All 4 CVE vulnerabilities found in WARP-Clash-API, with AI-generated Chinese analysis, references, and POCs.
Vendor: vvbbnn00
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-90507 | vvbbnn00 WARP-Clash-API Subscription subscription.py get_surge_subscription access control CWE-284 | 6.3 | Medium | 2026-09-13 |
| CVE-2026-90506 | vvbbnn00 WARP-Clash-API Save Account Job race condition CWE-362 | 5.0 | Medium | 2026-09-13 |
| CVE-2026-90505 | vvbbnn00 WARP-Clash-API doUpdateLicenseKey race condition CWE-362 | 5.0 | Medium | 2026-09-13 |
| CVE-2026-90504 | vvbbnn00 WARP-Clash-API authorized missing authentication CWE-306 | 7.3 | High | 2026-09-13 |
All 4 known CVE vulnerabilities affecting WARP-Clash-API with full Chinese analysis, references, and POCs where available.