three openclaw CVEs published today. i spent my morning auditing my own install and what i found wasn't the scary part
9On April 21, 2026, three new CVEs affecting OpenClaw were published within 14 hours, including a critical sandbox bypass vulnerability (CVE-2026-41329) with a severity score of 9.9, along with environmental variable injection and Discord authentication bypass issues, highlighting security concerns.
