OpenClaw before 2026.4.22 contains an exec allowlist analysis vulnerability allowing shell expansion hiding in unquoted heredoc bodies. Attackers can bypass allowlist validation by embedding shell expansion tokens in heredoc bodies to execute unapproved commands at runtime.
| Vendor | Product | Versions |
|---|---|---|
| openclaw | openclaw | 0 |
Updated severity to HIGH, CVSS score to 9.6, added new CWE, confirmed exploit availability, and noted patch available in version 2026.4.22 with new relevant tags.
Updated severity to CRITICAL, marked as actively exploited, and noted that no exploit is available.
Initial creation