logo

Researchers Reveal Six New OpenClaw Vulnerabilities

ID: a3ac6f2d-c2fc-5d24-a6c0-148971f67649

STIX ID: report--a3ac6f2d-c2fc-5d24-a6c0-148971f67649

Feed Name: Infosecurity Magazine (News)

Threat Score
78/100

Date Published: 2026-02-19

Date Updated: 2026-04-22

...
...

Endor Labs disclosed six vulnerabilities in the OpenClaw agentic AI assistant — including high-severity SSRF, missing webhook authentication, and path traversal issues (CVE-2026-26322, CVE-2026-26319, CVE-2026-26329 and multiple GHSA advisories) — noting public exploit code for several CVEs, tens of thousands of exposed misconfigured instances, and active targeting by infostealer malware, creating significant enterprise exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.