openclaw/apps
Andrew Demczuk 089a43f5e8
fix(security): block build-tool and glibc env injection vectors in host exec sandbox (#49702)
Add GLIBC_TUNABLES, MAVEN_OPTS, SBT_OPTS, GRADLE_OPTS, ANT_OPTS,
DOTNET_ADDITIONAL_DEPS to blockedKeys and GRADLE_USER_HOME to
blockedOverrideKeys in the host exec security policy.

Closes #22681
2026-03-18 13:11:01 +01:00
..
android fix(android): lazy-init node runtime after onboarding 2026-03-16 18:54:51 +05:30
ios build: prepare 2026.3.14 cycle 2026-03-14 06:02:01 +00:00
macos fix(security): block build-tool and glibc env injection vectors in host exec sandbox (#49702) 2026-03-18 13:11:01 +01:00
shared/OpenClawKit fix(plugins): forward plugin subagent overrides (#48277) 2026-03-17 07:20:27 -07:00