GHSA-vq5x-r5hj-w7qcMediumCVSS 6.5

OpenClaw versions before 2026.6.1 contain a denial of service vulnerability where remote media...

Published
July 17, 2026
Last Modified
July 17, 2026

🔗 CVE IDs covered (1)

📋 Description

OpenClaw versions before 2026.6.1 contain a denial of service vulnerability where remote media URLs can trigger slow-read attacks that exhaust gateway worker resources. Attackers with access to configured input paths can supply remote media URLs that consume gateway resources and reduce availability.

🔗 References (4)