Beveiligingsadvies

CVE-2026-62197

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-13 21:30:18
Laatst bijgewerkt 2026-07-14 12:58:20
Toegewezen door VulnCheck
CVSS-score 8.5
Status PUBLISHED

Beschrijving

OpenClaw before 2026.6.6 contains a policy bypass vulnerability in browser CDP discovery that accepts blocked WebSocket URLs. Attackers with lower-trust access can reach network destinations that should have been blocked by OpenClaw policy when the affected feature is enabled.