VulnerabilityAnalyzed
CVE-2026-25253
OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.
HIGH 8.8EPSS 24.0%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 24.0%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
OpenClaw (aka clawdbot or Moltbot) before 2026.1.29 obtains a gatewayUrl value from a query string and automatically makes a WebSocket connection without prompting, sending a token value.
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 23.99% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-669
- Affected
- openclaw/openclaw
- Source
- cve@mitre.org
References
- https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keysExploit, Third Party Advisory
- https://ethiack.com/news/blog/one-click-rce-moltbotExploit, Third Party Advisory
- https://github.com/openclaw/openclaw/security/advisories/GHSA-g8p2-7wf7-98mqVendor Advisory
- https://openclaw.ai/blogProduct
- https://x.com/0xacb/status/2016913750557651228Exploit
- https://depthfirst.com/post/1-click-rce-to-steal-your-moltbot-data-and-keysExploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.