{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aopenclawwindows_node/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:openclaw:windows_node:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-101880"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Windows Node (\u003c 2026.7.1)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","command-injection","execution"],"_cs_type":"advisory","_cs_vendors":["OpenClaw"],"content_html":"\u003cp\u003eOpenClaw Windows Node version 2026.7.1 and earlier contains an incorrect authorization vulnerability in the system.run exec-approval policy. The vulnerability resides within the ExecShellWrapperParser component, which fails to correctly tokenize or sanitize input commands. Specifically, the parser does not properly handle pipe operators or command substitution syntax, allowing a malicious or compromised gateway/agent to append denied commands to otherwise authorized prefixes. By exploiting this parsing logic, an attacker can bypass defined approval rules, leading to unauthorized arbitrary command execution on the host operating system. This issue poses a high risk to organizations relying on OpenClaw for automated system management and task execution.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows for arbitrary code execution on systems running the OpenClaw Windows Node. This can lead to full system compromise, lateral movement within the environment, and exfiltration of sensitive data, depending on the privileges of the service account running the OpenClaw node agent.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003eUpdate all instances of OpenClaw Windows Node to version 2026.7.1 or later immediately. Review audit logs for system.run command executions that contain pipe characters or command substitution syntax to identify potential prior exploitation attempts.\u003c/p\u003e\n","date_modified":"2026-09-30T20:36:42Z","date_published":"2026-09-30T20:36:42Z","id":"https://feed.craftedsignal.io/briefs/2026-09-openclaw-auth-bypass/","summary":"An incorrect authorization vulnerability in OpenClaw Windows Node version \u003c 2026.7.1 allows unauthenticated agents to achieve arbitrary command execution by bypassing command approval policies.","title":"Authorization Bypass in OpenClaw Windows Node via Command Injection","url":"https://feed.craftedsignal.io/briefs/2026-09-openclaw-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:openclaw:windows_node:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}