检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-3R56-7HHR-VFG9 | Duplicate Advisory: OpenClaw: CDP /json/version WebSocket URL could pivot to untrusted second-hop targets 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-05-07 05:31 | 2026-05-12 00:12 |
当前筛选结果 998 条 · 时间按北京时间显示
Duplicate Advisory: OpenClaw: MCP loopback owner context is derived from server-issued bearer tokens 已撤回 |
| 高危 |
npmopenclaw |
| 已审查 |
| 2026-05-07 05:31 |
| 2026-05-12 00:12 |
| GHSA-HJPH-F4MC-WX4C | Duplicate Advisory: Mistune has a ReDoS in LINK_TITLE_RE that allows denial of service via crafted Markdown input 已撤回 | 高危 | PyPImistune | 已审查 | 2026-05-07 00:56 | 2026-05-07 03:41 |
| GHSA-WC6P-4GWJ-JCR8 | Duplicate Advisory: Keylime has a hardcoded attestation challenge nonce that allows replay attacks 已撤回 | 中危 | PyPIkeylime | 已审查 | 2026-05-06 20:30 | 2026-06-24 11:30 |
| GHSA-J7RW-325J-2RMX | Duplicate Advisory: Grav has Insecure Deserialization in File Cache 已撤回 | 低危 | Packagistgetgrav/grav | 已审查 | 2026-04-29 08:30 | 2026-05-07 05:57 |
| GHSA-QP56-GP47-JWJ3 | Duplicate Advisory: OpenClaw: Feishu extension resolveUploadInput bypasses file-system sandbox and allows arbitrary file reads via upload_image 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-28 08:31 | 2026-05-07 05:50 |
| GHSA-F5FM-9JMP-C88R | Duplicate Advisory: OpenClaw: Trailing-dot localhost CDP hosts could bypass remote loopback protections 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-28 08:31 | 2026-05-07 03:03 |
| GHSA-8PF2-VJ79-4WXG | Duplicate Advisory: OpenClaw: MSTeams thread history bypasses sender allowlist via Graph API 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-28 08:31 | 2026-05-07 03:12 |
| GHSA-5MH4-3RV3-FPCF | Duplicate Advisory: OpenClaw: Host exec environment sanitization misses package, registry, Docker, compiler, and TLS override variables 已撤回 | 高危 | npmopenclaw | 已审查 | 2026-04-28 08:31 | 2026-05-07 03:11 |
| GHSA-5799-3XG7-RFRV | Duplicate Advisory: OpenClaw: SSH sandbox tar upload follows symlinks, enabling arbitrary file write on remote host 已撤回 | 高危 | npmopenclaw | 已审查 | 2026-04-28 08:31 | 2026-05-07 03:11 |
| GHSA-C8G3-X47W-8Q7P | Duplicate Advisory: Pimcore admin users can trigger SQL Injection 已撤回 | 高危 | Packagistpimcore/pimcore | 已审查 | 2026-04-28 05:31 | 2026-05-29 04:47 |
| GHSA-WWC3-C577-533M | Duplicate Advisory: OpenClaw: Gateway `device.token.rotate` does not terminate active WebSocket sessions after credential rotation 已撤回 | 低危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:59 |
| GHSA-M958-864J-XQ5W | Duplicate Advisory: OpenClaw: Telnyx Webhook Replay Detection Bypass via Base64 Signature Re-encoding 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:59 |
| GHSA-M563-373Q-885C | Duplicate Advisory: OpenClaw: OpenShell `mirror` mode can convert untrusted sandbox files into explicitly enabled workspace hooks and execute them on the host during gateway startup 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 06:00 |
| GHSA-7HRG-5W46-5R2X | Duplicate Advisory: OpenClaw: Slack thread context could include messages from non-allowlisted senders 已撤回 | 低危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 00:51 |
| GHSA-6477-WVJJ-47V6 | Duplicate Advisory: OpenClaw: Zalo replay dedupe keys could suppress messages across chats or senders 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-08 00:44 |
| GHSA-394X-274P-MQC6 | Duplicate Advisory: OpenClaw: Gateway operator.write Can Reach Admin-Class Telegram Config and Cron Persistence via send 已撤回 | 高危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-07 06:41 |
| GHSA-WCM7-94WG-H74H | Duplicate Advisory: OpenClaw host-env blocklist missing `GIT_TEMPLATE_DIR` and `AWS_CONFIG_FILE` allows code execution via env override 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:54 |
| GHSA-W9F5-8Q83-QWPX | Duplicate Advisory: OpenClaw: Fake DeviceToken Bypasses Shared Auth Rate Limiting 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 06:00 |
| GHSA-V3C2-39FM-JQ4H | Duplicate Advisory: OpenClaw: Gateway `operator.write` can reach admin-only persisted `verboseLevel` via `chat.send` `/verbose` 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-07 07:04 |
| GHSA-R7P2-R9G4-4XPH | Duplicate Advisory: OpenClaw: Gateway hello snapshots exposed host config and state paths to non-admin clients 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:55 |
| GHSA-QGP3-3RJ7-QQQ4 | Duplicate Advisory: OpenClaw: Discord Slash Commands Bypass Group DM Channel Allowlist 已撤回 | 低危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:58 |
| GHSA-PR66-WHQJ-RQ5P | Duplicate Advisory: OpenClaw: Discord Component Interaction Misclassifies Group DM as Direct Message 已撤回 | 低危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:48 |
| GHSA-MF69-R24Q-GHHR | Duplicate Advisory: OpenClaw: Pairing pending-request caps were enforced per channel instead of per account 已撤回 | 中危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:59 |
| GHSA-JX3C-247H-CXWP | Duplicate Advisory: OpenClaw: Workspace `.env` can override the bundled hooks root and load attacker hook code 已撤回 | 高危 | npmopenclaw | 已审查 | 2026-04-24 08:31 | 2026-05-05 05:54 |