Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

openclaw — Vulnerabilities & Security Advisories 581

Browse all 581 CVE security advisories affecting openclaw. AI-powered Chinese analysis, POCs, and references for each vulnerability.

OpenClaw is a specialized software platform designed for automated threat intelligence aggregation and vulnerability management, primarily serving enterprise security operations centers. Historically, its codebase has exhibited a high frequency of critical flaws, with 428 CVEs documented to date. The most prevalent vulnerability classes include remote code execution (RCE) and cross-site scripting (XSS), often stemming from insufficient input validation in its web interface components. Additionally, privilege escalation issues have been frequently reported, allowing unauthorized users to gain administrative access. A notable incident in 2022 involved a critical RCE flaw that enabled attackers to execute arbitrary commands on unpatched servers, leading to widespread data exposure across multiple client networks. These recurring security deficiencies highlight significant challenges in the platform’s secure development lifecycle, necessitating rigorous patching and continuous monitoring for organizations relying on OpenClaw for their security infrastructure.

CVE IDTitleCVSSSeverityPublished
CVE-2026-53820 OpenClaw < 2026.5.12 - Exec Denylist Bypass in Bundle MCP Loopback Session Spawn — OpenClawCWE-862 6.6 Medium2026-06-12
CVE-2026-53819 OpenClaw < 2026.5.27 - Arbitrary Homebrew Executable Execution via Workspace .env Override — OpenClawCWE-426 8.8 High2026-06-11
CVE-2026-53818 OpenClaw < 2026.4.24 - Owner-Only Tool Policy Bypass via MCP Loopback — OpenClawCWE-862 6.6 Medium2026-06-11
CVE-2026-53817 OpenClaw < 2026.5.22 - Control UI Locality Spoofing in Device Pairing — OpenClawCWE-290 8.8 High2026-06-11
CVE-2026-53816 OpenClaw < 2026.5.18 - Exec Lifecycle Event Forgery via Paired Node — OpenClawCWE-862 7.2 High2026-06-11
CVE-2026-53815 OpenClaw < 2026.5.19 - Channel Allowlist Bypass in Message Read Actions — OpenClawCWE-862 6.5 Medium2026-06-11
CVE-2026-53814 OpenClaw < 2026.5.20 - Privilege Escalation via Hook-Triggered CLI MCP Tool Authority — OpenClawCWE-266 8.3 High2026-06-11
CVE-2026-53813 OpenClaw < 2026.4.25 - Arbitrary Artifact Loading via Fake Package Root Resolution — OpenClawCWE-427 7.8 High2026-06-11
CVE-2026-53812 OpenClaw < 2026.5.18 - Private-Network Navigation Bypass via Browser Act Interactions — OpenClawCWE-918 7.7 High2026-06-11
CVE-2026-53811 OpenClaw < 2026.5.7 - Privilege Escalation via Mutable Display Names in Matrix allowFrom — OpenClawCWE-290 8.8 High2026-06-11
CVE-2026-53810 OpenClaw < 2026.5.18 - Arbitrary Code Execution via Unscanned Marketplace Runtime Extension Metadata — OpenClawCWE-829 8.8 High2026-06-11
CVE-2026-53809 OpenClaw < 2026.4.25 - Provider Alias Confusion in Embedded Runner Policy — OpenClawCWE-863 3.8 Low2026-06-11
CVE-2026-53808 OpenClaw < 2026.5.6 - Approval Policy Bypass in Skill Workshop Apply Flow — OpenClawCWE-863 6.5 Medium2026-06-11
CVE-2026-53807 OpenClaw < 2026.5.6 - Authorization Bypass in Telegram Interactive Callbacks via commands.allowFrom — OpenClawCWE-863 8.8 High2026-06-11
CVE-2026-53806 OpenClaw < 2026.5.12 - Shell Option Parsing Bypass in Exec Revalidation — OpenClawCWE-367 8.8 High2026-06-11
CVE-2026-35674 OpenClaw < 2026.5.18 - Scope Bypass via Inherited chat.send Route — OpenClawCWE-863 8.8 High2026-05-29
CVE-2026-35673 OpenClaw < 2026.4.29 - SSRF Policy Bypass via Browser Debug/Export Routes — OpenClawCWE-863 6.5 Medium2026-05-29
CVE-2026-35630 OpenClaw < 2026.5.18 - QQBot Missing Approver Identity Enforcement in Native Approval Buttons — OpenClawCWE-862 8.0 High2026-05-29
CVE-2026-34507 OpenClaw < 2026.4.29 - Policy Bypass in QQBot Admin Commands via DM-only and allowFrom Checks — OpenClawCWE-863 5.4 Medium2026-05-29
CVE-2026-32906 OpenClaw < 2026.5.12 - Privilege Escalation in Slack Plugin Approvals via Exec Approver Gate — OpenClawCWE-863 4.3 Medium2026-05-29
CVE-2026-32905 OpenClaw < 2026.5.4 - Unauthorized Device-Pairing Bootstrap Code Issuance via Chat Command — OpenClawCWE-862 8.3 High2026-05-29
CVE-2026-8634 Crabbox < v0.12.0 Environment Variable Information Disclosure — crabboxCWE-94 9.1 Critical2026-05-14
CVE-2026-8629 Crabbox < v0.12.0 Privilege Escalation via Agent Ticket Endpoints — crabboxCWE-639 8.1 High2026-05-14
CVE-2026-8621 Crabbox < v0.12.0 Authentication Bypass via Header Spoofing — crabboxCWE-287 8.8 High2026-05-14
CVE-2026-45224 Crabbox < 0.9.0 Path Traversal via Islo Provider Workspace Resolution — crabboxCWE-22 7.1 High2026-05-11
CVE-2026-45223 Crabbox < 0.9.0 Authentication Bypass via Admin Claim Injection — crabboxCWE-290 8.8 High2026-05-11
CVE-2026-45006 OpenClaw < 2026.4.23 - Unsafe Config Mutation via Gateway Tool Denylist Bypass — OpenClawCWE-184 8.8 High2026-05-11
CVE-2026-45005 OpenClaw < 2026.4.23 - Webhook Route Secret Cache Not Invalidated After Rotation — OpenClawCWE-672 6.0 Medium2026-05-11
CVE-2026-45004 OpenClaw < 2026.4.23 - Arbitrary Code Execution via setup-api.js in Current Working Directory — OpenClawCWE-427 7.8 High2026-05-11
CVE-2026-45002 OpenClaw < 2026.4.20 - Hook Session-Key Bypass via Template Mapping — OpenClawCWE-863 5.3 Medium2026-05-11

This page lists every published CVE security advisory associated with openclaw. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.