
CVE-2026-33574 OpenClaw before 2026.3.8 contains a path traversal vulnerability in the skills download installer that validates the tools root lexically but reuses the mutable path … https://www.cve.org/CVERecord?id=CVE-2026-33574
Post summary
The message reports CVE-2026-33574, a path traversal vulnerability in OpenClaw’s skills download installer before version 2026.3.8, without providing any PoC, exploit code, or remediation details.
