openclaw vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-28394Mediumopenclaw: OpenClaw has a Web Fetch DoS via unbounded response parsingCVE-2026-27009Mediumopenclaw: OpenClaw affected by Stored XSS in Control UI via unsanitized assistant name/avatar in inline script injectionCVE-2026-27008Mediumopenclaw: OpenClaw hardened the skill download target directory validationCVE-2026-27007Mediumopenclaw: OpenClaw's sandbox config hash sorted primitive arrays and suppressed needed container recreationCVE-2026-27004Mediumopenclaw: OpenClaw session tool visibility hardening and Telegram webhook secret fallbackCVE-2026-27003Mediumopenclaw: OpenClaw: Telegram bot token exposure via logsCVE-2026-27002Highopenclaw: OpenClaw: Docker container escape via unvalidated bind mount config injectionCVE-2026-27001Highopenclaw: OpenClaw: Unsanitized CWD path injection into LLM promptsCVE-2026-28468Highopenclaw: OpenClaw has an authentication bypass in sandbox browser bridge serverCVE-2026-28451Highopenclaw: OpenClaw has two SSRF via sendMediaFeishu and markdown image fetching in Feishu extensionCVE-2026-29611Highopenclaw: OpenClaw has a LFI in BlueBubbles media path handlingCVE-2026-27486Mediumopenclaw: OpenClaw: Process Safety - Unvalidated PID Kill via SIGKILL in Process CleanupCVE-2026-28477Mediumopenclaw: OpenClaw Chutes manual OAuth state validation bypass can cause credential substitutionCVE-2026-27487Highopenclaw: OpenClaw: Prevent shell injection in macOS keychain credential writeCVE-2026-28462Highopenclaw: OpenClaw has a path traversal in browser trace/download output paths may allow arbitrary file writesCVE-2026-26972Mediumopenclaw: OpenClaw has a Path Traversal in Browser Download FunctionalityCVE-2026-28456Highopenclaw: OpenClaw affected by potential code execution via unsafe hook module path handling in GatewayCVE-2026-28482Highopenclaw: OpenClaw's unsanitized session ID enables path traversal in transcript file operationsGHSA-W5C7-9QQW-6645Highopenclaw: OpenClaw inter-session prompts could be treated as direct user instructionsCVE-2026-29610Highopenclaw: OpenClaw: Command hijacking via unsafe PATH handling (bootstrapping + node-host PATH overrides)CVE-2026-28476Mediumopenclaw: OpenClaw affected by SSRF in optional Tlon (Urbit) extension authenticationCVE-2026-29606Mediumopenclaw: OpenClaw Twilio voice-call webhook auth bypass when ngrok loopback compatibility is enabledCVE-2026-28480Mediumopenclaw: OpenClaw Telegram allowlist authorization accepted mutable usernamesCVE-2026-28469Highopenclaw: OpenClaw Google Chat shared-path webhook target ambiguity allowed cross-account policy-context misroutingCVE-2026-26317Highopenclaw: OpenClaw affected by cross-site request forgery (CSRF) through loopback browser mutation endpoints

Stop the waste.
Protect your environment with Kodem.