
CVE-2026-32052 OpenClaw versions prior to 2026.2.24 contain a command injection vulnerability in the http://system.run shell-wrapper that allows attackers to execute hidden commands by inj… https://www.cve.org/CVERecord?id=CVE-2026-32052
Post summary
The advisory details a command injection flaw in OpenClaw’s system.run shell‑wrapper, enabling attackers to run hidden commands on affected versions.
