CVE-2026-62210: Openclaw

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

OpenClaw versions before 2026.6.1 contain a denial of service vulnerability where remote media URLs can trigger slow-read attacks that exhaust gateway worker resources. Attackers with access to configured input paths can supply remote media URLs that consume gateway resources and reduce availability.

Affected products

  • Openclaw Openclaw: before 2026.6.1 (fixed in 2026.6.1)

Published 2026-07-17. Last modified 2026-07-23.