PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-9565 haojing8312 CVE debrief

A command injection vulnerability exists in WorkClaw, a Tauri-based application, affecting versions up to 0.6.4. The flaw resides in the `is_dangerous` function within `apps/runtime/src-tauri/src/agent/tools/bash.rs`, where insufficient input validation in the blacklist handler permits OS command injection. The vulnerability is remotely exploitable and has been publicly disclosed. The project maintainer was notified via GitHub issue prior to disclosure but has not responded.

Vendor
haojing8312
Product
WorkClaw
CVSS
LOW 2.1
CISA KEV
Not listed in stored evidence
Original CVE published
2026-05-26
Original CVE updated
2026-07-23
Advisory published
2026-05-26
Advisory updated
2026-07-23

Who should care

Organizations using WorkClaw for automated task execution; security teams monitoring Tauri-based applications; developers building command execution features in Rust/Tauri applications

Technical summary

The vulnerability exists in the `is_dangerous` function of WorkClaw's bash tool implementation. This function attempts to blacklist dangerous commands but fails to properly sanitize input, allowing command injection through manipulation of the command string. The affected component is part of the Tauri-based runtime's agent tools, written in Rust. The CVSS 4.0 score of 2.1 (LOW) reflects limited privileges required and low impact, though the network attack vector and public exploit availability increase practical risk. The vulnerability was reported to the project via GitHub issue #4 but remains unaddressed as of the CVE publication date of May 26, 2026.

Defensive priority

low

Recommended defensive actions

  • Review and restrict execution of Tauri application bash tools to sandboxed environments
  • Implement application whitelisting for WorkClaw processes
  • Monitor for anomalous child process spawning from WorkClaw application
  • Apply input validation and parameterized command execution in custom Tauri command handlers
  • Await vendor patch for WorkClaw and upgrade when available

Evidence notes

Vulnerability identified in Tauri Rust backend code handling bash tool execution. CVSS 4.0 vector indicates network attack vector with low privileges required and low impact to confidentiality, integrity, and availability. CWE-77 and CWE-78 (command injection) assigned. Exploit existence marked as 'proof of concept' in CVSS vector.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-9565 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-9565

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-9565 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-9565

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.