Security Alert: OpenClaw Version 3.28 May Introduce Malicious Axios, Users Advised to Check

robot
Abstract generation in progress

On March 31, Yu Xian, the founder of Slow Fog, issued a security alert stating: We have basically confirmed that if users have the latest version 3.28 of OpenClaw, it may introduce a malicious axios. Users are advised to conduct checks. Additionally, related Skills may also rely on axios, leading to indirect poisoning. Given the widespread use of axios, a comprehensive check can be conducted if conditions allow. Earlier today, 1M AI News reported that axios has suffered a supply chain attack: two new versions introduced malicious dependencies, and it is recommended to roll back immediately.

This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin