
CVE-2026-28453 OpenClaw versions prior to 2026.2.14 fail to validate TAR archive entry paths during extraction, allowing path traversal sequences to write files outside the intended… https://www.cve.org/CVERecord?id=CVE-2026-28453
Post summary
The text discloses a path traversal vulnerability in OpenClaw versions prior to 2026.2.14, where TAR archives are not validated during extraction.
