Openclaw · Openclaw · CVE-2026-100561
**Name of the Vulnerable Software and Affected Versions**
OpenClaw versions 2026.3.22 through 2026.8.0
**Description**
An approval-bypass flaw exists in the exec approval policy. The policy may trust a command-running wrapper without inspecting the command contained within its arguments. If an operator previously allowlisted or permanently approved a benign wrapper invocation, a subsequent agent turn could substitute an arbitrary inner command. This allows the execution of the command with the host privileges of the OpenClaw process without requiring a new approval prompt. This issue affects transparent shell carriers and opaque utilities, including process monitors, tracers, namespace tools, and proxy wrappers, due to trust-resolution gaps. Exploitation requires the wrapper to resolve on the host and a prior operator approval for that wrapper.
**Recommendations**
Update to version 2026.8.1.