Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
sonatype-2026-000677
sonatype-2026-000677
openclaw - Improper Link Resolution Before File Access ('Link Following')
Published Mar 3, 2026
https://github.com/advisories/GHSA-rx3g-mvc3-qfjf
CVSS Score
Medium
6.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
npm
@aruna-yoocrm/agiagent
2026.1.38
npm
@chada007/openclaw-feishu
1.0.0
npm
@chada007/openclaw-feishu
1.0.1
npm
@chada007/openclaw-feishu
1.0.2
npm
@chada007/openclaw-feishu
1.0.3
npm
@chada007/openclaw-feishu
1.0.4
npm
@chada007/openclaw-feishu
1.0.5
npm
@chada007/openclaw-feishu
1.0.6
npm
@chada007/openclaw-feishu
1.0.7
npm
@companion-ai/os
0.0.2
npm
@companion-ai/os
2026.1.27-beta.1
npm
@dillobot/dillobot
2026.2.4
npm
@dillobot/dillobot
2026.2.5
npm
@dillobot/dillobot
2026.2.6
npm
@douglasdong/openclaw
2026.1.30-spark.1
npm
@douglasdong/openclaw
2026.2.2
npm
@emergedai-cmd/dalaikarmabot
0.1.0-beta.1
npm
@emergedai-cmd/dalaikarmabot
0.1.0-beta.2
npm
@gguf/claw
2026.1.30
npm
@gguf/claw
2026.2.1
npm
@gguf/claw
2026.2.2
npm
@gguf/claw
2026.2.3
npm
@gguf/pigbot
0.0.2
npm
@gguf/pigbot
0.0.3
npm
@gguf/pigbot
0.0.4
npm
@gguf/pigbot
0.0.5
npm
@gguf/pigbot
0.0.6
npm
@gguf/pigbot
0.0.7
npm
@gguf/pigbot
0.0.8
npm
@gguf/pigbot
0.0.9
npm
@guadskill/moltbot-proxy
2026.1.27-beta.1
npm
@h4x3rotab/openclaw
2026.1.29-1
npm
@h4x3rotab/openclaw
2026.1.29
npm
@heylemon/lemonade
0.0.1
npm
@heylemon/lemonade
0.0.2
npm
@heylemon/lemonade
0.0.3
npm
@heylemon/lemonade
0.0.4
npm
@heylemon/lemonade
0.0.5
npm
@heylemon/lemonade
0.0.6
npm
@heylemon/lemonade
0.0.7
npm
@heylemon/lemonade
0.0.8
npm
@heylemon/lemonade
0.0.9
npm
@heylemon/lemonade
0.1.0
npm
@heylemon/lemonade
0.1.10
npm
@heylemon/lemonade
0.1.1
npm
@heylemon/lemonade
0.1.2
npm
@heylemon/lemonade
0.1.3
npm
@heylemon/lemonade
0.1.4
npm
@heylemon/lemonade
0.1.5
npm
@heylemon/lemonade
0.1.6
1-50 of 387
sonatype-2026-000677 | Components Impacted | Sonatype Guide | Sonatype Guide