CVE-2026-32022 | OpenClaw up to 2026.2.20 Working Directory tools.exec.safeBins incomplete blacklist (GHSA-3xfw-4pmr-4xc5 / WID-SEC-2026-0472)
A vulnerability was found in OpenClaw up to 2026.2.20 and classified as critical. Impacted is the function tools.exec.safeBins of the component Working Directory Handler. Such manipulation leads to incomplete blacklist.
This vulnerability is referenced as CVE-2026-32022. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.