cloakbrowser
Stealth Chromium that passes every bot detection test. Drop-in Playwright replacement with source-level fingerprint patches. 30/30 tests passed.
Activity
- Latest release
- 1d ago
- Total releases
- 66
- Cadence
- ~daily
- Last 12 months
- 66
Reach
- Stars
- 29.4k
Details
- License
- MIT
- First release
- Feb 22, 2026
| Version | Released | |
|---|---|---|
0.5.3
patch
| ||
0.5.2
patch
| ||
0.5.1
patch
| ||
0.5.0
minor
| ||
0.4.13
patch
| ||
0.4.12
patch
| ||
0.4.11
patch
| ||
0.4.10
patch
| ||
0.4.9
patch
| ||
0.4.8
patch
| ||
0.4.7
patch
| ||
0.4.6
patch
| ||
0.4.5
patch
| ||
0.4.4
patch
| ||
0.4.3
patch
| ||
0.4.2
patch
| ||
0.4.1
patch
| ||
0.4.0
minor
| ||
0.3.32
patch
| ||
0.3.31
patch
| ||
0.3.30
patch
| ||
0.3.29
patch
| ||
0.3.28
patch
| ||
0.3.27
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.26
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.25
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.24
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.23
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.22
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.21
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.20
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.19
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.18
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.17
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.16
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.15
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.14
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.13
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.12
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.11
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.10
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.9
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.8
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.7
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.6
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.5
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.4
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.2
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.1
patch
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev | ||
0.3.0
minor
1 CVE
CVE-2026-45727
PYSEC-2026-2420
GHSA-mf33-gv72-w2h5
Jul 13, 2026
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
High
Network
Low
None
None
The Additionally, ImpactAn attacker with network access to the cloakserve port can delete arbitrary directories accessible to the service user. PatchesFixed in v0.3.28. Mitigations
Affected versions
0.1.0
0.1.1
0.1.10
0.1.11
0.1.12
0.1.2
0.1.3
0.1.4
0.1.5
0.1.6
0.1.7
0.1.8
+ 31 more Show less
0.1.9
0.2.0
0.2.1
0.2.2
0.3.0
0.3.1
0.3.10
0.3.11
0.3.12
0.3.13
0.3.14
0.3.15
0.3.16
0.3.17
0.3.18
0.3.19
0.3.2
0.3.20
0.3.21
0.3.22
0.3.23
0.3.24
0.3.25
0.3.26
0.3.27
0.3.4
0.3.5
0.3.6
0.3.7
0.3.8
0.3.9
Fixed in
0.3.28
References Updated Jul 13, 2026 · Source: OSV.dev |