clawsmith.com/signal/cve-2026-42434-sandbox-escape-host-node-routing
⚠ IssueWide OpenCoreLive
CVE-2026-42434: OpenClaw Sandbox Escape via host=node Parameter Override (CVSS 8.8)
Sandbox escape in OpenClaw v2026.4.5-2026.4.10. Sandboxed agents override exec routing by specifying host=node, bypassing sandbox to execute on remote nodes. CVSS 8.8. Enables RCE, full host compromise, lateral movement.
Product Idea from this Signal
A CLI tool that scans a running OpenClaw instance for active CVEs, malicious skills, and supply chain tampering before they get exploited
807 ▲CLIOPEN-SOURCESECURITYDEVTOOLAUDIT
CompetitiveView Opportunity →
Score Breakdown
GitHub
4
Social Proof 1 sources
Frequently Asked Questions
Virality Score
4
across 1 platforms
Details
Signalissue
EcosystemCore
Sources1
Platforms1
Updated31d ago
Trend→ stable
Top ideas
All ideas →Related signals
All signals →