{{ message }}
Security: OpenAgentPlatform/Dive
Security
SECURITY.md
Only the latest stable version of Dive receives security updates. Make sure you are running the most recent release.
Please do not open public issues for security problems. Instead, use GitHub's "Report a vulnerability" feature in the Security tab of this repository. We will review and respond as soon as possible.
If we fix a vulnerability, we will announce it in the release notes. Keep your installation up to date to receive the latest fixes.
-
One-click Remote Code Execution through Deep Links for MCP InstallGHSA-pjj5-f3wm-f9m8 published
Jan 16, 2026 by ckaznableCritical -
Cross-Site Scripting(XSS) escalate to Remote Code Execution(RCE)GHSA-xv8m-365j-x6h2 published
Dec 19, 2025 by ckaznableCritical -
Remote Code Execution found in Dive v0.9.3 caused by improper processing of custom urlGHSA-2r34-7pgx-vvrc published
Sep 2, 2025 by ckaznableHigh
Learn more about advisories related to OpenAgentPlatform/Dive in the GitHub Advisory Database