Skip to content

OpenClaw Exposes Credentials Embedded in baseUrl Fields via config.get and channels.status

Moderate severity GitHub Reviewed Published Mar 24, 2026 in openclaw/openclaw • Updated Mar 26, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts