Mexc
Critical LLM Command Injection Vulnerability Discovered in OpenClaw Framework
Article Content
A joint team from the China Academy of Information and Communications Technology, Shanghai Jiao Tong University, and Nanjing University has identified a critical LLM-driven command injection vulnerability in the bash-tools module of the open-source autonomous agent framework OpenClaw during a security audit. This vulnerability is due to improper escaping of command-line arguments generated by the LLM, enabling attackers to bypass regex defenses through crafted prompts, leading to remote code execution and potential data theft. The vulnerability has been validated across multiple mainstream model environments. The research team has initiated a responsible disclosure process and submitted remediation recommendations to the NVDB Artificial Intelligence Product Security Vulnerability Database (CAIVD) and the GitHub community. The situation is currently being monitored as the vulnerability poses significant risks to systems utilizing OpenClaw.
Key Points: • A critical LLM-driven command injection vulnerability was discovered in OpenClaw. • Attackers can achieve remote code execution and steal sensitive data due to improper command argument escaping. • Remediation recommendations have been submitted to relevant security databases and communities.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.