CVE-2026-33572 affects OpenClaw versions prior to 2026.2.17, stemming from overly broad default permissions on session transcript JSONL files, which allows local users to read their contents. This vulnerability is rated 8.4 HIGH, indicating that attackers with local access can easily extract sensitive information, including secrets from tool output, leading to high confidentiality, integrity, and availability impacts. Although there is no evidence of active exploitation, no public exploit code (Metasploit, Nuclei, ExploitDB), or KEV listing, the vulnerability has generated some community discussion across social media platforms.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 2026.2.17CPE match | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* | ||
< 2026.2.17CPE matchmatch criteria | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.