Where
-Infinity
0

OpenClaw OpenClawOpenClaw < 2026.5.18 Authorization Bypass via Glob Matching

Risk 79
Severity
7.7
First published (updated )

OpenClawOpenClaw 2026.4.14 < 2026.5.26 SSRF via Browser Snapshot

Risk 44
Severity
4.9
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.5 Authorization Bypass via Node Exec Approvals

Risk 79
Severity
7.7
First published (updated )

OpenClaw OpenClawOpenClaw 2026.3.28 < 2026.5.19 Authorization Bypass via Browser Act Route

Risk 55
Severity
5.1
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.5.18 Authorization Bypass via Skill Command Dispatch

Risk 34
Severity
2.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenClaw OpenClawOpenClaw < 2026.5.18 Authorization Bypass via Device-pair

Risk 79
Severity
7.7
First published (updated )

OpenClaw MS TeamsOpenClaw MS Teams < 2026.5.12 Authorization Bypass

Risk 34
Severity
2.3
First published (updated )

OpenClawOpenClaw < 2026.5.22 Untrusted Plugin Loading via Setup-mode

Risk 68
Severity
7.1
First published (updated )

OpenClaw OpenClawOpenClaw 2026.5.12 < 2026.5.26 Authorization Bypass via allowFrom

Risk 34
Severity
2.3
First published (updated )

OpenClaw OpenClawOpenClaw 2026.2.25 < 2026.5.26 WebSocket Rate Limit Bypass

Risk 29
Severity
6.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenClaw OpenClawOpenClaw 2026.2.12 < 2026.5.26 Authorization Bypass via Blank Agent IDs

Risk 48
Severity
6
First published (updated )

OpenClaw OpenClawOpenClaw 2026.5.14-beta.1 < 2026.5.27 Authentication Bypass via exec approvals

Risk 79
Severity
7.7
First published (updated )

OpenClawOpenClaw 2026.1.20 < 2026.5.27 Authorization Bypass via device.pair.approve

Risk 79
Severity
8.7
First published (updated )

OpenClaw OpenClawOpenClaw 2026.4.20 < 2026.5.28 Policy Bypass via Media Upload

Risk 26
Severity
2.3
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.5.28 Bot Framework SSRF via serviceUrl Parameter Validation

Risk 38
Severity
6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenClaw OpenClawOpenClaw < 2026.6.5 Authentication Bypass via HTTP Canvas

Risk 58
Severity
5.1
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.5.27 Token Leakage via MS Teams Outbound Requests

Risk 38
Severity
6
First published (updated )

OpenClawOpenClaw < 2026.5.28 Authentication Bypass via safeFetch

Risk 48
Severity
5.1
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.1 Credential Redaction Bypass via Trajectory Export

Risk 29
Severity
4.1
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.1 Denial of Service via Remote Media URLs

Risk 38
Severity
6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenClaw OpenClawOpenClaw 2026.5.10-beta.1 < 2026.6.5 Authorization Bypass via agent-mode dispatch

Risk 60
Severity
7.6
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.5 Authorization Header Forwarding via SSE

Risk 38
Severity
6
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.5 Authentication Bypass via Admin Tools

Risk 79
Severity
7.7
First published (updated )

OpenClaw OpenClawOpenClaw 2026.4.12-beta.1 < 2026.6.6 Authorization Bypass via message actions

Risk 48
Severity
6
First published (updated )

OpenClawOpenClaw < 2026.6.9 Authentication Bypass via Moderation Actions

Risk 48
Severity
6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

OpenClawOpenClaw < 2026.6.6 Environment Variable Injection via rustup

Risk 79
Severity
7.7
First published (updated )

OpenClawOpenClaw < 2026.6.6 Network Policy Bypass via exec-server

Risk 44
Severity
4.9
First published (updated )

OpenClaw OpenClawOpenClaw 2026.6.1 < 2026.6.9 Privilege Escalation via Cron

Risk 79
Severity
7.7
First published (updated )

OpenClaw OpenClawOpenClaw < 2026.6.6 Authentication Bypass via Git ext transport

Risk 79
Severity
8.7
First published (updated )

OpenClawOpenClaw < 2026.6.6 Authentication Bypass via Environment Filtering

Risk 79
Severity
8.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203