Executive brief
OpenClaw is a gateway and tool execution platform. A vulnerability in its command validation system allows authorized users to bypass security restrictions and execute unapproved shell commands. This could lead to unauthorized data access or modification by users who should only have limited permissions.
Technical details
OpenClaw before version 2026.4.2 is vulnerable to an inline-eval bypass. The root cause is the improper neutralization of shell positional parameters when validating commands against a strict allowlist (CWE-184, CWE-863). An authenticated operator can craft a command request that combines allowlisted tools with shell positional arguments to inject malicious content into shell carriers that bypass the security checks. This allows for the execution of arbitrary shell-provided content outside of the intended security policy. The vulnerability is patched in version 2026.4.2.
Affected products
- OpenClaw openclaw < 2026.4.2
Timeline
- 2026-05-28: advisory: Original GHSA-5cj2-3jr2-5h77 published
- 2026-06-16: disclosed: NVD publication of CVE-2026-53855
- 2026-06-18: other: Duplicate advisory GHSA-27pq-2ph8-8x25 withdrawn