CVE-2026-35655 | OpenClaw up to 2026.3.21 rawInput reliance on untrusted inputs in a security decision (GHSA-74wf-h43j-vvmj / WID-SEC-2026-0856)
A vulnerability, which was classified as problematic, was found in OpenClaw up to 2026.3.21. The affected element is an unknown function. Executing a manipulation of the argument rawInput can lead to reliance on untrusted inputs in a security decision.
This vulnerability is registered as CVE-2026-35655. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.