Incomplete List of Disallowed Inputs in OpenClaw - #VU132691
Published: May 29, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote user to influence a Node.js child process or coverage output path.
The vulnerability exists due to incomplete list of disallowed inputs in the host environment sanitizer when processing lower-trust environment sources. A remote user can supply crafted environment variables through a workspace .env, tool environment override, or skill environment block to influence a Node.js child process or coverage output path.
Only instances where the affected feature is enabled and reachable are vulnerable, and practical impact depends on whether lower-trust input can reach the accepted environment path.