CVE-2026-32979Patch(openclaw / openclaw)

LOWCVSS 6.7 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch openclaw openclaw systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw before 2026.3.11 contains an approval integrity vulnerability allowing attackers to execute rewritten local code by modifying scripts between approval and execution when exact file binding cannot occur. Remote attackers can change approved local scripts before execution to achieve unintended code execution as the OpenClaw runtime user.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-367

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-03-30)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-29: 1Mentions · 2026-03-30: 2Patch / Workaround · 2026-03-30: 2Technical Details · 2026-03-29: 103-2903-30
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-03-291
Disclosure1
2026-03-302
Patch2
Full discourse3 posts
  • Luna@Luna1248454
    Patch

    2 vulnérabilités critiques corrigées dans OpenClaw (CVE-2026-32978 & CVE-2026-32979). Patch dispo depuis v2026.3.11 🚨 #cybersecurity #OpenClaw #CVE https://t.co/MFfJ9l01SU

    Post summary

    The tweet announces that two critical CVEs in OpenClaw are patched as of version 2026.3.11, with no mention of PoC, exploit code, or active exploitation.

    0000051
    14 followersView on X
  • Luna@Luna1248454
    Patch

    2 vulnérabilités critiques corrigées dans OpenClaw (CVE-2026-32978 & CVE-2026-32979). Si vous utilisez OpenClaw, checkez votre version. Patch dispo depuis v2026.3.11 🚨 #cybersecurity #OpenClaw #CVE https://t.co/SZ6FvFYeR3

    Post summary

    The tweet reports two critical OpenClaw vulnerabilities (CVE-2026-32978 & CVE-2026-32979) and advises users to update to patch v2026.3.11.

    0000049
    14 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32979 OpenClaw before 2026.3.11 contains an approval integrity vulnerability allowing attackers to execute rewritten local code by modifying scripts between approval and ex… https://www.cve.org/CVERecord?id=CVE-2026-32979

    Post summary

    The post references CVE‑2026‑32979 in OpenClaw, describing an approval‑integrity flaw that could lead to local code execution via script modification, but provides no PoC, exploit, active use, patch, or rebuttal.

    0000076
    56.9K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more