Link following in OpenClaw - #VU128768
Published: May 1, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to improper link resolution before file access in resolveSandboxedMediaSource() and resolvePreferredOpenClawTmpDir() when processing media paths through the fallback tmp flow. A remote attacker can submit a crafted media path via a symlink alias tmp root to disclose sensitive information.
Exploitation requires the fallback tmp root to be a symlink alias and occurs when /tmp/openclaw is unavailable or unsafe.