top of page
perceptive_background_267k.jpg

OpenClaw before 2026.3.31 allows workspace .env files to override the OPENCLAW_BUNDLED_HOOKS_DIR environment variable, enabling loading of attacker-controlled h…

Published:

22 april 2026 om 22:00:00

Alert date:

23 april 2026 om 23:04:51

Source:

nvd.nist.gov

Click to open the original link from this advisory

Supply Chain & Dependencies, Security Tools

OpenClaw before version 2026.3.31 contains a vulnerability that allows workspace .env files to override the OPENCLAW_BUNDLED_HOOKS_DIR environment variable. This enables attackers to load malicious hook code by replacing trusted default bundled hooks from untrusted workspaces. The vulnerability can lead to arbitrary code execution when attackers manipulate the environment variable to point to attacker-controlled hook files. This represents a significant security risk as it allows code execution through workspace configuration manipulation.

Technical details

Mitigation steps:

Affected products:

OpenClaw

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page