Openclaw cli: OpenClaw's incomplete host env sanitization blocklist allows supply-chain redirection via package-manager env overrides (CVE-2026-41387)
Description
OpenClaw CLI versions from 2026.1.29 up to but not including 2026.3.24 have an incomplete sanitization of host environment variables related to package-manager overrides. This flaw allows an attacker to redirect package resolution or runtime bootstrap processes to malicious infrastructure, potentially executing trojanized content. The vulnerability is fixed in version 2026.3.22 and later.
CVSS v3.1
Score 9.6critical
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
OpenClaw CLI's host execution environment override sanitization did not fail closed for several package-manager and related redirect variables. This allowed approved execution requests to silently redirect dependency fetches or runtime bootstrap to attacker-controlled infrastructure, enabling execution of trojanized content. The issue affected the components src/infra/host-env-security-policy.json and src/infra/host-env-security.ts. The vulnerability is addressed by commit 7abfff756d, which hardens host environment override handling across gateway and node. Versions prior to 2026.3.22 are affected.
Potential Impact
An attacker can exploit this vulnerability to redirect package resolution or runtime bootstrap processes to attacker-controlled infrastructure, leading to execution of malicious trojanized content. This can compromise confidentiality, integrity, and availability of the affected system. The CVSS score of 9.6 reflects critical severity with network attack vector, low attack complexity, no privileges required, user interaction required, scope change, and high impact on confidentiality, integrity, and availability.
Mitigation Recommendations
A patch is available and should be applied. The vulnerability is fixed in OpenClaw CLI version 2026.3.22 and later. Users should upgrade to version 2026.3.22 or newer to mitigate this issue.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- BREW-openclaw-cli-CVE-2026-41387
- Osv Schema Version
- 1.7.3
- Ecosystems
- ["Homebrew"]
- Cvss Version
- 3.1
Threat ID: 6ac2459e12601ec6a3165d66
Added to database: 10/04/2026, 12:25:02 UTC
Last enriched: 10/04/2026, 12:46:26 UTC
Last updated: 10/04/2026, 16:08:38 UTC
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.