OpenClaw is vulnerable to validation bypass through GNU long-option abbreviations in allowlist mode
Critical severity
GitHub Reviewed
Published
Feb 27, 2026
to the GitHub Advisory Database
•
Updated Feb 28, 2026
Description
Published by the National Vulnerability Database
Feb 27, 2026
Published to the GitHub Advisory Database
Feb 27, 2026
Reviewed
Feb 28, 2026
Last updated
Feb 28, 2026
In OpenClaw before 2026.2.23, tools.exec.safeBins validation for sort could be bypassed via GNU long-option abbreviations (such as --compress-prog) in allowlist mode, leading to approval-free execution paths that were intended to require approval. Only an exact string such as --compress-program was denied.
References