<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 20:38:38 +0000</lastBuildDate>
    <item>
      <title>BREW-openclaw-cli-CVE-2026-28470 — OpenClaw has an exec allowlist bypass via command substitution/backticks inside double quotes</title>
      <link>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-28470</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Exec approvals allowlist bypass via command substitution/backticks inside double quotes.&lt;/p&gt;
&lt;p&gt;### Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected: `&amp;lt;= 2026.2.1`
- Fixed: `&amp;gt;= 2026.2.2`&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Only affects setups that explicitly enable the optional exec approvals allowlist feature. Default installs are unaffected.&lt;/p&gt;
&lt;p&gt;### Fix&lt;/p&gt;
&lt;p&gt;Reject unescaped `$()` and backticks inside double quotes during allowlist analysis.&lt;/p&gt;
&lt;p&gt;### Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- d1ecb46076145deb188abcba8f0699709ea17198&lt;/p&gt;
&lt;p&gt;Thanks @simecek for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Exec approvals allowlist bypass via command substitution/backticks inside double quotes.&lt;/p&gt;
&lt;p&gt;### Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected: `&amp;lt;= 2026.2.1`
- Fixed: `&amp;gt;= 2026.2.2`&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Only affects setups that explicitly enable the optional exec approvals allowlist feature. Default installs are unaffected.&lt;/p&gt;
&lt;p&gt;### Fix&lt;/p&gt;
&lt;p&gt;Reject unescaped `$()` and backticks inside double quotes during allowlist analysis.&lt;/p&gt;
&lt;p&gt;### Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- d1ecb46076145deb188abcba8f0699709ea17198&lt;/p&gt;
&lt;p&gt;Thanks @simecek for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-28470</guid>
    </item>
    <item>
      <title>cnvd-2026-20006</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2026-20006</link>
      <description>cnvd-2026-20006</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2026-20006</guid>
    </item>
    <item>
      <title>EUVD-2026-292675</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-292675</link>
      <description>EUVD-2026-292675</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-292675</guid>
    </item>
    <item>
      <title>fkie_cve-2026-28470</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-28470</link>
      <description>&lt;p&gt;OpenClaw versions prior to 2026.2.2 contain an exec approvals (must be enabled) allowlist bypass vulnerability that allows attackers to execute arbitrary commands by injecting command substitution syntax. Attackers can bypass the allowlist protection by embedding unescaped $() or backticks inside double-quoted strings to execute unauthorized commands.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenClaw versions prior to 2026.2.2 contain an exec approvals (must be enabled) allowlist bypass vulnerability that allows attackers to execute arbitrary commands by injecting command substitution syntax. Attackers can bypass the allowlist protection by embedding unescaped $() or backticks inside double-quoted strings to execute unauthorized commands.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-28470</guid>
    </item>
    <item>
      <title>GHSA-3hcm-ggvf-rch5 — OpenClaw has an exec allowlist bypass via command substitution/backticks inside double quotes</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3hcm-ggvf-rch5</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Exec approvals allowlist bypass via command substitution/backticks inside double quotes.&lt;/p&gt;
&lt;p&gt;### Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected: `&amp;lt;= 2026.2.1`
- Fixed: `&amp;gt;= 2026.2.2`&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Only affects setups that explicitly enable the optional exec approvals allowlist feature. Default installs are unaffected.&lt;/p&gt;
&lt;p&gt;### Fix&lt;/p&gt;
&lt;p&gt;Reject unescaped `$()` and backticks inside double quotes during allowlist analysis.&lt;/p&gt;
&lt;p&gt;### Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- d1ecb46076145deb188abcba8f0699709ea17198&lt;/p&gt;
&lt;p&gt;Thanks @simecek for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Exec approvals allowlist bypass via command substitution/backticks inside double quotes.&lt;/p&gt;
&lt;p&gt;### Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected: `&amp;lt;= 2026.2.1`
- Fixed: `&amp;gt;= 2026.2.2`&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Only affects setups that explicitly enable the optional exec approvals allowlist feature. Default installs are unaffected.&lt;/p&gt;
&lt;p&gt;### Fix&lt;/p&gt;
&lt;p&gt;Reject unescaped `$()` and backticks inside double quotes during allowlist analysis.&lt;/p&gt;
&lt;p&gt;### Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- d1ecb46076145deb188abcba8f0699709ea17198&lt;/p&gt;
&lt;p&gt;Thanks @simecek for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3hcm-ggvf-rch5</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0424 — OpenClaw: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0424</link>
      <description>&lt;p&gt;Ein Angreifer kann diese Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, sich erhöhte Berechtigungen zu verschaffen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen offenzulegen oder andere, nicht näher bezeichnete Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann diese Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, sich erhöhte Berechtigungen zu verschaffen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen offenzulegen oder andere, nicht näher bezeichnete Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0424</guid>
    </item>
  </channel>
</rss>
