Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

OpenClaw — Vulnerabilities & Security Advisories 639

All 639 CVE vulnerabilities found in OpenClaw, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security vulnerabilities affecting OpenClaw, a software product, categorized by specific weakness types. It collects publicly disclosed security flaws, including buffer overflows, injection issues, and authentication bypasses, spanning the period from the product's initial release through the latest available advisories. Visitors can track the vendor's published security notices, analyze patterns within a specific weakness class, and review the complete historical record of vulnerabilities identified in OpenClaw. The data is organized to facilitate trend analysis and risk assessment, allowing security teams to identify recurring defect classes and evaluate the severity distribution over time. All entries are sourced from public vulnerability databases and official vendor bulletins, ensuring traceability and consistency in reporting standards. Users can filter results by date range, impact score, or component module to focus on relevant subsets of findings. The collection serves as a centralized reference for tracking how OpenClaw's security posture has evolved, supporting maintenance planning and compliance reporting without relying on scattered external sources.

Vendor: OpenClaw

CVE ID Title CVSS Severity Published
CVE-2026-28446 OpenClaw < 2026.2.1 - Inbound Allowlist Policy Bypass in voice-call Extension via Empty Caller ID and Suffix Matching 9.4 Critical 2026-03-05
CVE-2026-28395 OpenClaw 2026.1.14-1 < 2026.2.12 - Unintended Public Binding of Chrome Extension Relay via Wildcard cdpUrl CWE-1327 6.5 Medium 2026-03-05
CVE-2026-28394 OpenClaw < 2026.2.15 - Denial of Service via Unbounded Response Parsing in web_fetch Tool CWE-770 6.5 Medium 2026-03-05
CVE-2026-28393 OpenClaw 2.0.0-beta3 < 2026.2.14 - Arbitrary JavaScript Module Loading via Hook Transform Path Traversal CWE-22 7.7 High 2026-03-05
CVE-2026-28392 OpenClaw < 2026.2.14 - Privilege Escalation in Slack Slash Command Handler via Direct Messages 7.5 High 2026-03-05
CVE-2026-28391 OpenClaw < 2026.2.2 - Command Injection via cmd.exe Parsing Bypass in Allowlist Enforcement 9.8 Critical 2026-03-05
CVE-2026-28363 OpenClaw 安全漏洞 CWE-184 9.9 Critical 2026-02-27
CVE-2026-27576 OpenClaw: ACP prompt-size checks missing in local stdio bridge could reduce responsiveness with very large inputs CWE-400 3.3 - 2026-02-21
CVE-2026-27488 OpenClaw hardened cron webhook delivery against SSRF CWE-918 7.1 - 2026-02-21
CVE-2026-27487 OpenClaw: Prevent shell injection in macOS keychain credential write CWE-78 7.6 High 2026-02-21
CVE-2026-27486 OpenClaw: Process Safety - Unvalidated PID Kill via SIGKILL in Process Cleanup CWE-283 6.5AI Medium AI 2026-02-21
CVE-2026-27485 OpenClaw affected by Stored XSS in Control UI via unsanitized assistant name/avatar in inline script injection CWE-61 5.5 - 2026-02-21
CVE-2026-27484 OpenClaw Discord moderation authorization used untrusted sender identity in tool-driven flows CWE-862 6.5 - 2026-02-21
CVE-2026-27009 OpenClaw affected by Stored XSS in Control UI via unsanitized assistant name/avatar in inline script injection CWE-79 5.8 Medium 2026-02-19
CVE-2026-27008 OpenClaw hardened the skill download target directory validation CWE-73 7.7 - 2026-02-19
CVE-2026-27007 OpenClaw's sandbox config hash sorted primitive arrays and suppressed needed container recreation CWE-1254 7.1 - 2026-02-19
CVE-2026-27004 OpenClaw session tool visibility hardening and Telegram webhook secret fallback CWE-209 6.5 - 2026-02-19
CVE-2026-27003 OpenClaw: Telegram bot token exposure via logs CWE-522 9.8 - 2026-02-19
CVE-2026-27002 OpenClaw: Docker container escape via unvalidated bind mount config injection CWE-250 9.6 - 2026-02-19
CVE-2026-27001 OpenClaw: Unsanitized CWD path injection into LLM prompts CWE-77 7.6 - 2026-02-19
CVE-2026-26972 OpenClaw has a Path Traversal in Browser Download Functionality CWE-22 6.7 Medium 2026-02-19
CVE-2026-26329 OpenClaw has a path traversal in browser upload allows local file read CWE-22 6.5 - 2026-02-19
CVE-2026-26328 OpenClaw iMessage group allowlist authorization inherited DM pairing-store identities CWE-284 6.5 Medium 2026-02-19
CVE-2026-26327 OpenClaw allows unauthenticated discovery TXT records to steer routing and TLS pinning CWE-345 9.3 - 2026-02-19
CVE-2026-26326 OpenClaw skills.status could leak secrets to operator.read clients CWE-200 6.5 - 2026-02-19
CVE-2026-26325 OpenClaw Node host system.run rawCommand/command mismatch can bypass allowlist/approvals CWE-284 7.2 High 2026-02-19
CVE-2026-26324 OpenClaw has a SSRF guard bypass via full-form IPv4-mapped IPv6 (loopback / metadata reachable) CWE-918 7.5 High 2026-02-19
CVE-2026-26323 OpenClaw has a command injection in maintainer clawtributors updater CWE-78 8.8 - 2026-02-19
CVE-2026-26322 OpenClaw Gateway tool allowed unrestricted gatewayUrl override CWE-918 7.6 High 2026-02-19
CVE-2026-26321 OpenClaw has a local file disclosure via sendMediaFeishu in Feishu extension CWE-22 7.5 High 2026-02-19

All 639 known CVE vulnerabilities affecting OpenClaw with full Chinese analysis, references, and POCs where available.