{"id":"CVE-2026-108156","summary":"LobsterAI 2026.5.27 through 2026.9.23 Arbitrary Directory Deletion via Skill _meta.json","details":"LobsterAI 2026.5.27 through 2026.9.23 contains an external control of file path vulnerability in the skills:delete IPC handler that trusts the openclawSourceDir value from a skill's _meta.json during uninstall. Attackers who convince a user to install a crafted skill can make uninstallation recursively delete arbitrary user-writable directories, such as the home directory, since the security scanner never inspects _meta.json.","modified":"2026-10-10T02:47:39.442286980Z","published":"2026-10-09T16:04:40.625Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/108xxx/CVE-2026-108156.json","cna_assigner":"VulnCheck","cwe_ids":["CWE-73"]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/108xxx/CVE-2026-108156.json"},{"type":"PACKAGE","url":"https://github.com/netease-youdao/LobsterAI"},{"type":"ARTICLE","url":"https://github.com/netease-youdao/LobsterAI/blob/791a352dee3b3d8c6f64edcaf229ce474a68f6c5/src/main/ipcHandlers/skills/handlers.ts#L60-L78"},{"type":"FIX","url":"https://github.com/netease-youdao/LobsterAI/commit/82fdfe10d1b85d0ff734aa720e18c866b4be2406"},{"type":"REPORT","url":"https://github.com/netease-youdao/LobsterAI/issues/2793"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-108156"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/lobsterai-2026.5.27-through-2026.9.23-arbitrary-directory-deletion-via-skill-meta-json"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/netease-youdao/lobsterai","events":[{"introduced":"4d3d266bf0b48fd6f1254be3259f20b5fac88d4c"},{"last_affected":"791a352dee3b3d8c6f64edcaf229ce474a68f6c5"}],"database_specific":{"source":"AFFECTED_FIELD","extracted_events":[{"introduced":"2026.5.27"},{"last_affected":"2026.9.23"}]}}],"versions":["2026.9.23","2026.9.22","2026.9.20","2026.9.17","2026.9.15","2026.9.14","2026.9.4","2026.9.3","2026.8.28","2026.8.26","2026.8.18","2026.8.25","2026.8.21","2026.8.14","2026.8.11","2026.8.7","2026.8.5","2026.7.29","2026.7.23","2026.7.17","2026.7.16","2026.7.15","2026.7.10","2026.7.7","2026.7.3","2026.6.30","2026.6.29","2026.6.26","2026.6.18","2026.6.15","2026.6.10","2026.6.5","2026.6.3","2026.6.1","2026.5.27"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-108156.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N"}]}