OpenClaw是openclaw开源的一个智能人工助理。 OpenClaw 2026.1.29之前版本存在安全漏洞,该漏洞源于自动建立WebSocket连接并发送令牌,可能导致未经授权的连接和令牌泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Clawdbot/Moltbot/OpenClaw One-click RCE PoC 🦞 (CVE-2026-25253) | https://github.com/ethiack/moltbot-1click-rce | POC Details |
| 2 | Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks. | https://github.com/adibirzu/openclaw-security-monitor | POC Details |
| 3 | OpenClaw CVE-2026-25253 漏洞分析中文版 | https://github.com/Joseph19820124/openclaw-vuln-report | POC Details |
| 4 | None | https://github.com/al4n4n/CVE-2026-25253-research | POC Details |
| 5 | Security-hardened AI agent platform addressing OpenClaw/Moltbot vulnerabilities (CVE-2026-25253) | https://github.com/Ckokoski/moatbot-security | POC Details |
| 6 | > OpenClaw security audit and hardened deployment guide — known vulnerabilities (CVE-2026-25253, malicious skills, credential leakage), architectural mitigations, and a step-by-step VPS deployment plan | https://github.com/FrigateCaptain/openclaw_vulnerabilities_and_solutions | POC Details |
| 7 | https://github.com/vulhub/vulhub/blob/master/openclaw/CVE-2026-25253/README.md | POC Details | |
| 8 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E4%BA%BA%E5%B7%A5%E6%99%BA%E8%83%BD%E6%BC%8F%E6%B4%9E/OpenClaw%20%E8%B7%A8%E7%AB%99%20WebSocket%20%E5%8A%AB%E6%8C%81%E6%BC%8F%E6%B4%9E%20CVE-2026-25253.md | POC Details |
No public POC found.
Login to generate AI POCNo comments yet