Vulnerabilities/

Claw Orchestrator has inefficient regular expression complexity via validateRegex()

Severity:
Medium

Description

A security vulnerability has been detected in Enderfga claw-orchestrator up to 3.7.0. The impacted element is the function validateRegex of the file claw-orchestrator/src/embedded-server.ts of the component Session Grep Endpoint. The manipulation of the argument body.pattern leads to inefficient regular expression complexity.

Recommendation

Update the @enderfga/claw-orchestrator package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@enderfga/claw-orchestrator
Anything's wrong? Let us know Last updated on July 09, 2026