Skip to content
Threat Feed
high advisory

LobsterAI Arbitrary File Deletion Vulnerability

LobsterAI versions 2026.5.27 through 2026.9.23 contain an arbitrary file deletion vulnerability in the skills:delete IPC handler, allowing attackers to delete arbitrary user-writable directories via malicious skill manifests.

CVE search metadata

CVE search record: CVE-2026-108156. Severity: high. CVSS: 7.1. KEV: no. Product: LobsterAI (2026.5.27 through 2026.9.23). Brief: LobsterAI Arbitrary File Deletion Vulnerability. Brief link: https://feed.craftedsignal.io/briefs/2026-10-lobsterai-arbitrary-deletion/

LobsterAI versions 2026.5.27 through 2026.9.23 are affected by an external control of file path vulnerability (CVE-2026-108156) within the skills:delete IPC handler. The vulnerability exists because the application trusts the 'openclawSourceDir' parameter defined in a skill's '_meta.json' file during the uninstallation process. An attacker can craft a malicious skill package with a manipulated 'openclawSourceDir' value. When a victim installs and subsequently uninstalls the malicious skill, the LobsterAI application performs a recursive deletion operation on the path specified in the configuration. Because the product's security scanner fails to validate the contents of '_meta.json', the application can be coerced into deleting sensitive, user-writable directories, including the user's home directory. This vulnerability poses a significant risk to data integrity for users of the LobsterAI platform.

Impact

Successful exploitation of this vulnerability results in the unauthorized deletion of arbitrary directories and files within the scope of the user's permissions on the host system. This could lead to partial or complete loss of user data, disruption of system operations, and potential application instability. The scope of impact is limited to directories writable by the user running the LobsterAI application.

Recommendation

Prioritized actions for security teams:

  • Update LobsterAI to a version later than 2026.9.23 immediately to address the vulnerability in the skills:delete IPC handler.
  • Audit existing installed skills for suspicious or unauthorized '_meta.json' files containing modified 'openclawSourceDir' parameters if the software cannot be patched immediately.
  • Implement file integrity monitoring (FIM) or access logging on sensitive user directories to detect recursive file deletion events initiated by the LobsterAI process.

Immediate actions

Upgrade LobsterAI to the latest version to patch CVE-2026-108156

IT Operations 48h

Mitigations

Upgrade LobsterAI to a version beyond 2026.9.23

immediate IT Operations

CVE-2026-108156