logo

OpenClaw Chain Vulnerabilities Expose 245,000 Public AI Agent Servers to Attack

ID: 89888533-439d-51dd-ad63-68726f157f2d

STIX ID: report--89888533-439d-51dd-ad63-68726f157f2d

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2026-05-15

Date Updated: 2026-05-22

Author: Guru Baran

...
...

**Executive Summary:** Cyera disclosed a chain of four high-to-critical vulnerabilities in OpenClaw (CVE-2026-44112, CVE-2026-44115, CVE-2026-44118, CVE-2026-44113) that together—termed “Claw Chain”—allow an attacker to move from a single foothold to exfiltrate credentials and files, escalate to owner-level control, and implant persistent backdoors; approximately 245,000 publicly accessible instances were identified via Shodan and ZoomEye scans and patches were released on April 23, 2026, with guidance to patch immediately, rotate secrets, and audit deployments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.