
CVE@CVEnew
Disclosure
CVE-2026-34508 OpenClaw before 2026.3.12 applies rate limiting only after webhook authentication succeeds, allowing attackers to bypass rate limits and brute-force webhook secrets w… https://www.cve.org/CVERecord?id=CVE-2026-34508
Post summary
The tweet announces CVE‑2026‑34508, highlighting that rate limiting in OpenClaw is only enforced post‑authentication, thereby allowing attackers to bypass limits and brute‑force webhook secrets.
10000137
56.9K followersView on X
