highCVSS 9.8Vulnerability

GHSA-j5qh-5234-4rqp

### Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-99qw-6mr3-36qr. This link is maintained to preserve external references. ### Original Description OpenClaw before 2026.3.12 automatically discovers and loads plugins from .OpenClaw/extensions/ without explicit trust verification, allowing arbitrary code execution. Attackers can execute malicious code by including crafted workspace plugins in cloned repositories that execute when users run OpenClaw from the directory.

Properties

ghsa_id
GHSA-j5qh-5234-4rqp
summary
Duplicate Advisory: OpenClaw: Workspace plugin auto-discovery allowed code execution from cloned repositories
severity
high
cvss_score
9.8
cve_id
GHSA-j5qh-5234-4rqp
cvss_vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
is_ghsa_only
true
ghsa_published
2026-03-31T12:31:35Z
source_url
https://github.com/advisories/GHSA-j5qh-5234-4rqp
ghsa_updated
2026-04-06T22:49:34Z

Related Entities (3)

AFFECTS (1)

[Software]npm/OpenClaw

HAS_WEAKNESS (1)

[Weakness]Inclusion of Functionality from Untrusted Control Sphere

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph