<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T19:04:41.222361+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-43529</id>
    <title>BREW-openclaw-cli-CVE-2026-43529 — OpenClaw: TOCTOU read in exec script preflight</title>
    <updated>2026-10-04T19:04:41.286511+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: openclaw-cli</p>
<p>## Summary</p>
<p>OpenClaw's exec script preflight validator previously validated and then read a script by mutable pathname. A local race could swap the path between validation and read, causing preflight analysis to inspect a different file identity than the one that passed the workspace boundary check.</p>
<p>## Affected Packages / Versions</p>
<p>- Package: `openclaw`
- Ecosystem: npm
- Affected versions: `&lt; 2026.4.10`
- Patched versions: `&gt;= 2026.4.10`</p>
<p>## Impact</p>
<p>The impact is limited. This was not arbitrary full-file disclosure through the preflight error path. The validator only surfaced derived preflight content, such as a matched token, a line number, or the first non-empty JavaScript line in one branch. Exploitation also required the ability to mutate the relevant workspace path during the preflight window.</p>
<p>Still, this was a real TOCTOU boundary bug in code that is supposed to reason about workspace-local script files before execution. A file identity that passed the initial boundary validation could differ from the identity that was later read for preflight analysis.</p>
<p>## Technical Details</p>
<p>The vulnerable flow performed separate path validation and file reads in `validateScriptFileForShellBleed`. Because the read was path-based, an attacker with write access to the workspace path could race replacement of the target after validation but before preflight read.</p>
<p>## Fix</p>
<p>PR #62333 replaced the check-then-read flow with a pinned safe-open/read path using the shared `readFileWithinRoot…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-43529"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-308522</id>
    <title>EUVD-2026-308522</title>
    <updated>2026-10-04T19:04:41.286588+00:00</updated>
    <content>EUVD-2026-308522</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-308522"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-43529</id>
    <title>fkie_cve-2026-43529</title>
    <updated>2026-10-04T19:04:41.286605+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenClaw before 2026.4.10 contains a time-of-check-time-of-use vulnerability in the validateScriptFileForShellBleed function that allows local attackers to bypass workspace boundary checks. An attacker with workspace write access can race-condition swap the target file between validation and preflight read, causing the validator to inspect a different file identity than the one that passed the initial boundary check.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-43529"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-gj9q-8w99-mp8j</id>
    <title>GHSA-gj9q-8w99-mp8j — OpenClaw: TOCTOU read in exec script preflight</title>
    <updated>2026-10-04T19:04:41.286630+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: openclaw</p>
<p>## Summary</p>
<p>OpenClaw's exec script preflight validator previously validated and then read a script by mutable pathname. A local race could swap the path between validation and read, causing preflight analysis to inspect a different file identity than the one that passed the workspace boundary check.</p>
<p>## Affected Packages / Versions</p>
<p>- Package: `openclaw`
- Ecosystem: npm
- Affected versions: `&lt; 2026.4.10`
- Patched versions: `&gt;= 2026.4.10`</p>
<p>## Impact</p>
<p>The impact is limited. This was not arbitrary full-file disclosure through the preflight error path. The validator only surfaced derived preflight content, such as a matched token, a line number, or the first non-empty JavaScript line in one branch. Exploitation also required the ability to mutate the relevant workspace path during the preflight window.</p>
<p>Still, this was a real TOCTOU boundary bug in code that is supposed to reason about workspace-local script files before execution. A file identity that passed the initial boundary validation could differ from the identity that was later read for preflight analysis.</p>
<p>## Technical Details</p>
<p>The vulnerable flow performed separate path validation and file reads in `validateScriptFileForShellBleed`. Because the read was path-based, an attacker with write access to the workspace path could race replacement of the target after validation but before preflight read.</p>
<p>## Fix</p>
<p>PR #62333 replaced the check-then-read flow with a pinned safe-open/read path using the shared `readFileWithinRoot…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-gj9q-8w99-mp8j"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1161</id>
    <title>WID-SEC-W-2026-1161 — OpenClaw: Mehrere Schwachstellen</title>
    <updated>2026-10-04T19:04:41.286670+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um erweiterte Rechte zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten offenzulegen oder zu manipulieren oder andere, nicht näher spezifizierte Angriffe durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1161"/>
  </entry>
</feed>
