OS Command Injection in OpenClaw - #VU132700
Published: May 29, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to command injection in system.run safe-bin allowlist checks when processing shell-expanded values in approved commands on paired POSIX nodes. A remote user can supply a value that expands into additional shell words and becomes a file operand to disclose sensitive information.
This issue is limited to paired POSIX node execution through system.run with safe-bin or allowlist-style auto-approval.