Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/openclaw/OpenClaw

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

OpenClaw versions before 2026.5.22 have a vulnerability in the setup-mode discovery process that permits loading untrusted workspace plugins. This flaw allows attackers with lower-trust caller access or control over configured input paths to execute or maintain actions beyond their authorized level.

Join the discussion

OpenClaw versions before 2026.5.27 contain an authorization bypass vulnerability in the device.pair.approve feature. This flaw allows lower-trust callers to bypass role-management checks and perform actions that normally require stronger authorization.

Join the discussion

OpenClaw versions before 2026.5.27 contain an authorization flaw in the QQBot exec approvals feature. This flaw allows lower-trust callers or configured input paths to execute or persist actions beyond their intended authorization. As a result, non-allowlisted senders may perform unauthorized operations when the feature is enabled and reachable.

Join the discussion

OpenClaw versions before 2026.6.5 contain an authorization bypass vulnerability in the ClickClack agent-mode dispatch feature. This flaw allows the toolsAllow policy check to be ignored, potentially enabling lower-trust callers or configured input paths to perform actions requiring stronger authorization. The vulnerability is categorized under CWE-863 (Incorrect Authorization). No patch or fix information is currently provided.

Join the discussion

OpenClaw versions before 2026.6.6 have a vulnerability in the host exec environment variable filtering that fails to properly sanitize rustup startup variables. This flaw allows attackers with limited trust or specific input path configurations to execute or persist actions beyond their authorized level. The vulnerability is categorized under CWE-184 (Improper Access Control) and is assessed as high severity.

Join the discussion

OpenClaw versions 2026.4.12-beta.1 before 2026.6.6 contain a missing-authorization vulnerability in the MS Teams message actions feature. When the affected feature is enabled and reachable, a lower-trust caller or a configured input path can perform actions that should have required a stronger authorization or policy check. Practical impact depends on the operator's configuration and whether lower-trust input can reach that path. The issue is fixed in 2026.6.6.

Join the discussion

OpenClaw versions from 2026.6.1 up to but not including 2026.6.9 contain a privilege escalation vulnerability in isolated cron jobs. This flaw allows lower-trust users to regain access to execution tools that should be denied. The vulnerability arises from misconfigured input paths in the affected cron feature, enabling attackers to execute or persist actions beyond their intended authorization.

Join the discussion

OpenClaw versions before 2026.6.6 contain an authorization bypass vulnerability in the native web search feature. This flaw allows lower-trust callers to perform actions that normally require stronger policy checks by exploiting misconfigured input paths. The vulnerability could enable unauthorized execution of restricted operations.

Join the discussion

OpenClaw versions before 2026.6.6 contain an authorization bypass vulnerability that allows WhatsApp group IDs to satisfy elevated sender allowlists. This flaw enables attackers with lower-trust access to perform actions that normally require stronger authorization by exploiting group ID validation. No patch or fix information is currently provided for this vulnerability.

Join the discussion

OpenClaw versions before 2026.6.9 contain a privilege escalation vulnerability in the plugin install commands. This flaw allows lower-trust callers to execute or persist actions beyond their intended authorization by exploiting misconfigured input paths or enabled features. The vulnerability enables attackers to escalate privileges and perform unauthorized actions when the vulnerable feature is reachable.

Join the discussion

Showing 1 to 10 of 20 results

Filters:Package: pkg:github/openclaw/OpenClaw
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses