CVE-2026-35643
High Severity
Description
OpenClaw before 2026.3.22 contains an unvalidated WebView JavascriptInterface vulnerability allowing attackers to inject arbitrary instructions. Untrusted pages ...
Related Vulnerabilities
- CVE-2026-40073: @sveltejs/adapter-node has a BODY_SIZE_LIMIT bypass HIGH
- CVE-2026-5226: The Optimole – Optimize Images in Real Time plugin for WordPress is vulnerable to Reflected Cross-Si MEDIUM
- CVE-2026-35662: OpenClaw before 2026.3.22 fails to enforce controlScope restrictions on the send action, allowing le MEDIUM
- CVE-2026-34621: Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Control CRITICAL
- CVE-2026-5989: A flaw has been found in Tenda F451 1.0.0.7. Affected is the function fromRouteStatic of the file /g HIGH
Related Coverage
Threat Actors