CVE-2026-43581 | OpenClaw up to 2026.4.9 Chrome DevTools Protocol insecure default initialization of resource (GHSA-525j-hqq2-66r4)
A vulnerability, which was classified as critical, has been found in OpenClaw up to 2026.4.9. Affected by this issue is some unknown functionality of the component Chrome DevTools Protocol. This manipulation causes insecure default initialization of resource.
This vulnerability is tracked as CVE-2026-43581. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.