Known Vulnerabilities for Operations Agent by Microfocus
Listed below are 5 of the newest known vulnerabilities associated with "Operations Agent" by "Microfocus".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-101086 json | Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenti... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-100633 json | SiYuan is a self-hosted personal knowledge management system. In versions 3.8.0 through 3.8.3, the MCP file tool's sensitive-... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100589 json | OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the browser tool that allows sandboxed sessions t... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100578 json | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to restrict owner-only infrastructure tools exposed through the chat.... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-86186 json | AVideo API fails to enforce rate limits when clients send a bot User-Agent header, allowing attackers to bypass all eight pro... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-78587 json | Incorrect Authorization (CWE-863) in Fleet Server can lead to a denial of service of agent upload operations via Privilege Ab... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-76391 json | In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could run searches wi... | Not Provided | 2026-08-19 | 2026-08-26 |
| CVE-2026-73843 json | OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.2 and 1.1.2, internal/cluster-gateway/s... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-73281 json | In ssh-agent in OpenSSH before 10.5, some operations can occur remotely but were intended to occur only locally, including op... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-73040 json | Dockge validates a stack name only on the write path. In backend/stack.ts the allow-list check in validate(), which requires ... | Not Provided | 2026-08-20 | 2026-09-17 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Microfocus | Operations Agent | 12.11 | |||
| Application | Microfocus | Operations Agent | 12.10 | |||
| Application | Microfocus | Operations Agent | 12.06 | |||
| Application | Microfocus | Operations Agent | 12.05 | |||
| Application | Microfocus | Operations Agent | 12.04 | |||
| Application | Microfocus | Operations Agent | 12.03 | |||
| Application | Microfocus | Operations Agent | 12.02 | |||
| Application | Microfocus | Operations Agent | 12.01 | |||
| Application | Microfocus | Operations Agent | 12.0 |