CRITICAL🇵🇱 Wersja polska

CVE-2026-41329

CVSS 9.0v4.0pub. 2026-04-21upd. 2026-04-27

OpenClaw before 2026.3.31 contains a sandbox bypass vulnerability allowing attackers to escalate privileges via heartbeat context inheritance and senderIsOwner parameter manipulation. Attackers can exploit improper context validation to bypass sandbox restrictions and achieve unauthorized privilege escalation.

🤖 AI Analysis
How it works

The vulnerability results from improper context validation (CWE-648 — improper use of privileges) during heartbeat context inheritance. An attacker manipulates the senderIsOwner parameter, allowing them to pass a false owner context within heartbeat communication. As a result, the sandbox mechanism incorrectly considers the attacker an authorized owner and grants them elevated privileges, bypassing imposed security restrictions.

Impact

An attacker can achieve unauthorized privilege escalation, potentially gaining full control over the application or system, and also affecting the confidentiality, integrity, and availability of both local and related system resources.

Mitigation & patch

OpenClaw should be updated to version 2026.3.31 or later. A patch is available in the project repository (commit a30214a624946fc5c85c9558a27c1580172374fd). Details in the official security advisory from the vendor (GHSA-g5cg-8x5w-7jpm).

Who is affected

OpenClaw in versions before 2026.3.31

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Openclaw

    APP
    Openclaw
    < 2026.3.31
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
LPE
CWE
References

Related vulnerabilities

CVE-2026-43585CRITICAL9.2PL ✓same product

OpenClaw: ominięcie uwierzytelniania przez nieodświeżane tokeny bearer po rotacji SecretRef

CVE-2026-43578CRITICAL9.1PL ✓same product

OpenClaw: privilege escalation przez pominięcie zdarzeń async exec w heartbeat

CVE-2026-43575CRITICAL9.2PL ✓same product

OpenClaw: Authentication Bypass w trasie pomocniczej sandbox noVNC

CVE-2026-43581CRITICAL9.0PL ✓same product

OpenClaw: ekspozycja Chrome DevTools Protocol poza sandbox

CVE-2026-44109CRITICAL9.2PL ✓same product

OpenClaw — Auth Bypass w walidacji Feishu webhook umożliwia RCE