8.3

CVSS4.0

CVE-2026-32036 - OpenClaw < 2026.2.26- Authentication Bypass via Encoded Dot-Segment Traversal in /api/channels

OpenClaw gateway plugin versions prior to 2026.2.26 contain a path traversal vulnerability that allows remote attackers to bypass route authentication checks by manipulating /api/channels paths with encoded dot-segment traversal sequences. Attackers can craft alternate paths using encoded traversal…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 2:26 p.m.

5.8

CVSS4.0

CVE-2026-32035 - OpenClaw < 2026.3.2 - Missing Owner Flag Validation in Discord Voice Transcript Handler

OpenClaw versions prior to 2026.3.2 fail to pass the senderIsOwner flag when processing Discord voice transcripts in agentCommand, causing the flag to default to true. Non-owner voice participants can exploit this omission to access owner-only tools including gateway and cron functionality in mixed…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 5:56 p.m.

6.1

CVSS4.0

CVE-2026-32034 - OpenClaw < 2026.2.21 - Insecure Control UI Authentication over Plaintext HTTP

OpenClaw versions prior to 2026.2.21 contain an authentication bypass vulnerability in the Control UI when allowInsecureAuth is explicitly enabled and the gateway is exposed over plaintext HTTP, allowing attackers to bypass device identity and pairing verification. An attacker with leaked or interc…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 21, 2026, 3:14 a.m.

6

CVSS4.0

CVE-2026-32033 - OpenClaw < 2026.2.24 - Path Traversal via @-prefixed Absolute Paths in Workspace Boundary Validation

OpenClaw versions prior to 2026.2.24 contain a path traversal vulnerability where @-prefixed absolute paths bypass workspace-only file-system boundary validation due to canonicalization mismatch. Attackers can exploit this by crafting @-prefixed paths like @/etc/passwd to read files outside the int…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 5 p.m.

7.3

CVSS4.0

CVE-2026-32032 - OpenClaw < 2026.2.22 - Arbitrary Shell Execution via Unvalidated SHELL Environment Variable

OpenClaw versions prior to 2026.2.22 contain an arbitrary shell execution vulnerability in shell environment fallback that trusts the unvalidated SHELL path from the host environment. An attacker with local environment access can inject a malicious SHELL variable to execute arbitrary commands with …

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 8:06 p.m.

6.3

CVSS4.0

CVE-2026-32031 - OpenClaw < 2026.2.26 - Authentication Bypass via Path Canonicalization Mismatch in /api/channels Ga…

OpenClaw versions prior to 2026.2.26 server-http contains an authentication bypass vulnerability in gateway authentication for plugin channel endpoints due to path canonicalization mismatch between the gateway guard and plugin handler routing. Attackers can bypass authentication by sending requests…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 6:02 p.m.

8.2

CVSS4.0

CVE-2026-32030 - OpenClaw < 2026.2.19 - Sensitive File Disclosure via stageSandboxMedia Path Traversal

OpenClaw versions prior to 2026.2.19 contain a path traversal vulnerability in the stageSandboxMedia function that accepts arbitrary absolute paths when iMessage remote attachment fetching is enabled. An attacker who can tamper with attachment path metadata can disclose files readable by the OpenCl…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 2:54 p.m.

6.3

CVSS4.0

CVE-2026-32029 - OpenClaw < 2026.2.21 - Client IP Spoofing via X-Forwarded-For Header Parsing

OpenClaw versions prior to 2026.2.21 improperly parse the left-most X-Forwarded-For header value when requests originate from configured trusted proxies, allowing attackers to spoof client IP addresses. In proxy chains that append or preserve header values, attackers can inject malicious header con…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 6:08 p.m.

6.3

CVSS4.0

CVE-2026-32028 - OpenClaw < 2026.2.25 - Missing Authorization Check in Discord DM Reaction Ingress

OpenClaw versions prior to 2026.2.25 fail to enforce dmPolicy and allowFrom authorization checks on Discord direct-message reaction notifications, allowing non-allowlisted users to enqueue reaction-derived system events. Attackers can exploit this inconsistency by reacting to bot-authored DM messag…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 21, 2026, 3:16 a.m.

7.1

CVSS4.0

CVE-2026-32027 - OpenClaw < 2026.2.26 - Improper Authorization via DM Pairing Store Identity Inheritance in Group Al…

OpenClaw versions prior to 2026.2.26 contain an authorization bypass vulnerability where DM pairing-store identities are incorrectly eligible for group allowlist authorization checks. Attackers can exploit this cross-context authorization flaw by using a sender approved via DM pairing to satisfy gr…

📅 Published: March 19, 2026, 10:07 p.m. 🔄 Last Modified: March 20, 2026, 5:02 p.m.
Total resulsts: 339266
Page 49 of 33,927
« previous page » next page
Filters