MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Compromised Cline npm publishing token enables unauthorized software release

On 17 February 2026, an unauthorized party used a compromised Cline npm publishing token to publish cline@2.3.0 through Cline's legitimate distribution channel. The altered package added a post-install script that automatically installed OpenClaw on downstream developer systems. Cline traced the exposure to a prompt-injection and CI/CD cache-poisoning attack path that exposed publication credentials. The unauthorized package was available for approximately eight hours before Cline released a corrected version and revoked the token. Cline confirmed that OpenClaw itself was legitimate and that no malicious code or user-data theft resulted, but the incident compromised the integrity of a legitimate software distribution channel.

65

Estimated severity

65 / 100

93

Source reliability

93 / 100

Approximate Date

17/02/2026

Targeted Company

CLINE BOT

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

United States

USA

Other Affected Countries

No other affected countries reported

Target country

United States

Affected countries

United States

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Supply chain data integrity impact

Affected sectors

Technology & IT Services

Affected departments

Information Technology

Attack Profile

Attack types

Software supply chain compromiseUse of stolen credentials

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.