← All credits
AntAISecurityLab
31 vulnerability records and advisories credit this contributor.
CVE-2026-41408
OpenClaw < 2026.3.31 - Disk Exhaustion via Media Download Bypass
CVE-2026-41406
OpenClaw < 2026.3.31 - Sender Allowlist Bypass via Thread History and Quoted Messages
CVE-2026-41405
OpenClaw < 2026.3.31 - Resource Exhaustion via Unauthenticated MS Teams Webhook Body Parsing
CVE-2026-41397
OpenClaw < 2026.3.31 - Sandbox Escape via Unrestricted File Sync and Symlink Traversal
CVE-2026-41378
OpenClaw < 2026.3.31 - Privilege Escalation to Remote Code Execution via Unrestricted node.event Agent Dispatch
CVE-2026-41376
OpenClaw < 2026.3.31 - Matrix Thread Context Allowlist Bypass via Sender Validation
CVE-2026-41375
OpenClaw < 2026.3.28 - Authorization Bypass in /phone arm and /phone disarm Endpoints
CVE-2026-41374
OpenClaw < 2026.3.31 - Resource Consumption via Discord Audio Preflight Before Member Authorization
CVE-2026-41358
OpenClaw < 2026.4.2 - Sender Allowlist Bypass via Slack Thread Context
CVE-2026-41357
OpenClaw < 2026.3.31 - Unsanitized Environment Variable Leakage in SSH Sandbox Backends