
⚠️ Critical Update: OpenClaw requires Node.js 22.12.0+ to patch CVE-2025-59466 (DoS) & CVE-2026-21636 (Permission bypass). If you're on older LTS, your gateway is vulnerable to identity exfiltration. Verify: node --version Fix: openclaw --update #OpenClaw #SecurityForces
Post summary
OpenClaw users must upgrade to Node.js 22.12.0+ and run "openclaw --update" to patch the listed CVEs; older LTS versions remain vulnerable to DoS, permission bypass, and identity exfiltration.
