CVE-2026-44109 – OpenClaw
“A cluster of critical flaws turns a single system into a wide-open attack surface.”
OpenClaw has released patches addressing multiple high-impact vulnerabilities across its platform. Several critical issues—including CVE-2026-44109 and CVE-2026-43575 (CVSS 9.8), CVE-2026-44112 and CVE-2026-43581 (CVSS 9.6), and CVE-2026-43534, CVE-2026-43566, and CVE-2026-43578 (CVSS 9.1)—pose severe risk, potentially allowing attackers to gain unauthorized access or fully compromise affected systems. Additional high-severity vulnerabilities, including CVE-2026-44115 (CVSS 8.8), CVE-2026-44118 (CVSS 7.8), and CVE-2026-44113 (CVSS 7.7), further expand the attack surface.
These patches collectively strengthen core system protections and eliminate multiple critical entry points. There is no verified evidence of active exploitation or publicly available proof-of-concept code associated with these vulnerabilities.
Key Details
- Affected Product
- Openclaw Openclaw
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- None
- CWE Classification
- CWE-1188