Path traversal in OpenClaw - #VU135913

 

Path traversal in OpenClaw - #VU135913

Published: June 30, 2026


Vulnerability identifier: #VU135913
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to bypass authorization restrictions and execute or persist actions beyond the caller's intended authorization.

The vulnerability exists due to path traversal in exec allowlist glob matching when processing configured input paths. A remote user can supply a crafted path to bypass allowlist restrictions and execute or persist actions beyond the caller's intended authorization.

Only instances where the affected feature is enabled and reachable are vulnerable, and practical impact depends on operator configuration and whether lower-trust input can reach the affected path.


Affected software

OpenClaw

Remediation

Install security update from vendor's website.

OpenClaw - update to 2026.5.18

External References

Related Security Bulletins