{"id":"CVE-2026-32059","aliases":["CVE-2026-28363","GHSA-3c6h-g97w-fg78","GHSA-7977-c43c-xpwj"],"url":"https://o3.security/vulnerability/CVE-2026-32059","summary":"OpenClaw 2026.2.22-2 < 2026.2.23 - Allowlist Bypass via sort Long-Option Abbreviation in tools.exec.safeBins","details":"OpenClaw version 2026.2.22-2 prior to 2026.2.23 tools.exec.safeBins validation for sort command fails to properly validate GNU long-option abbreviations, allowing attackers to bypass denied-flag checks via abbreviated options. Remote attackers can execute sort commands with abbreviated long options to skip approval requirements in allowlist mode.","published":"2026-03-11T13:32:32.449Z","modified":"2026-08-07T11:50:55.951633515Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"openclaw","fixedVersion":"2026.2.23"}],"fix":{"url":"https://github.com/openclaw/openclaw/commit/3b8e33037ae2e12af7beb56fcf0346f1f8cbde6f","label":"openclaw/openclaw@3b8e330"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/32xxx/CVE-2026-32059.json"},{"type":"ADVISORY","url":"https://github.com/openclaw/openclaw/security/advisories/GHSA-3c6h-g97w-fg78"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-32059"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/openclaw-allowlist-bypass-via-sort-long-option-abbreviation-in-toolsexecsafebins"},{"type":"FIX","url":"https://github.com/openclaw/openclaw/commit/3b8e33037ae2e12af7beb56fcf0346f1f8cbde6f"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T11:50:55.951633515Z"}}