CYBERHAWK / CVE / CVE-2026-42436

CVE-2026-42436

OpenClaw

HIGH CVSS 7.7 ai

The flaw

Access control bypass in browser routes allowing SSRF via navigation without policy re-validation.

What to do

Update to version 2026.4.14 or later

▸ Scan my repo for CVE-2026-42436

References

First seen 2026-05-08 · Tracked by PickBits CyberHawk · Weekly CVE digest