All CVEs — page 55 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
OpenClaw versions before 2026.7.1 allow non-owner users to install arbitrary plugins and execute MCP processes with OpenClaw user privileges, compromising host security.
The flaw allows non-owner channel senders with command access to create bindings to the native Codex runtime, enabling them to execute host-capable actions with access to sensitive files, tools, and processes.
The flaw in OpenClaw (npm package 'openclaw') before 2026.7.1 allows an attacker to create a persistent cron job that executes arbitrary commands with the privileges of the OpenClaw process user, leading to potential host file and credential access.
OpenClaw Slack versions before 2026.8.1 allow unauthorized participants to bypass sender policies and access tools and data intended for authorized agents, posing a significant security risk.