ShellAction._validate_command of the file src/safestclaw/actions/shell.py of the component Built-in Web Interface. Such manipulation leads to incomplete blacklist.This vulnerability is traded as CVE-2026-16129. An attack has to be approached locally. Furthermore, there is an exploit available.
The presence of this vulnerability remains uncertain at this time.
The project maintainer explains: "On paper you're correct, this is a vulnerability. In practice, nothing your AI generated shows how it makes users vulnerable. It's open source. Someone can mod the shell allow list or remove that system. Present an actual poc that shows a threat to users."