HOL LogoGuard

Explore HOL

  • HOL home
  • AI agent registry
  • AI plugins
  • Open standards
  • HOL members

Guard product

  • Guard overviewLocal security and control for AI agents and the tools they use.
  • FeaturesRuntime protection, policy routing, review, and evidence.

Explore Guard

  • Product previewWalk through Guard surfaces in read-only demo mode.
  • ComparisonCompare Guard with native controls and AI security vendors.

AI tools

  • All AI toolsEvery supported AI tool and how Guard applies policy to it.
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensionsBrowse command and MCP coverage with owners and stated limits.
  • Command coverageShell command protection across clouds, databases, backups, and packages.
  • MCP server coverageSee how Guard maps risk state across MCP tools and servers.
  • Core safetyThe safety floor listings that ship with Guard.
  • Data and resilienceBackup and storage command protection.
  • Cloud and infrastructureAWS, Azure, GCP, Kubernetes, and more.

Security

  • AI security hubSecurity research, advisories, and agent safety coverage.
  • AI tool securitySecurity profiles for each supported coding agent.
  • Safe labsHands-on attack simulations with safe boundaries.
  • Redacted warningsReal blocked actions with sensitive details removed.
  • AdvisoriesCoordinated disclosure reports for AI tooling.
  • Active CVEsSearch active CVEs affecting AI tooling.

Learn

  • Security guidesPractical guides for securing AI agent workflows.
  • DocsInstall, configure, and operate Guard with confidence.
  • ResearchPublished security research, benchmarks, and methodology.

Community

  • ReleasesVersion history, shipped changes and upgrade notes.
  • ContributorsThe people and contributions behind HOL Guard.
  • AffiliatesShare Guard with your audience and earn from referrals.
  • SponsorKeep agent security open: sponsor a project, place a banner, or fund a security initiative.
PricingEnterpriseOpen AppInstall Guard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • OWASP MCP mapping
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
Guard
  • Guard Overview
  • Releases
  • Contributors
  • Install Guard
  • Pricing
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Sep 29, 2026, 8:13 PM 41,277 active 1,505 known exploited

Catalog summary

41,277

Active CVEs

21,269

Critical + high

1,505

Known exploited

19

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 7,451–7,500 of 41,277 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-76461High
    Cisco Secure Email Gateway SQL Injection Vulnerability
    CVSS 9.8 Known exploited
    Cisco/Cisco Secure Emailgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026View HOL analysis
  2. CVE-2026-54156High
    node-opcua: Unbounded nonce cache enables unauthenticated heap exhaustion DoS
    CVSS 7.5
    node-opcua, node-opcua/node-opcuageneric · npm
    PublishedSep 14, 2026First seen at HOL Aug 20, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  3. CVE-2026-76443Critical
    Cisco Secure Email Gateway Security Hardening Release
    CVSS 9.8
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  4. CVE-2026-76440Critical
    Cisco Secure Email Gateway Security Hardening Release
    CVSS 9.8
    Cisco/Cisco Secure Email, Cisco/Cisco Secure Email and Web Managergeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  5. CVE-2026-20353Critical
    Cisco Secure Email Gateway Security Hardening Release
    CVSS 9.8
    Cisco/Cisco Secure Emailgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  6. CVE-2026-76441Critical
    Cisco Secure Email Gateway Security Hardening Release
    CVSS 9.8
    Cisco/Cisco Secure Email and Web Managergeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  7. CVE-2026-54155High
    node-opcua: Missing nonce verification in UserNameIdentityToken authentication
    CVSS 7.7
    node-opcua, node-opcua/node-opcuageneric · npm
    PublishedSep 14, 2026First seen at HOL Aug 20, 2026Updated Sep 14, 2026View HOL analysis
  8. CVE-2026-57497Medium
    webtransport-go: Memory Exhaustion Attack due to Buffering of Unknown Capsules
    CVSS 5.3
    github.com/quic-go/webtransport-go, quic-go/webtransport-gogeneric · go
    PublishedSep 14, 2026First seen at HOL Aug 8, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  9. CVE-2026-61701High
    Laravel MagicLink: Insecure Deserialization of MagicLink Actions Leads to Remote Code Execution
    CVSS 8.8
    cesargb/laravel-magiclinkgeneric · packagist
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  10. CVE-2026-90796Medium
    itsourcecode Leave Management System index.php sql injection
    CVSS 6.3
    itsourcecode/Leave Management Systemgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  11. CVE-2026-53708Medium
    ContextForge: DNS TOCTOU race condition causes SSRF protection bypass (`/admin/gateways/test`)
    CVSS 6.6
    IBM/mcp-context-forge, IBM/mcp-contextforge-gateway +1generic · pip
    PublishedSep 14, 2026First seen at HOL Aug 14, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  12. CVE-2026-90996Medium
    Sssd: sssd: denial of service in nss responder via crafted zero-length requests
    CVSS 4.0
    Affected software not mappedEcosystem not listed
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 22, 2026View HOL analysis
  13. CVE-2026-90995Medium
    Sssd: sssd: local denial of service due to null pointer dereference in pam responder
    CVSS 5.5
    Affected software not mappedEcosystem not listed
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026View HOL analysis
  14. CVE-2026-90994Medium
    Sssd: sssd: denial of service via malformed pam v1 requests
    CVSS 4.0
    Affected software not mappedEcosystem not listed
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 22, 2026View HOL analysis
  15. CVE-2026-55795Medium
    Craft Commerce: Coupon Code Brute-Force via Rate Limit Bypass
    CVSS 6.9
    craftcms/commercecomposer · generic
    PublishedSep 14, 2026First seen at HOL Jun 19, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  16. CVE-2026-4103Medium
    Cross-Site Scripting via HTML Sanitization in WSO2 Publisher and Developer Portals Allows Malicious Script Execution
    CVSS 6.4
    WSO2/WSO2 API Control Plane, WSO2/WSO2 API Managergeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
  17. CVE-2026-55235Medium
    langgraph-api: Relative webhook targets in LangGraph Server can reach in-process routes without authentication
    CVSS 5.9
    langchain-ai/langgraph-api, langgraph-apigeneric · pip · pypi
    PublishedSep 14, 2026First seen at HOL Aug 19, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  18. CVE-2026-81301High
    Ekia File Manager 1.2.7 - Exported ContentProvider allows unauthorized file access
    CVSS 8.5
    Ekia/File Managergeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026View HOL analysis
  19. CVE-2026-55236Medium
    langgraph-api: Incomplete assistant authorization in LangGraph Server run creation
    CVSS 5.9
    langchain-ai/langgraph-api, langgraph-apigeneric · pip · pypi
    PublishedSep 14, 2026First seen at HOL Aug 19, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  20. CVE-2026-90795Medium
    itsourcecode Loan Management System navbar.php cross site scripting
    CVSS 4.3
    itsourcecode/Loan Management Systemgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  21. CVE-2026-54529Medium
    SQLAdmin: Unvalidated sortBy parameter in `ModelView` bypasses `column_sortable_list`
    CVSS 5.3
    smithyhq/sqladmin, sqladmingeneric · pip · pypi
    PublishedSep 14, 2026First seen at HOL Sep 9, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  22. CVE-2026-90943High
    parallax filament-comments through 3.0.0 Stored XSS via Comment Body
    CVSS 8.7
    parallax/filament-commentsgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 14, 2026View HOL analysis
  23. CVE-2026-61534Critical
    Yayson: Prototype pollution in the Store/LegacyStore deserialization
    CVSS 9.1
    confetti/yayson, yaysongeneric · npm
    PublishedSep 14, 2026First seen at HOL Sep 11, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  24. CVE-2026-47701High
    OpenTelemetry Operator: ServiceMonitor bearerTokenFile reads arbitrary local file and sends contents as bearer auth
    CVSS 7.7
    github.com/open-telemetry/opentelemetry-operator, open-telemetry/opentelemetry-operatorgeneric · go
    PublishedSep 14, 2026First seen at HOL Jun 11, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  25. CVE-2026-88819Medium
    CISA ADP Vulnrichment
    CVSS 6.3
    Eclipse Foundation/Eclipse Data Plane Coregeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  26. CVE-2026-54541Low
    Nimiq: Panic in TrieProof::verify via child_index unwrap on equal-length keys
    CVSS 3.7
    nimiq-primitives, nimiq/core-rs-albatrossgeneric · rust
    PublishedSep 14, 2026First seen at HOL Jul 16, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  27. CVE-2026-90794Medium
    GPAC MP4Box vrml_tools.c gf_sg_script_load use after free
    CVSS 6.3
    n/a/GPACgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 14, 2026View HOL analysis
  28. CVE-2026-54542Low
    Nimiq: Out-of-bounds panic in KeyNibbles::Add from oversized child suffix in a deserialized proof
    CVSS 3.7
    nimiq-primitives, nimiq/core-rs-albatrossgeneric · rust
    PublishedSep 14, 2026First seen at HOL Jul 16, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  29. CVE-2025-24890Medium
    gix-sec safe.directory protections absent for elevated administrators
    CVSS 6.8
    GitoxideLabs/gitoxide, gix-seccrates.io · generic · rust
    PublishedSep 14, 2026First seen at HOL Sep 9, 2026Updated Sep 23, 2026 Fix availableView HOL analysis
  30. CVE-2026-90463Medium
    Sssd: local oob read in nss service request parsers (`sss_nss_protocol_parse_svc_name` / `sss_nss_protocol_parse_svc_port`)
    CVSS 4.0
    Affected software not mappedEcosystem not listed
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 22, 2026View HOL analysis
  31. CVE-2026-90947High
    Gimp: gimp: out-of-bounds write in lighting effects plugin via crafted preset file
    CVSS 7.8
    Affected software not mappedEcosystem not listed
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 17, 2026View HOL analysis
  32. CVE-2026-90793Medium
    GPAC MP4Box base_scenegraph.c gf_node_get_name use after free
    CVSS 5.4
    n/a/GPACgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026View HOL analysis
  33. CVE-2026-57145Critical
    PraisonAI: Arbitrary File Read/Write via `multiedit` Tool Without Path Validation
    CVSS 9.1
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  34. CVE-2026-57132High
    PraisonAI: PRAISONAI_CALL_AUTH=disabled environment variable unconditionally disables authentication
    CVSS 8.2
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  35. CVE-2026-57131Critical
    praisonai: Jobs API exposes agent-execution endpoints with no authentication
    CVSS 9.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  36. CVE-2026-57124Critical
    PraisonAI UI MCP connect endpoint allows unauthenticated local command execution
    CVSS 9.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  37. CVE-2026-57122High
    PraisonAI: Webhook signature verification skipped (fail-open) when secret unset, allowing forged inbound webhooks (WhatsApp & Linear bots)
    CVSS 8.6
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  38. CVE-2026-57127Critical
    praisonai: recipe serve auth middleware silently disables itself when no secret is set
    CVSS 9.8
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  39. CVE-2026-56839High
    PraisonAI Code agent tools fail open without a workspace boundary
    CVSS 7.3
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  40. CVE-2026-90792Medium
    GPAC MP4Box base_scenegraph.c gf_node_list_get_child null pointer dereference
    CVSS 4.3
    n/a/GPACgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 14, 2026View HOL analysis
  41. CVE-2026-57119High
    PraisonAI: Unauthenticated Local File Inclusion via agent_file path in the Jobs API
    CVSS 7.5
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  42. CVE-2026-57129High
    PraisonAI: Arbitrary File Read via `@file:` Mention Path Traversal
    CVSS 7.5
    MervinPraison/praisonaiagentsgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 14, 2026 Fix availableView HOL analysis
  43. CVE-2026-57126High
    praisonaiagents: SSRF guard validates literal IPs only and never resolves DNS
    CVSS 8.5
    MervinPraison/PraisonAIgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  44. CVE-2026-57120Medium
    PraisonAI: execute_code sandbox bypass: str.format C-level attribute access reads every blocklisted dunder
    CVSS 6.5
    MervinPraison/praisonaiagentsgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 16, 2026 Fix availableView HOL analysis
  45. CVE-2026-59570High
    Android ZCC denial of service
    CVSS 7.5
    Zscaler/Client Connectorgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
  46. CVE-2026-57123Critical
    PraisonAI: MCP SSE transport binds 0.0.0.0 with no authentication and no Origin validation; bundled SecurityConfig is never wired in
    CVSS 9.8
    MervinPraison/praisonaiagentsgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026 Fix availableView HOL analysis
  47. CVE-2026-90791Medium
    GPAC MP4Box base_scenegraph.c gf_node_unregister use after free
    CVSS 6.3
    n/a/GPACgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
  48. CVE-2026-59569High
    Android ZCC VPN API method privilege escalation
    CVSS 8.1
    Zscaler/Client Connectorgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
  49. CVE-2026-25687High
    ZCC race condition in ZPA tunnel handler
    CVSS 8.1
    Zscaler/Client Connectorgeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 18, 2026 Fix availableView HOL analysis
  50. CVE-2026-90790Medium
    a2aproject a2a-python Push Notification Sender base_push_notification_sender.py _dispatch_notification server-side request forgery
    CVSS 6.3
    a2aproject/a2a-pythongeneric
    PublishedSep 14, 2026First seen at HOL Sep 14, 2026Updated Sep 15, 2026View HOL analysis
Page 150 of 826
Previous148149150151152Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard