OpenClaw presentava una falla ‘ClawJacked’ che consentiva a siti web maligni di aprire WebSocket al gateway locale e brute-force la password di gestione.
Part of the PlainSec briefing for 2026-03-02
Every edition of this story: Vulnerabilità OpenClaw permette a siti web dirottare agenti AI locali