logo

OpenClaw 0-Click Vulnerability Allows Malicious Websites to Hijack Developer AI Agents

ID: ff988d1a-03fc-5613-a9ff-56186fdc0515

STIX ID: report--ff988d1a-03fc-5613-a9ff-56186fdc0515

Feed Name: cybersecurityNews.com

Threat Score
85/100

Date Published: 2026-03-01

Date Updated: 2026-04-21

Author: Guru Baran

...
...

**Executive Summary:** Oasis Security disclosed a critical zero‑interaction vulnerability in the OpenClaw AI agent that lets attacker-controlled websites open a localhost WebSocket, bypass rate limiting and authentication, auto-pair as a trusted device, and take admin control of the agent — enabling file exfiltration, command execution, and effective workstation compromise; a PoC was demonstrated and a patch (2026.2.25) has been released, but rapid adoption means unpatched instances are likely and immediate remediation is advised.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.