Browser trace/download output path handling allowed symlink-root and symlink-parent escapes from the managed temp root.
openclaw (npm)2026.2.24<= 2026.2.242026.2.25An attacker with relevant local foothold and ability to influence output paths could route writes outside the intended temp root via symlink traversal, leading to arbitrary file overwrite.
496a76c03ba85e15ea715e5a583e498ae04d36e3patched_versions is pre-set to the release (2026.2.25) so once npm 2026.2.25 is published, the advisory is published.
OpenClaw thanks @tdjackey for reporting.
{
"cwe_ids": [
"CWE-22",
"CWE-59"
],
"github_reviewed": true,
"github_reviewed_at": "2026-03-02T22:18:07Z",
"nvd_published_at": null,
"severity": "MODERATE"
}