Security research
Security Advisories
Vulnerabilities discovered by AgentGG agents in open source projects, disclosed responsibly: maintainers are notified privately and details publish once a fix ships. This page lists public advisories, with links to the official GitHub disclosures.
The agents find far more than we can triage and report ourselves. Our mission is to put the same tool in every maintainer's hands, so open source projects can secure their own code.
| ID | Project | Advisory | Type | Severity | CVE | Published |
|---|---|---|---|---|---|---|
| AGG-001 | openclaw | Slack allowFrom could bind to mutable display names GHSA-c29c-2q9c-pc86 | Auth bypass (CWE-290) | High | Not listed | May 28, 2026 |
| AGG-002 | openclaw | Discord allowFrom could bind to mutable display names GHSA-cw4q-gqg5-g38h | Auth bypass (CWE-290) | High | CVE-2026-53849 | May 28, 2026 |
| AGG-003 | openclaw | Matrix allowFrom could bind to mutable display names GHSA-7hxm-f538-3xp6 | Auth bypass (CWE-290) | High | CVE-2026-53811 | May 28, 2026 |
| AGG-004 | openclaw | Zalo allowFrom could bind to mutable display names GHSA-8c59-hr4w-qg69 | Auth bypass (CWE-290) | High | CVE-2026-53857 | May 28, 2026 |
| AGG-005 | openclaw | MS Teams allowFrom could bind to mutable display names GHSA-7w4v-g4m6-j88v | Auth bypass (CWE-290) | Moderate | Not listed | Jun 30, 2026 |
| AGG-006 | MapServer | Reflected XSS via unescaped offset/limit params in OGC API HTML output GHSA-288j-mhpj-gmmr | Reflected XSS (CWE-79) | Moderate | CVE-2026-77323 | Jul 10, 2026 |
| AGG-007 | Directus | Stored XSS via unsanitized project color in the generated favicon GHSA-788p-cvgf-q973 | Stored XSS (CWE-79) | Moderate | Not listed | Aug 5, 2026 |
| AGG-008 | QGIS | Stored XSS in WFS3 getFeatures HTML page via unescaped feature attribute values GHSA-cr49-pm9v-m788 | Stored XSS (CWE-79) | Moderate | Not listed | Aug 11, 2026 |
| AGG-009 | GeoTools | Unauthenticated SQL injection in the jsonArrayContains filter function against PostGIS layers GHSA-mqjf-5f49-2fjh | SQL injection (CWE-89) | Critical | CVE-2026-76904 | Aug 15, 2026 |
| AGG-010 | ZOO-Project | SQL injection throughout Process.run_sql and helpers via uploaded CWL content and authenticated user name GHSA-v4xm-42f4-rpg6 | SQL injection (CWE-89) | Critical | Not listed | Aug 17, 2026 |
| AGG-011 | ZOO-Project | SQL injection in UndeployService.remove_service via URL-supplied processId GHSA-vw56-fpv7-qh5j | SQL injection (CWE-89) | Critical | Not listed | Aug 17, 2026 |
| AGG-012 | GeoNetwork | Map feature popup renders KML/vector description and attributes as raw HTML via innerHTML GHSA-jcv2-3cfh-v9h2 | DOM XSS (CWE-79) | Critical | CVE-2026-69130 | Aug 31, 2026 |
| AGG-013 | Valhalla | exclude_polygons vertex count is unbounded, enabling CPU/memory DoS via dense rings GHSA-7cwp-v2h3-vx6x | Resource exhaustion (CWE-400) | High | Not listed | Sep 16, 2026 |
| AGG-014 | Redash | Alert update does not verify access to the target query GHSA-5x53-q87f-qhvq | Missing authorization (CWE-862) | Moderate | Not listed | Sep 24, 2026 |
| AGG-015 | Redash | Custom JavaScript visualizations are enabled by default and run with viewer privileges GHSA-g5q6-jghf-254r | Stored XSS (CWE-79, CWE-1188) | High | Not listed | Sep 24, 2026 |
The same agents can patrol your codebase.
Everything on this page was found by the open source agent catalog. The platform goes further: your past security issues become custom agents that scan every repo and every PR.