Mexc Critical LLM Command Injection Vulnerability Discovered in OpenClaw Framework
Article Content
- •A critical LLM-driven command injection vulnerability was discovered in OpenClaw.
- •Attackers can achieve remote code execution and steal sensitive data due to improper command argument escaping.
- •Remediation recommendations have been submitted to relevant security databases and communities.
A joint team from the China Academy of Information and Communications Technology, Shanghai Jiao Tong University, and Nanjing University has identified a critical LLM-driven command injection vulnerability in the bash-tools module of the open-source autonomous agent framework OpenClaw during a security audit. This vulnerability is due to improper escaping of command-line arguments generated by the LLM, enabling attackers to bypass regex defenses through crafted prompts, leading to remote code execution and potential data theft. The vulnerability has been validated across multiple mainstream model environments. The research team has initiated a responsible disclosure process and submitted remediation recommendations to the NVDB Artificial Intelligence Product Security Vulnerability Database (CAIVD) and the GitHub community. The situation is currently being monitored as the vulnerability poses significant risks to systems utilizing OpenClaw.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…