CVE Alert: CVE-2026-45223 - openclaw - crabbox - RedPacket Security

Crabbox before 0.9.0 contains an authentication bypass vulnerability in the coordinator user-token verification path where the verifyUserToken() function

RedPacket Security
CVE Alert: CVE-2026-45224 - openclaw - crabbox - RedPacket Security

Crabbox before 0.9.0 contains a path traversal vulnerability in the Islo provider's workspace path resolution that allows attackers to supply absolute or

RedPacket Security