CVE-2026-43535
- EPSS 0.22%
- Veröffentlicht 05.05.2026 12:16:19
- Zuletzt bearbeitet 07.05.2026 16:01:57
OpenClaw before 2026.4.14 contains an authorization context reuse vulnerability in collect-mode queue batches that allows messages from different senders to inherit the final sender's authorization context. Attackers can exploit this by sending multi...
CVE-2026-42436
- EPSS 0.27%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 05.05.2026 19:47:31
OpenClaw before 2026.4.14 contains an improper access control vulnerability in browser snapshot, screenshot, and tab routes that fail to consistently validate the final browser target after navigation. Authenticated callers can bypass SSRF restrictio...
CVE-2026-42437
- EPSS 0.42%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 26.05.2026 14:16:36
OpenClaw versions 2026.4.9 before 2026.4.10 contain a denial of service vulnerability in the voice-call realtime WebSocket path that accepts oversized frames without proper validation. Remote attackers can send oversized WebSocket frames to cause ser...
CVE-2026-42438
- EPSS 0.24%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 07.05.2026 01:59:57
OpenClaw versions 2026.4.9 before 2026.4.10 contain a sender policy bypass vulnerability in the outbound host-media attachment read helper that allows unauthorized local file disclosure. Attackers with denied read access via toolsBySender or group po...
CVE-2026-42439
- EPSS 0.24%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 07.05.2026 01:59:18
OpenClaw before 2026.4.10 contains a server-side request forgery policy bypass vulnerability in the browser tabs action select and close routes. Attackers can bypass configured browser SSRF policy protections by exploiting the /tabs/action endpoint t...
CVE-2026-43526
- EPSS 0.25%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 07.05.2026 01:57:11
OpenClaw before 2026.4.12 contains a server-side request forgery vulnerability in QQBot reply media URL handling that allows attackers to fetch arbitrary content. Attackers can exploit this by providing malicious media URLs that trigger SSRF requests...
CVE-2026-43527
- EPSS 0.28%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 07.05.2026 13:29:50
OpenClaw before 2026.4.14 contains a server-side request forgery vulnerability in browser SSRF policy that allows private-network navigation by default. Attackers can exploit this misconfiguration to access internal services or metadata endpoints thr...
CVE-2026-43528
- EPSS 0.33%
- Veröffentlicht 05.05.2026 12:16:18
- Zuletzt bearbeitet 07.05.2026 01:54:40
OpenClaw before 2026.4.14 contains a redaction bypass vulnerability that allows authenticated gateway clients to receive unredacted secrets through sourceConfig and runtimeConfig alias fields. Attackers with config read access can exploit this to obt...
CVE-2026-42433
- EPSS 0.3%
- Veröffentlicht 05.05.2026 12:16:17
- Zuletzt bearbeitet 05.05.2026 19:47:31
OpenClaw before 2026.4.10 contains an authorization bypass vulnerability allowing operator.write message-tool paths to access Matrix profile persistence requiring admin-level authority. Attackers can exploit insufficient access controls to mutate per...
CVE-2026-42434
- EPSS 0.35%
- Veröffentlicht 05.05.2026 12:16:17
- Zuletzt bearbeitet 05.05.2026 19:47:31
OpenClaw versions 2026.4.5 before 2026.4.10 contain a sandbox escape vulnerability allowing sandboxed agents to override exec routing by specifying host=node. Attackers can bypass sandbox boundaries and route execution to remote nodes instead of inte...