<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 14:00:15 +0000</lastBuildDate>
    <item>
      <title>BREW-openclaw-cli-CVE-2026-32032 — OpenClaw's shell env fallback trusts unvalidated SHELL path from host environment</title>
      <link>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-32032</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;The shell environment fallback path could invoke an attacker-controlled shell when `SHELL` was inherited from an untrusted host environment. In affected builds, shell-env loading used `$SHELL -l -c &amp;#39;env -0&amp;#39;` without validating that `SHELL` points to a trusted executable.&lt;/p&gt;
&lt;p&gt;In threat-model terms, this requires local environment compromise or untrusted startup environment injection first; it is not a remote pre-auth path. The hardening patch validates `SHELL` as an absolute normalized executable, prefers `/etc/shells`, applies trusted-prefix fallback checks, and falls back safely to `/bin/sh` when validation fails. The dangerous env-var policy now also blocks `SHELL` overrides.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.2.21-2`
- Latest published vulnerable version: `2026.2.21-2`
- Patched versions (planned next release): `&amp;gt;= 2026.2.22`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `25e89cc86338ef475d26be043aa541dfdb95e52a`&lt;/p&gt;
&lt;p&gt;## Release Process Note
The advisory pre-sets `patched_versions` to the planned next release (`2026.2.22`). After that npm release is published, maintainers can publish this advisory without further version-field edits.&lt;/p&gt;
&lt;p&gt;OpenClaw thanks @athuljayaram for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;The shell environment fallback path could invoke an attacker-controlled shell when `SHELL` was inherited from an untrusted host environment. In affected builds, shell-env loading used `$SHELL -l -c &amp;#39;env -0&amp;#39;` without validating that `SHELL` points to a trusted executable.&lt;/p&gt;
&lt;p&gt;In threat-model terms, this requires local environment compromise or untrusted startup environment injection first; it is not a remote pre-auth path. The hardening patch validates `SHELL` as an absolute normalized executable, prefers `/etc/shells`, applies trusted-prefix fallback checks, and falls back safely to `/bin/sh` when validation fails. The dangerous env-var policy now also blocks `SHELL` overrides.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.2.21-2`
- Latest published vulnerable version: `2026.2.21-2`
- Patched versions (planned next release): `&amp;gt;= 2026.2.22`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `25e89cc86338ef475d26be043aa541dfdb95e52a`&lt;/p&gt;
&lt;p&gt;## Release Process Note
The advisory pre-sets `patched_versions` to the planned next release (`2026.2.22`). After that npm release is published, maintainers can publish this advisory without further version-field edits.&lt;/p&gt;
&lt;p&gt;OpenClaw thanks @athuljayaram for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-32032</guid>
    </item>
    <item>
      <title>cnvd-2026-14849</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2026-14849</link>
      <description>cnvd-2026-14849</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2026-14849</guid>
    </item>
    <item>
      <title>EUVD-2026-329428</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-329428</link>
      <description>EUVD-2026-329428</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-329428</guid>
    </item>
    <item>
      <title>fkie_cve-2026-32032</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-32032</link>
      <description>&lt;p&gt;OpenClaw versions prior to 2026.2.22 contain an arbitrary shell execution vulnerability in shell environment fallback that trusts the unvalidated SHELL path from the host environment. An attacker with local environment access can inject a malicious SHELL variable to execute arbitrary commands with the privileges of the OpenClaw process.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenClaw versions prior to 2026.2.22 contain an arbitrary shell execution vulnerability in shell environment fallback that trusts the unvalidated SHELL path from the host environment. An attacker with local environment access can inject a malicious SHELL variable to execute arbitrary commands with the privileges of the OpenClaw process.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-32032</guid>
    </item>
    <item>
      <title>GHSA-f8mp-vj46-cq8v — OpenClaw's shell env fallback trusts unvalidated SHELL path from host environment</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f8mp-vj46-cq8v</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;The shell environment fallback path could invoke an attacker-controlled shell when `SHELL` was inherited from an untrusted host environment. In affected builds, shell-env loading used `$SHELL -l -c &amp;#39;env -0&amp;#39;` without validating that `SHELL` points to a trusted executable.&lt;/p&gt;
&lt;p&gt;In threat-model terms, this requires local environment compromise or untrusted startup environment injection first; it is not a remote pre-auth path. The hardening patch validates `SHELL` as an absolute normalized executable, prefers `/etc/shells`, applies trusted-prefix fallback checks, and falls back safely to `/bin/sh` when validation fails. The dangerous env-var policy now also blocks `SHELL` overrides.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.2.21-2`
- Latest published vulnerable version: `2026.2.21-2`
- Patched versions (planned next release): `&amp;gt;= 2026.2.22`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `25e89cc86338ef475d26be043aa541dfdb95e52a`&lt;/p&gt;
&lt;p&gt;## Release Process Note
The advisory pre-sets `patched_versions` to the planned next release (`2026.2.22`). After that npm release is published, maintainers can publish this advisory without further version-field edits.&lt;/p&gt;
&lt;p&gt;OpenClaw thanks @athuljayaram for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;The shell environment fallback path could invoke an attacker-controlled shell when `SHELL` was inherited from an untrusted host environment. In affected builds, shell-env loading used `$SHELL -l -c &amp;#39;env -0&amp;#39;` without validating that `SHELL` points to a trusted executable.&lt;/p&gt;
&lt;p&gt;In threat-model terms, this requires local environment compromise or untrusted startup environment injection first; it is not a remote pre-auth path. The hardening patch validates `SHELL` as an absolute normalized executable, prefers `/etc/shells`, applies trusted-prefix fallback checks, and falls back safely to `/bin/sh` when validation fails. The dangerous env-var policy now also blocks `SHELL` overrides.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions
- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.2.21-2`
- Latest published vulnerable version: `2026.2.21-2`
- Patched versions (planned next release): `&amp;gt;= 2026.2.22`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)
- `25e89cc86338ef475d26be043aa541dfdb95e52a`&lt;/p&gt;
&lt;p&gt;## Release Process Note
The advisory pre-sets `patched_versions` to the planned next release (`2026.2.22`). After that npm release is published, maintainers can publish this advisory without further version-field edits.&lt;/p&gt;
&lt;p&gt;OpenClaw thanks @athuljayaram for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f8mp-vj46-cq8v</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0472 — OpenClaw: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0472</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, sich erhöhte Berechtigungen zu verschaffen, Daten zu manipulieren, einen Denial-of-Service-Zustand auszulösen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen oder andere nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, sich erhöhte Berechtigungen zu verschaffen, Daten zu manipulieren, einen Denial-of-Service-Zustand auszulösen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen oder andere nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0472</guid>
    </item>
  </channel>
</rss>
