CVE-2026-102806
Received Received - Intake

OpenClaw Gateway Local Media Root Allowlist Bypass

Vulnerability report for CVE-2026-102806, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-29

Last updated on: 2026-09-29

Assigner: VulnCheck

Description

OpenClaw before 2026.9.5 contains an incorrect authorization vulnerability in the Gateway's local media root allowlist that breaks filesystem isolation between sandboxed sessions. Sandboxed sessions or untrusted content can cause the Gateway to read files from sibling session sandboxes or shared workspace directories through media pipeline functions that fail to restrict reads to the active session.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-29
Last Modified
2026-09-29
Generated
2026-09-29
AI Q&A
2026-09-29
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
openclaw openclaw to 2026.9.5 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-863 The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

OpenClaw before version 2026.9.5 has a vulnerability where sandboxed sessions can bypass filesystem isolation. The Gateway's local media root allowlist incorrectly authorizes reads, allowing untrusted content or sandboxed sessions to access files from sibling sandboxes or shared workspace directories through media pipeline functions.

Impact Analysis

This vulnerability allows unauthorized access to sensitive files across different sandboxed sessions or shared workspaces. Attackers could read confidential data, manipulate files, or escalate privileges by accessing restricted directories through media processing functions.

Compliance Impact

This vulnerability could lead to unauthorized data access, violating GDPR's data protection principles and HIPAA's confidentiality requirements. It risks exposing sensitive personal or health information, potentially resulting in legal penalties and loss of trust.

Mitigation Strategies

Upgrade OpenClaw to version 2026.9.5 or later to address the sandbox isolation bypass vulnerability in media pipelines.

Review and restrict media root allowlists to ensure they only grant access to authorized directories within the active session's sandbox.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-102806. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart