Execution with unnecessary privileges in OpenClaw - #VU128841
Published: May 1, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote attacker to facilitate container breakout after compromising a process in an affected container.
The vulnerability exists due to execution with unnecessary privileges in scripts/e2e/ and scripts/docker/ Dockerfiles when running containers built from the affected images. A remote attacker can compromise a process in the container to facilitate container breakout after compromising a process in an affected container.
Test images share the same base image family as production images, creating a risk of accidental deployment of root-running images.