CVE-2026-10216 | unitedbyai droidclaw up to 0.5.3 claim Endpoint pairing.ts excessive authentication (Issue 14)
A vulnerability categorized as problematic has been discovered in unitedbyai droidclaw up to 0.5.3. The affected element is an unknown function of the file server/src/routes/pairing.ts of the component claim Endpoint. The manipulation results in improper restriction of excessive authentication attempts.
This vulnerability is cataloged as CVE-2026-10216. The attack may be launched remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.