|
481
|
6.1 |
MEDIUM
Local
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.31 fails to properly sanitize PIP_INDEX_URL and UV_INDEX_URL environment variables in host execution contexts, allowing attackers to redirect Python package-index traffic. Atta…
Update
|
CWE-184
Incomplete Blacklist
|
CVE-2026-41391
|
2026-05-1 05:42 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
482
|
7.3 |
HIGH
Local
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.28 contains an exec allowlist bypass vulnerability where allow-always persistence fails to unwrap /usr/bin/script and similar wrappers before storing trust decisions. Attackers…
Update
|
CWE-807
Reliance on Untrusted Inputs in a Security Decision
|
CVE-2026-41390
|
2026-05-1 05:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
483
|
6.5 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.31 contains a configuration management vulnerability where startup migration treats empty-array settings as missing values. Attackers can restart the application to rehydrate r…
Update
|
CWE-372
Incomplete Internal State Distinction
|
CVE-2026-41388
|
2026-05-1 05:37 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
484
|
7.8 |
HIGH
Local
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.22 contains an incomplete host environment variable sanitization vulnerability in host-env-security-policy.json and host-env-security.ts that allows package-manager environment…
Update
|
CWE-183
Permissive List of Allowed Inputs
|
CVE-2026-41387
|
2026-05-1 05:36 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
485
|
7.6 |
HIGH
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.4.8 contains a server-side request forgery policy bypass vulnerability allowing attackers to trigger navigations bypassing normal SSRF checks. Attackers can exploit browser inter…
Update
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-41912
|
2026-05-1 04:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
486
|
6.5 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.4.8 contains a filesystem policy bypass vulnerability in docx upload processing that allows local file reads outside workspace boundaries. Attackers can exploit upload_file and u…
Update
|
CWE-22
Path Traversal
|
CVE-2026-41911
|
2026-05-1 04:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
487
|
4.3 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.4.8 omits owner-only enforcement for cross-channel allowlist writes in the /allowlist endpoint. An authorized non-owner sender can bypass access controls to perform allowlist mod…
Update
|
CWE-863
Incorrect Authorization
|
CVE-2026-41910
|
2026-05-1 04:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
488
|
6.5 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.31 contains a resource exhaustion vulnerability in media downloads that bypasses core safety limits for file size, count, and cleanup operations. Attackers can exhaust disk spa…
Update
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-41408
|
2026-05-1 04:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
489
|
5.3 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.4.2 contains a timing side channel vulnerability in shared-secret comparison call sites that use early length-mismatch checks instead of fixed-length comparison helpers. Attacker…
Update
|
CWE-208
Information Exposure Through Timing Discrepancy
|
CVE-2026-41407
|
2026-05-1 04:38 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
490
|
5.4 |
MEDIUM
Network
|
openclaw
|
openclaw
|
OpenClaw before 2026.3.31 contains a sender allowlist bypass vulnerability that allows remote attackers to access restricted messages. Attackers can exploit fetched quoted, root, and thread context m…
Update
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-41406
|
2026-05-1 04:37 |
2026-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|