CVE-2026-35661
Medium Severity
Description
OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Telegram callback query handling that allows attackers to mutate session state with...
Related Vulnerabilities
- CVE-2026-35652: OpenClaw before 2026.3.22 contains an authorization bypass vulnerability in interactive callback dis MEDIUM
- CVE-2026-34481: Apache Log4j's JsonTemplateLayout https://logging.apache.org/log4j/2.x/manual/json-template-layout. MEDIUM
- CVE-2025-14545: The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via CRITICAL
- CVE-2026-5479: In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and r HIGH
- CVE-2026-6007: A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknow MEDIUM
Related Coverage
Threat Actors