CVE-2026-35652
Medium Severity
Description
OpenClaw before 2026.3.22 contains an authorization bypass vulnerability in interactive callback dispatch that allows non-allowlisted senders to execute action...
Related Vulnerabilities
- CVE-2026-40097: Step CA is an online certificate authority for secure, automated certificate management for DevOps. LOW
- CVE-2026-5226: The Optimole – Optimize Images in Real Time plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2026-6024: A vulnerability was determined in Tenda i6 1.0.0.7(2204). Affected by this issue is the function R7W MEDIUM
- CVE-2026-35651: OpenClaw versions 2026.2.13 through 2026.3.24 contain an ANSI escape sequence injection vulnerabilit MEDIUM
- CVE-2026-35656: OpenClaw before 2026.3.22 contains an authentication bypass vulnerability in the X-Forwarded-For hea MEDIUM
Related Coverage
Threat Actors