Description
OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-trust callers to reach internal network destinations blocked by OpenClaw policy. Attackers can send HTTP requests through the exec-server to access network resources that should have been restricted by configured policies.
Published: 2026-07-17
Score: 4.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

OpenClaw's sandbox exec-server was discovered to allow lower-trust callers to send HTTP requests that bypass the configured network policy, granting access to internal destinations that should have been blocked. The flaw corresponds to a CWE-918 weakness, undermining the integrity of network segmentation by letting attackers reach services protected by OpenClaw's policy gateways. The direct consequence is the potential compromise of confidential internal data and operations that rely on the network rules to isolate segments.

Affected Systems

The issue affects all OpenClaw releases older than version 2026.6.6 that include the exec-server component. Users running any pre-2026.6.6 build are vulnerable; no specific sub-versions are singled out beyond the general cutoff.

Risk and Exploitability

The CVSS score of 4.9 indicates moderate severity because the vulnerability does not grant elevated privileges or direct code execution, but it does provide a network policy bypass. An EPSS score of less than 1% shows that the likelihood of exploitation in the wild is low, and the flaw is not currently listed in the CISA KEV catalog. Attackers need only be able to send crafted HTTP requests to the exec-server endpoint from any host that can reach the OpenClaw service.

Generated by OpenCVE AI on August 3, 2026 at 02:52 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update OpenClaw to version 2026.6.6 or newer where the exec-server flaw has been removed.
  • If an upgrade cannot be applied immediately, restrict the exec-server to authenticated users only or disable it if it is not required for business processes.
  • Enforce network segmentation and firewalls to block outbound traffic from OpenClaw to resources that should remain inaccessible, thereby limiting the effect of the policy bypass.

Generated by OpenCVE AI on August 3, 2026 at 02:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 17 Jul 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 17 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Description OpenClaw versions before 2026.6.6 contain a network policy bypass vulnerability in the sandbox exec-server that allows lower-trust callers to reach internal network destinations blocked by OpenClaw policy. Attackers can send HTTP requests through the exec-server to access network resources that should have been restricted by configured policies.
Title OpenClaw < 2026.6.6 Network Policy Bypass via exec-server
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-918
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N'}

cvssV4_0

{'score': 4.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-17T10:45:41.782Z

Reserved: 2026-07-13T16:38:58.353Z

Link: CVE-2026-62201

cve-icon Vulnrichment

Updated: 2026-07-17T10:45:37.063Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T03:00:04Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)