS 9.3
    TREXOM/TrxTimeATTENDANCEgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
  4. CVE-2026-92003Medium
    MISP Unthrottled Authentication Failure Log Writes Enable Resource Exhaustion
    CVSS 6.9
    MISP/MISPgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  5. CVE-2026-91998Critical
    Casdoor through 4.4.0 Cross-Organization User Administration via /api/mcp
    CVSS 9.4
    casdoor/casdoorgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  6. CVE-2026-91997Medium
    evolution-api through 2.3.7 Prometheus Metrics IP Allowlist Bypass
    CVSS 6.9
    evolution-foundation/evolution-apigeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  7. CVE-2026-91996High
    lamp-cloud through 5.10.0 Missing Authentication for JVM Properties Endpoint
    CVSS 8.7
    dromara/lamp-cloudgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  8. CVE-2026-91995Critical
    pig before 4.1.0 Unverified Password Change via /register/password
    CVSS 9.3
    pig-mesh/piggeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026 Fix availableView HOL analysis
  9. CVE-2026-91994High
    Semaphore UI through 2.19.12 Missing Authorization on GET and HEAD Requests
    CVSS 7.1
    semaphoreui/semaphoregeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  10. CVE-2026-91993Medium
    Jpom through 2.11.12 Workspace Isolation Bypass via /build/branch-list
    CVSS 5.3
    dromara/Jpomgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  11. CVE-2026-92002Medium
    MISP: Authentication failure logging suppressed during Redis unavailability
    CVSS 5.1
    MISP/MISPgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  12. CVE-2026-91786Medium
    Gnome-shell: gnome-shell: out-of-bounds read in remote search icon rendering due to unvalidated icon-data buffer size
    CVSS 6.1
    Affected software not mappedEcosystem not listed
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  13. CVE-2026-91925High
    Polyaxon through 2.16.4 Server-Side Template Injection via Unsandboxed Jinja2 Engine
    CVSS 8.7
    polyaxon/polyaxongeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  14. CVE-2026-91924High
    pgweb through 0.17.0 Missing Authorization on Direct Connect Endpoint
    CVSS 8.4
    sosedoff/pgwebgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  15. CVE-2026-91923High
    KubeSphere through 4.1.3 SSRF via git credential verification endpoint
    CVSS 8.3
    kubesphere/kubespheregeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  16. CVE-2026-91922Medium
    Steedos Platform through 3.0.15-beta.47 Reflected XSS via page render
    CVSS 5.3
    steedos/steedos-platformgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 24, 2026View HOL analysis
  17. CVE-2026-1759Medium
    CISA ADP Vulnrichment
    CVSS 6.5
    Secomea/GateManagergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026View HOL analysis
  18. CVE-2026-80489Medium
    EUC_JISX0213 decoding may hang on crafted input
    CVSS 5.9
    The GNU C Library/glibcgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026View HOL analysis
  19. CVE-2026-1758High
    Session Fixation
    CVSS 8.3
    Secomea/GateManagergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026View HOL analysis
  20. CVE-2026-77117Medium
    SHIFT_JISX0213 decoding may hang on crafted input
    CVSS 5.9
    The GNU C Library/glibcgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026View HOL analysis
  21. CVE-2026-52827High
    Kimai: Two-factor authentication bypass on the Kimai API
    CVSS 7.1
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  22. CVE-2026-52822Medium
    Kimai: Improper Authorization in Kimai Timesheet Restart and Duplicate Allows New Timesheets After Project Access Revocation
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  23. CVE-2026-52828Medium
    Kimai: ExportTemplate CRUD Missing Authorization Check Allows Unauthorized TEAMLEAD Access
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  24. CVE-2026-52826Medium
    Kimai: Improper Authorization in Kimai Project, Customer, and Activity Rate Edit Endpoints Allows Cross-Scope Rate Manipulation
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  25. CVE-2026-52823Medium
    Kimai: Login CSRF in Kimai Timesheet Stop and Restart API Endpoints Allows Unauthorized State Changes
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  26. CVE-2026-86818Medium
    fast-uri vulnerable to mailto header injection via percent-encoded field-name desynchronization
    CVSS 4.8
    fast-uri/fast-urigeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  27. CVE-2026-52824Critical
    Kimai: Default APP_SECRET in Docker Image Enables Cookie Forgery and Account Takeover
    CVSS 9.1
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  28. CVE-2026-52825Medium
    Kimai: Improper Authorization in Kimai Team Member and Team Activity Assignment APIs Allows Expansion of Team Scope Beyond Authorized Visibility
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  29. CVE-2026-52821Medium
    Kimai: Improper Authorization in Kimai Activity Creation with Preset Project Allows Creation Under Unauthorized Projects
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  30. CVE-2026-52820Medium
    Kimai: Timesheet PATCH/POST allows assigning to project outside user's team via query_builder OR-bypass
    CVSS 5.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  31. CVE-2026-52819Medium
    Kimai: Teamlead authorization bypass in GET /api/timesheets allows reading other users' timesheet records without being teamlead of the target
    CVSS 6.3
    kimai/kimaicomposer · generic
    PublishedSep 15, 2026First seen at HOL Jul 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  32. CVE-2026-57147Critical
    praisonai-platform: default JWT signing secret 'dev-secret-change-me' enables token forgery
    CVSS 9.8
    MervinPraison/PraisonAI, MervinPraison/praisonai-platformgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  33. CVE-2026-57148Critical
    praisonai-platform 0.1.4 still boots on the hardcoded JWT secret dev-secret-change-me (default-open production guard)
    CVSS 9.8
    MervinPraison/PraisonAI, MervinPraison/praisonai-platformgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  34. CVE-2026-86472Medium
    fast-uri vulnerable to inconsistent host case normalization via percent-encoded octets
    CVSS 4.8
    fast-uri/fast-urigeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  35. CVE-2026-57140Critical
    PraisonAI AgentOS exposes unauthenticated agent listing and invocation
    CVSS 9.4
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  36. CVE-2026-57139Critical
    PraisonAI MCPServer exposes unauthenticated HTTP tools/call
    CVSS 9.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  37. CVE-2026-57133High
    PraisonAI utility shell safe-command wrapper allowlist bypass via shell chaining
    CVSS 8.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  38. CVE-2026-57135High
    PraisonAI SandboxExecutor network-isolated mode does not block non-proxy-aware network clients
    CVSS 7.6
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  39. CVE-2026-57134High
    PraisonAI MCPSecurity Basic/OAuth authentication policies accept invalid credentials without validation
    CVSS 8.2
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  40. CVE-2026-57138Critical
    PraisonAI codeMode sandbox escape via Function constructor
    CVSS 9.9
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 17, 2026View HOL analysis
  41. CVE-2026-57136High
    PraisonAI SandboxExecutor allowedCommands bypass via shell chaining
    CVSS 8.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  42. CVE-2026-57137High
    PraisonAI AgentLoop onToolCall approval runs after tool execution
    CVSS 8.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026View HOL analysis
  43. CVE-2026-57141Critical
    PraisonAI: Remote Code Execution via Sandbox Escape in `codeMode` Tool
    CVSS 9.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  44. CVE-2026-57112High
    PraisonAI ToolsMCPServer legacy SSE transport accepts attacker Host/Origin and exposes registered tools
    CVSS 8.3
    MervinPraison/PraisonAI, MervinPraison/praisonaiagentsgeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 16, 2026View HOL analysis
  45. CVE-2026-48717Medium
    OpenAM OAuth Authorization Bypass via PKCE Challenge
    CVSS 9.1
    OpenIdentityPlatform/OpenAM, org.openidentityplatform.openam:openam-oauth2generic · maven
    PublishedSep 15, 2026First seen at HOL Jun 29, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  46. CVE-2026-47426High
    OpenAM OAuth Client Impersonation via JWKS Resolver Cache
    CVSS 7.6
    OpenIdentityPlatform/OpenAM, org.openidentityplatform.openam:openam-oauth2generic · maven
    PublishedSep 15, 2026First seen at HOL Jun 29, 2026Updated Sep 17, 2026 Fix availableView HOL analysis
  47. CVE-2026-47424High
    OpenAM Authenticated RCE via Groovy Sandbox Escape
    CVSS 7.5
    OpenIdentityPlatform/OpenAM, org.openidentityplatform.openam:openam-scriptinggeneric · maven
    PublishedSep 15, 2026First seen at HOL Jun 29, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  48. CVE-2026-41573High
    OpenAM LDAP Injection via `_queryId` Parameter
    CVSS 7.1
    OpenIdentityPlatform/OpenAM, org.openidentityplatform.openam:openam-core-restgeneric · maven
    PublishedSep 15, 2026First seen at HOL Jun 22, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  49. CVE-2026-62280Medium
    OpenAM Reflected XSS in the OAuth2/OIDC `wap` consent page
    CVSS 6.1
    OpenIdentityPlatform/OpenAM, org.openidentityplatform.openam:openam-oauth2generic · maven
    PublishedSep 15, 2026First seen at HOL Aug 8, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  50. CVE-2025-13166Low
    Username Enumeration via SMS OTP Flow in WSO2 Identity Server Allows User Account Discovery
    CVSS 3.7
    WSO2/WSO2 Identity Servergeneric
    PublishedSep 15, 2026First seen at HOL Sep 15, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
Page 130 of 819
Previous128129130131132Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard