'Claw Chain' Vulnerabilities Threaten OpenClaw Deployments
ID: 1d3572d7-8c42-5216-a6dd-d4387aae69a7
STIX ID: report--1d3572d7-8c42-5216-a6dd-d4387aae69a7
Feed Name: Dark Reading
OpenClaw’s maintainers patched four chainable vulnerabilities dubbed “Claw Chain” that affect all versions prior to 2026-04-23; the flaws (including a CVSS 9.6 TOCTOU on the OpenShell sandbox and other high-severity logic and session/validation issues) can be chained to enable initial access via malicious plugins or prompts, credential theft, privilege escalation to administrative control, and persistent backdoors — activities that can look like legitimate agent behavior and are therefore difficult to detect.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
