Impact
OpenClaw versions before 2026.6.9 allow a lower‑trust caller to invoke isolated cron jobs in a way that bypasses denied execution tools, effectively giving the caller permission to run commands or persist actions beyond their intended authorization. The vulnerability stems from misconfigured input paths that the cron feature accepts, leading to a privilege escalation scenario where an attacker can gain broader access to the system. This flaw can compromise the integrity of the application and the confidentiality of data controlled by higher‑privileged users.
Affected Systems
The affected product is OpenClaw from the OpenClaw vendor. The vulnerability exists in OpenClaw releases 2026.6.1 through 2026.6.8. The software runs on a Node.js runtime environment. No other products or versions are listed as impacted.
Risk and Exploitability
The CVSS score of 7.7 indicates a high severity vulnerability when exploited. The EPSS score of less than 1% suggests that public exploitation is unlikely at present, and the vulnerability is not listed in CISA’s KEV catalog. Because the flaw arises from privileges granted within isolated cron jobs, the attack vector is likely internal; a user that can trigger low‑trust cron jobs may exploit the misconfiguration to gain elevated rights. In the absence of a publicly documented exploit, the risk remains primarily theoretical but the potential for intense damage warrants immediate attention.
OpenCVE Enrichment