Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-41329

35
FAUCET Score

OpenClaw versions prior to 2026.3.31 contain a critical sandbox bypass vulnerability that allows authenticated attackers to escalate privileges through manipulation of heartbeat context inheritance and the senderIsOwner parameter. The vulnerability exploits improper context validation mechanisms to circumvent sandbox restrictions and gain unauthorized elevated access. The vulnerability carries a CVSS severity rating of 9.9 CRITICAL with a network-based attack vector requiring only low complexity and low privilege access. The attack requires no user interaction and can compromise the entire system scope, resulting in complete compromise of confidentiality, integrity, and availability. The broader vulnerability landscape context indicates this poses a greater threat than approximately 99.89 percent of known CVEs. Currently, there is no evidence of active exploitation in the wild or public availability of functional exploit code. The vulnerability has not been assigned CVE/KEV status and remains inactive on threat intelligence watch lists. However, organizations running vulnerable versions should prioritize patching to OpenClaw 2026.3.31 or later due to the critical severity rating and relatively low exploitation barriers for motivated threat actors.

Impacted Technologies

VendorProductVersion(s)CPE
>= 0, < 2026.3.31CPE match
cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
< 2026.3.31CPE matchmatch criteria
cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*

CVSS Data

CVSS version used by this source: 4.0

9.0CRITICAL

CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
NETWORK
Attack Complexity
LOW
Attack Requirements
PRESENT
Privileges Required
LOW
User Interaction
NONE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
HIGH
SS Confidentiality
HIGH
SS Integrity
HIGH
SS Availability
HIGH
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.30%
Probability of exploitation in next 30 days
EPSS Percentile
22.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0030 is in the 9th percentile among its peer group of 1,124 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 1.0 Bluesky, 0.5 Mastodon, and 1.6 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

github_advisorypatch availablevia nvd_reference
View patch
npmpatch availablevia ghsa
Product: openclawFixed in: 2026.3.31

Vendor Advisories (1)

npmGHSA-g5cg-8x5w-7jpmcritical

OpenClaw: Heartbeat context inheritance bypasses sandbox via senderIsOwner escalation

Apr 2, 2026

References

github.com / openclaw/openclaw/commit/a30214a624946fc5c85c9558a27c1580172374fd
Patch
github.com / openclaw/openclaw/security/advisories/GHSA-g5cg-8x5w-7jpm
Vendor Advisory
vulncheck.com / advisories/openclaw-sandbox-bypass-via-heartbeat-context-inheritance-and-senderisowner-escalation
Third Party Advisory