CVE-2026-35667
Medium Severity
Description
OpenClaw before 2026.3.24 contains an incomplete fix for CVE-2026-27486 where the !stop chat command uses an unpatched killProcessTree function from shell-util...
Related Vulnerabilities
- CVE-2026-35656: OpenClaw before 2026.3.22 contains an authentication bypass vulnerability in the X-Forwarded-For hea MEDIUM
- CVE-2026-39315: Unhead has a hasDangerousProtocol() bypass via leading-zero padded HTML entities in useHeadSafe() MEDIUM
- CVE-2026-31412: In the Linux kernel, the following vulnerability has been resolved:
usb: gadget: f_mass_storage: Fi HIGH
- CVE-2026-3358: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthori MEDIUM
- CVE-2026-40150: PraisonAIAgents is a multi-agent teams system. Prior to 1.5.128, the web_crawl() function in praison HIGH
Related Coverage
Threat Actors