
CVE-2026-35658 OpenClaw before 2026.3.2 contains a filesystem boundary bypass vulnerability in the image tool that fails to honor tools.fs.workspaceOnly restrictions. Attackers can … https://www.cve.org/CVERecord?id=CVE-2026-35658
Post summary
The post reveals a filesystem boundary bypass vulnerability in OpenClaw’s image tool, providing technical details but no PoC, exploit code, or evidence of active exploitation.
