Security Advisory

CVE-2026-41408

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-28 18:10:05
Last updated 2026-04-29 13:36:09
Assigner VulnCheck
CVSS score 2.3
State PUBLISHED

Description

OpenClaw before 2026.3.31 contains a resource exhaustion vulnerability in media downloads that bypasses core safety limits for file size, count, and cleanup operations. Attackers can exhaust disk space by downloading media files without triggering intended safety restrictions, causing availability impact.