CVE-2026-100584 | OpenClaw up to 2026.7.0 Exec Allowlist Mode os command injection

SecurityVulns

A vulnerability described as problematic has been identified in OpenClaw up to 2026.7.0. Affected by this issue is some unknown functionality of the component Exec Allowlist Mode. Such manipulation leads to os command injection.

This vulnerability is documented as CVE-2026-100584. The attack needs to be performed locally. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More