¡¾Îó²îͨ¸æ¡¿OpenClaw δÊÚȨ»á¼ûÎó²î(CVE-2026-32914)
Ðû²¼Ê±¼ä 2026-03-30Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | OpenClaw δÊÚȨ»á¼ûÎó²î | ||
CVE ID | CVE-2026-32914 | ||
Îó²îÀàÐÍ | δÊÚȨ»á¼û | ·¢Ã÷ʱ¼ä | 2026-3-30 |
Îó²îÆÀ·Ö | 8.7 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | µÍ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
OpenClawÊÇÒ»¿îÃæÏò×Ô¶¯»¯Ê¹ÃüÖ´ÐÐÓëÖÇÄÜÊðÀíµ÷ÀíµÄ¿ªÔ´Æ½Ì¨£¬£¬£¬£¬Ö§³Öͨ¹ýÏÂÁîÇý¶¯·½·¨ÖÎÀíʹÃüÖ´ÐС¢ÏµÍ³ÉèÖü°µ÷ÊÔÁ÷³Ì¡£¡£¡£ÏµÍ³¾ß±¸²å¼þÀ©Õ¹ÄÜÁ¦¡¢È¨ÏÞ¿ØÖÆ»úÖÆ¼°¶à½ÇÉ«Ð×÷ÄÜÁ¦£¬£¬£¬£¬ÆÕ±éÓ¦ÓÃÓÚ×Ô¶¯»¯ÔËά¡¢AI Agentµ÷Àí¼°ÖØ´óÊÂÇéÁ÷±àÅŵȳ¡¾°¡£¡£¡£
2026Äê3ÔÂ30ÈÕ£¬£¬£¬£¬918²©ÌìÌÃÇå¾²Ó¦¼±ÏìÓ¦ÖÐÐÄ£¨VSRC£©¼à²âµ½OpenClaw δÊÚȨ»á¼ûÎó²î¡£¡£¡£¸ÃÎó²îÔ´ÓÚ/configÓë/debugµÈÃô¸ÐÏÂÁî½Ó¿ÚÔÚʵÏÖÀú³ÌÖнöУÑéŲÓ÷½ÊÇ·ñ¾ß±¸command-authorizedȨÏÞ£¬£¬£¬£¬¶øÎ´½øÒ»²½ÑéÖ¤ÊÇ·ñΪownerÉí·Ý£¬£¬£¬£¬µ¼ÖÂȨÏÞ¿ØÖÆÂ߼ȱʧ¡£¡£¡£¹¥»÷Õß¿ÉʹÓøÃȱÏÝ£¬£¬£¬£¬Í¨¹ý¾ß±¸»ù´¡ÏÂÁîÖ´ÐÐȨÏÞµÄÕ˺Żá¼û±¾Ó¦½öÏÞownerµÄÉèÖÃÓëµ÷ÊÔ½Ó¿Ú£¬£¬£¬£¬¶ÁÈ¡»ò¸Ä¶¯ÏµÍ³Òªº¦ÉèÖòÎÊý£¬£¬£¬£¬ÉõÖÁ»ñÈ¡Ãô¸Ðµ÷ÊÔÐÅÏ¢¡£¡£¡£¸ÃÎó²î¿ÉÄܱ»ÓÃÓÚȨÏÞÌáÉý¡¢ÏµÍ³Éèָ͝¼°½øÒ»²½¹¥»÷Á´¹¹½¨£¬£¬£¬£¬Ó°ÏìϵͳÍêÕûÐÔÓë±£ÃÜÐÔ£¬£¬£¬£¬²¢¿ÉÄÜÎ¥·´Ïà¹ØÊý¾ÝÇå¾²ÓëºÏ¹æÒªÇ󣬣¬£¬£¬¶Ô×éÖ¯ÓªÒµÇå¾²Ôì³É½Ï´óΣº¦¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
openclaw <= 2026.3.11
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://github.com/openclaw/openclaw/releases/
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ