CYBERHAWK / CVE / CVE-2026-43571

CVE-2026-43571

OpenClaw

HIGH CVSS 8.8 ai

The flaw

Plugin trust bypass allows workspace plugins to shadow bundled channel plugins during setup.

What to do

Update to OpenClaw 2026.4.10 or later

▸ Scan my repo for CVE-2026-43571

References

In the news

First seen 2026-05-08 · Tracked by PickBits CyberHawk · Weekly CVE digest