CVE-2026-35649
Medium Severity
Description
OpenClaw before 2026.3.22 contains a settings reconciliation vulnerability that allows attackers to bypass intended deny-all revocations by exploiting empty al...
Related Vulnerabilities
- CVE-2026-35650: OpenClaw before 2026.3.22 contains an environment variable override handling vulnerability that allo HIGH
- CVE-2026-32146: Improper path validation vulnerability in the Gleam compiler's handling of git dependencies allows a MEDIUM
- CVE-2025-58920: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i HIGH
- CVE-2026-39315: Unhead has a hasDangerousProtocol() bypass via leading-zero padded HTML entities in useHeadSafe() MEDIUM
- CVE-2026-36233: A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Onl CRITICAL
Related Coverage
Threat Actors