CVE-2026-44113Disclosure(openclaw / openclaw)

LOWCVSS 6.3 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw before 2026.4.22 contains a time-of-check/time-of-use race condition in the OpenShell filesystem bridge that allows attackers to read files outside the intended mount root. Attackers can exploit symlink swaps during filesystem operations to bypass sandbox restrictions and access unauthorized file contents.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-367

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-05-15); latest day: 1
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-05-06: 1Mentions · 2026-05-07: 1Mentions · 2026-05-15: 2Mentions · 2026-05-18: 1Technical Details · 2026-05-06: 1Technical Details · 2026-05-07: 1Technical Details · 2026-05-15: 1Technical Details · 2026-05-18: 105-0605-0705-1505-18
Signal classification2 categories
Disclosure
360.0%
General
240.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-05-061
General1
2026-05-071
Disclosure1
2026-05-152
Disclosure1General1
2026-05-181
Disclosure1
Full discourse5 posts
  • HumanAIFusion@humanaifusion
    Disclosure

    (3/6) CVE-2026-44113 | TOCTOU Read Escape | CVSS 7.7 HIGH OpenClaw: sandbox read redirected to host files via symlink swap. Hermes-Agent: MEMORY.md, USER.md, .env, SSH keys — all reachable. Your agent’s persistent memory is a high-value exfil target.

    Post summary

    CVE‑2026‑44113 is a high‑severity TOCTOU read escape vulnerability affecting OpenClaw and Hermes‑Agent, enabling data exfiltration via symlink swapping, but the post provides no PoC, exploitation tools, evidence of active attacks, or patch information.

    3001080
    12 followersView on X
  • إبراهيم بوحيمد | Ibrahim Buhaimed@buhaimedi
    Disclosure

    📍 CVE-2026-44113 نفس منطق TOCTOU بس عكس الاتجاه — قراءة بدل كتابة. النظام يفحص المسار ويتأكد إنه ملف مسموح للمستخدم يقرأه. المهاجم يبدّل المسار بعد الفحص بـ Symlink لملف حساس (كلمة مرور، مفتاح تشفير). النظام يقرأ الملف الحساس ويعطيه للمهاجم.

    Post summary

    CVE-2026‑44113 is a TOCTOU race condition that permits attackers to read sensitive files by exploiting a symlink after path verification.

    10000191
    49.3K followersView on X
  • Brandon()@brandonbango
    General

    OpenClaw Chain Vulnerabilities Expose 245,000 Public AI Agent Servers to Attack CVE-2026-44112 (CVSS 9.6 – Critical) CVE-2026-44115 (CVSS 8.8 – High) CVE-2026-44118 (CVSS 7.8 – High) CVE-2026-44113 (CVSS 7.7 – High)

    Post summary

    OpenClaw Chain vulnerabilities have been disclosed with high CVSS scores, but the post lacks specific technical details, exploitation information, or patch guidance.

    0000076
    121 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-44113 OpenClaw before 2026.4.22 contains a time-of-check/time-of-use race condition in the OpenShell filesystem bridge that allows attackers to read files outside the inten… https://www.cve.org/CVERecord?id=CVE-2026-44113

    Post summary

    The text announces a new vulnerability (CVE‑2026‑44113) involving a race condition that permits unauthorized file reads, but contains only a brief description without any PoC, patch, or exploitation evidence.

    0000089
    57.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-44113 Time-of-Check/Time-of-Use Race Condition in OpenClaw OpenShell Filesystem Bridge https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-44113

    Post summary

    The text announces CVE‑2026‑44113, describing it as a Time‑of‑Check/Time‑of‑Use race condition affecting the OpenClaw OpenShell Filesystem Bridge and links to a detail page.

    0000042
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more