OpenClaw

OpenClaw

666 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 26.09.2026 02:19:13
  • Zuletzt bearbeitet 28.09.2026 18:17:13

OpenClaw is an npm-distributed agent gateway. In versions before 2026.7.1, the global Active Memory toggle mutations could omit owner checks. An authorized non-owner external-channel sender could therefore persistently enable or disable Active Memory...

  • EPSS 0.32%
  • Veröffentlicht 26.09.2026 02:19:12
  • Zuletzt bearbeitet 30.09.2026 01:16:35

OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the browser tool that allows sandboxed sessions to access paired node browser actions despite allowHostControl=false configuration. Attackers with control over sandboxed agen...

  • EPSS 0.18%
  • Veröffentlicht 26.09.2026 02:19:12
  • Zuletzt bearbeitet 28.09.2026 20:17:07

OpenClaw before 2026.7.1 contains an authorization bypass vulnerability in the /voice set command that allows non-owner external-channel senders to persist Gateway voice configuration. Attackers with command access can change the voice used by Talk r...

  • EPSS 0.3%
  • Veröffentlicht 26.09.2026 02:19:11
  • Zuletzt bearbeitet 05.10.2026 15:17:13

OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administrator scope requirement on browser control when it is reached through the node.invoke method, although direct browser.request access requires administrator scope. In Gatew...

  • EPSS 0.25%
  • Veröffentlicht 26.09.2026 02:19:10
  • Zuletzt bearbeitet 28.09.2026 20:17:07

OpenClaw Codex before 2026.7.1 fails to properly enforce owner authorization when creating native conversation bindings. Non-owner channel senders with command access can create bindings to the native Codex runtime and execute host-capable turns with...

  • EPSS 0.25%
  • Veröffentlicht 26.09.2026 02:19:10
  • Zuletzt bearbeitet 28.09.2026 18:17:13

OpenClaw versions before 2026.7.1 fail to properly validate owner authorization in the Codex computer-use installation command. Non-owner channel senders can install arbitrary plugins and execute MCP processes with OpenClaw user privileges, affecting...

  • EPSS 0.19%
  • Veröffentlicht 26.09.2026 02:19:09
  • Zuletzt bearbeitet 30.09.2026 01:16:35

OpenClaw (npm package `openclaw`) before 2026.7.1 fails to enforce the owner-only authorization requirement for Claude Code permission prompts delivered through the MCP channel bridge. An authorized non-owner channel sender with channel command acces...

  • EPSS 0.1%
  • Veröffentlicht 26.09.2026 02:19:08
  • Zuletzt bearbeitet 05.10.2026 15:17:13

OpenClaw is an npm-distributed agent runtime. In versions >= 2026.2.26 and < 2026.7.1, PowerShell command analysis on Windows hosts running in exec allowlist mode could approve an exact executable resolved from PATH but subsequently execute a same-na...

  • EPSS 0.34%
  • Veröffentlicht 26.09.2026 02:19:06
  • Zuletzt bearbeitet 05.10.2026 15:17:13

OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-facing cron tool: a mixed-case payload kind can pass the agent-facing shell-execution guard and later normalize into a command job. An actor able to st...

  • EPSS 0.08%
  • Veröffentlicht 26.09.2026 02:19:06
  • Zuletzt bearbeitet 30.09.2026 01:16:35

OpenClaw for iOS before 2026.8.11 stores Gateway credentials as cleartext JSON in App Group UserDefaults instead of the device Keychain. Attackers with access to unencrypted device backups or extracted App Group containers can recover valid Gateway t...