CVE-2026-43571 POC (Proof-of-Concept)

CVE-2026-43571 POC (Proof-of-Concept)

OpenClaw before 2026.4.10 contains a plugin trust bypass vulnerability that allows channel setup catalog lookups to resolve workspace plugin shadows before bundled channel plugins. Attackers can exploit this by crafting malicious workspace plugins that bypass intended trust gates during setup-time plugin loading.

Published: 2026-05-05

CVSS: 8.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Download CVE-2026-43571 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://hokyo.gr/poc-885-cve-2026-37431/

https://hokyo.gr/poc-340-cve-2023-54347/

https://hokyo.gr/poc-891-cve-2026-41583/

https://hokyo.gr/poc-364-cve-2026-6261/

https://hokyo.gr/poc-854-cve-2026-43290/

Copyright 2017- 2025 Hokyo JapanEats ©