Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Knoxar

#37590de 53,633
7.5CVSS total
Vulnerabilidades · 1
PT-2026-28499
7.5
2026-03-29
Openclaw · Openclaw · CVE-2026-33575
**Name of the Vulnerable Software and Affected Versions** OpenClaw versions prior to 2026.3.12 **Description** The software embeds long-lived shared gateway credentials directly within pairing setup codes. These codes are generated by the `/pair` API endpoint and the `OpenClaw qr` command. If setup codes are leaked through chat history, logs, or screenshots, attackers can recover and reuse the credentials outside the intended one-time pairing process. **Recommendations** Update to version 2026.3.12 or later.