Known Vulnerabilities for Web Policy Agents by Forgerock
Listed below are 1 of the newest known vulnerabilities associated with "Web Policy Agents" by "Forgerock".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101880 json | OpenClaw Windows Node before 2026.7.1 contains an incorrect authorization vulnerability in the system.run exec-approval polic... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-100545 json | OpenClaw (npm package `openclaw`) before 2026.8.1 incorrectly enforces sender tool policies during session-memory filename ge... | Not Provided | 2026-09-26 | 2026-09-29 |
| CVE-2026-82438 json | Description Three separate mechanisms allowed a web page on an unrelated origin to read responses that Storm's HTTP componen... | Not Provided | 2026-09-14 | 2026-09-14 |
| CVE-2026-80110 json | A flaw was found in pki-core. The v2 REST ACL filter selects a tie-breaking permission for colliding literal and wildcard ACL... | Not Provided | 2026-09-21 | 2026-09-30 |
| CVE-2026-78583 json | Incorrect Authorization (CWE-863) in Kibana can lead to privilege escalation via Input Data Manipulation (CAPEC-153). Elastic... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-72631 json | Improper Privilege Management (CWE-269) in Kibana Fleet can lead to privilege escalation via Privilege Escalation (CAPEC-233)... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-49856 json | @jshookmcp/jshook is an MCP server that gives AI agents tools for JavaScript analysis and security research. In version 0.3.1... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-46370 json | Fleet is an open-source device management platform built on osquery. In versions up to and including 4.84.1, the labels host-... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2023-0339 json | Relative Path Traversal vulnerability in ForgeRock Access Management Web Policy Agent allows Authentication Bypass. This issu... | 9.8 - CRITICAL | 2023-02-28 | 2023-11-07 |