An OpenClaw vulnerability allowed malicious websites to take over AI agents, exposing sensitive information and enabling data theft.
Google API keys for services like Maps embedded in accessible client-side code could be used to authenticate to the Gemini AI ...