CVE-2026-32049 - OpenClaw < 2026.2.22 - Denial of Service via Inbound Media Download Byte Limit Bypass
CVE ID :CVE-2026-32049
Published : March 21, 2026, 12:42 a.m. | 19 minutes ago
Description :OpenClaw versions prior to 2026.2.22 fail to consistently enforce configured inbound media byte limits before buffering remote media across multiple channel ingestion paths. Remote attackers can send oversized media payloads to trigger elevated memory usage and potential process instability.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : March 21, 2026, 12:42 a.m. | 19 minutes ago
Description :OpenClaw versions prior to 2026.2.22 fail to consistently enforce configured inbound media byte limits before buffering remote media across multiple channel ingestion paths. Remote attackers can send oversized media payloads to trigger elevated memory usage and potential process instability.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...