Browse all 4 CVE security advisories affecting Gitlawb. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-90712 | Gitlawb openclaude xAI OAuth Callback xaiOAuthCallback.ts waitForCallback denial of service — openclaude CWE-404 | 4.3 | Medium | 2026-09-14 |
| CVE-2026-42073 | OpenClaude's MCP OAuth Callback: State Check Bypass via error Param Leads to DoS — openclaude CWE-352 | 6.5 | Medium | 2026-06-02 |
| CVE-2026-42074 | OpenClaude: Sandbox Bypass via Model-Controlled `dangerouslyDisableSandbox` Input — openclaude CWE-306 | - | - | 2026-06-02 |
| CVE-2026-35570 | OpenClaude has Sandbox Bypass via Early-Exit Logic Flaw that Allows Path Traversal — openclaude CWE-22 | 8.4 | High | 2026-04-20 |
This page lists every published CVE security advisory associated with Gitlawb. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.