
CVE-2026-26319 OpenClaw is a personal AI assistant. Versions 2026.2.13 and below allow the optional @openclaw/voice-call plugin Telnyx webhook handler to accept unsigned inbound web… https://www.cve.org/CVERecord?id=CVE-2026-26319
Post summary
CVE-2026-26319 reveals that OpenClaw versions 2026.2.13 and earlier allow the @openclaw/voice-call plugin’s Telnyx webhook handler to accept unsigned inbound requests, potentially leading to unauthorized access as documented in the CVE record.

