CVE-2026-25253: OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains
OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.
- EPSS 24.0% (97.7% percentile)
- CVSS 8.8 high
Related briefings
- An AI project racked up over 200 CVEs in one quarter 2026-08-26
- Malicious OpenClaw Skills Trick AI Agents Into Installing Atomic macOS Stealer: Trend Micro Identifies 2,200+ Poisoned Packages 2026-02-23
- The OpenClaw Security Crisis: From One-Click RCE to 824 Malicious Skills in Three Weeks 2026-02-20