{"id":"CVE-2026-31997","aliases":["GHSA-q399-23r3-hfx4"],"url":"https://o3.security/vulnerability/CVE-2026-31997","summary":"OpenClaw < 2026.3.1 - Executable Rebind via Unbound PATH-token in system.run Approvals","details":"OpenClaw versions prior to 2026.3.1 fail to pin executable identity for non-path-like argv[0] tokens in system.run approvals, allowing post-approval executable rebind attacks. Attackers can modify PATH resolution after approval to execute a different binary than the operator approved, enabling arbitrary command execution.","published":"2026-03-19T01:00:54.913Z","modified":"2026-08-12T03:51:45.211547251Z","cvss":null,"epss":{"score":0.00091,"percentile":0.00524,"asOf":"2026-08-24"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"npm","name":"openclaw","fixedVersion":"2026.3.1"}],"fix":null,"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31997.json"},{"type":"ADVISORY","url":"https://github.com/openclaw/openclaw/security/advisories/GHSA-q399-23r3-hfx4"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-31997"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/openclaw-executable-rebind-via-unbound-path-token-in-system-run-approvals"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:45.211547251Z"}}