<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T19:54:36.026302+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-05240</id>
    <title>bdu:2026-05240</title>
    <updated>2026-10-03T19:54:36.108510+00:00</updated>
    <content>bdu:2026-05240</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-05240"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-27545</id>
    <title>BREW-openclaw-cli-CVE-2026-27545 — OpenClaw: Node system.run approval bypass via parent-symlink cwd rebind</title>
    <updated>2026-10-03T19:54:36.108549+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: openclaw-cli</p>
<p>## Summary
For `host=node` executions, approval context could be bypassed after approval-time by rebinding a writable parent symlink in `cwd` while preserving the visible `cwd` string.</p>
<p>## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected: `&lt;= 2026.2.25`
- Fixed: `&gt;= 2026.2.26` (planned next npm release)</p>
<p>## Impact
A command approved for one filesystem location could execute from a different location if a mutable parent symlink changed between approval and execution.</p>
<p>## Fix
- Added immutable approval-time plan preparation (`system.run.prepare`) and `systemRunPlanV2` canonical fields (`argv`, `cwd`, `agentId`, `sessionKey`).
- Enforced canonical plan values through approval request storage and forwarding-time sanitization.
- Rejected mutable parent-symlink path components during approval-plan building to block symlink rebind bypass.
- Follow-up refactors centralized command catalogs and approval context/error handling to reduce future drift.</p>
<p>## Fix Commit(s)
- `78a7ff2d50fb3bcef351571cb5a0f21430a340c1`
- `d82c042b09727a6148f3ca651b254c4a677aff26`
- `d06632ba45a8482192792c55d5ff0b2e21abb0a7`
- `4e690e09c746408b5e27617a20cb3fdc5190dbda`
- `4b4718c8dfce2e2c48404aa5088af7c013bed60b`</p>
<p>## Release Process Note
`patched_versions` is pre-set to the planned next release (`2026.2.26`). Once npm `openclaw@2026.2.26` is published, publish this advisory directly without further version-field edits.</p>
<p>OpenClaw thanks @tdjackey for reporting.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-27545"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2026-16382</id>
    <title>cnvd-2026-16382</title>
    <updated>2026-10-03T19:54:36.108598+00:00</updated>
    <content>cnvd-2026-16382</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2026-16382"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-329378</id>
    <title>EUVD-2026-329378</title>
    <updated>2026-10-03T19:54:36.108614+00:00</updated>
    <content>EUVD-2026-329378</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-329378"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-27545</id>
    <title>fkie_cve-2026-27545</title>
    <updated>2026-10-03T19:54:36.108625+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenClaw versions prior to 2026.2.26 contain an approval bypass vulnerability in system.run execution that allows attackers to execute commands from unintended filesystem locations by rebinding writable parent symlinks in the current working directory after approval. An attacker can modify mutable parent symlink path components between approval and execution time to redirect command execution to a different location while preserving the visible working directory string.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-27545"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f7ww-2725-qvw2</id>
    <title>GHSA-f7ww-2725-qvw2 — OpenClaw: Node system.run approval bypass via parent-symlink cwd rebind</title>
    <updated>2026-10-03T19:54:36.108648+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: openclaw</p>
<p>## Summary
For `host=node` executions, approval context could be bypassed after approval-time by rebinding a writable parent symlink in `cwd` while preserving the visible `cwd` string.</p>
<p>## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected: `&lt;= 2026.2.25`
- Fixed: `&gt;= 2026.2.26` (planned next npm release)</p>
<p>## Impact
A command approved for one filesystem location could execute from a different location if a mutable parent symlink changed between approval and execution.</p>
<p>## Fix
- Added immutable approval-time plan preparation (`system.run.prepare`) and `systemRunPlanV2` canonical fields (`argv`, `cwd`, `agentId`, `sessionKey`).
- Enforced canonical plan values through approval request storage and forwarding-time sanitization.
- Rejected mutable parent-symlink path components during approval-plan building to block symlink rebind bypass.
- Follow-up refactors centralized command catalogs and approval context/error handling to reduce future drift.</p>
<p>## Fix Commit(s)
- `78a7ff2d50fb3bcef351571cb5a0f21430a340c1`
- `d82c042b09727a6148f3ca651b254c4a677aff26`
- `d06632ba45a8482192792c55d5ff0b2e21abb0a7`
- `4e690e09c746408b5e27617a20cb3fdc5190dbda`
- `4b4718c8dfce2e2c48404aa5088af7c013bed60b`</p>
<p>## Release Process Note
`patched_versions` is pre-set to the planned next release (`2026.2.26`). Once npm `openclaw@2026.2.26` is published, publish this advisory directly without further version-field edits.</p>
<p>OpenClaw thanks @tdjackey for reporting.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f7ww-2725-qvw2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0551</id>
    <title>WID-SEC-W-2026-0551 — OpenClaw: Mehrere Schwachstellen</title>
    <updated>2026-10-03T19:54:36.108680+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen oder andere nicht näher spezifizierte Angriffe durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0551"/>
  </entry>
</feed>
