
CVE-2026-28465 OpenClaw's voice-call plugin versions before 2026.2.3 contain an improper authentication vulnerability in webhook verification that allows remote attackers to bypass … https://www.cve.org/CVERecord?id=CVE-2026-28465
Post summary
The text announces an authentication bypass flaw in OpenClaw's voice‑call plugin, allowing remote attackers to circumvent webhook verification for versions prior to 2026.2.3.
