
CVE-2026-32977 OpenClaw before 2026.3.11 contains a sandbox boundary bypass vulnerability in the fs-bridge writeFile commit step that uses an unanchored container path during the fi… https://www.cve.org/CVERecord?id=CVE-2026-32977
Post summary
The CVE‑2026‑32977 vulnerability in OpenClaw involves a sandbox boundary bypass via an unanchored container path in the fs-bridge writeFile commit step, with no evidence of PoC, exploit, patch, or active exploitation.
