<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 01:58:38 +0000</lastBuildDate>
    <item>
      <title>BREW-openclaw-cli-CVE-2026-32921 — OpenClaw's system.run approvals did not bind mutable script operands across approval and execution</title>
      <link>https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-32921</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;OpenClaw&amp;#39;s `system.run` approval flow did not bind mutable interpreter-style script operands across approval and execution.&lt;/p&gt;
&lt;p&gt;A caller could obtain approval for an execution such as `sh ./script.sh`, rewrite the approved script before execution, and then execute different content under the previously approved command shape. The approved `argv` values remained the same, but the mutable script operand content could drift after approval.&lt;/p&gt;
&lt;p&gt;Latest published npm version verified vulnerable: `2026.3.7`&lt;/p&gt;
&lt;p&gt;The initial March 7, 2026 fix in `c76d29208bf6a7f058d2cf582519d28069e42240` added approval binding for shell scripts and a narrow interpreter set, but follow-up maintainer review on March 8, 2026 found that `bun` and `deno` script operands still did not produce `mutableFileOperand` snapshots.&lt;/p&gt;
&lt;p&gt;A complete fix shipped on March 9, 2026 in `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`, which binds approved `bun` and `deno run` script operands to on-disk file snapshots and denies post-approval script drift before execution.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.3.7`
- Patched version: `2026.3.8`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- `c76d29208bf6a7f058d2cf582519d28069e42240`
- `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`&lt;/p&gt;
&lt;p&gt;## Release Verification&lt;/p&gt;
&lt;p&gt;- npm `2026.3.7` remains vulnerable.
- npm `2026.3.8` contains the completed fix.&lt;/p&gt;
&lt;p&gt;Thanks @tdjackey for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: openclaw-cli&lt;/p&gt;
&lt;p&gt;OpenClaw&amp;#39;s `system.run` approval flow did not bind mutable interpreter-style script operands across approval and execution.&lt;/p&gt;
&lt;p&gt;A caller could obtain approval for an execution such as `sh ./script.sh`, rewrite the approved script before execution, and then execute different content under the previously approved command shape. The approved `argv` values remained the same, but the mutable script operand content could drift after approval.&lt;/p&gt;
&lt;p&gt;Latest published npm version verified vulnerable: `2026.3.7`&lt;/p&gt;
&lt;p&gt;The initial March 7, 2026 fix in `c76d29208bf6a7f058d2cf582519d28069e42240` added approval binding for shell scripts and a narrow interpreter set, but follow-up maintainer review on March 8, 2026 found that `bun` and `deno` script operands still did not produce `mutableFileOperand` snapshots.&lt;/p&gt;
&lt;p&gt;A complete fix shipped on March 9, 2026 in `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`, which binds approved `bun` and `deno run` script operands to on-disk file snapshots and denies post-approval script drift before execution.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.3.7`
- Patched version: `2026.3.8`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- `c76d29208bf6a7f058d2cf582519d28069e42240`
- `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`&lt;/p&gt;
&lt;p&gt;## Release Verification&lt;/p&gt;
&lt;p&gt;- npm `2026.3.7` remains vulnerable.
- npm `2026.3.8` contains the completed fix.&lt;/p&gt;
&lt;p&gt;Thanks @tdjackey for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-openclaw-cli-cve-2026-32921</guid>
    </item>
    <item>
      <title>cnvd-2026-17896</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2026-17896</link>
      <description>cnvd-2026-17896</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2026-17896</guid>
    </item>
    <item>
      <title>EUVD-2026-329470</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-329470</link>
      <description>EUVD-2026-329470</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-329470</guid>
    </item>
    <item>
      <title>fkie_cve-2026-32921</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-32921</link>
      <description>&lt;p&gt;OpenClaw before 2026.3.8 contains an approval bypass vulnerability in system.run where mutable script operands are not bound across approval and execution phases. Attackers can obtain approval for script execution, modify the approved script file before execution, and execute different content while maintaining the same approved command shape.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenClaw before 2026.3.8 contains an approval bypass vulnerability in system.run where mutable script operands are not bound across approval and execution phases. Attackers can obtain approval for script execution, modify the approved script file before execution, and execute different content while maintaining the same approved command shape.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-32921</guid>
    </item>
    <item>
      <title>GHSA-8g75-q649-6pv6 — OpenClaw's system.run approvals did not bind mutable script operands across approval and execution</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8g75-q649-6pv6</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;OpenClaw&amp;#39;s `system.run` approval flow did not bind mutable interpreter-style script operands across approval and execution.&lt;/p&gt;
&lt;p&gt;A caller could obtain approval for an execution such as `sh ./script.sh`, rewrite the approved script before execution, and then execute different content under the previously approved command shape. The approved `argv` values remained the same, but the mutable script operand content could drift after approval.&lt;/p&gt;
&lt;p&gt;Latest published npm version verified vulnerable: `2026.3.7`&lt;/p&gt;
&lt;p&gt;The initial March 7, 2026 fix in `c76d29208bf6a7f058d2cf582519d28069e42240` added approval binding for shell scripts and a narrow interpreter set, but follow-up maintainer review on March 8, 2026 found that `bun` and `deno` script operands still did not produce `mutableFileOperand` snapshots.&lt;/p&gt;
&lt;p&gt;A complete fix shipped on March 9, 2026 in `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`, which binds approved `bun` and `deno run` script operands to on-disk file snapshots and denies post-approval script drift before execution.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.3.7`
- Patched version: `2026.3.8`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- `c76d29208bf6a7f058d2cf582519d28069e42240`
- `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`&lt;/p&gt;
&lt;p&gt;## Release Verification&lt;/p&gt;
&lt;p&gt;- npm `2026.3.7` remains vulnerable.
- npm `2026.3.8` contains the completed fix.&lt;/p&gt;
&lt;p&gt;Thanks @tdjackey for reporting.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: openclaw&lt;/p&gt;
&lt;p&gt;OpenClaw&amp;#39;s `system.run` approval flow did not bind mutable interpreter-style script operands across approval and execution.&lt;/p&gt;
&lt;p&gt;A caller could obtain approval for an execution such as `sh ./script.sh`, rewrite the approved script before execution, and then execute different content under the previously approved command shape. The approved `argv` values remained the same, but the mutable script operand content could drift after approval.&lt;/p&gt;
&lt;p&gt;Latest published npm version verified vulnerable: `2026.3.7`&lt;/p&gt;
&lt;p&gt;The initial March 7, 2026 fix in `c76d29208bf6a7f058d2cf582519d28069e42240` added approval binding for shell scripts and a narrow interpreter set, but follow-up maintainer review on March 8, 2026 found that `bun` and `deno` script operands still did not produce `mutableFileOperand` snapshots.&lt;/p&gt;
&lt;p&gt;A complete fix shipped on March 9, 2026 in `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`, which binds approved `bun` and `deno run` script operands to on-disk file snapshots and denies post-approval script drift before execution.&lt;/p&gt;
&lt;p&gt;## Affected Packages / Versions&lt;/p&gt;
&lt;p&gt;- Package: `openclaw` (npm)
- Affected versions: `&amp;lt;= 2026.3.7`
- Patched version: `2026.3.8`&lt;/p&gt;
&lt;p&gt;## Fix Commit(s)&lt;/p&gt;
&lt;p&gt;- `c76d29208bf6a7f058d2cf582519d28069e42240`
- `cf3a479bd1204f62eef7dd82b4aa328749ae6c91`&lt;/p&gt;
&lt;p&gt;## Release Verification&lt;/p&gt;
&lt;p&gt;- npm `2026.3.7` remains vulnerable.
- npm `2026.3.8` contains the completed fix.&lt;/p&gt;
&lt;p&gt;Thanks @tdjackey for reporting.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8g75-q649-6pv6</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0691 — OpenClaw: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0691</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder andere, nicht näher spezifizerte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in OpenClaw ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder andere, nicht näher spezifizerte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0691</guid>
    </item>
  </channel>
</rss>
