www.vulncheck.com High-Risk Vulnerabilities in OpenClaw Windows Node Disclosed
Article Content
- •CVE-2026-101880 allows arbitrary command execution via an authorization bypass.
- •CVE-2026-101884 enables remote code execution through environment variable manipulation.
- •Both vulnerabilities affect OpenClaw Windows Node versions before 2026.7.1 and are rated high severity.
Two vulnerabilities, CVE-2026-101880 and CVE-2026-101884, were disclosed for OpenClaw Windows Node versions prior to 2026.7.1. CVE-2026-101880 allows arbitrary command execution via an authorization bypass, while CVE-2026-101884 enables remote code execution through environment variable manipulation. Both vulnerabilities are rated high severity, with CVSS scores of 8.7 and 7.7 respectively. Attackers with low privileges can exploit these flaws to gain control over affected Windows hosts, potentially leading to data theft or service disruption. No active exploitation has been confirmed, but proof-of-concept indicators exist. Organizations using OpenClaw should prioritize patching and restricting access to vulnerable nodes. The vulnerabilities were published on September 30, 2026.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track CVE-2026-101880 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Which versions are affected?
Is there any active exploitation?
What should organizations do?
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…