CYBERHAWK / CVE / CVE-2026-42422

CVE-2026-42422

OpenClaw

HIGH CVSS 8.8 vibe

The flaw

Role bypass in token rotation function allows minting unapproved role tokens.

What to do

Update to version 2026.4.8 or later

▸ Scan my repo for CVE-2026-42422

References

First seen 2026-05-01 · Tracked by PickBits CyberHawk · Weekly CVE digest