Skip to content

OpenClaw's image tool bypasses tools.fs.workspaceOnly on sandbox mount paths and exfiltrates out-of-workspace images

Moderate severity GitHub Reviewed Published Feb 24, 2026 in openclaw/openclaw • Updated Mar 30, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts