<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 05:01:39 +0000</lastBuildDate>
    <item>
      <title>BREW-openclaw-cli-CVE-2026-41375 — OpenClaw: `/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels</title>
      <link>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-41375</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;## Summary
`/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels&lt;/p&gt;
&lt;p&gt;## Current Maintainer Triage
- Status: open
- Normalized severity: medium
- Assessment: Maintainers accepted this issue, fixed it in aa66ae1fc797d3298cc409ed2c5da69a89950a45 on 2026-03-27, and that fix shipped in v2026.3.28, so normalize it as a fixed released draft rather than a close-by-trust-model call.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Latest published npm version: `2026.3.31`
- Vulnerable version range: `&amp;lt;=2026.3.24`
- Patched versions: `&amp;gt;= 2026.3.28`
- First stable tag containing the fix: `v2026.3.28`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `aa66ae1fc797d3298cc409ed2c5da69a89950a45` — 2026-03-27T20:35:42Z&lt;/p&gt;
&lt;p&gt;## Release Process Note
- The fix is already present in released version `2026.3.28`.
- This draft looks ready for final maintainer disposition or publication, not additional code-fix work.&lt;/p&gt;
&lt;p&gt;Thanks @AntAISecurityLab for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;## Summary
`/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels&lt;/p&gt;
&lt;p&gt;## Current Maintainer Triage
- Status: open
- Normalized severity: medium
- Assessment: Maintainers accepted this issue, fixed it in aa66ae1fc797d3298cc409ed2c5da69a89950a45 on 2026-03-27, and that fix shipped in v2026.3.28, so normalize it as a fixed released draft rather than a close-by-trust-model call.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Latest published npm version: `2026.3.31`
- Vulnerable version range: `&amp;lt;=2026.3.24`
- Patched versions: `&amp;gt;= 2026.3.28`
- First stable tag containing the fix: `v2026.3.28`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `aa66ae1fc797d3298cc409ed2c5da69a89950a45` — 2026-03-27T20:35:42Z&lt;/p&gt;
&lt;p&gt;## Release Process Note
- The fix is already present in released version `2026.3.28`.
- This draft looks ready for final maintainer disposition or publication, not additional code-fix work.&lt;/p&gt;
&lt;p&gt;Thanks @AntAISecurityLab for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-41375</guid>
    </item>
    <item>
      <title>EUVD-2026-307887</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-307887</link>
      <description>EUVD-2026-307887</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-307887</guid>
    </item>
    <item>
      <title>fkie_cve-2026-41375</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-41375</link>
      <description>&lt;p&gt;OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the /phone arm and /phone disarm endpoints that fails to properly enforce operator.admin scope checks for external channels. Attackers can bypass authentication restrictions to arm or disarm phone channels without proper administrative privileges.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the /phone arm and /phone disarm endpoints that fails to properly enforce operator.admin scope checks for external channels. Attackers can bypass authentication restrictions to arm or disarm phone channels without proper administrative privileges.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-41375</guid>
    </item>
    <item>
      <title>GHSA-h2v7-xc88-xx8c — OpenClaw: `/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h2v7-xc88-xx8c</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;## Summary
`/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels&lt;/p&gt;
&lt;p&gt;## Current Maintainer Triage
- Status: open
- Normalized severity: medium
- Assessment: Maintainers accepted this issue, fixed it in aa66ae1fc797d3298cc409ed2c5da69a89950a45 on 2026-03-27, and that fix shipped in v2026.3.28, so normalize it as a fixed released draft rather than a close-by-trust-model call.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Latest published npm version: `2026.3.31`
- Vulnerable version range: `&amp;lt;=2026.3.24`
- Patched versions: `&amp;gt;= 2026.3.28`
- First stable tag containing the fix: `v2026.3.28`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `aa66ae1fc797d3298cc409ed2c5da69a89950a45` — 2026-03-27T20:35:42Z&lt;/p&gt;
&lt;p&gt;## Release Process Note
- The fix is already present in released version `2026.3.28`.
- This draft looks ready for final maintainer disposition or publication, not additional code-fix work.&lt;/p&gt;
&lt;p&gt;Thanks @AntAISecurityLab for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;## Summary
`/phone arm`/`/phone disarm` Bypasses `operator.admin` Scope Check for External Channels&lt;/p&gt;
&lt;p&gt;## Current Maintainer Triage
- Status: open
- Normalized severity: medium
- Assessment: Maintainers accepted this issue, fixed it in aa66ae1fc797d3298cc409ed2c5da69a89950a45 on 2026-03-27, and that fix shipped in v2026.3.28, so normalize it as a fixed released draft rather than a close-by-trust-model call.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Latest published npm version: `2026.3.31`
- Vulnerable version range: `&amp;lt;=2026.3.24`
- Patched versions: `&amp;gt;= 2026.3.28`
- First stable tag containing the fix: `v2026.3.28`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `aa66ae1fc797d3298cc409ed2c5da69a89950a45` — 2026-03-27T20:35:42Z&lt;/p&gt;
&lt;p&gt;## Release Process Note
- The fix is already present in released version `2026.3.28`.
- This draft looks ready for final maintainer disposition or publication, not additional code-fix work.&lt;/p&gt;
&lt;p&gt;Thanks @AntAISecurityLab for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h2v7-xc88-xx8c</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0948 — OpenClaw: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0948</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um erweiterte Privilegien zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten offenzulegen oder zu manipulieren oder andere, nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um erweiterte Privilegien zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten offenzulegen oder zu manipulieren oder andere, nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0948</guid>
    </item>
  </channel>
</rss>
