CVE-2026-31997 affects OpenClaw versions prior to 2026.3.1, stemming from a failure to properly pin executable identity during system.run approvals. This allows an attacker to modify PATH resolution after an operator's approval, leading to the execution of an unintended, potentially malicious, binary. Rated Medium (CVSS 6.7), this vulnerability has high attack complexity (AC:H) but requires only low privileges and user interaction to achieve arbitrary command execution with high impact on confidentiality, integrity, and availability. There is currently no evidence of active exploitation (KEV: No), nor are public exploit codes available in Metasploit, Nuclei, or ExploitDB, with community discussion and media coverage remaining minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 2026.3.1CPE match | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* | ||
< 2026.3.1CPE matchmatch criteria | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:A/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.0 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.