#VU125078 Link following in OpenClaw
Published: April 7, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a local user to modify files outside the configured workspace or sandbox boundary.
The vulnerability exists due to improper link resolution before file access in symlink alias handling for workspace-only write flows when processing write paths with dangling symlink hops under missing-target conditions. A local user can supply a crafted path to modify files outside the configured workspace or sandbox boundary.
This issue affects workspace-only write flows, including apply_patch.