highCVSS 7.3Vulnerability

GHSA-wmgj-hrx3-23gj

### Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-xf99-j42q-5w5p. This link is maintained to preserve external references. ### Original Description OpenClaw before 2026.3.11 contains an approval integrity vulnerability allowing attackers to execute rewritten local code by modifying scripts between approval and execution when exact file binding cannot occur. Remote attackers can change approved local scripts before execution to achieve unintended code execution as the OpenClaw runtime user.

Properties

ghsa_id
GHSA-wmgj-hrx3-23gj
summary
Duplicate Advisory: OpenClaw: Unbound interpreter and runtime commands could bypass node-host approval integrity
severity
high
cvss_score
7.3
cve_id
GHSA-wmgj-hrx3-23gj
cvss_vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
is_ghsa_only
true
ghsa_published
2026-03-29T15:30:19Z
source_url
https://github.com/advisories/GHSA-wmgj-hrx3-23gj
ghsa_updated
2026-04-06T22:36:13Z

Related Entities (3)

AFFECTS (1)

[Software]npm/OpenClaw

HAS_WEAKNESS (1)

[Weakness]Time-of-check Time-of-use (TOCTOU) Race Condition

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph