Known Vulnerabilities for Control-m/agent by Bmc
Listed below are 10 of the newest known vulnerabilities associated with "Control-m/agent" by "Bmc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44997 json | OpenClaw before 2026.4.22 contains a security envelope constraint bypass vulnerability allowing restricted subagents to spawn... | Not Provided | 2026-05-11 | 2026-05-11 |
| CVE-2026-44895 json | GitLab MCP Server lets an AI agent talk directly to GitLab. Prior to 0.6.0, the HTTP transport in src/transport.ts ships with... | Not Provided | 2026-05-26 | 2026-05-27 |
| CVE-2026-42302 json | FastGPT is an AI Agent building platform. From version 4.14.10 to before version 4.14.13, the agent-sandbox component of Fast... | Not Provided | 2026-05-08 | 2026-05-12 |
| CVE-2026-41398 json | OpenClaw before 2026.4.2 contains an improper access control vulnerability in the iOS A2UI bridge that treats generic local-n... | Not Provided | 2026-04-28 | 2026-04-29 |
| CVE-2026-41335 json | OpenClaw before 2026.3.31 contains an information disclosure vulnerability in the Control Interface bootstrap JSON that expos... | Not Provided | 2026-04-23 | 2026-04-25 |
| CVE-2026-40381 json | Improper access control in Azure Connected Machine Agent allows an authorized attacker to elevate privileges locally. | Not Provided | 2026-05-12 | 2026-05-15 |
| CVE-2026-40289 json | PraisonAI is a multi-agent teams system. In versions below 4.5.139 of PraisonAI and 1.5.140 of praisonaiagents, the browser b... | Not Provided | 2026-04-14 | 2026-04-14 |
| CVE-2026-40252 json | FastGPT is an AI Agent building platform. Prior to 4.14.10.4, Broken Access Control vulnerability (IDOR/BOLA) allows any auth... | Not Provided | 2026-04-10 | 2026-04-13 |
| CVE-2026-35660 json | OpenClaw before 2026.3.23 contains an insufficient access control vulnerability in the Gateway agent /reset endpoint that all... | Not Provided | 2026-04-10 | 2026-04-13 |
| CVE-2026-35642 json | OpenClaw before 2026.3.25 contains an authorization bypass vulnerability where group reaction events bypass the requireMentio... | Not Provided | 2026-04-09 | 2026-04-13 |