CVE-2026-35643
High Severity
Description
OpenClaw before 2026.3.22 contains an unvalidated WebView JavascriptInterface vulnerability allowing attackers to inject arbitrary instructions. Untrusted pages ...
Related Vulnerabilities
- CVE-2026-40258: gramps-webapi: Zip Slip Path Traversal in Media Archive Import CRITICAL
- CVE-2026-6004: A vulnerability was detected in code-projects Simple IT Discussion Forum 1.0. Impacted is an unknown MEDIUM
- CVE-2026-6034: A flaw has been found in code-projects Vehicle Showroom Management System 1.0. Impacted is an unknow MEDIUM
- CVE-2026-35620: OpenClaw before 2026.3.24 contains missing authorization vulnerabilities in the /send and /allowlist MEDIUM
- CVE-2026-34480: Apache Log4j Core's XmlLayout https://logging.apache.org/log4j/2.x/manual/layouts.html#XmlLayout , i MEDIUM
Related Coverage
Threat Actors