
LobsterAI 2026.5.27–2026.9.23 hit by CVE-2026-108156 (CVSS 7.1). • Trusted openclawSourceDir in _meta.json • Uninstall deletes arbitrary user directories • Scanner skips the file entirely https://thecircuitry.to/article/lobsterai-versions-2026527-to-2026923-contain-high-severity-directory-deletion-f-mv1990gt https://t.co/Tgj1ec9DER
