Junglewise Threat Intelligence

OpenClaw insecure file permissions in config recovery

Severity: low · CVSS 3.1 · Published 2026-06-16

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is a configuration management tool used to manage application settings and credentials. A flaw in the config recovery feature can restore the openclaw.json configuration file with overly permissive access rights, potentially allowing other users on shared systems to read sensitive configuration data and credentials.

Technical details

This vulnerability is an insecure file permissions issue (CWE-732/CWE-276) in OpenClaw's config recovery functionality. When configuration recovery is triggered, the restored openclaw.json file is created with overly broad file permissions. A local attacker on a shared host can exploit this by accessing the recovered config file to read sensitive configuration data. The vulnerability requires local access and is only exploitable when the recovery feature is enabled and reachable. OpenClaw before version 2026.4.24 is affected; version 2026.4.24 and later contain the fix.

Affected products

  • OpenClaw OpenClaw before 2026.4.24

Timeline

  • 2026-05-28: disclosed
  • 2026-04-24: patched: Version 2026.4.24 contains the fix

References

Related threats