PT-2026-26397 · Openclaw · Openclaw
Tdjackey
·
Published
2026-03-03
·
Updated
2026-03-20
·
CVE-2026-32016
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
OpenClaw versions prior to 2026.2.22
Description
The software contains a path validation bypass issue in the exec-approval allowlist mode on macOS. This allows local attackers to execute unauthorized binaries by exploiting basename-only allowlist entries. Specifically, attackers can execute same-name local binaries, such as
./echo, without approval when security=allowlist and ask=on-miss are configured, bypassing intended path-based policy restrictions.Recommendations
Versions prior to 2026.2.22 should be updated. Enforced path-only allowlist matching has been implemented on macOS node-host, removing the basename fallback. A migration for legacy basename allowlist entries to last-resolved paths has been added when available. UI/store validation now rejects non-path allowlist patterns.
Fix
Untrusted Search Path
Incorrect Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Openclaw