OpenClaw Security Flaw Enables Data Theft Without Clicks
Researchers demonstrate attack via link preview and prompt injection
Published: Mar 17, 2026Reading time: 2 min
A new security vulnerability in OpenClaw allows attackers to access sensitive data without user interaction. The flaw exploits link previews through prompt injection techniques. Additionally, malicious skills and malware distribution have been confirmed.