CVE-2026-28459 | OpenClaw up to 2026.2.11 Configuration file inclusion (GHSA-64qx-vpxx-mvqf)
A vulnerability was found in OpenClaw up to 2026.2.11 and classified as problematic. The affected element is an unknown function of the component Configuration Handler. Such manipulation leads to file inclusion.
This vulnerability is listed as CVE-2026-28459. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.