2026 CVE Vulnerabilities
65,619 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-100592 | MEDIUM | 6.3 | — | Sep 26, 2026 | OpenClaw is an agent gateway distributed via npm. In versions >= 2026.4.10 and < 2026.7.1, persistent memory dreaming mu... |
| CVE-2026-100591 | MEDIUM | 6.3 | — | Sep 26, 2026 | OpenClaw is an npm-distributed agent gateway. In versions before 2026.7.1, the global Active Memory toggle mutations cou... |
| CVE-2026-100590 | MEDIUM | 4.3 | — | Sep 26, 2026 | OpenClaw before 2026.7.1 contains an authorization bypass vulnerability in the /voice set command that allows non-owner ... |
| CVE-2026-100589 | HIGH | 8.3 | — | Sep 26, 2026 | OpenClaw versions before 2026.7.1 contain a sandbox bypass vulnerability in the browser tool that allows sandboxed sessi... |
| CVE-2026-100588 | HIGH | 8.3 | — | Sep 26, 2026 | OpenClaw (npm package 'openclaw') before 2026.7.1 does not enforce the administrator scope requirement on browser contro... |
| CVE-2026-100587 | HIGH | 8.8 | — | Sep 26, 2026 | OpenClaw versions before 2026.7.1 fail to properly validate owner authorization in the Codex computer-use installation c... |
| CVE-2026-100586 | HIGH | 8.8 | — | Sep 26, 2026 | OpenClaw Codex before 2026.7.1 fails to properly enforce owner authorization when creating native conversation bindings.... |
| CVE-2026-100585 | HIGH | 8 | — | Sep 26, 2026 | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to enforce the owner-only authorization requirement for Claude C... |
| CVE-2026-100584 | MEDIUM | 6.7 | — | Sep 26, 2026 | OpenClaw is an npm-distributed agent runtime. In versions >= 2026.2.26 and < 2026.7.1, PowerShell command analysis on Wi... |
| CVE-2026-100583 | MEDIUM | 4.3 | — | Sep 26, 2026 | OpenClaw Discord versions before 2026.7.1 contain an authorization bypass vulnerability in guild metadata read actions t... |
| CVE-2026-100582 | MEDIUM | 6.5 | — | Sep 26, 2026 | OpenClaw channel plugins (@openclaw/msteams, @openclaw/feishu, @openclaw/matrix, and @openclaw/googlechat) before 2026.8... |
| CVE-2026-100581 | MEDIUM | 5.5 | — | Sep 26, 2026 | OpenClaw for iOS before 2026.8.11 stores Gateway credentials as cleartext JSON in App Group UserDefaults instead of the ... |
| CVE-2026-100580 | HIGH | 8.8 | — | Sep 26, 2026 | OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-facing cron tool: a m... |
| CVE-2026-100579 | HIGH | 7.6 | — | Sep 26, 2026 | OpenClaw (npm package 'openclaw') before 2026.7.1 incorrectly trusts requester provenance in message.action. In identity... |
| CVE-2026-100578 | HIGH | 7.6 | — | Sep 26, 2026 | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to restrict owner-only infrastructure tools exposed through the ... |
| CVE-2026-100577 | MEDIUM | 6.3 | — | Sep 26, 2026 | OpenClaw versions before 2026.8.1 fail to validate video asset URLs returned by providers, allowing server-side requests... |
| CVE-2026-100576 | MEDIUM | 5.4 | — | Sep 26, 2026 | OpenClaw versions before 2026.8.1 contain a server-side request forgery vulnerability in browser wait predicates that al... |
| CVE-2026-100575 | HIGH | 8.8 | — | Sep 26, 2026 | OpenClaw Slack versions before 2026.8.1 fail to properly enforce sender allowlists in multi-person direct messages. Disa... |
| CVE-2026-100574 | MEDIUM | 5.9 | 0.2% | Sep 26, 2026 | OpenClaw (npm package 'openclaw') before 2026.8.1 contains a server-side request forgery vulnerability in its trusted-ho... |
| CVE-2026-100573 | LOW | 3.3 | — | Sep 26, 2026 | OpenClaw versions before 2026.8.1 contain a sandbox policy bypass vulnerability in the MCP loopback component that allow... |
| CVE-2026-100572 | MEDIUM | 5.3 | — | Sep 26, 2026 | OpenClaw versions >= 2026.3.25 and < 2026.8.1 apply invalid-token rate limiting for Synology Chat webhooks before authen... |
| CVE-2026-100571 | MEDIUM | 5.3 | — | Sep 26, 2026 | OpenClaw (npm package 'openclaw') versions >= 2026.6.6 and < 2026.8.1 apply the SMS webhook invalid-request rate limit b... |
| CVE-2026-100570 | HIGH | 7.8 | 0.1% | Sep 26, 2026 | OpenClaw (npm package 'openclaw') versions >= 2026.3.28 and < 2026.8.1 allow an untrusted workspace .env file to set the... |
| CVE-2026-100569 | MEDIUM | 5.5 | — | Sep 26, 2026 | OpenClaw is an npm-distributed application. In versions >= 2026.4.25 and < 2026.8.1, the workspace environment-variable ... |
| CVE-2026-100568 | HIGH | 8.3 | — | Sep 26, 2026 | OpenClaw versions before 2026.8.1 fail to properly restrict access to operator command cron jobs, allowing model-visible... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now