OpenClaw has ACP CLI approval prompt ANSI escape sequence injection
Moderate severity
GitHub Reviewed
Published
Mar 26, 2026
in
openclaw/openclaw
•
Updated Apr 24, 2026
Description
Published to the GitHub Advisory Database
Mar 29, 2026
Reviewed
Mar 29, 2026
Published by the National Vulnerability Database
Apr 10, 2026
Last updated
Apr 24, 2026
Summary
ACP CLI approval prompt ANSI escape sequence injection
Affected Packages / Versions
openclaw>= 2026.2.13, <= 2026.3.242026.3.252026.3.24Details
ACP tool titles could previously carry ANSI control sequences into approval prompts and permission logs, letting untrusted tool metadata spoof terminal output. Commit
464e2c10a5edceb380d815adb6ff56e1a4c50f60sanitizes tool titles at the source and broadens ANSI stripping to full CSI sequences.Verified vulnerable on tag
v2026.3.24and fixed onmainby commit464e2c10a5edceb380d815adb6ff56e1a4c50f60.Fix Commit(s)
464e2c10a5edceb380d815adb6ff56e1a4c50f60References