PT-2026-31979 · Openclaw · Openclaw
Edward-X
·
Published
2026-04-10
·
Updated
2026-04-10
·
CVE-2026-35668
CVSS v3.1
7.7
High
| AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N |
OpenClaw before 2026.3.24 contains a path traversal vulnerability in sandbox enforcement allowing sandboxed agents to read arbitrary files from other agents' workspaces via unnormalized mediaUrl or fileUrl parameter keys. Attackers can exploit incomplete parameter validation in normalizeSandboxMediaParams and missing mediaLocalRoots context to access sensitive files including API keys and configuration data outside designated sandbox roots.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openclaw