GHSA-r294-2894-92j3: OpenClaw has stored XSS in exported session HTML viewer via markdown/raw-HTML rendering
The exported session HTML viewer allowed stored XSS when untrusted session content included raw HTML markdown tokens or unescaped metadata fields.
References
Code Behaviors & Features
Detect and mitigate GHSA-r294-2894-92j3 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →