Security Advisory

CVE-2026-32046

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-21 00:42:20
Last updated 2026-03-23 17:44:28
Assigner VulnCheck
State PUBLISHED

Description

OpenClaw versions prior to 2026.2.21 contain an improper sandbox configuration vulnerability that allows attackers to execute arbitrary code by exploiting renderer-side vulnerabilities without requiring a sandbox escape. Attackers can leverage the disabled OS-level sandbox protections in the Chromium browser container to achieve code execution on the host system.