Known Vulnerabilities for Decisions by Decisions Project
Listed below are 1 of the newest known vulnerabilities associated with "Decisions" by "Decisions Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-60087 json | PraisonAI before 1.6.78 caches tool approval decisions by tool name only, allowing attackers to reuse initial approvals for s... | Not Provided | 2026-07-15 | 2026-07-15 |
| CVE-2026-59882 json | guzzlehttp/psr7 is a PSR-7 HTTP message library implementation in PHP. Prior to 2.12.3, Uri::assertValidHost() does not rejec... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2026-59731 json | Astro is a web framework for content-driven websites. Version 6.4.7 performs authorization decisions on a partially decoded p... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-56074 json | PraisonAI before 1.5.128 caches tool approval decisions by tool name only, not by invocation arguments, allowing subsequent e... | Not Provided | 2026-06-18 | 2026-06-22 |
| CVE-2026-55773 json | CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. ... | Not Provided | 2026-07-13 | 2026-07-15 |
| CVE-2026-55772 json | CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. ... | Not Provided | 2026-07-13 | 2026-07-21 |
| CVE-2026-55771 json | CedarJava is an open source Java implementation of the Cedar policy language, used for fine-grained authorization decisions. ... | Not Provided | 2026-07-13 | 2026-07-14 |
| CVE-2026-55170 json | OpenFGA is an authorization/permission engine built for developers. Prior to 1.18.0, when MySQL is being used as the datastor... | Not Provided | 2026-07-09 | 2026-07-10 |
| CVE-2026-54601 json | FastGPT is an open source AI knowledge base platform. From 4.14.17 to before 4.15.0-beta4, FastGPT allows an authenticated te... | Not Provided | 2026-07-07 | 2026-07-08 |
| CVE-2026-53863 json | OpenClaw before 2026.4.25 contains an input validation vulnerability in tool group policy callers that accept unvalidated gro... | Not Provided | 2026-06-16 | 2026-06-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Decisions Project | Decisions | 6.x-1.1 |