Vulnerability index

Browse CVEs

530 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Openclaw HIGH 8.8
CVE-2026-41404

OpenClaw before 2026.3.31 contains an incomplete scope-clearing vulnerability in trusted-proxy authentication mode that allows operator.admin privile…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.8
CVE-2026-41396

OpenClaw before 2026.3.31 allows workspace .env files to override the OPENCLAW_BUNDLED_PLUGINS_DIR environment variable, compromising plugin trust ve…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.5
CVE-2026-41399

OpenClaw before 2026.3.28 accepts unbounded concurrent unauthenticated WebSocket upgrades without pre-authentication budget allocation. Unauthenticat…

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.5
CVE-2026-41400

OpenClaw before 2026.3.31 contains an incomplete fix for CVE-2026-32062 where the voice-call component parses large WebSocket frames before start val…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw MEDIUM 5.4
CVE-2026-41402

OpenClaw before 2026.3.31 contains a scope bypass vulnerability in webhook replay cache deduplication that allows authenticated attackers to replay m…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw HIGH 8.2
CVE-2026-41394

OpenClaw before 2026.3.31 contains an authentication bypass vulnerability where unauthenticated plugin-auth HTTP routes receive operator runtime writ…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.5
CVE-2026-41395

OpenClaw before 2026.3.28 contains a webhook replay vulnerability in Plivo V3 signature verification that canonicalizes query ordering for signatures…

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.3
CVE-2026-41390

OpenClaw before 2026.3.28 contains an exec allowlist bypass vulnerability where allow-always persistence fails to unwrap /usr/bin/script and similar …

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.3
CVE-2026-41392

OpenClaw before 2026.3.31 contains an exec allowlist bypass vulnerability allowing attackers to inherit allowlist trust via shell init-file wrapper i…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41388

OpenClaw before 2026.3.31 contains a configuration management vulnerability where startup migration treats empty-array settings as missing values. At…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 6.1
CVE-2026-41391

OpenClaw before 2026.3.31 fails to properly sanitize PIP_INDEX_URL and UV_INDEX_URL environment variables in host execution contexts, allowing attack…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw CRITICAL 9.8
CVE-2026-41386

OpenClaw before 2026.3.22 contains a privilege escalation vulnerability where bootstrap setup codes are not bound to intended device roles and scopes…

Fix: 2026.3.22+
Fix from $2,300 2026-04-28
Openclaw HIGH 8.1
CVE-2026-41383

OpenClaw before 2026.4.2 contains an arbitrary directory deletion vulnerability in mirror mode that allows attackers to delete remote directories by …

Fix: 2026.4.2+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.8
CVE-2026-41384

OpenClaw before 2026.3.24 contains an environment variable injection vulnerability in the CLI backend runner that allows attackers to inject maliciou…

Fix: 2026.3.24+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.8
CVE-2026-41387

OpenClaw before 2026.3.22 contains an incomplete host environment variable sanitization vulnerability in host-env-security-policy.json and host-env-s…

Fix: 2026.3.22+
Fix from $1,950 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41385

OpenClaw before 2026.3.31 stores Nostr privateKey as plaintext in configuration, allowing exposure through config.get method calls that bypass redact…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 5.4
CVE-2026-41381

OpenClaw before 2026.3.31 contains an access control bypass vulnerability in the Discord voice manager that allows attackers to bypass channel-level …

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 5.4
CVE-2026-41382

OpenClaw before 2026.3.31 contains an authorization bypass vulnerability in Discord voice ingress that allows attackers to bypass channel and member …

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw HIGH 8.8
CVE-2026-41378

OpenClaw before 2026.3.31 contains a privilege escalation vulnerability allowing paired nodes with role=node to dispatch node.event agent requests wi…

Fix: 2026.3.31+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.3
CVE-2026-41380

OpenClaw before 2026.3.28 contains an execution approval vulnerability in exec-approvals-allowlist.ts that allows allow-always persistence to trust w…

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw HIGH 7.1
CVE-2026-41379

OpenClaw before 2026.3.28 contains a privilege escalation vulnerability allowing authenticated operators with write permissions to access admin-class…

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41375

OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the /phone arm and /phone disarm endpoints that fails to properly enforce…

Fix: 2026.3.28+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41376

OpenClaw before 2026.3.31 contains an allowlist bypass vulnerability in Matrix thread root and reply context handling that fails to properly validate…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 5.3
CVE-2026-41374

OpenClaw before 2026.3.31 performs Discord audio preflight transcription before validating member authorization, allowing unauthenticated attackers t…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 6.1
CVE-2026-41373

OpenClaw before 2026.3.31 contains an incomplete host-env-security-policy.json that fails to restrict compiler binary environment variables, allowing…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw HIGH 8.5
CVE-2026-41371

OpenClaw before 2026.3.28 contains a privilege escalation vulnerability in chat.send that allows write-scoped gateway callers to trigger admin-only s…

Fix: 2026.3.28+
Fix from $1,950 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41368

OpenClaw before 2026.3.28 contains an environment variable disclosure vulnerability in the jq safe-bin policy that fails to block the $ENV filter. At…

Fix: 2026.3.28+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41369

OpenClaw before 2026.3.31 contains insufficient environment variable sanitization in host exec operations, failing to filter package, registry, Docke…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 6.5
CVE-2026-41370

OpenClaw before 2026.3.31 contains a path traversal vulnerability in ACP dispatch that allows attackers to read arbitrary files by manipulating inbou…

Fix: 2026.3.31+
Fix from $1,600 2026-04-28
Openclaw MEDIUM 5.8
CVE-2026-41372

OpenClaw before 2026.4.2 fails to normalize trailing-dot localhost hosts in remote CDP discovery responses, allowing bypass of loopback protections. …

Fix: 2026.4.2+
Fix from $1,600 2026-04-28