Latest Vulnerabilities Updates on the latest vulnerabilities detected.
- CVE-2026-16194 – zhayujie CowAgent web_fetch.py WebFetch.execute server-side request forgeryon July 18, 2026 at 10:16 pm
CVE ID :CVE-2026-16194 Published : July 18, 2026, 10:16 p.m. | 19 minutes ago Description :A vulnerability was determined in zhayujie CowAgent up to 2.1.1. This affects the function WebFetch.execute of the file agent/tools/web_fetch/web_fetch.py. Executing a manipulation of the argument url can lead to server-side request forgery. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.1.2 is able to mitigate this issue. This patch is called ea47f3097eed4f8295c4cb3d76ecb97e0f43d632. It is recommended to upgrade the affected component. The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16156 – SourceCodester Class and Exam Timetabling System forexam.php cross site scriptingon July 18, 2026 at 10:16 pm
CVE ID :CVE-2026-16156 Published : July 18, 2026, 10:16 p.m. | 19 minutes ago Description :A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The manipulation of the argument day results in cross site scripting. It is possible to launch the attack remotely. The exploit has been released to the public and may be used for attacks. Severity: 4.0 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-10130 – QueryWeaver Authentication Bypass via Email Signup Token Issuance for Existing Accountson July 18, 2026 at 10:15 pm
CVE ID :CVE-2026-10130 Published : July 18, 2026, 10:15 p.m. | 20 minutes ago Description :QueryWeaver contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain valid session tokens for existing accounts by submitting a signup request with a known victim email address. The signup route unconditionally creates and links a new token to the matching Identity via a Cypher MERGE operation before checking whether the email belongs to an existing account, causing the server to return a valid authenticated session token for the victim’s identity without requiring any prior credentials or user interaction. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-12228 – Stored XSS in Direct Messages via Prompt Sharing in parisneo/lollmson July 18, 2026 at 9:17 pm
CVE ID :CVE-2026-12228 Published : July 18, 2026, 9:17 p.m. | 1 hour, 18 minutes ago Description :A stored cross-site scripting (XSS) vulnerability exists in the `POST /api/prompts/share` endpoint of parisneo/lollms (latest version). The endpoint stores attacker-controlled `prompt_content` into `DBDirectMessage.content` without server-side sanitization. When a victim opens the direct message (DM) thread, the message is rendered by the DM UI through `MessageContentRenderer`, which uses `v-html` to insert rendered HTML into the DOM. The frontend sanitizer, which is regex-based, fails to comprehensively sanitize attacker-controlled HTML, allowing malicious payloads to execute in the victim’s browser context. This vulnerability enables any authenticated user to send a malicious prompt-share message to another user’s inbox, leading to arbitrary JavaScript execution, authenticated actions as the victim, exposure of same-origin application data, and potential account takeover. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16152 – SourceCodester Class and Exam Timetabling System edit_rooma.php sql injectionon July 18, 2026 at 9:17 pm
CVE ID :CVE-2026-16152 Published : July 18, 2026, 9:17 p.m. | 1 hour, 18 minutes ago Description :A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_rooma.php. Performing a manipulation of the argument ID results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16154 – SourceCodester Class and Exam Timetabling System edit_room1.php sql injectionon July 18, 2026 at 9:17 pm
CVE ID :CVE-2026-16154 Published : July 18, 2026, 9:17 p.m. | 1 hour, 18 minutes ago Description :A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /edit_room1.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16155 – SourceCodester Class and Exam Timetabling System schoolyr.php cross site scriptingon July 18, 2026 at 9:17 pm
CVE ID :CVE-2026-16155 Published : July 18, 2026, 9:17 p.m. | 1 hour, 18 minutes ago Description :A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /schoolyr.php. The manipulation of the argument sy leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. Severity: 4.0 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-57857 – Flow Payment Plugin for WordPress Reflected Cross-Site Scripting via error_message Parameteron July 18, 2026 at 9:17 pm
CVE ID :CVE-2026-57857 Published : July 18, 2026, 9:17 p.m. | 1 hour, 18 minutes ago Description :The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the WooCommerce checkout page. When the plugin handles an order cancellation, the error_message GET parameter is passed directly to wc_add_notice() in flowpayment-fl.php (lines 57-58) without input sanitization (for example sanitize_text_field()) or output escaping (for example esc_html()) before being rendered in the checkout notice HTML. An unauthenticated attacker can craft a URL containing a JavaScript payload in the error_message parameter (for example /checkout/?add-to-cart={product-id}&cancel_order=true&error_message={payload}); when a victim with an active WooCommerce checkout session follows the link, the payload executes in the victim’s browser in the origin of the WordPress site. Severity: 7.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16151 – CartoDB carto-api-client filters.ts addFilter prototype pollutionon July 18, 2026 at 8:17 pm
CVE ID :CVE-2026-16151 Published : July 18, 2026, 8:17 p.m. | 2 hours, 18 minutes ago Description :A vulnerability has been found in CartoDB carto-api-client 0.5.29. This impacts the function addFilter of the file src/filters.ts. Such manipulation of the argument column leads to improperly controlled modification of object prototype attributes. The attack can be executed remotely. The project was informed of the problem early through an issue report but has not responded yet. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-53994 – ProFTPD mod_sftp Heap Buffer Overflow via Unsigned Integer Underflow and Size Truncationon July 18, 2026 at 8:17 pm
CVE ID :CVE-2026-53994 Published : July 18, 2026, 8:17 p.m. | 2 hours, 18 minutes ago Description :ProFTPD mod_sftp contains a heap-based buffer overflow reachable by an authenticated SFTP user. The fxp_packet_read() function accepts the attacker-supplied 32-bit big-endian SFTP packet length without a minimum sanity check. A value of 0 causes an unsigned subtraction elsewhere in the read path to underflow to approximately 4 GB. That oversized request reaches the core memory allocator, where the rounded size is computed in size_t but passed to new_block() as a 32-bit int; the low 32 bits of 0x100000000 are 0, so new_block() returns a small (~512-byte) block while the caller is told it received ~4 GB. The subsequent fill loop then streams attacker-controlled bytes past the end of the 544-byte allocation, producing an attacker-controlled heap buffer overflow. An authenticated user can crash the per-connection ProFTPD session child on demand with a single malformed SFTP packet (packet_len=0 followed by a body greater than approximately 544 bytes), producing reliable authenticated remote denial of service. Depending on heap layout and adjacent allocations, heap metadata corruption and further consequences beyond denial of service may be possible, though only denial of service is demonstrated by the supplied proof of concept. Severity: 7.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-57848 – Stoat for Android Internal File Disclosure via Exported ShareTargetActivity URI Validationon July 18, 2026 at 8:17 pm
CVE ID :CVE-2026-57848 Published : July 18, 2026, 8:17 p.m. | 2 hours, 18 minutes ago Description :Stoat for Android exports the chat.stoat.activities.ShareTargetActivity component (reachable to any process on the device via the android.intent.action.SEND intent) and accepts the file to share as a URI supplied through the android.intent.extra.STREAM extra. The activity does not validate or filter the incoming URI before using it as the outgoing attachment, so a caller can pass a file:// URI pointing at the application’s own internal storage (for example /data/data/chat.revolt/databases/revolt.db, cached authentication token files, or preferences) and have the app treat that internal file as a user-selected attachment. An attacker who can invoke intents on the victim’s device (via ADB access, a co-installed malicious application, or any other route that reaches Android’s intent dispatch) can launch ShareTargetActivity with such a URI and cause the victim, on a single channel-selection interaction, to send the internal file to any Stoat channel or user of the attacker’s choosing. The composer displays the attachment as \”attachment\” with no filename indication, so the victim has no visible signal that the file being sent is their own internal application data. Consequences include disclosure of the local Stoat database (message history, contact list, cached content), disclosure of authentication tokens permitting full account takeover, and disclosure of any other file readable by the app process. Severity: 6.8 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16150 – RobinHerbots Inputmask Internal Deep Merge Helper extend.js extendAliases prototype pollutionon July 18, 2026 at 8:17 pm
CVE ID :CVE-2026-16150 Published : July 18, 2026, 8:17 p.m. | 2 hours, 18 minutes ago Description :A vulnerability was found in RobinHerbots Inputmask up to 5.0.9. Affected by this issue is the function extendDefaults/extendDefinitions/extendAliases in the library lib/dependencyLibs/extend.js of the component Internal Deep Merge Helper. The manipulation results in improperly controlled modification of object prototype attributes. The attack may be performed from remote. The project was informed of the problem early through an issue report but has not responded yet. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16131 – itsourcecode Hospital Management System prescriptionrecord.php sql injectionon July 18, 2026 at 7:17 pm
CVE ID :CVE-2026-16131 Published : July 18, 2026, 7:17 p.m. | 3 hours, 18 minutes ago Description :A weakness has been identified in itsourcecode Hospital Management System 1.0. This affects an unknown function of the file /prescriptionrecord.php. This manipulation of the argument delid causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and could be used for attacks. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16133 – LiuMengxuan04 MiniCode mcp.ts child_process.spawn command injectionon July 18, 2026 at 7:17 pm
CVE ID :CVE-2026-16133 Published : July 18, 2026, 7:17 p.m. | 3 hours, 18 minutes ago Description :A flaw has been found in LiuMengxuan04 MiniCode 0.1.0. Affected by this vulnerability is the function child_process.spawn of the file mcp.ts. Executing a manipulation can lead to command injection. The attack can be launched remotely. The attack requires a high level of complexity. The exploitation appears to be difficult. The exploit has been published and may be used. The pull request to fix this issue awaits acceptance. Severity: 5.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16130 – nearai ironclaw write_file path_utils.rs validate_path link followingon July 18, 2026 at 6:16 pm
CVE ID :CVE-2026-16130 Published : July 18, 2026, 6:16 p.m. | 4 hours, 19 minutes ago Description :A vulnerability was identified in nearai ironclaw up to 0.29.1. The affected element is the function validate_path of the file src/tools/builtin/path_utils.rs of the component write_file. The manipulation leads to link following. Local access is required to approach this attack. The exploit is publicly available and might be used. The identifier of the patch is 369ff3d240cf3c0787b50e1e9f182e1a06c71255. It is recommended to apply a patch to fix this issue. Severity: 4.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16129 – princezuda SafestClaw Built-in Web shell.py ShellAction._validate_command incomplete blackliston July 18, 2026 at 5:16 pm
CVE ID :CVE-2026-16129 Published : July 18, 2026, 5:16 p.m. | 5 hours, 19 minutes ago Description :A vulnerability has been found in princezuda SafestClaw up to 4.2.4. This vulnerability affects the function ShellAction._validate_command of the file src/safestclaw/actions/shell.py of the component Built-in Web Interface. Such manipulation leads to incomplete blacklist. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The presence of this vulnerability remains uncertain at this time. The project maintainer explains: “On paper you’re correct, this is a vulnerability. In practice, nothing your AI generated shows how it makes users vulnerable. It’s open source. Someone can mod the shell allow list or remove that system. Present an actual poc that shows a threat to users.” Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16128 – zevorn rt-claw http_request swarm.c receiver_thread server-side request forgeryon July 18, 2026 at 5:16 pm
CVE ID :CVE-2026-16128 Published : July 18, 2026, 5:16 p.m. | 5 hours, 19 minutes ago Description :A security flaw has been discovered in zevorn rt-claw up to 0.2.0. This impacts the function receiver_thread of the file claw/services/swarm/swarm.c of the component http_request. Performing a manipulation results in server-side request forgery. It is possible to initiate the attack remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16126 – zevorn rt-claw Swarm RPC Receiver swarm.c handle_rpc_request authorizationon July 18, 2026 at 4:17 pm
CVE ID :CVE-2026-16126 Published : July 18, 2026, 4:17 p.m. | 6 hours, 18 minutes ago Description :A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handle_rpc_request of the file claw/services/swarm/swarm.c of the component Swarm RPC Receiver. This manipulation causes incorrect authorization. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16127 – zevorn rt-claw http_request tool_net.c claw_net_post server-side request forgeryon July 18, 2026 at 4:17 pm
CVE ID :CVE-2026-16127 Published : July 18, 2026, 4:17 p.m. | 6 hours, 18 minutes ago Description :A vulnerability was identified in zevorn rt-claw up to 0.2.0. This affects the function claw_net_get/claw_net_post of the file claw/tools/tool_net.c of the component http_request. Such manipulation of the argument url leads to server-side request forgery. The attack may be performed from remote. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16124 – nextlevelbuilder GoClaw web_fetch web_shared.go isPrivateIP server-side request forgeryon July 18, 2026 at 4:17 pm
CVE ID :CVE-2026-16124 Published : July 18, 2026, 4:17 p.m. | 6 hours, 18 minutes ago Description :A security vulnerability has been detected in nextlevelbuilder GoClaw up to 3.15.0-beta.32. This affects the function CheckSSRF/isPrivateIP of the file internal/tools/web_shared.go of the component web_fetch. Such manipulation leads to server-side request forgery. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 3.15.0-beta.33 is able to mitigate this issue. The name of the patch is 12a0168271827650ddb0026d6277fbadf3dcf3ea. Upgrading the affected component is recommended. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16125 – zevorn rt-claw http_request net.c claw_net_post server-side request forgeryon July 18, 2026 at 4:17 pm
CVE ID :CVE-2026-16125 Published : July 18, 2026, 4:17 p.m. | 6 hours, 18 minutes ago Description :A vulnerability was found in zevorn rt-claw up to 0.2.0. The affected element is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation of the argument url results in server-side request forgery. The attack can be executed remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16122 – nextlevelbuilder GoClaw exec_approval.go matchesAllowlist authorizationon July 18, 2026 at 3:17 pm
CVE ID :CVE-2026-16122 Published : July 18, 2026, 3:17 p.m. | 7 hours, 18 minutes ago Description :A security flaw has been discovered in nextlevelbuilder GoClaw up to 3.13.2. Affected by this vulnerability is the function extractBin/RequestApproval/matchesAllowlist of the file internal/tools/exec_approval.go. The manipulation results in incorrect authorization. The exploit has been released to the public and may be used for attacks. Severity: 4.7 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16123 – nextlevelbuilder GoClaw Invoke Endpoint tools_invoke.go ToolsInvokeHandler.ServeHTTP authorizationon July 18, 2026 at 3:17 pm
CVE ID :CVE-2026-16123 Published : July 18, 2026, 3:17 p.m. | 7 hours, 18 minutes ago Description :A weakness has been identified in nextlevelbuilder GoClaw up to 3.13.2. Affected by this issue is the function ToolsInvokeHandler.ServeHTTP of the file internal/http/tools_invoke.go of the component Invoke Endpoint. This manipulation causes missing authorization. The attack can be initiated remotely. The exploit has been made available to the public and could be used for attacks. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-16121 – nextlevelbuilder GoClaw exec_approval.go isSafeBin improper authorizationon July 18, 2026 at 3:17 pm
CVE ID :CVE-2026-16121 Published : July 18, 2026, 3:17 p.m. | 7 hours, 18 minutes ago Description :A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.2. Affected is the function isSafeBin of the file internal/tools/exec_approval.go. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more…
- CVE-2026-9323 – Insecure PRNG and Information Exposure in urwid Web Display Backendon July 18, 2026 at 2:17 pm
CVE ID :CVE-2026-9323 Published : July 18, 2026, 2:17 p.m. | 8 hours, 18 minutes ago Description :The urwid web display backend (urwid/display/web.py) generates web session identifiers (urwid_id) in Screen.start() by concatenating two random.randrange(10**9) calls that use Python’s Mersenne Twister PRNG, which is not cryptographically secure. Each call consumes approximately 30 bits of PRNG state, and the Mersenne Twister internal state is approximately 19,937 bits, so an attacker who observes approximately 334 session IDs (for example via the X-Urwid-ID HTTP response header) can fully reconstruct the internal state and predict all past and future session IDs (Path B). The same identifier is also used as the filename of a FIFO created in the world-listable /tmp directory (for example /tmp/urwid375487765176907690.in), so any local user on the host can list /tmp to enumerate active session tokens directly (Path A). With a valid session ID, an attacker can read the victim’s terminal screen via the polling endpoint, inject keystrokes into the victim’s session (yielding OS-level code execution with the session owner’s privileges if the session runs a shell), and inject exit sequences or flood the FIFO to terminate or crash the session. A prior Bandit S311 warning on this usage was suppressed with # noqa: S311 rather than fixed Severity: 9.2 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more…






