---
id: CVE-2026-32846
title: >-
  OpenClaw before 2026.3.28 contains a path traversal vulnerability in media
  parsing that allows attackers to read arbitrary files by bypassing path
  validation in the isLikelyLocalPath() and isValidMedia() functions
summary: >-
  OpenClaw before 2026.3.28 contains a path traversal vulnerability in media
  parsing that allows attackers to read arbitrary files by bypassing path
  validation in the isLikelyLocalPath() and isValidMedia() functions. Attackers
  can exploit …
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-22
vendor: openclaw
product: openclaw
affected:
  - openclaw <= 2026.3.23
published: '2026-03-26'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T16:17:13.210'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-32846'
references:
  - url: >-
      https://github.com/openclaw/openclaw/commit/4797bbc5b96e2cca5532e43b58915c051746fe37
    label: disclosure@vulncheck.com
  - url: 'https://github.com/openclaw/openclaw/pull/54642'
    label: disclosure@vulncheck.com
  - url: >-
      https://github.com/openclaw/openclaw/security/advisories/GHSA-f6pf-4gjx-c94r
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/openclaw-media-parsing-path-traversal-to-arbitrary-file-read
    label: disclosure@vulncheck.com
  - url: 'https://github.com/openclaw/openclaw/pull/54642'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'yes'
  technicalImpact: partial
  timestamp: '2026-03-27T14:43:02.829268Z'
scores:
  nvd: 7.5
  cna: 8.7
epss: 0.00734
epssPercentile: 0.52945
ingestedAt: '2026-10-08T16:52:14.676Z'
---

## Overview

OpenClaw before 2026.3.28 contains a path traversal vulnerability in media parsing that allows attackers to read arbitrary files by bypassing path validation in the isLikelyLocalPath() and isValidMedia() functions. Attackers can exploit incomplete validation and the allowBareFilename bypass to reference files outside the intended application sandbox, resulting in disclosure of sensitive information including system files, environment files, and SSH keys.

## Affected

- `openclaw <= 2026.3.23`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
