Research
We're an applied AI lab focused on software security.
Research
openclaw
1-click rce via gatewayUrl
CVE-2026-25253
chrome v8
type confusion
CVE-2026-4457
chrome devtools
object lifecycle issue
CVE-2026-3539
swetrix
rce via dir traversal
CVE-2025-59304
netty
smtp injection
CVE-2025-59419
langfuse
dos
CVE-2025-59305
sandboxie
sandbox escape via heapo
CVE-2025-64721
temporal
cross-tenant metadata read, policy bypass
CVE-2025-14986
ffmpeg
heap overflow in mpegts demuxer
CVE-2026-39210
ffmpeg
integer overflow in swscale
CVE-2026-39211
ffmpeg
stack overflow via preset recursion
CVE-2026-39212
ffmpeg
heap overflow in yuv4mpeg encoder
CVE-2026-39213
ffmpeg
stack overflow in mpegts muxer
CVE-2026-39214
ffmpeg
heap overflow in h.263 encoder
CVE-2026-39215
ffmpeg
heap overflow in image2 muxer
CVE-2026-39216
ffmpeg
heap overflow in vp9 decoder
CVE-2026-39217
ffmpeg
heap overflow in dash demuxer
CVE-2026-39218
apache httpd
remote worker dos in mod_proxy_ftp
CVE-2026-44186
apache httpd
memory disclosure in mod_ssl ocsp
CVE-2026-4418
apache httpd
heap overflow in mod_xml2enc
CVE-2026-42536
apache httpd
integer overflow in mod_dav lock
CVE-2026-42528
apache httpd
heap overflow in mod_dav_fs
CVE-2026-42535
apache httpd
heap uaf in mod_proxy_html
CVE-2026-34355
apache httpd
heap overflow in regex name parser
CVE-2026-44631
linux kernel
heap overflow in x.509 cert parser
CVE-2026-31430