Skip to main content

New: Meet Apex, the agent that runs your security program while you sleep

Disclosures

Vulnerability disclosures

Security research, responsibly disclosed. Public CVEs discovered by Cantina's autonomous AppSec agents, human-verified, and coordinated with the affected vendors.

cantina · disclosures

24 published
  • Agent discovery done
  • Human verification done
  • Vendor coordination done
  • CVE published in progress

Every CVE is agent-found, human-verified, and coordinated with the vendor before it's public.

The track record

Found by agents. Verified by humans. Disclosed by the book

Every CVE below started as an exploit path an autonomous agent proved, then became a human-verified finding coordinated with the vendor.


Verified CVEs, publicly disclosed
0 Verified CVEs, publicly disclosed
New findings in the latest batch
0 New findings in the latest batch
Projects & products affected
0 Projects & products affected
Agent-found, then human-verified
0% Agent-found, then human-verified
Critical
2
High
11
Medium
10
Low
1
Disclosed CVEs

Every finding, in the open

Each entry was surfaced by an autonomous AppSec agent, confirmed by our research team, and coordinated with the vendor before going public.

  • Agent discovery
  • Human verified
  • Responsibly disclosed

Showing 24 of 24

4 findings RabbitMQ
Medium CVE-2026-57218

OAuth consumers retain access after token expiry

CVSS 4.9 CWE-863
High CVE-2026-57217

Topic permissions fail open during metadata errors

CVSS 7.0 CWE-755
Medium CVE-2026-57216

Proxy handling bypasses loopback-only authentication

CVSS 6.8 CWE-290
High CVE-2026-57215

Direct-reply-to bindings enable cross-tenant injection

CVSS 7.0 CWE-863
3 findings Node.js
Medium CVE-2026-48930

Embedded NUL bytes can silently rebind TLS authority

CWE-626
Medium CVE-2026-48928

Mixed-case SNI can bypass mTLS trust policies

CWE-178
High CVE-2026-48618

Unicode hostname separators bypass TLS wildcard depth

CWE-295
1 finding Nextcloud Server
Medium CVE-2026-45690

Temporary session tokens can bypass two-factor authentication

CVSS 5.9 CWE-287
1 finding Cargo
Medium CVE-2026-5223

Malicious registry crates can overwrite dependency source

CWE-61
1 finding Ruby
High CVE-2026-46727

DNS timing race can trigger a use-after-free

CVSS 8.1 CWE-362
1 finding urllib3
Medium CVE-2026-44431

Cross-origin redirects can forward sensitive headers

CVSS 5.3 CWE-200
1 finding WebKit
High CVE-2026-43660

Thirteen-year WebKit flaw bypasses Content Security Policy

CVSS 7.5 CWE-693
2 findings WebKit
Medium CVE-2026-28958

WebKit data-protection flaw exposes sensitive user data

CVSS 5.5 CWE-200
High CVE-2026-28907

WebKit input validation bypasses Content Security Policy

CVSS 8.1 CWE-20
1 finding Django
Medium CVE-2026-35192

Cached public pages can expose user sessions

CWE-539
1 finding Spring Security
High CVE-2026-22753

Servlet-path matching can deactivate security controls

CVSS 7.5 CWE-693
1 finding wolfSSL
Critical CVE-2026-5503

ECH server-name handling writes beyond allocated memory

CVSS 9.1 CWE-787
1 finding Django
Low CVE-2026-4292

Forged admin forms can create unauthorized model instances

CVSS 2.7 CWE-862
2 findings
Medium CVE-2026-34743

Empty-index decoding can trigger heap buffer overflow

XZ Utils CVSS 5.3 CWE-122
High CVE-2026-28815

Short X-Wing keys trigger an out-of-bounds read

swift-crypto CVSS 7.5 CWE-125
2 findings Spring AI
High CVE-2026-22743

Filter keys enable Cypher injection in Neo4j stores

CVSS 7.5 CWE-89
Critical CVE-2026-22738

User-controlled filter keys enable SpEL code execution

CVSS 9.8 CWE-917
1 finding Claude Code
High CVE-2026-33068

Repository settings can skip the workspace trust prompt

CVSS 8.8 CWE-807
1 finding OpenClaw
High CVE-2026-26325

Command mismatch can bypass execution approval

CVSS 7.2 CWE-284

New CVE IDs are reserved with the affected vendor while a fix is coordinated; full technical detail publishes once users can patch.

See what Apex finds in your environment

The same autonomous AppSec agents behind these CVEs can move you from exploit path to a human-verified finding your team can act on.