CVE-2026-26317 | OpenClaw/Clawdbot/Moltbot up to 2026.2.13 Browser Control Service cross-site request forgery (GHSA-3fqr-4cg8-h96q)
A vulnerability identified as problematic has been detected in OpenClaw, Clawdbot and Moltbot up to 2026.2.13. Affected is an unknown function of the component Browser Control Service. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2026-26317. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.