<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[I don&#x27;t use it myself, but I hear anyone still running OpenClaw versions prior to 2026.3.31 should patch ASAP.]]></title><description><![CDATA[<p>I don't use it myself, but I hear anyone still running OpenClaw versions prior to 2026.3.31 should patch ASAP. Your sandbox is currently looking more like a leaky sieve. Due to missing context validation in the heartbeat, an attacker can completely break out of the sandbox in the worst case and grab full access rights via privilege escalation. The only reliable fix is a direct version bump to the latest release.</p><p>TL;DR:<br />CVE-2026-41329 (don't panic, it's only a 9.9 crit) &gt; OpenClaw users should update now, before someone involuntarily helps with your "pen-testing" <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/270c.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--v" style="height:23px;width:auto;vertical-align:middle" title="✌" alt="✌" /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f3fd.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--skin-tone-4" style="height:23px;width:auto;vertical-align:middle" title="🏽" alt="🏽" /></p><p><a href="https://infosec.exchange/tags/OpenClaw" rel="tag">#<span>OpenClaw</span></a>  <a href="https://infosec.exchange/tags/CyberSecurity" rel="tag">#<span>CyberSecurity</span></a>  <a href="https://infosec.exchange/tags/AppSec" rel="tag">#<span>AppSec</span></a>  <a href="https://infosec.exchange/tags/PatchDay" rel="tag">#<span>PatchDay</span></a></p>

<div class="row mt-3"><div class="col-12 mt-3"><div class="ratio ratio-16x9">
<video controls width="832" height="480">
<source src="https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/441/930/465/155/684/original/b654fa8f1dc41628.mp4" type="video/mp4"></source>
</video>
</div></div></div>]]></description><link>https://board.circlewithadot.net/topic/f9b750a8-5c7e-4793-bb0b-bfbedd5a9cba/i-don-t-use-it-myself-but-i-hear-anyone-still-running-openclaw-versions-prior-to-2026.3.31-should-patch-asap.</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 02:42:38 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/f9b750a8-5c7e-4793-bb0b-bfbedd5a9cba.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 21 Apr 2026 09:16:20 GMT</pubDate><ttl>60</ttl></channel></rss>