CVE-2026-32062Disclosure(openclaw / openclaw)

LOWCVSS 8.7 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openclaw openclaw systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw versions 2026.2.21-2 up to, but not including, 2026.2.22, and @openclaw/voice-call versions 2026.2.21 up to, but not including, 2026.2.22 accept media-stream WebSocket upgrades before stream validation, allowing unauthenticated clients to establish connections. Remote attackers can hold idle pre-authenticated sockets open to consume connection resources and degrade service availability for legitimate streams.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-770

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw
  • openclaw\/voice-call

Threat summary

  • Patch or workaround signal is available
  • 7 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 6 classified signals
  • Peaked 2d ago at 3 mentions (2026-03-12); latest day: 1
  • 7 total mentions across 4 days

Affected systems

Vendors
Products
openclawopenclaw\/voice-call

Deep dive

Activity timeline7 mentions / 4d
01223Mentions · 2026-03-11: 1Mentions · 2026-03-12: 3Mentions · 2026-03-15: 2Mentions · 2026-04-28: 1Patch / Workaround · 2026-03-15: 1Technical Details · 2026-03-11: 1Technical Details · 2026-03-12: 1Technical Details · 2026-03-15: 1Technical Details · 2026-04-28: 103-1103-1203-1504-28
Signal classification2 categories
Disclosure
685.7%
Patch
114.3%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-03-111
Disclosure1
2026-03-123
Disclosure3
2026-03-152
Disclosure1Patch1
2026-04-281
Disclosure1
Full discourse7 posts
  • FOFA@fofabot
    Disclosure

    ⚠⚠ CVE-2026-32062: OpenClaw (< 2026.2.22) and @openclaw/voice-call (< 2026.2.22) allow unauthenticated remote attackers to cause a Denial of Service (DoS) by holding unvalidated WebSocket connections open and exhausting server resources. 🔗FOFA Link:https://en.fofa.info/result?qbase64=YXBwPSJPcGVuQ2xhdyI= 🎯128k+ Results are found on the https://en.fofa.info nearly year. FOFA Query: app="OpenClaw" #OSINT #FOFA #CeyberSecurity #Vulnerability

    Post summary

    The post announces CVE‑2026‑32062, describing a DoS vulnerability in OpenClaw and its voice‑call module that can be triggered by opening unvalidated WebSocket connections, but provides no PoC, exploit, or patch information.

    1111521.5K
    13.7K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32062 OpenClaw versions2026.2.21-2 prior to 2026.2.22 and @openclaw/voice-call versions 2026.2.21 prior to 2026.2.22 accept media-stream WebSocket upgrades before stream va… https://www.cve.org/CVERecord?id=CVE-2026-32062

    Post summary

    The text announces CVE-2026-32062, describing a media-stream WebSocket upgrade flaw in OpenClaw before version 2026.2.22, without any evidence of exploitation or remediation.

    10010136
    56.7K followersView on X
  • Orizon@OrizonCyber
    Disclosure

    🚨 OpenClaw CVE-2026-32062 just hit WebSocket DoS before auth checks = amateur hour coding Your voice calls are about to become very quiet when someone floods those streams Who reviewed this code? 💀 #infosec #CVE https://t.co/x4iE4cfs55

    Post summary

    The tweet announces the newly disclosed CVE-2026-32062, a WebSocket-based DoS issue discovered in OpenClaw, with no evidence of PoC, exploit code, or patch availability.

    0001073
    5 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-41400 OpenClaw before 2026.3.31 contains an incomplete fix for CVE-2026-32062 where the voice-call component parses large WebSocket frames before start validation. Remote a… https://www.cve.org/CVERecord?id=CVE-2026-41400

    Post summary

    The post highlights that OpenClaw versions prior to 2026.3.31 contain an incomplete fix for CVE-2026-32062, describing how the voice‑call component handles large WebSocket frames before validation, but offers no PoC, exploit, or patch details.

    0000070
    57.3K followersView on X
  • ClawHost@tryclawhost
    Patch

    @CVEnew Thanks for the heads up on CVE-2026-32062. It’s good to keep OpenClaw updated—ClawHost lets you switch versions easily with one click if you want to stay secure hassle-free. Full root access and multiple agents on dedicated servers included.

    Post summary

    The tweet acknowledges CVE‑2026‑32062 and encourages users to update OpenClaw via ClawHost, but provides no exploit, technical details, or evidence of active exploitation.

    0000039
    251 followersView on X
  • VulnTracker@vuln_tracker
    Disclosure

    @fofabot Solid research on CVE-2026-32062! Appreciate FOFA's platform security analysis - responsible disclosure like this helps the entire OpenClaw ecosystem stay secure. Track and monitor this CVE: https://vulntracker.io/cves/CVE-2026-32062

    Post summary

    The tweet thanks FOFA for researching CVE-2026-32062 and highlights the benefits of responsible disclosure, but it offers no technical, exploit, or patch details.

    00000103
    398 followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-32062 - openclaw - openclaw - https://www.redpacketsecurity.com/cve-alert-cve-2026-32062-openclaw-openclaw/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-32062 #openclaw #voice-call

    Post summary

    The tweet announces a CVE alert for CVE‑2026‑32062 affecting OpenClaw and provides a link to an external site for more information, but offers no details on exploits, patches, or technical specifics.

    0000076
    3.5K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-
Appopenclawopenclaw\/voice-call-node.js-

Explore more