<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T23:01:28.462011+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-41371</id>
    <title>BREW-openclaw-cli-CVE-2026-41371 — OpenClaw Gateway `operator.write` can reach admin-only session reset via `chat.send` `/reset`</title>
    <updated>2026-10-04T23:01:28.465152+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: openclaw-cli</p>
<p>## Summary</p>
<p>The `chat.send` path reused command authorization to trigger `/reset` session rotation even though direct session reset is an admin-only control-plane operation.</p>
<p>## Impact</p>
<p>A write-scoped gateway caller could rotate a target session, archive the prior transcript state, and force a new session id without admin scope.</p>
<p>## Affected Component</p>
<p>`src/gateway/server-methods/chat.ts, src/auto-reply/reply/session.ts`</p>
<p>## Fixed Versions</p>
<p>- Affected: `&lt;= 2026.3.24`
- Patched: `&gt;= 2026.3.28`
- Latest stable `2026.3.28` contains the fix.</p>
<p>## Fix</p>
<p>Fixed by commit `be00fcfccb` (`Gateway: align chat.send reset scope checks`).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-41371"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-293288</id>
    <title>EUVD-2026-293288</title>
    <updated>2026-10-04T23:01:28.465254+00:00</updated>
    <content>EUVD-2026-293288</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-293288"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-41371</id>
    <title>fkie_cve-2026-41371</title>
    <updated>2026-10-04T23:01:28.465279+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenClaw before 2026.3.28 contains a privilege escalation vulnerability in chat.send that allows write-scoped gateway callers to trigger admin-only session reset operations. Attackers can rotate target sessions, archive prior transcript state, and force new session IDs without requiring admin scope by exploiting improper authorization checks in the chat.send path.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-41371"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-592j-4mrx-v257</id>
    <title>GHSA-592j-4mrx-v257</title>
    <updated>2026-10-04T23:01:28.465319+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenClaw before 2026.3.28 contains a privilege escalation vulnerability in chat.send that allows write-scoped gateway callers to trigger admin-only session reset operations. Attackers can rotate target sessions, archive prior transcript state, and force new session IDs without requiring admin scope by exploiting improper authorization checks in the chat.send path.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-592j-4mrx-v257"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0930</id>
    <title>WID-SEC-W-2026-0930 — OpenClaw: Mehrere Schwachstellen</title>
    <updated>2026-10-04T23:01:28.465349+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um erweiterte Rechte zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand herbeizuführen oder andere, nicht näher spezifizierte Angriffe durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0930"/>
  </entry>
</feed>
