Openclaw · Openclaw · CVE-2026-32046
**Name of the Vulnerable Software and Affected Versions**
OpenClaw versions prior to 2026.2.21
**Description**
The software contains an improper sandbox configuration that could allow attackers to execute arbitrary code. This is achieved by exploiting renderer-side issues without needing to escape the sandbox. The OS-level sandbox protections within the Chromium browser container are disabled, enabling code execution on the host system.
**Recommendations**
Update OpenClaw to version 2026.2.21 or later.