OpenClaw是OpenClaw开源的一个智能人工助理。 OpenClaw 2026.3.7之前版本存在安全漏洞,该漏洞源于shell包装器批准机制存在绕过,可能导致攻击者跳过批准要求。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-32913 | 9.3 CRITICAL | OpenClaw < 2026.3.7 - Custom Authorization Header Leakage via Cross-Origin Redirects |
| CVE-2026-27646 | 6.1 MEDIUM | OpenClaw < 2026.3.7 - Sandbox Escape via /acp spawn Command |
No comments yet