Saif Shah[verified]@SaifShahSpaceDisclosure
The text announces CVE‑2026‑28446, revealing a remote unauthenticated RCE in OpenClaw’s voice extension capable of full host compromise without user interaction.
Mohammed Wasif[verified]@Mohammed__WasifDisclosure
The post announces CVE‑2026‑28446, a pre‑authentication remote code execution flaw in OpenClaw’s transcription pipeline for versions below 2026.2.1, enabling attackers to execute code without credentials.
CCB Alert@CCBalertPatch
The post warns of seven critical CVEs affecting the OpenClaw NextCloud talk plugin, provides CVSS scores, and directs users to update to a patched version.
0day Signal@0dayPublishingDisclosure
The tweet announces CVE‑2026‑28446, noting a phone‑number suffix matching flaw that acts as a skeleton key for voice‑agent access, and includes a link to a ZeroDaySignal page for additional details.
CVE@CVEnewDisclosure
The snippet announces CVE-2026-28446, an authentication bypass flaw in OpenClaw's voice‑call extension, but provides no PoC, exploit, or mitigation details.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces the critical CVE‑2026‑28446 vulnerability—a voice‑call extension authentication bypass in OpenClaw before version 2026.2.1—linking to a source article but providing no PoC, exploit, or patch details.
CVEFind.com@CveFindComDisclosure
The tweet announces a critical authentication bypass flaw in OpenClaw versions before 2026.2.1, providing basic technical details but no PoC, exploit, or patch information.