GHSA-42mx-vp8m-j7qh

Suggest an improvement
Source
https://github.com/advisories/GHSA-42mx-vp8m-j7qh
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/04/GHSA-42mx-vp8m-j7qh/GHSA-42mx-vp8m-j7qh.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-42mx-vp8m-j7qh
Aliases
  • CVE-2026-41355
Downstream
Published
2026-04-07T18:11:21Z
Modified
2026-05-06T23:34:27.784866Z
Severity
  • 7.3 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
  • 5.4 (Medium) CVSS_V4 - CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N CVSS Calculator
Summary
OpenClaw: OpenShell `mirror` mode can convert untrusted sandbox files into explicitly enabled workspace hooks and execute them on the host during gateway startup
Details

Summary

OpenShell mirror mode can convert untrusted sandbox files into explicitly enabled workspace hooks and execute them on the host during gateway startup

Current Maintainer Triage

  • Status: narrow
  • Normalized severity: medium
  • Assessment: Real on shipped <=2026.3.22 OpenShell mirror sync, but exploit needs mirror mode plus hooks enabled plus explicit hook opt-in plus restart, so high is overstated even though the direct fix shipped in v2026.3.28.

Affected Packages / Versions

  • Package: openclaw (npm)
  • Latest published npm version: 2026.3.31
  • Vulnerable version range: <=2026.3.24
  • Patched versions: >= 2026.3.28
  • First stable tag containing the fix: v2026.3.28

Fix Commit(s)

  • c02ee8a3a4cb390b23afdf21317aa8b2096854d1 — 2026-03-25T19:59:07Z

Release Process Note

  • The fix is already present in released version 2026.3.28.
  • This draft looks ready for final maintainer disposition or publication, not additional code-fix work.

Thanks @tdjackey for reporting.

Database specific
{
    "github_reviewed": true,
    "github_reviewed_at": "2026-04-07T18:11:21Z",
    "cwe_ids": [
        "CWE-829"
    ],
    "severity": "MODERATE",
    "nvd_published_at": null
}
References

Affected packages

npm / openclaw

Package

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2026.3.28

Database specific

source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/04/GHSA-42mx-vp8m-j7qh/GHSA-42mx-vp8m-j7qh.json"
last_known_affected_version_range
"<= 2026.3.24"