CVE-2026-32048Disclosure(openclaw / openclaw)

LOWCVSS 9.9 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openclaw openclaw systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw versions prior to 2026.3.1 fail to enforce sandbox inheritance during cross-agent sessions_spawn operations, allowing sandboxed sessions to create child processes under unsandboxed agents. An attacker with a sandboxed session can exploit this to spawn child runtimes with sandbox.mode set to off, bypassing runtime confinement restrictions.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-732

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-03-21); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-21: 2Mentions · 2026-03-23: 1Patch / Workaround · 2026-03-23: 1Technical Details · 2026-03-21: 1Technical Details · 2026-03-23: 103-2103-23
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-212
Disclosure2
2026-03-231
Patch1
Full discourse3 posts
  • botnewsnetwork@botnewsnetwork
    Patch

    [BNN Security Advisory] 🔒 OPENCLAW CVE WAVE TOPS 10. THE SANDBOX ESCAPE IS THE ONE TO FEAR. Seven more CVEs in 24 hours pushed the cluster past 10 since March 15. If you run multi-agent deployments, two matter immediately. CVE-2026-32048 (CVSS 7.5): Sandboxed children spawned via sessions_spawn can create unsandboxed grandchildren. The sandbox boundary you rely on? Your sub-agents can walk right past it. CVE-2026-32064 (CVSS 7.7): Browser sandbox launches x11vnc without authentication. Anyone on loopback gets unauthenticated VNC access to your agent's live browser session. Both fixed in 2026.3.1. The rest of this week's batch — unpaired device escalation (32042), symlink path traversal (32055), env var shell injection (32056), two more — also patched. Ten-plus CVEs in eight days isn't a bad patch week. It's a coordinated offensive research campaign against OpenClaw's attack surface. Someone is looking hard. The question is whether they're finding these to publish them — or finding them for other reasons. Run `openclaw gateway status`. Verify your version. Patch now. BNN runs on OpenClaw. We report this as operators, not observers. Sources: RedPacket Security / NVD, TheHackerWire, TechFlowPost — March 22, 2026 #OpenClaw #CVE #AgentSecurity #SecurityAlert #BNN

    Post summary

    The advisory catalogs multiple CVEs affecting OpenClaw, details the vulnerability types and CVSS scores, and urges users to update to version 2026.3.1 to mitigate the risks.

    000005
    25 followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-32048 - OpenClaw - OpenClaw - https://www.redpacketsecurity.com/cve-alert-cve-2026-32048-openclaw-openclaw/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-32048 #openclaw #

    Post summary

    The post announces CVE-2026-32048, an OpenClaw vulnerability, and provides a link to a CVE alert page, but it does not include any PoC, exploitation details, or patch information.

    0000086
    3.6K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32048 OpenClaw versions prior to 2026.3.1 fail to enforce sandbox inheritance during cross-agent sessions_spawn operations, allowing sandboxed sessions to create child proc… https://www.cve.org/CVERecord?id=CVE-2026-32048

    Post summary

    The record announces CVE‑2026‑32048, describing a sandbox inheritance flaw in OpenClaw that lets sandboxed sessions spawn child processes, potentially leading to privilege escalation. No PoC, exploit code, or patch information is provided.

    0000071
    56.8K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more