OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value. The supported impact is remote code execution. Reported affected versions include
Why This Matters
The evidence matters to defenders using OpenClaw because it could let an attacker run code in affected environments.
Recommended Action
Upgrade clawdbot to 2026.1.29 or later. Identify deployments of OpenClaw matching the evidenced affected versions: <= 2026.1.28.
CVE: CVE-2026-25253NVD CVSS: 8.8 HIGHFIRST EPSS: 0.080Fixed Version: 2026.1.29
Affected