ended4월 3일· 1 sources

OpenClaw SSH Vulnerability Enables Sandbox Escape and Arbitrary File Access

OpenClaw SSH 취약점: 심볼릭 링크 결함으로 샌드박스 탈출 가능

Why it matters

This critical vulnerability in OpenClaw, a framework for deploying AI agents, allows attackers to escape sandbox restrictions and access arbitrary files on both local and remote systems. The flaw can be exploited through prompt injection, meaning adversaries can manipulate AI agent interactions to trigger malicious file operations. With a CVSS score of 8.8, this represents a severe risk to any organization using OpenClaw for autonomous agent deployment.

1
Sources
+0
24h
Growth
171d
Active
OpenClawSymlink escapeSSH sandboxDirectory traversalSandbox escapePrompt injection

Sources

Related Issues