
CVE-2026-32017 OpenClaw versions prior to 2026.2.19 contain an allowlist bypass vulnerability in the exec safeBins policy that allows attackers to write arbitrary files using short-… https://www.cve.org/CVERecord?id=CVE-2026-32017
Post summary
OpenClaw versions before 2026.2.19 are vulnerable to an allowlist bypass that permits arbitrary file writes; the issue is fixed in the 2026.2.19 release.
