CVE-2026-32042
- EPSS 0.44%
- Veröffentlicht 21.03.2026 00:42:17
- Zuletzt bearbeitet 23.03.2026 17:10:21
OpenClaw versions 2026.2.22 prior to 2026.2.25 contain a privilege escalation vulnerability allowing unpaired device identities to bypass operator pairing requirements and self-assign elevated operator scopes including operator.admin. Attackers with ...
CVE-2026-22172
- EPSS 0.51%
- Veröffentlicht 20.03.2026 14:48:28
- Zuletzt bearbeitet 24.03.2026 21:20:45
OpenClaw versions prior to 2026.3.12 contain an authorization bypass vulnerability in the WebSocket connect path that allows shared-token or password-authenticated connections to self-declare elevated scopes without server-side binding. Attackers can...
CVE-2026-32039
- EPSS 0.19%
- Veröffentlicht 19.03.2026 22:16:40
- Zuletzt bearbeitet 23.03.2026 17:19:19
OpenClaw versions prior to 2026.2.22 contain an authorization bypass vulnerability in the toolsBySender group policy matching that allows attackers to inherit elevated tool permissions through identifier collision attacks. Attackers can exploit untyp...
CVE-2026-32040
- EPSS 0.15%
- Veröffentlicht 19.03.2026 22:16:40
- Zuletzt bearbeitet 23.03.2026 17:28:32
OpenClaw versions prior to 2026.2.23 contain an html injection vulnerability in the HTML session exporter that allows attackers to execute arbitrary javascript by injecting malicious mimeType values in image content blocks. Attackers can craft sessio...
CVE-2026-32041
- EPSS 0.11%
- Veröffentlicht 19.03.2026 22:16:40
- Zuletzt bearbeitet 23.03.2026 17:29:17
OpenClaw versions prior to 2026.3.1 fail to properly handle authentication bootstrap errors during startup, allowing browser-control routes to remain accessible without authentication. Local processes or loopback-reachable SSRF paths can exploit this...
CVE-2026-32034
- EPSS 0.38%
- Veröffentlicht 19.03.2026 22:16:39
- Zuletzt bearbeitet 25.03.2026 15:16:46
OpenClaw versions prior to 2026.2.21 contain an authentication bypass vulnerability in the Control UI when allowInsecureAuth is explicitly enabled and the gateway is exposed over plaintext HTTP, allowing attackers to bypass device identity and pairin...
CVE-2026-32035
- EPSS 0.14%
- Veröffentlicht 19.03.2026 22:16:39
- Zuletzt bearbeitet 20.04.2026 13:43:53
OpenClaw versions prior to 2026.3.2 fail to pass the senderIsOwner flag when processing Discord voice transcripts in agentCommand, causing the flag to default to true. Non-owner voice participants can exploit this omission to access owner-only tools ...
CVE-2026-32036
- EPSS 0.43%
- Veröffentlicht 19.03.2026 22:16:39
- Zuletzt bearbeitet 23.03.2026 17:12:56
OpenClaw gateway plugin versions prior to 2026.2.26 contain a path traversal vulnerability that allows remote attackers to bypass route authentication checks by manipulating /api/channels paths with encoded dot-segment traversal sequences. Attackers ...
CVE-2026-32037
- EPSS 0.17%
- Veröffentlicht 19.03.2026 22:16:39
- Zuletzt bearbeitet 23.03.2026 17:15:11
OpenClaw versions prior to 2026.2.22 fail to consistently validate redirect chains against configured mediaAllowHosts allowlists during MSTeams media downloads. Attackers can supply or influence attachment URLs to force redirects to non-allowlisted t...
- EPSS 0.27%
- Veröffentlicht 19.03.2026 22:16:39
- Zuletzt bearbeitet 23.03.2026 17:18:25
OpenClaw before 2026.2.24 contains a sandbox network isolation bypass vulnerability that allows trusted operators to join another container's network namespace. Attackers can configure the docker.network parameter with container:<id> values to reach ...