Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 26 Sep 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenClaw (npm package 'openclaw') before 2026.7.1 improperly handles case sensitivity in the model-facing cron tool: a mixed-case payload kind can pass the agent-facing shell-execution guard and later normalize into a command job. An actor able to steer a tool-enabled agent can therefore create a persistent cron job that executes attacker-selected commands with the privileges of the OpenClaw process user, resulting in access to host files and credentials and impact to scheduled service availability. The issue is limited to cron jobs created or edited through the model-facing cron tool; direct CLI and authorized Gateway scheduling surfaces are trusted operator controls. Fixed in 2026.7.1. | |
| Title | OpenClaw before 2026.7.1 Remote Code Execution via cron tool | |
| First Time appeared |
Openclaw
Openclaw openclaw |
|
| Weaknesses | CWE-178 | |
| CPEs | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Openclaw
Openclaw openclaw |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-26T02:19:06.136Z
Reserved: 2026-09-26T01:03:42.740Z
Link: CVE-2026-100580
No data.
Status : Received
Published: 2026-09-26T03:17:05.783
Modified: 2026-09-26T03:17:05.783
Link: CVE-2026-100580
No data.
OpenCVE Enrichment
No data.
-
CWE-178
Improper Handling of Case Sensitivity