Description
OpenClaw before 2026.5.22 contain a vulnerability in setup-mode discovery that allows loading of untrusted workspace plugins. Attackers with lower-trust caller access or control over configured input paths can execute or persist actions beyond their intended authorization level.
Published: 2026-07-17
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability resides in OpenClaw’s setup-mode discovery mechanism, allowing an attacker with lower-trust caller access or control over configured input paths to load and execute workspace plugins that the system does not trust. This capability permits the attacker to run arbitrary code or perform persistent actions beyond their intended authorization level, effectively escalating privileges. The weakness is classified as CWE-829 – Improper Restriction of a Pathname or Functional Parameter, exposing the program to unvalidated configuration inputs.

Affected Systems

OpenClaw openclaw software is affected. Users running any version earlier than 2026.5.22 of OpenClaw are impacted; newer releases are not vulnerable. Specific affected versions are denoted as all releases before 2026.5.22.

Risk and Exploitability

The CVSS score of 7.1 reflects a high severity risk, though the EPSS score indicates a very low probability of exploitation in the near term (<1%). The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector involves local manipulation of the setup-mode configuration – an attacker who can control or influence the input paths used by OpenClaw can introduce malicious plugins. Successful exploitation requires only lower-trust access or the ability to modify configuration inputs; no network exposure or special privileges are explicitly required by the CVE text.

Generated by OpenCVE AI on July 31, 2026 at 00:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade OpenClaw to version 2026.5.22 or later to remediate the flaw
  • Restrict the directories from which plugins can be loaded or disable plugin loading in setup-mode if an upgrade is not immediately possible
  • Implement logging or alerting for plugin load events to detect unauthorized usage

Generated by OpenCVE AI on July 31, 2026 at 00:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 29 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 17 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Description OpenClaw before 2026.5.22 contain a vulnerability in setup-mode discovery that allows loading of untrusted workspace plugins. Attackers with lower-trust caller access or control over configured input paths can execute or persist actions beyond their intended authorization level.
Title OpenClaw < 2026.5.22 Untrusted Plugin Loading via Setup-mode
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-829
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-29T18:26:16.783Z

Reserved: 2026-07-13T16:39:44.420Z

Link: CVE-2026-62222

cve-icon Vulnrichment

Updated: 2026-07-29T18:23:54.380Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T01:00:14Z

Weaknesses
  • CWE-829

    Inclusion of Functionality from Untrusted Control Sphere