@openclaw/tlon@2026.5.1-beta.1

OpenClaw Tlon/Urbit channel plugin for chat workflows.

  • latest version

    2026.7.1

  • latest non vulnerable version

  • first published

    6 months ago

  • latest version published

    1 months ago

  • Direct Vulnerabilities

    Known vulnerabilities in the @openclaw/tlon package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • L
    Interpretation Conflict

    @openclaw/tlon is an OpenClaw Tlon/Urbit channel plugin

    Affected versions of this package are vulnerable to Interpretation Conflict in the startup migration process. An attacker can restore previously revoked configuration settings by leveraging the improper handling of empty-array values in the file configuration after a restart.

    How to fix Interpretation Conflict?

    Upgrade @openclaw/tlon to version 2026.5.2 or higher.

    <2026.5.2
    • L
    Incorrect Authorization

    @openclaw/tlon is an OpenClaw Tlon/Urbit channel plugin

    Affected versions of this package are vulnerable to Incorrect Authorization in the reconciliation process for Tlon settings when explicit empty allowlists are treated as unset. An attacker can bypass intended access revocation by exploiting the incorrect handling of empty allowlists, which may silently revert a deny-all configuration.

    How to fix Incorrect Authorization?

    Upgrade @openclaw/tlon to version 2026.5.2 or higher.

    <2026.5.2
    • M
    Incorrect Authorization

    @openclaw/tlon is an OpenClaw Tlon/Urbit channel plugin

    Affected versions of this package are vulnerable to Incorrect Authorization via the cite expansion process before authorization is complete. An attacker can access or manipulate content prior to proper authorization by triggering cite expansion before the final authorization decision.

    How to fix Incorrect Authorization?

    Upgrade @openclaw/tlon to version 2026.5.2 or higher.

    <2026.5.2