CVE-2026-43581 – OpenClaw

CVSS 9.6 CRITICAL

“A cluster of critical flaws turns a single system into a wide-open attack surface.”

OpenClaw has released patches addressing multiple high-impact vulnerabilities across its platform. Several critical issues—including CVE-2026-44109 and CVE-2026-43575 (CVSS 9.8), CVE-2026-44112 and CVE-2026-43581 (CVSS 9.6), and CVE-2026-43534, CVE-2026-43566, and CVE-2026-43578 (CVSS 9.1)—pose severe risk, potentially allowing attackers to gain unauthorized access or fully compromise affected systems. Additional high-severity vulnerabilities, including CVE-2026-44115 (CVSS 8.8), CVE-2026-44118 (CVSS 7.8), and CVE-2026-44113 (CVSS 7.7), further expand the attack surface.

These patches collectively strengthen core system protections and eliminate multiple critical entry points. There is no verified evidence of active exploitation or publicly available proof-of-concept code associated with these vulnerabilities.

Key Details

Affected Product
Openclaw Openclaw
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-1188
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.