External Control of System or Configuration Setting in OpenClaw - CVE-2026-22169
Published: May 1, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a local privileged user to bypass intended allowlist approval constraints.
The vulnerability exists due to external control of system or configuration setting in tools.exec.safeBins when using the non-default configuration that explicitly adds sort and invoking the --compress-program option. A local privileged user can invoke an external helper to bypass intended allowlist approval constraints.
Only non-default configurations that explicitly add sort to tools.exec.safeBins in allowlist mode are vulnerable.