
CVE-2026-28462 OpenClaw versions prior to 2026.2.13 contain a vulnerability in the browser control API in which it accepts user-supplied output paths for trace and download files wi… https://www.cve.org/CVERecord?id=CVE-2026-28462
Post summary
A vulnerability (CVE-2026-28462) in OpenClaw versions prior to 2026.2.13 allows user-supplied output paths for trace and download files via the browser control API.
