Loading
Generated remediation guidance and an executive summary. No account required.
OpenClaw before 2026.3.28 contains a privilege escalation vulnerability allowing authenticated operators with write permissions to access admin-class Talk Voice configuration persistence. Attackers with operator.write privileges can exploit the chat.send endpoint to reach and modify sensitive voice configuration settings intended for administrators only.
No affected products information available.
Use CWE-863 to widen CVE-2026-41379 into its surrounding weakness, vendor, and product context.