ended4월 3일· 1 sources

OpenClaw's LINE Webhook Flaw: How Missing Concurrency Limits Enable DoS Attacks

OpenClaw, 인증 없는 LINE 웹훅으로 서비스 마비 공격 노출

Why it matters

OpenClaw's LINE webhook handler fails to enforce concurrency limits before processing unauthenticated requests, allowing attackers to trigger massive Denial of Service attacks with minimal effort. This vulnerability exposes a fundamental gap in pre-authentication resource protection that puts production OpenClaw deployments at severe risk. Immediate patching to version 2026.3.31 is critical to prevent service disruption.

1
Sources
+0
24h
Growth
171d
Active
OpenClawLINE WebhookResource ExhaustionDenial of ServiceConcurrency Limits

Sources

Related Issues