Four critical vulnerabilities in OpenClaw (CVE-2026-244115, CVE-2026-244112, CVE-2026.4-222, CVE-2026-44118) enable data theft, privilege escalation, and persistent network access; the flaws were fixed in version 2026.4.22 and immediate updates are recommended.