Vulnary
← back to the feed
Critical· 9.2official fix available

CVE-2026-32917

OpenClaw before version 2026.3.13 contains a remote command injection flaw in its iMessage attachment staging flow. Unsanitized attachment paths that include shell metacharacters are passed directly to the SCP command, allowing attackers to execute arbitrary commands on remote hosts. The vulnerability can be exploited without authentication or user interaction.

publishedMar 31, 2026
last modifiedJul 25, 2026
sourcesNVD
severity · cvss
9.2
critical · how bad it is
exploitation · epss
2%
78th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Aug 25, 2026

An official fix is available, so this entry is kept for 30 days and then removed automatically.

01

Who is affected

OpenClaw software, specifically versions earlier than 2026.3.13, used by organizations that rely on its iMessage attachment staging feature.

02

Real-world impact

An attacker can run any shell command on the affected host, potentially taking full control, exfiltrating data, or installing malware. This could lead to a complete compromise of the system.

03

Why this severity

The CVSS score of 9.2 reflects the high impact of the vulnerability: attackers can execute arbitrary commands with no authentication or user interaction, leading to total compromise of the affected host.

04

What to do about it

official fix available
recommended steps
  1. 01Upgrade OpenClaw to version 2026.3.13 or later.

NVD description

05

Timeline

  1. Mar 31, 2026 · Mar 31, 2026
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Jul 25, 2026 · 11d ago
    Advisory updated
    The NVD record was last revised.
  3. Jul 26, 2026 · 10d ago
    Official fix available
    A vendor patch or mitigation now exists — see the remediation steps above.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Attack requirementsPresent
Privileges requiredNone
User interactionNone needed
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →