OpenClaw

OpenClaw

666 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 19.02.2026 23:21:19
  • Zuletzt bearbeitet 20.02.2026 18:04:01

OpenClaw is a personal AI assistant. Prior to version 2026.2.15, `normalizeForHash` in `src/agents/sandbox/config-hash.ts` recursively sorted arrays that contained only primitive values. This made order-sensitive sandbox configuration arrays hash to ...

  • EPSS 0.11%
  • Veröffentlicht 19.02.2026 23:18:47
  • Zuletzt bearbeitet 20.02.2026 18:05:44

OpenClaw is a personal AI assistant. Prior to version 2026.2.15, in some shared-agent deployments, OpenClaw session tools (`sessions_list`, `sessions_history`, `sessions_send`) allowed broader session targeting than some operators intended. This is p...

  • EPSS 0.14%
  • Veröffentlicht 19.02.2026 23:14:10
  • Zuletzt bearbeitet 20.02.2026 18:06:29

OpenClaw is a personal AI assistant. Telegram bot tokens can appear in error messages and stack traces (for example, when request URLs include `https://api.telegram.org/bot<token>/...`). Prior to version 2026.2.15, OpenClaw logged these strings witho...

  • EPSS 0.48%
  • Veröffentlicht 19.02.2026 23:12:17
  • Zuletzt bearbeitet 20.02.2026 18:11:24

OpenClaw is a personal AI assistant. Prior to version 2026.2.15, a configuration injection issue in the Docker tool sandbox could allow dangerous Docker options (bind mounts, host networking, unconfined profiles) to be applied, enabling container esc...

  • EPSS 0.21%
  • Veröffentlicht 19.02.2026 23:10:07
  • Zuletzt bearbeitet 20.02.2026 18:13:49

OpenClaw is a personal AI assistant. Prior to version 2026.2.15, OpenClaw embedded the current working directory (workspace path) into the agent system prompt without sanitization. If an attacker can cause OpenClaw to run inside a directory whose nam...

  • EPSS 0.2%
  • Veröffentlicht 19.02.2026 23:08:44
  • Zuletzt bearbeitet 20.02.2026 19:03:33

OpenClaw is a personal AI assistant. In versions 2026.1.12 through 2026.2.12, OpenClaw browser download helpers accepted an unsanitized output path. When invoked via the browser control gateway routes, this allowed path traversal to write downloads o...

  • EPSS 0.41%
  • Veröffentlicht 19.02.2026 23:06:37
  • Zuletzt bearbeitet 20.02.2026 19:05:23

OpenClaw is a personal AI assistant. Prior to version 2026.2.14, authenticated attackers can read arbitrary files from the Gateway host by supplying absolute paths or path traversal sequences to the browser tool's `upload` action. The server passed t...

  • EPSS 0.28%
  • Veröffentlicht 19.02.2026 23:04:12
  • Zuletzt bearbeitet 26.02.2026 18:41:00

OpenClaw is a personal AI assistant. Prior to version 2026.2.14, under iMessage `groupPolicy=allowlist`, group authorization could be satisfied by sender identities coming from the DM pairing store, broadening DM trust into group contexts. Version 20...

  • EPSS 0.1%
  • Veröffentlicht 19.02.2026 22:59:36
  • Zuletzt bearbeitet 23.02.2026 13:44:36

OpenClaw is a personal AI assistant. Discovery beacons (Bonjour/mDNS and DNS-SD) include TXT records such as `lanHost`, `tailnetDns`, `gatewayPort`, and `gatewayTlsSha256`. TXT records are unauthenticated. Prior to version 2026.2.14, some clients tre...

  • EPSS 0.3%
  • Veröffentlicht 19.02.2026 22:55:53
  • Zuletzt bearbeitet 23.02.2026 13:46:15

OpenClaw is a personal AI assistant. Prior to version 2026.2.14, `skills.status` could disclose secrets to `operator.read` clients by returning raw resolved config values in `configChecks` for skill `requires.config` paths. Version 2026.2.14 stops in...