Monitor vulnerabilities that affect your stack.
Sign up free to get alerts when software you use is affected.
CVE Vulnerabilities - 18 March 2026
RSS58 vulnerabilities published on 18 March 2026
Severity:
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. Prior to version 9.5, a local file inclusion was detected in the PD...
CVE-2026-27894
LDAP Account Manager (LAM) is a webfrontend for managing entries (e.g. users, groups, DHCP settings) stored in an LDAP directory. Prior to version 9.5, a local file inclusion was detected in the PDF e...
8.8
Roxy-WI Prior to 8.2.6.3: Hackers Can Run Commands on Your Server
CVE-2026-27811
A security weakness in Roxy-WI's web interface before version 8.2.6.3 lets attackers who are already logged in to the system run any system commands on the server. This is a serious issue because it c...
8.8
ONNX Model Downloads Can Be Hacked Without Warning
GHSA-hqmj-h5c6-369m
CVE-2026-28500
A security flaw in ONNX allows hackers to trick users into downloading and running malicious models from untrusted sources without any warnings. This can lead to sensitive information being stolen fro...
8.6
OpenClaw Feishu Media Download Can Write Files Outside of Safe Location
GHSA-vj3g-5px3-gr46
CVE-2026-22171
OpenClaw's Feishu media download feature can allow an attacker to write files to any location on the server by manipulating the Feishu media key. This is a security risk because it could allow an atta...
8.8
OpenClaw allows attackers to write files outside its temp directory
GHSA-vj3g-5px3-gr46
OpenClaw, a software package, has a security issue that could allow an attacker to write files outside the intended temporary directory. This is a problem because an attacker could potentially write m...
8.8
Keycloak SAML Authentication Bypass by External Identity Provider
CVE-2026-2603
A security issue in Keycloak allows an attacker to bypass security controls and authenticate with a disabled SAML Identity Provider. This could lead to unauthorized access to your system. To protect y...
8.1
Keycloak: Unauthorized Access via Malicious SAML Response
CVE-2026-2092
Keycloak's SAML feature has a flaw that allows an attacker to create a fake SAML response, potentially gaining unauthorized access to your system. This could lead to sensitive information being disclo...
7.7
xiaoheiFS Admins Can Run Any File on Their Servers
CVE-2026-28674
A security weakness in xiaoheiFS versions up to 0.3.15 lets system administrators upload and run any file on their servers. This could allow an attacker to take control of the server. Update to versio...
7.2
xiaoheiFS: Malicious zip file execution in plugin upload
CVE-2026-28673
An attacker can upload a specially crafted zip file to execute arbitrary code on the server, potentially allowing them to take control of the system. This affects all versions of xiaoheiFS up to 0.3.1...
7.2
pyOpenSSL DTLS Cookie Overflow Risk: Large Cookie Values Crash Application
GHSA-5pwr-322w-8jr4
CVE-2026-27459
A bug in pyOpenSSL could cause a crash if a server is given a very long cookie value. This has been fixed by pyOpenSSL's developers, so you should update to the latest version to stay safe.
7.2
OpenClaw Allows Execution of Unauthorized Code Through Shell Wrappers
GHSA-gwqp-86q6-w47g
A security issue in OpenClaw could allow unauthorized code to be executed, even if you've restricted certain actions. This happens because OpenClaw doesn't properly check some types of shell wrappers....
7.1
OpenClaw Approval Bypass Using Shell Wrappers
GHSA-gwqp-86q6-w47g
CVE-2026-22175
OpenClaw's approval system can be tricked into allowing unauthorized access. If an attacker uses a specific type of shell wrapper, they can bypass the approval process, even if they shouldn't be allow...
7.1
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, non sanitized user input can lend to an SQL injection from ...
CVE-2026-26001
The GLPI Inventory Plugin handles network discovery, inventory, software deployment, and data collection for GLPI agents. Prior to 1.6.6, non sanitized user input can lend to an SQL injection from rep...
7.1
Kanboard User Invite Registration Allows Unauthorized Admin Creation
CVE-2026-29056
Kanboard's user invite registration process allowed attackers to create admin accounts by manipulating the registration form. This vulnerability has been fixed in version 1.2.51. Update to the latest ...
7.0
LeafKit may display unescaped data, allowing malicious scripts to run
GHSA-6jj5-j4j8-8473
CVE-2026-28499
LeafKit's data display feature can be bypassed, allowing hackers to inject malicious code. This can happen when displaying collections of data. To fix this, update LeafKit to the latest version or app...
6.9
Next.js: Unbounded image cache can fill up your disk space
GHSA-3x4c-7xq6-9pq8
CVE-2026-27980
An attacker can create many optimized images and fill up your disk space, causing your website to become unavailable. To fix this, update to the latest version of Next.js, or if you can't update right...
6.9
Next.js: Large File Uploads Can Crash Server
GHSA-h27x-g6w4-24gq
CVE-2026-27979
Some Next.js servers can crash if an attacker sends a very large file, causing the server to run out of memory. This is because Next.js doesn't always check the size of large file uploads. To protect ...
6.9
OpenClaw on macOS Can Execute Unlisted Commands
GHSA-9p38-94jf-hgjj
CVE-2026-22179
OpenClaw on macOS can execute unintended commands on the node host if you're using the allowlist mode. This can happen if you have a benign executable in your allowlist, but it's used in a way that al...
7.5
OpenClaw macOS Path Execution Allows Unapproved Commands
GHSA-9p38-94jf-hgjj
OpenClaw's macOS node-host path allows unauthorized commands to run when 'security=allowlist' is set, potentially leading to unintended command execution on the node host. This issue is specific to ma...
7.5
OpenClaw: Attackers Can Access Local Files Through Message Actions
GHSA-fqcm-97m6-w7rm
CVE-2026-27522
The OpenClaw software does not properly check the source of files attached to messages, which could allow an attacker to access sensitive local files. This is a concern for businesses using OpenClaw's...
7.1
OpenClaw: Unrestricted File Access via Malicious Message Actions
GHSA-fqcm-97m6-w7rm
A security flaw in OpenClaw allows unauthorized access to files on your computer if a malicious message is received. This is fixed in version 2026.2.24, which is now available. Upgrade to this version...
7.1
OpenClaw: Malicious Feishu Metadata Can Block Message Processing
GHSA-c6hr-w26q-c636
CVE-2026-22178
OpenClaw, a software, has a security issue that can cause it to block message processing if it receives specially crafted metadata from Feishu. This is because the software does not properly escape ce...
6.9
OpenClaw: Feishu Mention Data Can Cause Message Corruption or Slowdowns
GHSA-c6hr-w26q-c636
A security issue in OpenClaw allows an attacker to manipulate message content or slow down message processing if they can control Feishu mention metadata. This can happen if you're using OpenClaw vers...
6.9
OpenClaw Windows Approval Mismatch Allows Command Execution
GHSA-5v6x-rfc3-7qfr
An issue in OpenClaw's Windows approval system can allow an attacker to execute unauthorized commands on a trusted Windows node. This can happen when an operator approves a seemingly harmless command,...
7.1
OpenClaw Allows Malicious Code to Run on Windows System
GHSA-5v6x-rfc3-7qfr
CVE-2026-22168
OpenClaw, a Windows-based system, has a security flaw that allows unauthorized code to run on the system when a trusted user approves a command. This can happen when a user is tricked into approving a...
7.1