CVE-2026-32018
OpenClaw versions prior to 2026.2.19 contain a race condition vulnerability in concurrent updateRegistry and removeRegistryEntry operations for sandbox containers and browsers. Attackers can exploit unsynchronized read-modify-write operations without locking to cause registry updates to lose data, resurrect removed entries, or corrupt sandbox state affecting list, prune, and recreate operations.
Vendor
-
Product
-
CWE
Yayın Tarihi
2026-03-19 22:16:35
Güncelleme
2026-03-20 13:39:46
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-