PT-2026-26390 · Openclaw · Openclaw
Q1Uf3Ng
·
Published
2026-03-03
·
Updated
2026-03-20
·
CVE-2026-32008
CVSS v4.0
7.1
High
| Vector | AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
OpenClaw versions prior to 2026.2.21
Description
The software contains an improper URL scheme validation issue in the
assertBrowserNavigationAllowed() function. Authenticated users with browser-tool access can navigate to file:// URLs, potentially allowing attackers to access local files readable by the OpenClaw process user through browser snapshot and extraction actions, leading to sensitive data exfiltration. The vulnerable component is located in src/browser/navigation-guard.ts. The issue arises because the assertBrowserNavigationAllowed() function only validated http: and https: network targets, implicitly allowing other schemes. An attacker with valid gateway credentials and browser-tool access can exfiltrate local files readable by the OpenClaw process user.Recommendations
OpenClaw versions prior to 2026.2.21 should be updated to version 2026.2.21 or later. Reject unsupported navigation schemes and allow only explicitly safe non-network URLs. OpenClaw now blocks non-network schemes (such as
file:, data:, and javascript:) while preserving about:blank.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openclaw