Skip to main content
EPSS 0.6%top 53%

Openclaw cli: OpenClaw: Linux and macOS exec allowlists skipped configured argument patterns (CVE-2026-53853)

0
High
Published: 08/13/2026 (08/13/2026, 17:21:32 UTC)
Source: GCVE Database
Product: openclaw-cli

Description

OpenClaw CLI versions from 2026.1.29 up to but not including 2026.5.12 on Linux and macOS have a vulnerability where exec allowlist entries using argPattern to restrict executable arguments are bypassed. This allows disallowed arguments to be executed without approval prompts, potentially enabling unintended file, network, or command access. The issue does not affect Windows or path-only allowlist entries. A fix is available in version 2026.5.12.

CVSS v3.1

Score 7.1high

Attack Vector
Network
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
Low
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L

Affected software

Homebrewmore threats →ghsa
openclaw-cli
pkg:brew/openclaw-cli
Affected versions
>=2026.1.29 <2026.5.12

Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 10/04/2026, 12:35:11 UTC

Technical Analysis

OpenClaw's exec allowlist feature supports optional argPattern entries to restrict allowed arguments for an executable. In affected Linux and macOS versions, the argPattern checks were skipped, allowing any arguments for a matched executable path without triggering approval prompts when tools.exec.security is set to allowlist. This bypass affects only the direct enforcement of argPattern predicates and does not bypass all exec approval semantics. The vulnerability is present in versions >=2026.1.29 and <2026.5.12 and was fixed in 2026.5.12.

Potential Impact

An attacker or lower-trust sender who can influence an agent using OpenClaw on Linux or macOS with exec allowlist mode enabled and argPattern restrictions configured may execute disallowed arguments for allowlisted executables. This could lead to unauthorized file access, network access, or command execution that should have required explicit approval. The severity depends on the specific allowlist configuration and exposure of the channel. High-risk executables include those with interpreter or subprocess capabilities like git, python, node, bash, find, tar, and ssh.

Mitigation Recommendations

Upgrade OpenClaw CLI to version 2026.5.12 or later. Prior to upgrading, review exec allowlist entries that combine executable paths with argPattern restrictions, especially for interpreter-like or subprocess-capable tools, to understand potential exposure. This vulnerability is fixed in the stated version, so applying the official patch fully mitigates the issue.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Gcve Source
db.gcve.eu
Osv Id
BREW-openclaw-cli-CVE-2026-53853
Osv Schema Version
1.7.3
Ecosystems
["Homebrew"]
Cvss Version
3.1

Threat ID: 6ac2458a12601ec6a316411c

Added to database: 10/04/2026, 12:24:42 UTC

Last enriched: 10/04/2026, 12:35:11 UTC

Last updated: 10/04/2026, 16:08:39 UTC

Views: 3

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses