CVE-2026-27485
- EPSS 0.01%
- Veröffentlicht 21.02.2026 09:27:53
- Zuletzt bearbeitet 23.02.2026 20:43:11
OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, skills/skill-creator/scripts/package_skill.py (a local helper script used when authors package skills) previously followed symlinks while building .skill archives. If an author run...
CVE-2026-27484
- EPSS 0.02%
- Veröffentlicht 21.02.2026 09:21:16
- Zuletzt bearbeitet 23.02.2026 20:44:09
OpenClaw is a personal AI assistant. In versions 2026.2.17 and below, the Discord moderation action handling (timeout, kick, ban) uses sender identity from request parameters in tool-driven flows, instead of trusted runtime sender context. In setups ...
CVE-2026-27009
- EPSS 0.02%
- Veröffentlicht 19.02.2026 23:25:41
- Zuletzt bearbeitet 20.02.2026 17:41:44
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a atored XSS issue in the OpenClaw Control UI when rendering assistant identity (name/avatar) into an inline `<script>` tag without script-context-safe escaping. A crafted value contain...
CVE-2026-27008
- EPSS 0.02%
- Veröffentlicht 19.02.2026 23:23:32
- Zuletzt bearbeitet 20.02.2026 18:01:28
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a bug in `download` skill installation allowed `targetDir` values from skill frontmatter to resolve outside the per-skill tools directory if not strictly validated. In the admin-only `s...
CVE-2026-27007
- EPSS 0.01%
- Veröffentlicht 19.02.2026 23:21:19
- Zuletzt bearbeitet 20.02.2026 18:04:01
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, `normalizeForHash` in `src/agents/sandbox/config-hash.ts` recursively sorted arrays that contained only primitive values. This made order-sensitive sandbox configuration arrays hash to ...
CVE-2026-27004
- EPSS 0.01%
- Veröffentlicht 19.02.2026 23:18:47
- Zuletzt bearbeitet 20.02.2026 18:05:44
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, in some shared-agent deployments, OpenClaw session tools (`sessions_list`, `sessions_history`, `sessions_send`) allowed broader session targeting than some operators intended. This is p...
CVE-2026-27003
- EPSS 0.01%
- Veröffentlicht 19.02.2026 23:14:10
- Zuletzt bearbeitet 20.02.2026 18:06:29
OpenClaw is a personal AI assistant. Telegram bot tokens can appear in error messages and stack traces (for example, when request URLs include `https://api.telegram.org/bot<token>/...`). Prior to version 2026.2.15, OpenClaw logged these strings witho...
CVE-2026-27002
- EPSS 0.06%
- Veröffentlicht 19.02.2026 23:12:17
- Zuletzt bearbeitet 20.02.2026 18:11:24
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a configuration injection issue in the Docker tool sandbox could allow dangerous Docker options (bind mounts, host networking, unconfined profiles) to be applied, enabling container esc...
CVE-2026-27001
- EPSS 0.02%
- Veröffentlicht 19.02.2026 23:10:07
- Zuletzt bearbeitet 20.02.2026 18:13:49
OpenClaw is a personal AI assistant. Prior to version 2026.2.15, OpenClaw embedded the current working directory (workspace path) into the agent system prompt without sanitization. If an attacker can cause OpenClaw to run inside a directory whose nam...
CVE-2026-26972
- EPSS 0.02%
- Veröffentlicht 19.02.2026 23:08:44
- Zuletzt bearbeitet 20.02.2026 19:03:33
OpenClaw is a personal AI assistant. In versions 2026.1.12 through 2026.2.12, OpenClaw browser download helpers accepted an unsanitized output path. When invoked via the browser control gateway routes, this allowed path traversal to write downloads o...