9 Total advisories
9 Vulnerabilities
0 Malware
Vulnerabilities
HIGH 7.1
CVE-2026-58484
Network-AI: Poisoned environment backup manifest allows arbitrary recursive deletion during backup pruning
MEDIUM 5.9
CVE-2026-58482
Network-AI: ApprovalInbox HTTP server has no authentication — anyone can approve pending agent actions
MEDIUM 6.1
CVE-2026-58413
Network-AI: EnvironmentManager.restore() backup ID path traversal copies arbitrary directories into environment data
MEDIUM 6.5
CVE-2026-58481
Network-AI: AgentRuntime sandbox path-prefix checks allow file access outside the configured base directory
MEDIUM 5.5
CVE-2026-58414
Network-AI: EnvironmentManager.backup() follows symlinked directories and copies files outside the environment root into backups
HIGH 7.6
CVE-2026-46701
Network-AI: Unauthenticated Cross-Origin MCP Tool Invocation via Empty Default Secret
CRITICAL 9.1
CVE-2026-48814
Network-AI: CVE-2026-46701 fix incomplete — empty default secret still authorizes all requests
CRITICAL 9.9
CVE-2026-54051
Network-AI: Improper Neutralization of Special Elements used in an OS Command
UNKNOWN
CVE-2026-42856
Network-AI missing authentication on MCP HTTP endpoint, which allows unauthenticated privileged tool calls
Ready to move
Start Securing
Free, no credit card | First findings in minutes