7.1

CVSS4.0

CVE-2026-32026 - OpenClaw < 2026.2.24 - Arbitrary File Read via Improper Temporary Path Validation in Sandbox

OpenClaw versions prior to 2026.2.24 contain an improper path validation vulnerability in sandbox media handling that allows absolute paths under the host temporary directory outside the active sandbox root. Attackers can exploit this by providing malicious media references to read and exfiltrate a…

πŸ“… Published: March 19, 2026, 10:07 p.m. πŸ”„ Last Modified: March 20, 2026, 8:10 p.m.

7.5

CVSS4.0

CVE-2026-32025 - OpenClaw < 2026.2.25 - Password Brute-Force via Browser-Origin WebSocket Authentication Bypass

OpenClaw versions prior to 2026.2.25 contain an authentication hardening gap in browser-origin WebSocket clients that allows attackers to bypass origin checks and auth throttling on loopback deployments. An attacker can trick a user into opening a malicious webpage and perform password brute-force …

πŸ“… Published: March 19, 2026, 10:07 p.m. πŸ”„ Last Modified: March 20, 2026, 6:03 p.m.

6.8

CVSS4.0

CVE-2026-32024 - OpenClaw < 2026.2.22 - Symlink Traversal in Avatar Handling

OpenClaw versions prior to 2026.2.22 contain a symlink traversal vulnerability in avatar handling that allows attackers to read arbitrary files outside the configured workspace boundary. Remote attackers can exploit this by requesting avatar resources through gateway surfaces to disclose local file…

πŸ“… Published: March 19, 2026, 10:07 p.m. πŸ”„ Last Modified: March 20, 2026, 2:56 p.m.

6

CVSS4.0

CVE-2026-32023 - OpenClaw < 2026.2.24 - Approval Gating Bypass via Dispatch-Wrapper Depth-Cap Mismatch in system.run

OpenClaw versions prior to 2026.2.24 contain an approval gating bypass vulnerability in system.run allowlist mode where nested transparent dispatch wrappers can suppress shell-wrapper detection. Attackers can exploit this by chaining multiple dispatch wrappers like /usr/bin/env to execute /bin/sh -…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 19, 2026, 10:06 p.m.

6

CVSS4.0

CVE-2026-32022 - OpenClaw < 2026.2.21 - Arbitrary File Read via grep -e Flag Policy Bypass

OpenClaw versions prior to 2026.2.21 contain a stdin-only policy bypass vulnerability in the grep tool within tools.exec.safeBins that allows attackers to read arbitrary files by supplying a pattern via the -e flag parameter. Attackers can include a positional filename operand to bypass file access…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 21, 2026, 3:17 a.m.

6.3

CVSS4.0

CVE-2026-32021 - OpenClaw < 2026.2.22 - Authorization Bypass via Display Name Collision in Feishu allowFrom

OpenClaw versions prior to 2026.2.22 contain an authorization bypass vulnerability in the Feishu allowFrom allowlist implementation that accepts mutable sender display names instead of enforcing ID-only matching. An attacker can set a display name equal to an allowlisted ID string to bypass authori…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 20, 2026, 5:02 p.m.

4.8

CVSS4.0

CVE-2026-32020 - OpenClaw < 2026.2.22 - Arbitrary File Read via Symlink Following in Static File Handler

OpenClaw versions prior to 2026.2.22 contain a path traversal vulnerability in the static file handler that follows symbolic links, allowing out-of-root file reads. Attackers can place symlinks under the Control UI root directory to bypass directory confinement checks and read arbitrary files outsi…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 20, 2026, 8:11 p.m.

2.3

CVSS4.0

CVE-2026-32019 - OpenClaw < 2026.2.22 - Incomplete IPv4 Special-Use Range Blocking in SSRF Guard

OpenClaw versions prior to 2026.2.22 contain incomplete IPv4 special-use range validation in the isPrivateIpv4() function, allowing requests to RFC-reserved ranges to bypass SSRF policy checks. Attackers with network reachability to special-use IPv4 ranges can exploit web_fetch functionality to acc…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 20, 2026, 6:02 p.m.

2

CVSS4.0

CVE-2026-32018 - OpenClaw < 2026.2.19 - Race Condition in Sandbox Registry Write Operations

OpenClaw versions prior to 2026.2.19 contain a race condition vulnerability in concurrent updateRegistry and removeRegistryEntry operations for sandbox containers and browsers. Attackers can exploit unsynchronized read-modify-write operations without locking to cause registry updates to lose data, …

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 20, 2026, 2:59 p.m.

6

CVSS4.0

CVE-2026-32017 - OpenClaw < 2026.2.19 - Arbitrary File Write via Short-Option Bypass in exec Allowlist

OpenClaw versions prior to 2026.2.19 contain an allowlist bypass vulnerability in the exec safeBins policy that allows attackers to write arbitrary files using short-option payloads. Attackers can bypass argument validation by attaching short options like -o to whitelisted binaries, enabling unauth…

πŸ“… Published: March 19, 2026, 10:06 p.m. πŸ”„ Last Modified: March 20, 2026, 6:12 p.m.
Total resulsts: 339266
Page 50 of 33,927
Β« previous page Β» next page
Filters