PT-2026-27244 · Openclaw+1 · Openclaw+1

·

CVE-2026-32912

·

Publicado

2026-03-23

·

Atualizado

2026-03-24

CVSS v3.1

5.8

Média

VetorAV:L/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions OpenClaw versions 2026.2.26 through 2026.3.0
Description The software contains a current working directory injection flaw in the Windows wrapper resolution process for .cmd/.bat files, potentially leading to shell execution fallback. This allows attackers to manipulate the current working directory, altering wrapper resolution behavior and resulting in command execution integrity loss.
Recommendations Update to version 2026.3.1 or later.

Correção

Untrusted Search Path

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-32912

Produtos afetados

Openclaw
Windows