A vulnerability marked as problematic has been reported in OpenClaw up to 2026.2.21. This issue affects some unknown processing of the component toolsBySender Group Policy. The manipulation leads to authorization bypass.
This vulnerability is documented as CVE-2026-32039. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability classified as critical was found in OpenClaw up to 2026.2.18. The affected element is the function stageSandboxMedia. The manipulation results in path traversal.
This vulnerability was named CVE-2026-32030. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability was found in OpenClaw up to 2026.2.21 and classified as problematic. This vulnerability affects unknown code of the component Environment Variable Handler. Such manipulation of the argument SHELL leads to untrusted search path.
This vulnerability is uniquely identified as CVE-2026-32032. Local access is required to approach this attack. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability was found in OpenClaw up to 2026.2.20. It has been rated as critical. This affects an unknown function. The manipulation leads to os command injection.
This vulnerability is listed as CVE-2026-32034. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, was found in gitea up to 1.16.3. Affected is an unknown function. The manipulation results in improper authorization.
This vulnerability is known as CVE-2022-0905. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
A vulnerability classified as critical was found in Oracle Siebel CRM up to 23.6. Affected is an unknown function of the component Siebel Core. The manipulation results in denial of service.
This vulnerability was named CVE-2018-25032. The attack may be performed from remote. There is no available exploit.
A vulnerability classified as critical was found in Oracle Database Server 19c/21c. Affected by this vulnerability is an unknown functionality of the component Oracle Database. The manipulation results in denial of service.
This vulnerability is identified as CVE-2018-25032. The attack can be executed remotely. There is not any exploit available.
A vulnerability, which was classified as critical, has been found in Oracle HTTP Server 12.2.1.4.0. Affected is an unknown function of the component Centralized Thirdparty Jars. The manipulation leads to denial of service.
This vulnerability is listed as CVE-2018-25032. The attack may be initiated remotely. There is no available exploit.
A vulnerability classified as critical has been found in itsourcecode sanitize or validate this input 1.0. This issue affects some unknown processing of the file /admin/subjects.php of the component Parameter Handler. This manipulation of the argument subject_code causes sql injection.
This vulnerability is tracked as CVE-2026-4614. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability classified as critical was found in SourceCodester Online Catering Reservation 1.0. Impacted is an unknown function of the file /search.php. Such manipulation of the argument rcode leads to sql injection.
This vulnerability is listed as CVE-2026-4615. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability, which was classified as critical, was found in SourceCodester Patients Waiting Area Queue Management System 1.0. The impacted element is the function ValidateToken of the file /php/api_patient_checkin.php of the component Patient Check-In Module. Executing a manipulation can lead to improper authorization.
This vulnerability is registered as CVE-2026-4617. It is possible to launch the attack remotely. Furthermore, an exploit is available.