Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-35570

28
FAUCET Score

CVE-2026-35570 is a logic flaw in OpenClaude versions prior to 0.5.1, an open-source coding-agent command line interface for cloud and local model providers. The vulnerability exists in the bashToolHasPermission() function within the bash permissions module, where the sandbox auto-allow feature bypasses critical path constraint validation, allowing attackers to use path traversal sequences to access restricted files and directories. The vulnerability carries a CVSS 3.1 score of 8.4 (HIGH) and requires local access with low privileges to exploit. The attack is deterministic with no user interaction required, and successful exploitation could result in high confidentiality and integrity impacts across multiple components of the system. The FAUCET risk score of 50.0 reflects moderate overall risk when considering environmental factors. There is currently no evidence of active exploitation in the wild, as indicated by the inactive status on the CISA KEV catalog. The EPSS score of 0.00006 suggests exploitation likelihood is very low relative to the broader CVE population. The vulnerability has been patched in version 0.5.1, and organizations using OpenClaude should prioritize updating to this version or later to remediate the risk.

Impacted Technologies

VendorProductVersion(s)CPE
< 0.5.1CPE matchmatch criteria
cpe:2.3:a:gitlawb:openclaude:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.4HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
NONE
Exploitability Score
2.0
Impact Score
5.8
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.23%
Probability of exploitation in next 30 days
EPSS Percentile
14.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0023 is in the 45th percentile among its peer group of 17,061 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

npmpatch availablevia ghsa
Product: @gitlawb/openclaudeFixed in: 0.5.1

Vendor Advisories (1)

npmGHSA-m6rx-7pvw-2f73high

OpenClaude: Sandbox Bypass via Early-Exit Logic Flaw Allows Path Traversal

Apr 21, 2026

References

github.com / Gitlawb/openclaude/commit/7002cb302b78ea2a19da3f26226de24e2903fa1d
Patch
github.com / Gitlawb/openclaude/security/advisories/GHSA-m6rx-7pvw-2f73
ExploitMitigationVendor Advisory