CVE-2026-35669
High Severity
Description
OpenClaw before 2026.3.25 contains a privilege escalation vulnerability in gateway-authenticated plugin HTTP routes that incorrectly mint operator.admin runtime ...
Related Vulnerabilities
- CVE-2026-5777: This vulnerability exists in the Atom 3x Projector due to improper exposure of the Android Debug Bri HIGH
- CVE-2026-40225: In udev in systemd before 260, local root execution can occur via malicious hardware devices and uns MEDIUM
- CVE-2026-6028: A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Impacted is the CRITICAL
- CVE-2026-40070: bsv-sdk and bsv-wallet persist unverified certifier signatures in acquire_certificate (direct and is MEDIUM
- CVE-2026-29129: Configured cipher preference order not preserved vulnerability in Apache Tomcat.
This issue affects HIGH
Related Coverage
Threat Actors