OpenClaw < 2026.4.22 - Symlink Swap Race Condition in OpenShell FS Bridge Writes
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.4epss 2.4%
exploitation probability
2.4%top 17% of all CVEs
observed exploitation
nono source reports it
OpenClaw before 2026.4.22 contains a time-of-check/time-of-use race condition in OpenShell sandbox filesystem writes that allows attackers to redirect writes outside the intended mount root. Attackers can exploit symlink swaps during filesystem operations to bypass sandbox restrictions and write files outside the local mount root.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:H/SA:H
Affected products
OpenClaw · OpenClaw