
CVE-2026-32008 OpenClaw versions prior to 2026.2.21 contain an improper URL scheme validation vulnerability in the assertBrowserNavigationAllowed() function that allows authenticate… https://www.cve.org/CVERecord?id=CVE-2026-32008
Post summary
The statement announces that OpenClaw versions before 2026.2.21 suffer from an improper URL scheme validation flaw in assertBrowserNavigationAllowed(), but does not provide any PoC, exploit, active use evidence, or patch details.
