Description
OpenClaw before 2026.4.25 contains a path traversal vulnerability in memory-core artifact loading where workspace state influences local package root resolution. Attackers with access to affected workspaces can load memory-core artifacts from unintended local locations, potentially executing malicious code or accessing sensitive data.
Problem types
Uncontrolled Search Path Element
Product status
Any version before 2026.4.25
2026.4.25 (semver)
Credits
侯海飞 (@feynman-hou)
References
github.com/...enclaw/security/advisories/GHSA-v8cx-933x-r976 (GitHub Security Advisory (GHSA-v8cx-933x-r976))
www.vulncheck.com/...oading-via-fake-package-root-resolution