In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Minimos:latest openclaw to version 2026.3.12-r0 or higher.
Note: Versions mentioned in the description apply only to the upstream openclaw package and not the openclaw package as distributed by Minimos.
See How to fix? for Minimos:latest relevant fixed versions and status.
music-metadata is a metadata parser for audio and video media files. Prior to version 11.12.3, music-metadata's ASF parser (parseExtensionObject() in lib/asf/AsfParser.ts:112-158) enters an infinite loop when a sub-object inside the ASF Header Extension Object has objectSize = 0. Version 11.12.3 fixes the issue.