CVE-2026-31990Disclosure(openclaw / openclaw)

LOWCVSS 7.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openclaw openclaw systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw versions prior to 2026.3.2 contain a vulnerability in the stageSandboxMedia function in which it fails to validate destination symlinks during media staging, allowing writes to follow symlinks outside the sandbox workspace. Attackers can exploit this by placing symlinks in the media/inbound directory to overwrite arbitrary files on the host system outside sandbox boundaries.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-59

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • Peaked 2d ago at 3 mentions (2026-03-19); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-03-19: 3Mentions · 2026-03-20: 1Mentions · 2026-04-24: 1Patch / Workaround · 2026-04-24: 1Technical Details · 2026-03-19: 2Technical Details · 2026-03-20: 1Technical Details · 2026-04-24: 103-1903-2004-24
Signal classification3 categories
Disclosure
240.0%
General
240.0%
Patch
120.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-193
Disclosure2General1
2026-03-201
General1
2026-04-241
Patch1
Full discourse5 posts
  • SignalOS@ew330952
    Patch

    2/2 CVE-2026-31990 patched in 2026.3.2 (Mar 3), GHSA-fv94-qvg8-xqpw in 2026.3.31—but release notes say only “sandbox symlink escape fix,” masking version-specific fixes. Users enabling Grok image tools may stay vulnerable, assuming one fix suffices.

    Post summary

    The message notes that CVE-2026-31990 was patched in two releases, but the bug fix may not cover all users, especially those using Grok image tools, implying a potential lingering vulnerability.

    0000051
    14 followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-31990 📊 Severity: 6.1 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-31990 #CVE-2026-31990 #CVE #Medium  #CyberSecurity #InfoSec https://t.co/kk3MqbVYx3

    Post summary

    The tweet merely announces the CVE-2026-31990 with a severity score and links to the NVD entry, providing no further technical or exploitation details.

    0000023
    108 followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-31990 - OpenClaw - OpenClaw - https://www.redpacketsecurity.com/cve-alert-cve-2026-31990-openclaw-openclaw/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-31990 #openclaw #

    Post summary

    The tweet merely announces the existence of CVE‑2026‑31990 for OpenClaw, offering no additional technical details or evidence of exploitation.

    0000078
    3.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-31990 OpenClaw versions prior to 2026.3.2 contain a vulnerability in the stageSandboxMedia function in which it fails to validate destination symlinks during media staging,… https://www.cve.org/CVERecord?id=CVE-2026-31990

    Post summary

    The text announces a vulnerability in OpenClaw’s stageSandboxMedia function that fails to validate destination symlinks, detailing affected versions.

    0000095
    56.7K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-31990 Symlink Validation Bypass in OpenClaw Allows Arbitrary File Overwrite https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-31990

    Post summary

    OpenClaw has a symlink validation bypass that allows arbitrary file overwrite, as disclosed in CVE-2026-31990; no PoC, exploit tools, or patch details are provided.

    0000042
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more