CVE-2026-100570 | OpenClaw up to 2026.8.0 Gmail Setup Flow CLOUDSDK_PYTHON_ARGS privileges management

SecurityVulns

A vulnerability marked as problematic has been reported in OpenClaw up to 2026.8.0. This affects an unknown function of the component Gmail Setup Flow. The manipulation of the argument CLOUDSDK_PYTHON_ARGS leads to improper privilege management.

This vulnerability is documented as CVE-2026-100570. The attack needs to be performed locally. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More