CVE-2026-43575 POC (Proof-of-Concept)

CVE-2026-43575 POC (Proof-of-Concept)

OpenClaw versions 2026.2.21 before 2026.4.10 contain an authentication bypass vulnerability in the sandbox noVNC helper route that exposes interactive browser session credentials. Attackers can access the noVNC helper route without bridge authentication to gain unauthorized access to the interactive browser session.

Published: 2026-05-06

CVSS: 9.8

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Download CVE-2026-43575 POC (Proof-of-Concept) here:

Tip: Download official Tor Browser at https://www.torproject.org/download/ to access .onion links.

https://hokyo.gr/poc-347-cve-2026-42438/

https://hokyo.gr/poc-336-cve-2023-54342/

https://hokyo.gr/poc-798-cve-2026-42275/

Copyright 2017- 2025 Hokyo JapanEats ©