PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-100561 OpenClaw CVE debrief

The OpenClaw npm package versions >= 2026.3.22 and < 2026.8.1 contain an approval-bypass flaw in the exec approval policy. This flaw allows a command-running wrapper to be trusted without inspecting the command carried in its arguments, potentially leading to arbitrary command execution with the OpenClaw process's host privileges. The vulnerability affects OpenClaw deployments and requires the relevant wrapper to resolve on the host and a prior operator decision allowing that wrapper. Defenders should assess exposure and prioritize verification of the package version and usage of the exec approval policy.

Vendor
OpenClaw
Product
Unknown
CVSS
HIGH 8.6
CISA KEV
Not listed in stored evidence
Original CVE published
2026-09-26
Original CVE updated
2026-09-26
Advisory published
2026-09-26
Advisory updated
2026-09-26

Who should care

Defenders responsible for OpenClaw deployments should assess exposure and prioritize verification of the package version and usage of the exec approval policy. This includes reviewing and monitoring the policy and considering compensating controls to mitigate potential exploitation.

Why it matters

The OpenClaw npm package versions >= 2026.3.22 and < 2026.8.1 contain an approval-bypass flaw in the exec approval policy, potentially leading to arbitrary command execution with the OpenClaw process's host privileges. Defenders should prioritize verification of the package version and usage of the exec approval policy.

  • Defenders should verify the integrity of the OpenClaw package and ensure that all instances are updated to version 2026.8.1 or later.
  • Defenders should review and monitor the usage of the exec approval policy to prevent potential exploitation.
  • Defenders should consider implementing compensating controls to mitigate potential exploitation.
  • Defenders should assess exposure and prioritize verification of the package version and usage of the exec approval policy.

Technical summary

The OpenClaw npm package versions >= 2026.3.22 and < 2026.8.1 contain an approval-bypass flaw in the exec approval policy. This flaw allows a command-running wrapper to be trusted without inspecting the command carried in its arguments, potentially leading to arbitrary command execution with the OpenClaw process's host privileges. The flaw requires the relevant wrapper to resolve on the host and a prior operator decision allowing that wrapper.

Defensive priority

Defenders should prioritize verifying the integrity of the OpenClaw package and ensuring that all instances are updated to version 2026.8.1 or later. Additionally, defenders should review and monitor the usage of the exec approval policy and consider implementing compensating controls to mitigate potential exploitation.

Recommended defensive actions

  • Verify the integrity of the OpenClaw package and ensure that all instances are updated to version 2026.8.1 or later.
  • Review and monitor the usage of the exec approval policy.
  • Consider implementing compensating controls to mitigate potential exploitation.
  • Perform an inventory of assets using the OpenClaw package to identify potential exposure.
  • Review system logs and monitoring data for signs of exploitation.
  • Implement additional security controls, such as restricting access to sensitive systems or data.
  • Track exceptions and retest remediated assets to ensure the vulnerability is fully resolved.

Evidence notes

The CVE record and source item provide details about the approval-bypass flaw in the OpenClaw npm package. The vendor, Unknown Vendor, has provided limited information, and the CVE Program has assigned a CVSS score of 8.6. The NVD entry is currently Received.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-100561 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-100561

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-100561 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-100561

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.