Описание
OpenClaw versions prior to 2026.2.19 contain a path traversal vulnerability in the Feishu media download flow where untrusted media keys are interpolated directly into temporary file paths in extensions/feishu/src/media.ts. An attacker who can control Feishu media key values returned to the client can use traversal segments to escape os.tmpdir() and write arbitrary files within the OpenClaw process permissions.
Ссылки
- Patch
- Patch
- Patch
- MitigationVendor Advisory
- Third Party Advisory
Уязвимые конфигурации
EPSS
8.2 High
CVSS3
9.1 Critical
CVSS3
Дефекты
Связанные уязвимости
OpenClaw vulnerable to path traversal in Feishu media temp-file naming allows writes outside os.tmpdir()
Уязвимость функции os.tmpdir() сценария /feishu/src/media.ts ИИ-агента OpenClaw (ранее - ClawdBot или MoltBot), позволяющая нарушителю записывать произвольные файлы
EPSS
8.2 High
CVSS3
9.1 Critical
CVSS3