
CVE-2026-41299 OpenClaw before 2026.3.28 contains an authorization bypass vulnerability in the chat.send gateway method where ACP-only provenance fields are gated by self-declared c… https://www.cve.org/CVERecord?id=CVE-2026-41299
Post summary
The tweet announces CVE-2026-41299, detailing an authorization bypass flaw in OpenClaw’s chat.send gateway, but provides no PoC, exploit, or patch information.


