A vulnerability has been found in OpenClaw up to 2026.2.22 and classified as problematic . This affects an unknown part. This manipulation of the argument mimeType causes cross site scripting. This vulnerability is handled as CVE-2026-32040 . It is possible to launch the attack on the local host. There is not any exploit available. The affected component should be upgraded.