CVE-2026-43533 - 8.6 High
⚠️ CVE-Referenzen:
CVE-2026-43526
CVE-2026-43533
OpenClaw before 2026.4.10 contains an arbitrary file read vulnerability in QQBot media tags that allows attackers to reference host-local paths outside the intended media storage boundary. Attackers can craft malicious reply text containing media tags to disclose arbitrary local files through outbound media handling.
Quelle: app.opencve.io