CVE-2026-100537

CVE-2026-100537 published: OpenClaw (npm package 'openclaw') before 2026.8.1 fails to apply the originating requester's effective tool policy during Active Memory automatic recall. In deployments that use Active Memory together with requester-specific tool rules, deterministic and hi...

View full NVD advisory → ← Back to CVE watch