OpenClaw
OpenClaw
| Version / range | Status | Type |
|---|---|---|
| 0 to before 2026.8.1 | affected | semver |
| 2026.8.1 | unaffected | semver |
OpenClaw versions before 2026.8.1 fail to bind working directory context to reusable exec approvals, allowing approved commands to execute in different directories. Attackers with an allow-always approval can reuse it to run the same command against unreviewed files or repositories with materially different effects.
Risk score
8.5
CVSS 4.0
OpenClaw
| Version / range | Status | Type |
|---|---|---|
| 0 to before 2026.8.1 | affected | semver |
| 2026.8.1 | unaffected | semver |
8.5
CVSS 4.0
7.3
CVSS 3.1