CVE-2026-32038 is a critical sandbox network isolation bypass vulnerability affecting OpenClaw versions prior to 2026.2.24, allowing attackers to join another container's network namespace by configuring the docker.network parameter. Rated with a CVSS score of 9.8 (Critical), this vulnerability has a network attack vector and low attack complexity, requiring no privileges to achieve high impacts on confidentiality, integrity, and availability by bypassing network hardening controls. Currently, there is no evidence of active exploitation (KEV: No) and no public exploit code available, with community discussion remaining minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 2026.2.24CPE match | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* | ||
< 2026.2.24CPE matchmatch criteria | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.