Threats Tagged 'brew-openclaw-cli-cve-2026-53836'
View all threats tagged with 'brew-openclaw-cli-cve-2026-53836'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'brew-openclaw-cli-cve-2026-53836'
Click on any threat for detailed analysis and mitigation recommendations
0 OpenClaw CLI versions from 2026.1.29 up to but not including 2026.5.12 have a vulnerability where PowerShell encoded-command aliases may bypass execution allowlist checks. This allows encoded PowerShell commands to run without proper allowlist validation if abbreviated alias forms are used. The vulnerability affects configurations where the feature is enabled and reachable, potentially allowing execution of unauthorized encoded PowerShell content. The issue does not alter the trusted-operator model of OpenClaw. A patch is available starting with version 2026.5.12. Until patched, it is recommended to avoid allowlisting PowerShell wrapper forms and require approval for encoded commands. Additional mitigations include narrowing allowlists, avoiding shared Gateways between untrusted users, and disabling the affected feature if not needed. Join the discussion | GCVE Database | 08/13/2026, 17:21:32 UTC Added: 10/04/2026, 12:24:45 UTC |
Showing 1 to 1 of 1 result