criticalCVSS 9.7Vulnerability
GHSA-8rh7-6779-cjqq
## Summary OpenClaw loaded the current working directory `.env` before trusted state-dir configuration, allowing untrusted workspace state to inject host environment values. ## Impact A repository or workspace containing a malicious `.env` file could override runtime configuration and security-sensitive environment settings when OpenClaw started there. ## Affected Component `src/infra/dotenv.ts, src/cli/dotenv.ts` ## Fixed Versions - Affected: `<= 2026.3.24` - Patched: `>= 2026.3.28` - Latest stable `2026.3.28` contains the fix. ## Fix Fixed by commit `6a79324802` (`Filter untrusted CWD .env entries before OpenClaw startup`).
Properties
- ghsa_id
- GHSA-8rh7-6779-cjqq
- severity
- critical
- summary
- OpenClaw has a CWD `.env` environment variable injection which bypasses host-env policy and allows config takeover
- cvss_score
- 9.7
- cve_id
- GHSA-8rh7-6779-cjqq
- cvss_vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
- is_ghsa_only
- true
- ghsa_published
- 2026-04-01T00:02:42Z
- source_url
- https://github.com/advisories/GHSA-8rh7-6779-cjqq
- ghsa_updated
- 2026-04-01T00:02:43Z
Related Entities (3)
AFFECTS (1)
→[Software]npm/OpenClaw
REPORTED_BY (1)
→[Source]GitHub Advisory Database
HAS_WEAKNESS (1)
→[Weakness]Untrusted Search Path
Explore deeper with Ninja Signal's threat intelligence graph