PT-2026-26019 · Openclaw · Openclaw

·

CVE-2026-27545

·

Publicado

2026-02-26

·

Atualizado

2026-03-18

CVSS v4.0

8.7

Alta

VetorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions OpenClaw versions prior to 2026.2.26
Description OpenClaw is susceptible to an approval bypass issue within the system.run execution process. This allows attackers to execute commands from unexpected filesystem locations by manipulating writable parent symlinks in the current working directory after approval. Specifically, an attacker can modify mutable parent symlink path components between the approval and execution phases, redirecting command execution while maintaining the apparent working directory. The issue arises from the ability to bypass approval context for host=node executions by rebinding a writable parent symlink in the current working directory (cwd) after approval, preserving the visible cwd string. The vulnerability impacts command execution where an approved command for one filesystem location could be executed from a different location if a mutable parent symlink is altered between approval and execution. The vulnerable function is system.run.
Recommendations OpenClaw versions prior to 2026.2.26 should be updated to version 2026.2.26 or later.

Exploit

Correção

Link Following

Time Of Check To Time Of Use

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-05240
CVE-2026-27545
GHSA-F7WW-2725-QVW2

Produtos afetados

Openclaw