CVE-2026-43533 - 8.6 High

⚠️ CVE-Referenzen: CVE-2026-43526 CVE-2026-43533
OpenClaw before 2026.4.10 contains an arbitrary file read vulnerability in QQBot media tags that allows attackers to reference host-local paths outside the intended media storage boundary. Attackers can craft malicious reply text containing media tags to disclose arbitrary local files through outbound media handling.
Quelle: app.opencve.io