
CVE-2026-41360 OpenClaw before 2026.4.2 contains an approval integrity vulnerability in pnpm dlx that fails to bind local script operands consistently with pnpm exec flows. Attacker… https://www.cve.org/CVERecord?id=CVE-2026-41360
Post summary
The statement briefly references CVE-2026-41360, describing an integrity flaw in pnpm dlx, but provides no exploit, patch, or evidence of active use.
