CVE-2026-25253 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompt…
High CVSS: 8.8

CVE-2026-25253

OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.
Vendor
Openclaw
Product
Openclaw
CWE
CWE-669
Yayın Tarihi
2026-02-01 23:15:49
Güncelleme
2026-02-13 17:41:02
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar