GHSA-h3rm-6x7g-882f: OpenClaw's Node system.run approval hardening wrapper semantic drift can execute unintended local scripts
In openclaw@2026.3.1, node system.run approval-path hardening rewrote wrapper command argv in a way that changed execution semantics. A command shown/approved as a shell payload (for example echo SAFE) could execute a different local script when wrapper argv were rewritten.
References
Code Behaviors & Features
Detect and mitigate GHSA-h3rm-6x7g-882f with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →