Known Vulnerabilities for Access-policy by Access-policy Project
Listed below are 1 of the newest known vulnerabilities associated with "Access-policy" by "Access-policy Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-64114 json | In the Linux kernel, the following vulnerability has been resolved: ipv4: raw: reject IP_HDRINCL packets with ihl < 5 raw_s... | Not Provided | 2026-07-19 | 2026-07-20 |
| CVE-2026-63142 json | Incomplete List of Disallowed Inputs (CWE-184) in Kibana can allow an authenticated attacker with access to the Reporting fea... | Not Provided | 2026-07-21 | 2026-07-22 |
| CVE-2026-62227 json | OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail ... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62226 json | OpenClaw 2026.3.28 before 2026.5.19 contain an authorization bypass vulnerability in the browser act route that fails to prop... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62201 json | OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-62197 json | OpenClaw before 2026.6.6 contains a policy bypass vulnerability in browser CDP discovery that accepts blocked WebSocket URLs.... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-56334 json | Capgo before 12.128.2 lacks an UPDATE row-level security policy for the build_requests table, preventing API-key and anonymou... | Not Provided | 2026-06-30 | 2026-07-01 |
| CVE-2026-56277 json | Flowise before 3.1.2 sets Access-Control-Allow-Origin to a hardcoded wildcard (*) on its text-to-speech (TTS) generation endp... | Not Provided | 2026-06-30 | 2026-07-01 |
| CVE-2026-56251 json | Capgo before 12.128.2 contains a broken row level security policy in the org_users table that allows authenticated users to e... | Not Provided | 2026-06-21 | 2026-06-22 |
| CVE-2026-56228 json | Capgo before 12.128.2 fails to enforce a maximum value on the minimum password length field in its password policy configurat... | Not Provided | 2026-06-20 | 2026-06-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Access-policy Project | Access-policy | 3.1.0 | |||
| Application | Access-policy Project | Access-policy | 3.0.0 |