实时安全

安全博客

已分析的漏洞、即用修复命令和关键警报。每 6 小时更新一次。

紧急警报CVSS 9.8php

OpenClaw Nextcloud Talk Allowlist Bypass (CVE-2026-28474)

CVE-2026-28474: OpenClaw Nextcloud Talk < 2026.2.6 allowlist bypass via display name spoofing. Patch to 2026.2.6 immediately to prevent unauthorized access.

CVE-2026-28474
紧急警报CVSS 9.9other

Multiple Vulnerabilities in OpenClaw Expose Systems to RCE

Critical vulnerabilities in OpenClaw versions before 2026.3.11 can lead to remote code execution and privilege escalation. Update now!

CVE-2026-28466CVE-2026-28470CVE-2026-32922
紧急警报CVSS 9.9nodejs

Multiple Vulnerabilities Patched in OpenClaw

Critical vulnerabilities patched in OpenClaw. Includes command injection, auth bypass, and file disclosure. Update to latest versions now!

CVE-2026-28363CVE-2026-28472CVE-2026-32030CVE-2026-32056