Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

4 advisories

Loading
Flowise: SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses High
CVE-2026-69257 was published for flowise (npm) Aug 4, 2026
feiyang666 Credited to feiyang666
OpenClaw: QQBot media tags could read arbitrary local files through reply text High
CVE-2026-43533 was published for openclaw (npm) Apr 17, 2026
feiyang666 Credited to feiyang666
OpenClaw: Exec environment denylist missed high-risk interpreter startup variables High
CVE-2026-43584 was published for openclaw (npm) Apr 17, 2026
feiyang666 Credited to feiyang666
OpenClaw: QQ Bot structured payloads could read arbitrary local files Moderate
GHSA-846p-hgpv-vphc was published for openclaw (npm) Apr 7, 2026
feiyang666 Credited to feiyang666
ProTip! Advisories are also available from the GraphQL API