CVE-2026-35649
Medium Severity
Description
OpenClaw before 2026.3.22 contains a settings reconciliation vulnerability that allows attackers to bypass intended deny-all revocations by exploiting empty al...
Related Vulnerabilities
- CVE-2026-6036: A vulnerability was found in code-projects Vehicle Showroom Management System 1.0. The impacted elem MEDIUM
- CVE-2026-5774: Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, an MEDIUM
- CVE-2026-40158: PraisonAI is a multi-agent teams system. Prior to 4.5.128, PraisonAI's AST-based Python sandbox can HIGH
- CVE-2026-5466: wolfSSL's ECCSI signature verifier `wc_VerifyEccsiHash` decodes the `r` and `s` scalars from the sig HIGH
- CVE-2026-35667: OpenClaw before 2026.3.24 contains an incomplete fix for CVE-2026-27486 where the !stop chat command MEDIUM
Related Coverage
Threat Actors