Junglewise Threat Intelligence

OpenClaw PowerShell encoded-command allowlist bypass

Severity: low · CVSS 3.1 · Published 2026-06-13

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is a framework used to manage and execute automated tasks across infrastructure. The vulnerability allows authenticated operators to bypass execution security controls by using abbreviated PowerShell command aliases that are not recognized by the approval system, enabling execution of arbitrary PowerShell code that should have been blocked.

Technical details

This is an incomplete input validation vulnerability (CWE-184) in OpenClaw's PowerShell encoded-command handling. The allowlist parser fails to recognize abbreviated flag aliases for encoded commands, allowing attackers to craft requests using unrecognized alias forms that bypass the execution allowlist checks. The vulnerability requires remote network access and authenticated operator credentials. An attacker with valid gateway operator credentials can execute encoded PowerShell content without triggering intended allowlist decisions. The vulnerability was patched in version 2026.5.12.

Affected products

  • OpenClaw OpenClaw before 2026.5.12

Timeline

  • 2026-05-28: disclosed: Advisory GHSA-j472-gf56-x589 published by OpenClaw
  • 2026-05-12: patched: Patched in version 2026.5.12
  • 2026-06-13: other: Duplicate advisory GHSA-ffhm-8fwq-7q27 published
  • 2026-08-25: other: Duplicate advisory GHSA-ffhm-8fwq-7q27 withdrawn

References

Related threats