Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-43567

MEDIUM NVD
CVSS Score 6.5
Severity MEDIUM
Published May 05, 2026
Vendor unknown

Description

OpenClaw before 2026.4.10 contains a path traversal vulnerability in the screen_record tool's outPath parameter that bypasses workspace-only filesystem guards. Attackers can exploit this by specifying an outPath outside the workspace boundary to write files to unintended locations on the system.

References