OpenClaw Vulnerabilities

pip AI Agents
136
Total CVEs
3
Critical
pip
Ecosystem
May 6, 2026
Last CVE
91%
Patch Rate
0d
Avg Time to Patch

Known Vulnerabilities (136 total, page 1 of 6)

Severity CVE ID Summary CVSS Published
MEDIUM CVE-2026-43570 OpenClaw: symlink traversal exposes host filesystem 6.5 May 5, 2026 MEDIUM GHSA-cqmh-pcgr-q42f @axonflow/openclaw: credential exposure via insecure file permissions 5.5 May 6, 2026 MEDIUM GHSA-q8ff-7ffm-m3r9 openclaw: stale webhook secret survives credential rotation 6.0 May 5, 2026 HIGH GHSA-r39h-4c2p-3jxp OpenClaw: RCE via malicious repo setup-api.js 7.8 May 5, 2026 HIGH GHSA-cwj3-vqpp-pmxr openclaw: Model bypasses authz to persist unsafe config 8.8 May 5, 2026 MEDIUM GHSA-2hh7-c75g-qj2r openclaw: SSRF bypass via Zalo plugin photo URLs -- May 4, 2026 MEDIUM GHSA-q3jj-46pq-826r openclaw: ACP child session security envelope bypass -- May 4, 2026 MEDIUM GHSA-55cf-xx38-4p9p OpenClaw: .env injection redirects connector endpoints -- May 4, 2026 HIGH GHSA-r6xh-pqhr-v4xh openclaw: MCP owner-context spoofing, privilege escalation -- May 4, 2026 MEDIUM GHSA-x3h8-jrgh-p8jx OpenClaw: exec allowlist bypass allows hidden shell code -- May 4, 2026 HIGH GHSA-wppj-c6mr-83jj openclaw: TOCTOU sandbox escape via symlink swap -- May 4, 2026 MEDIUM GHSA-5h3g-6xhh-rg6p openclaw: TOCTOU race allows out-of-sandbox file read -- May 4, 2026 MEDIUM GHSA-93rg-2xm5-2p9v openclaw: auth bypass exposes Gateway bootstrap config -- May 4, 2026 MEDIUM CVE-2026-41358 OpenClaw: sender allowlist bypass via Slack thread context 5.4 May 4, 2026 MEDIUM GHSA-c28g-vh7m-fm7v openclaw: auth bypass in owner command enforcement -- Apr 29, 2026 MEDIUM GHSA-gfg9-5357-hv4c openclaw: path traversal exposes host files via audio embed -- Apr 29, 2026 MEDIUM GHSA-2xcp-x87w-q377 openclaw: session key auth bypass in webhook routing -- Apr 25, 2026 LOW GHSA-v8qf-fr4g-28p2 OpenClaw: auth scope bypass exposes assistant-media files -- Apr 25, 2026 MEDIUM GHSA-72q8-jcmc-97wx openclaw: DM policy bypass via Feishu card-action callbacks -- Apr 25, 2026 MEDIUM GHSA-hxvm-xjvf-93f3 openclaw: env namespace injection steers agent runtime -- Apr 25, 2026 LOW GHSA-57r2-h2wj-g887 openclaw: trust-label bypass amplifies prompt injection -- Apr 25, 2026 MEDIUM GHSA-mj59-h3q9-ghfh openclaw: env var injection via MCP stdio config -- Apr 25, 2026 LOW GHSA-c4qg-j8jg-42q5 openclaw: SSRF in QQBot media upload bypasses validation -- Apr 25, 2026 LOW GHSA-xrq9-jm7v-g9h7 OpenClaw: auth bypass enables cross-device session hijack -- Apr 25, 2026 LOW GHSA-j4c5-89f5-f3pm openclaw: SSRF policy bypass in CDP browser profile creation -- Apr 25, 2026

Showing 1–25 of 136

Monitor OpenClaw in your stack

Get instant alerts when new vulnerabilities affect OpenClaw. CISO analysis, ATLAS technique mappings, and compliance reports included.

Start Monitoring