PT-2026-26731 · Openclaw · Openclaw
CVSS v4.0
8.7
Alta
| Vetor | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
OpenClaw versions prior to 2026.2.22
Description
The software does not consistently enforce configured inbound media byte limits before buffering remote media across multiple channel ingestion paths. This can allow remote attackers to send oversized media payloads, potentially leading to elevated memory usage and process instability.
Recommendations
Update OpenClaw to version 2026.2.22 or later.
Exploit
Correção
Resource Exhaustion
Allocation of Resources Without Limits
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Openclaw