CVE-2026-100539

CVE-2026-100539 published: OpenClaw (npm package 'openclaw') before 2026.8.1 fails to revoke memory tool access when an operator hot-disables memory configuration. Existing memory_search and memory_get tool instances retain the enabled configuration captured at creation time because ...

View full NVD advisory → ← Back to CVE watch