NJ
LLA
Home
AI
Crypto
Finance
Security
Tech
BTC
—
—
ETH
—
—
SOL
—
—
BNB
—
—
GOLD
—
—
XRP
—
—
DOGE
—
—
ADA
—
—
Security
77 articles
Security
[MEDIUM] Security Advisory: OpenClaw: Host exec environment overrides miss proxy, TLS, Docker, and Git TLS controls (openclaw)
Apr 3 · 3 min
Security
[LOW] Security Advisory: OpenClaw: Telnyx Webhook Replay Detection Bypass via Base64 Signature Re-encoding (openclaw)
Apr 3 · 3 min
Security
[HIGH] Security Advisory: OpenClaw: Device-Paired Node Skips Node Scope Gate → Host RCE.md (openclaw)
Apr 3 · 3 min
Security
[MEDIUM] Security Advisory: OpenClaw: Feishu thread history and quoted messages bypass sender allowlist (openclaw)
Apr 3 · 3 min
Security
[HIGH] Security Advisory: OpenClaw: Workspace `.env` can override the bundled hooks root and load attacker hook code (openclaw)
Apr 3 · 3 min
Security
[MEDIUM] Security Advisory: OpenClaw: LINE webhook handler lacks shared pre-auth concurrency budget before signature verification (openclaw)
Apr 3 · 3 min
Security
[LOW] Security Advisory: OpenClaw: MSTeams thread history bypasses sender allowlist via Graph API (openclaw)
Apr 3 · 1 min
Security
[MEDIUM] Security Advisory: OpenClaw: SSH-based sandbox backends pass unsanitized process.env to child processes (openclaw)
Apr 3 · 3 min
Security
[MEDIUM] Security Advisory: OpenClaw: SSRF via Unguarded `fetch()` in Marketplace Plugin Download and Ollama Model Discovery (openclaw)
Apr 3 · 2 min
Security
[MEDIUM] Security Advisory: OpenClaw: SSH sandbox tar upload follows symlinks, enabling arbitrary file write on remote host (openclaw)
Apr 3 · 3 min
Security
[LOW] Security Advisory: TeleJSON: DOM XSS via unsanitised constructor name in `new Function()` (telejson)
Apr 3 · 3 min
Security
Tracking drones with the 5G tower down the street
Apr 2 · 3 min
Posts pagination
←
1
2
3
4
…
7
→