HOL LogoGuard

Explore HOL

  • HOL home
  • AI agent registry
  • AI plugins
  • Open standards
  • HOL members

Guard product

  • Guard overviewLocal security and control for AI agents and the tools they use.
  • FeaturesRuntime protection, policy routing, review, and evidence.

Explore Guard

  • Product previewWalk through Guard surfaces in read-only demo mode.
  • ComparisonCompare Guard with native controls and AI security vendors.

AI tools

  • All AI toolsEvery supported AI tool and how Guard applies policy to it.
  • Codex
  • Claude Code
  • Cursor
  • Gemini CLI
  • OpenCode
  • Hermes
  • OpenClaw
  • GitHub Copilot CLI
  • Antigravity
  • Kimi
  • Grok
  • Pi / Oh My Pi
  • Zcode

Extensions

  • All extensionsBrowse command and MCP coverage with owners and stated limits.
  • Command coverageShell command protection across clouds, databases, backups, and packages.
  • MCP server coverageSee how Guard maps risk state across MCP tools and servers.
  • Core safetyThe safety floor listings that ship with Guard.
  • Data and resilienceBackup and storage command protection.
  • Cloud and infrastructureAWS, Azure, GCP, Kubernetes, and more.

Security

  • AI security hubSecurity research, advisories, and agent safety coverage.
  • AI tool securitySecurity profiles for each supported coding agent.
  • Safe labsHands-on attack simulations with safe boundaries.
  • Redacted warningsReal blocked actions with sensitive details removed.
  • AdvisoriesCoordinated disclosure reports for AI tooling.
  • Active CVEsSearch active CVEs affecting AI tooling.

Learn

  • Security guidesPractical guides for securing AI agent workflows.
  • DocsInstall, configure, and operate Guard with confidence.
  • ResearchPublished security research, benchmarks, and methodology.

Community

  • ReleasesVersion history, shipped changes and upgrade notes.
  • ContributorsThe people and contributions behind HOL Guard.
  • AffiliatesShare Guard with your audience and earn from referrals.
  • SponsorKeep agent security open: sponsor a project, place a banner, or fund a security initiative.
PricingEnterpriseOpen AppInstall Guard
  1. Guard
  2. Security
  3. CVEs
HOL Guard

Public security guidance for teams protecting AI harnesses, MCP servers, skills, prompts, and local tool execution.

Install Guard

AI Security

  • Prompt injection
  • MCP security
  • OWASP MCP mapping
  • Supply chain

Resources

  • Trust packet
  • Harness setup
  • Redacted warnings
  • Safe labs

Product

  • Install Guard
  • Pricing
  • Open dashboard
Guard
  • Guard Overview
  • Releases
  • Contributors
  • Install Guard
  • Pricing
Docs
  • Documentation Index
  • Developer Hub
  • API Reference
  • Root OpenAPI
  • Registry OpenAPI
  • Run in Postman
  • Standards
  • Submit ERC-8004 Contract
  • Feature Your Agent
Best Plugins
  • Browse Plugins
  • Plugin Launches
  • Best Claude Plugins
  • Best Codex Plugins
  • Best Grok Plugins
  • Best Kimi Plugins
  • Best DeepSeek Plugins
  • Best Antigravity Plugins
  • Best MCP Plugins
  • Best Cursor Plugins
  • Best OpenCode Plugins
Best Agents
  • Best ERC-8004 Agents
  • Best Virtuals Agents
  • Best MCP Servers
  • Best A2A Agents
  • Best x402 Payable
  • All Categories
Community
  • Telegram
  • X
More
  • About HOL
  • Contact
  • Blog
  • GitHub
  • Privacy
  • Terms of Service
Settings

Copyright © 2026 HOL DAO LLC. All rights reserved.

Active CVEs

Search active, non-withdrawn CVEs in the HOL Guard feed, then open the matching HOL analysis.

Feed liveLast checked Sep 24, 2026, 6:23 AM 38,753 active 1,498 known exploited

Catalog summary

38,753

Active CVEs

19,688

Critical + high

1,498

Known exploited

19

Ecosystems

Search and filter active CVEs

Filters & sort
Severity
Clear

Showing 1,051–1,100 of 38,753 active CVEs

Sorted by Published (newest)

Active CVE results

Select a result for the HOL analysis
IdentityRiskAffected softwarePublished
  1. CVE-2026-69190Medium
    Graylog: Manager-to-Owner privilege escalation on saved searches and dashboards
    CVSS 6.3
    Graylog2/graylog2-server, org.graylog2:graylog2-servergeneric · maven
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  2. CVE-2026-55473Medium
    HomeBox: Notifier SSRF guard misses NAT64 prefixes (64:ff9b::/96, 64:ff9b:1::/48) — generic:// URL reaches cloud metadata on NAT64 egress
    CVSS 6.0
    sysadminsmedia/homeboxgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  3. CVE-2026-48826Unknown severity
    HomeBox: Cross-Group Inventory Wipe in Homebox via Global Owner Role and X-Tenant Header Switching
    Not scoredSource severity not reported
    sysadminsmedia/homeboxgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  4. CVE-2026-48974Unknown severity
    HomeBox: Forced Group Membership Without Consent in Homebox AddMember Handler
    Not scoredSource severity not reported
    sysadminsmedia/homeboxgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  5. CVE-2026-48975Unknown severity
    HomeBox: Cross-Tenant IDOR in MaintenanceEntry Update and Delete Allows Tampering and Destruction of Any User's Maintenance History in Homebox
    Not scoredSource severity not reported
    sysadminsmedia/homeboxgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  6. CVE-2026-48976Unknown severity
    HomeBox: Cross-Tenant IDOR in Notifier Update Leaks Shoutrrr Credentials and Allows Webhook Hijack
    Not scoredSource severity not reported
    sysadminsmedia/homeboxgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  7. CVE-2026-62182High
    KubeEdge: ConfigUpdateJob updateFields enables remote shell injection and code execution on edge nodes
    CVSS 8.8
    github.com/kubeedge/kubeedge, kubeedge/kubeedgegeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  8. CVE-2026-61612Medium
    @aborruso/ckan-mcp-server has SSRF via DNS-name → internal IP — incomplete fix of CVE-2026-53509
    CVSS 5.7
    @aborruso/ckan-mcp-server, ondata/ckan-mcp-servergeneric · npm
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  9. CVE-2026-94488Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Telegram/Telegram Desktopgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  10. CVE-2026-92382Unknown severity
    Usbredir: usbredir: unbounded iso_packet_desc[] index in usbredirhost_iso_packet() leads to heap out-of-bounds write
    Not scoredSource severity not reported
    Affected software not mappedEcosystem not listed
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  11. CVE-2026-93012Critical
    Email::Sender::Transport::Sendmail versions before 2.602 for Perl allow arbitrary command execution on Windows sending a message whose envelope address reaches the shell in _sendmail_pipe
    CVSS 9.8
    Affected software not mappedEcosystem not listed
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026View HOL analysis
  12. CVE-2026-62369High
    KubeEdge: keadm DecompressTarGz path traversal enables arbitrary file write on Windows during edge node join
    CVSS 8.1
    github.com/kubeedge/kubeedge, kubeedge/kubeedgegeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  13. CVE-2026-62370Medium
    KubeEdge: Unbounded allocation in viaduct packer enables authenticated remote DoS against CloudHub
    CVSS 6.5
    github.com/kubeedge/kubeedge, kubeedge/kubeedgegeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  14. CVE-2026-62371High
    KubeEdge: Command Injection in NodeUpgradeJob - RCE on edge nodes via v1alpha2 API
    CVSS 8.8
    github.com/kubeedge/kubeedge, kubeedge/kubeedgegeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  15. CVE-2026-94449Unknown severity
    Quarkus-smallrye-fault-tolerance: quarkus-smallrye-fault-tolerance: memory leak in @applyguard leads to denial of service
    Not scoredSource severity not reported
    Affected software not mappedEcosystem not listed
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  16. CVE-2026-63116High
    deepstream: PATCH_MULTI action bypasses Valve permission system allowing unauthorized record writes
    CVSS 8.8
    @deepstream/server, deepstreamIO/deepstream.iogeneric · npm
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  17. CVE-2026-59168Medium
    Dasel: Unbounded recursion in JSON and XML readers causes unrecoverable stack-overflow DoS
    CVSS 6.2
    TomWright/dasel, github.com/tomwright/dasel/v3generic · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  18. CVE-2026-62866Medium
    Dasel: Selector lexer panics on trailing whitespace in `parseCurRune`
    CVSS 6.2
    TomWright/dasel, github.com/tomwright/dasel/v3generic · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  19. CVE-2026-77561Medium
    Tinyauth: Unauthenticated login attempts can trigger global login lockdown denial of service
    CVSS 5.3
    github.com/steveiliop56/tinyauth, tinyauthapp/tinyauthgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  20. CVE-2026-77582Medium
    Tinyauth: User enumeration attack by timing oracle
    CVSS 6.9
    github.com/tinyauthapp/tinyauth, tinyauthapp/tinyauthgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 23, 2026 Fix availableView HOL analysis
  21. CVE-2026-17051Unknown severity
    Out-of-bounds write in the Intel SEDI IPM driver from an unvalidated inbound doorbell length
    Not scoredSource severity not reported
    zephyrproject/zephyrgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  22. CVE-2026-17050Unknown severity
    Double free of the USB host configuration descriptor when device enumeration fails
    Not scoredSource severity not reported
    zephyrproject/zephyrgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  23. CVE-2026-77560High
    Tinyauth: forward-auth per-app ACL is matched case-sensitively against the (case-insensitive) hostname, letting an authenticated user reach apps they are not on the allowlist for
    CVSS 8.1
    github.com/tinyauthapp/tinyauth, tinyauthapp/tinyauthgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  24. CVE-2026-79920Unknown severity
    Ajenti: Privilege escalation to root via unauthenticated/unauthorized plugin install task
    Not scoredSource severity not reported
    ajenti/ajentigeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  25. CVE-2026-76898Unknown severity
    draw.io: Unauthenticated SSRF via IPv6 ULA blocklist bypass in /embed2.js
    Not scoredSource severity not reported
    jgraph/drawiogeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  26. CVE-2026-63373Unknown severity
    draw.io: OAuth CSRF via missing state validation on self-hosted deployments allows session token injection
    Not scoredSource severity not reported
    jgraph/drawiogeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  27. CVE-2026-63334Unknown severity
    draw.io: SSRF via DNS rebinding in ProxyServlet bypasses private IP blocklist
    Not scoredSource severity not reported
    jgraph/drawiogeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  28. CVE-2026-63416Unknown severity
    draw.io: Path traversal in ExportProxyServlet allows access to arbitrary backend endpoints
    Not scoredSource severity not reported
    jgraph/drawiogeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  29. CVE-2026-58504Medium
    draw.io: Stored XSS on file open via editable=0 sibling cell — patch bypass of CVE-2026-46642
    CVSS 6.1
    jgraph/drawiogeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  30. CVE-2026-62987Medium
    Fabio - Incomplete fix for CVE-2025-48865: operator-configured trust headers (clientip/tls/requestid) still strippable via the Connection header
    CVSS 5.8
    fabiolb/fabio, github.com/fabiolb/fabiogeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  31. CVE-2026-61674Critical
    Fluent Bit: Remote stack buffer overflow in Fluent Bit `out_forward` Secure-Forward `PONG` handler
    CVSS 9.2
    fluent/fluent-bitgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  32. CVE-2026-84990Unknown severity
    ntopng: Missing Authorization on System Configuration Backup Download and Listing
    Not scoredSource severity not reported
    ntop/ntopnggeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  33. CVE-2026-83621Unknown severity
    ntopng: Missing Authorization Check in REST API Allows Non-Admin Users to Tamper Threat Intelligence Blacklist URLs
    Not scoredSource severity not reported
    ntop/ntopnggeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  34. CVE-2026-82412Unknown severity
    ntopng: Remote Code Execution via OS Command Injection in Vulnerability-Scan REST API
    Not scoredSource severity not reported
    ntop/ntopnggeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  35. CVE-2026-55563High
    Feast: `pull_request_target` integration tests run untrusted fork code with production cloud secrets; the `ok-to-test` label guard is bypassable via label persistence on `synchronize`
    CVSS 8.9
    feast-dev/feastgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  36. CVE-2026-88978Medium
    Hatchet DurableTask WorkerStatus gRPC resolves caller-supplied durable-task UUIDs via ListSatisfiedEntries with no tenant_id filter
    CVSS 4.3
    github.com/hatchet-dev/hatchet, hatchet-dev/hatchetgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  37. CVE-2026-84298Low
    Hatchet: Cross-tenant durable callback payload disclosure in Hatchet V1 Dispatcher
    CVSS 3.1
    github.com/hatchet-dev/hatchet, hatchet-dev/hatchetgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  38. CVE-2026-61687High
    hatchet - Unauthenticated OAuth state CSRF / login-CSRF via empty-state collision in ValidateOAuthState
    CVSS 7.1
    hatchet, hatchet-dev/hatchetgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  39. CVE-2026-63342Medium
    Hatchet: Cross-Tenant Durable Task Event Log Disclosure via Missing Authorization Check
    CVSS 6.3
    github.com/hatchet-dev/hatchet, hatchet-dev/hatchetgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  40. CVE-2026-61681Medium
    Hatchet: SSRF via Unsigned UnsubscribeURL in SNS UnsubscribeConfirmation Handler
    CVSS 4.1
    hatchet-dev/hatchetgeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  41. CVE-2026-85751Unknown severity
    Mailu: Authentication bypass in header-based proxy authentication via spoofable `X-Forwarded-By` trust
    Not scoredSource severity not reported
    Mailu/Mailu, Mailu/helm-chartsgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  42. CVE-2026-53940High
    Conda: Entry-point path traversal in noarch:python install (arbitrary file write) — canonical Python implementation
    CVSS 8.8
    conda/condageneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  43. CVE-2026-77165Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Nextcloud/Servergeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  44. CVE-2026-77166Unknown severity
    CISA ADP Vulnrichment
    Not scoredSource severity not reported
    Nextcloud/Collectivesgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026View HOL analysis
  45. CVE-2026-71543High
    OpenBao's Templated Policies Allow Privilege Escalation via Wildcard Characters
    CVSS 0.0
    github.com/openbao/openbao, openbao/openbaogeneric · go
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 22, 2026 Fix availableView HOL analysis
  46. CVE-2026-52742Medium
    GoCD is vulnerable to historical server configuration API authorization bypass
    CVSS 5.1
    gocd/gocdgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  47. CVE-2026-55870Low
    GoCD is vulnerable to credential exposure when admins insecurely configure material URLs
    CVSS 2.3
    gocd/gocdgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  48. CVE-2026-55625Medium
    GoCD is vulnerable to authorization bypass via material connection test APIs
    CVSS 4.9
    gocd/gocdgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  49. CVE-2026-52740Medium
    GoCD is vulnerable to pipeline template view API authorization bypass
    CVSS 5.3
    gocd/gocdgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
  50. CVE-2026-55060Low
    GoCD is vulnerable to authorization bypass via support process list API
    CVSS 3.7
    gocd/gocdgeneric
    PublishedSep 21, 2026First seen at HOL Sep 21, 2026Updated Sep 21, 2026 Fix availableView HOL analysis
Page 22 of 776
Previous2021222324Next
How this catalog works

Active means a non-withdrawn CVE List record with a validated alias, English description, publication date, and source reference. Published is the CVE Program date; First seen at HOL is when this feed first indexed the record; Modified and Source checked describe later feed activity. Severity uses the reported source value when present, otherwise a valid CVSS score supplies the displayed band. Unmapped records do not imply package coverage.

Put Guard beside your supply-chain workflow.

Explore HOL Guard