Security Advisory

CVE-2026-32046

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-03-21 00:42:20
Last updated 2026-06-23 16:14:57
Assigner VulnCheck
CVSS score 4.8
State PUBLISHED

Description

OpenClaw versions prior to 2026.2.21 contain an improper sandbox configuration vulnerability that allows attackers to execute arbitrary code by exploiting renderer-side vulnerabilities without requiring a sandbox escape. Attackers can leverage the disabled OS-level sandbox protections in the Chromium browser container to achieve code execution on the host system.