
Potential arbitrary code execution in `OpenClaw` due to unvalidated `SHELL` path from host environment. Control over this variable could lead to system compromise. CVE-2026-32032. #OpenClaw #infosec #shell https://www.pulsepatch.io/posts/cve-2026-32032-openclaw-shell-env-fallback
Post summary
The post announces a potential RCE vulnerability (CVE-2026-32032) in OpenClaw caused by an unvalidated SHELL path, without any evidence of exploitation, patches, or PoC details.


