Incorrect Behavior Order: Validate Before Canonicalize Affecting openclaw package, versions <2026.8.1


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.13% (2nd percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-JS-OPENCLAW-20186829
  • published28 Sept 2026
  • disclosed26 Sept 2026
  • creditUnknown

Introduced: 26 Sep 2026

NewCVE-2026-100547  (opens in a new tab)
CWE-180  (opens in a new tab)

How to fix?

Upgrade openclaw to version 2026.8.1 or higher.

Overview

openclaw is a 🦞 OpenClaw — Personal AI Assistant

Affected versions of this package are vulnerable to Incorrect Behavior Order: Validate Before Canonicalize via incorrect classification of alternate file: URL spellings in the Agent Client Protocol (ACP) handler. Alternate but valid file: URL forms are treated as relative paths and incorrectly scoped to the session working directory, allowing an untrusted or compromised ACP peer to request a read of files outside that directory without triggering the approval prompt normally required for such paths. The result is disclosure of local file contents to the peer.

Note: This is only exploitable when an operator connects openclaw acp client to an untrusted or compromised ACP peer.

References

CVSS Base Scores

version 4.0
version 3.1