
CVE-2026-31997 OpenClaw versions prior to 2026.3.1 fail to pin executable identity for non-path-like argv[0] tokens in http://system.run approvals, allowing post-approval executable rebind… https://www.cve.org/CVERecord?id=CVE-2026-31997
Post summary
The text informs about CVE-2026-31997, detailing a flaw in OpenClaw’s handling of executables in system.run approvals, with no evidence of an exploit, patch, or active exploitation.

