#VU125068 Time-of-check Time-of-use (TOCTOU) Race Condition in OpenClaw - CVE-2026-27545
Published: April 7, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a remote user to execute an approved command from a different filesystem location.
The vulnerability exists due to time-of-check time-of-use race condition in the node system.run approval context for cwd handling when rebinding a writable parent symlink in cwd between approval and execution. A remote user can change a mutable parent symlink while preserving the visible cwd string to execute an approved command from a different filesystem location.
The issue affects host=node executions.