All CVEs — page 56 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw in OpenClaw allows bypassing of tool restrictions in Codex app-server, enabling access to native command and file tools even when a tool allowlist is in place.
The flaw allows remote callers to exploit the agent's tool authority, potentially leading to data breaches, command execution, or service control.