AgentGGAgentGG
Security research

Security Advisories

Vulnerabilities discovered by AgentGG agents in open source projects, disclosed responsibly: maintainers are notified privately and details publish once a fix ships. This page lists public advisories, with links to the official GitHub disclosures.

The agents find far more than we can triage and report ourselves. Our mission is to put the same tool in every maintainer's hands, so open source projects can secure their own code.

IDProjectAdvisoryTypeSeverityCVEPublished
AGG-001openclawSlack allowFrom could bind to mutable display names
GHSA-c29c-2q9c-pc86
Auth bypass (CWE-290)HighNot listedMay 28, 2026
AGG-002openclawDiscord allowFrom could bind to mutable display names
GHSA-cw4q-gqg5-g38h
Auth bypass (CWE-290)HighCVE-2026-53849May 28, 2026
AGG-003openclawMatrix allowFrom could bind to mutable display names
GHSA-7hxm-f538-3xp6
Auth bypass (CWE-290)HighCVE-2026-53811May 28, 2026
AGG-004openclawZalo allowFrom could bind to mutable display names
GHSA-8c59-hr4w-qg69
Auth bypass (CWE-290)HighCVE-2026-53857May 28, 2026
AGG-005openclawMS Teams allowFrom could bind to mutable display names
GHSA-7w4v-g4m6-j88v
Auth bypass (CWE-290)ModerateNot listedJun 30, 2026
AGG-006MapServerReflected XSS via unescaped offset/limit params in OGC API HTML output
GHSA-288j-mhpj-gmmr
Reflected XSS (CWE-79)ModerateCVE-2026-77323Jul 10, 2026
AGG-007DirectusStored XSS via unsanitized project color in the generated favicon
GHSA-788p-cvgf-q973
Stored XSS (CWE-79)ModerateNot listedAug 5, 2026
AGG-008QGISStored XSS in WFS3 getFeatures HTML page via unescaped feature attribute values
GHSA-cr49-pm9v-m788
Stored XSS (CWE-79)ModerateNot listedAug 11, 2026
AGG-009GeoToolsUnauthenticated SQL injection in the jsonArrayContains filter function against PostGIS layers
GHSA-mqjf-5f49-2fjh
SQL injection (CWE-89)CriticalCVE-2026-76904Aug 15, 2026
AGG-010ZOO-ProjectSQL injection throughout Process.run_sql and helpers via uploaded CWL content and authenticated user name
GHSA-v4xm-42f4-rpg6
SQL injection (CWE-89)CriticalNot listedAug 17, 2026
AGG-011ZOO-ProjectSQL injection in UndeployService.remove_service via URL-supplied processId
GHSA-vw56-fpv7-qh5j
SQL injection (CWE-89)CriticalNot listedAug 17, 2026
AGG-012GeoNetworkMap feature popup renders KML/vector description and attributes as raw HTML via innerHTML
GHSA-jcv2-3cfh-v9h2
DOM XSS (CWE-79)CriticalCVE-2026-69130Aug 31, 2026
AGG-013Valhallaexclude_polygons vertex count is unbounded, enabling CPU/memory DoS via dense rings
GHSA-7cwp-v2h3-vx6x
Resource exhaustion (CWE-400)HighNot listedSep 16, 2026
AGG-014RedashAlert update does not verify access to the target query
GHSA-5x53-q87f-qhvq
Missing authorization (CWE-862)ModerateNot listedSep 24, 2026
AGG-015RedashCustom JavaScript visualizations are enabled by default and run with viewer privileges
GHSA-g5q6-jghf-254r
Stored XSS (CWE-79, CWE-1188)HighNot listedSep 24, 2026

The same agents can patrol your codebase.

Everything on this page was found by the open source agent catalog. The platform goes further: your past security issues become custom agents that scan every repo and every PR.