CVE-2026-28391: OpenClaw < 2026.2.2 - Command Injection via cmd.exe Parsing Bypass in Allowlist Enforcement
OpenClaw versions prior to 2026.2.2 fail to properly validate Windows cmd.exe metacharacters in allowlist-gated exec requests (non-default configuration), allowing attackers to bypass command approval restrictions. Remote attackers can craft command strings with shell metacharacters like & or %...% to execute unapproved commands beyond the allowlisted operations.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-28391?
CVE-2026-28391 is rated as a high severity vulnerability due to its potential for command injection risks.
How do I fix CVE-2026-28391?
To fix CVE-2026-28391, upgrade OpenClaw to version 2026.2.2 or later to ensure proper validation of cmd.exe metacharacters.
What types of attacks does CVE-2026-28391 allow?
CVE-2026-28391 allows attackers to perform command injection attacks by bypassing the command approval enforcement.
Which versions of OpenClaw are affected by CVE-2026-28391?
OpenClaw versions prior to 2026.2.2 are affected by CVE-2026-28391.
Is CVE-2026-28391 related to Windows environments?
Yes, CVE-2026-28391 specifically involves command injection exploits in Windows environments via cmd.exe.