← Zurück zur CVE-Suche

CVE-2026-41329

OpenClaw

Beschreibung

OpenClaw before 2026.3.31 contains a sandbox bypass vulnerability allowing attackers to escalate privileges via heartbeat context inheritance and senderIsOwner parameter manipulation. Attackers can exploit improper context validation to bypass sandbox restrictions and achieve unauthorized privilege escalation.

CVSS 9.9EPSS 0.298%Risiko 1.02
Quelle öffnen
Veröffentlicht
2026-04-21 00:16:31
Betroffene Versionen
<2026.3.31
Typ
Core software
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H