United States
USA
On 17 February 2026, an unauthorized party used a compromised Cline npm publishing token to publish cline@2.3.0 through Cline's legitimate distribution channel. The altered package added a post-install script that automatically installed OpenClaw on downstream developer systems. Cline traced the exposure to a prompt-injection and CI/CD cache-poisoning attack path that exposed publication credentials. The unauthorized package was available for approximately eight hours before Cline released a corrected version and revoked the token. Cline confirmed that OpenClaw itself was legitimate and that no malicious code or user-data theft resulted, but the incident compromised the integrity of a legitimate software distribution channel.
Estimated severity
65 / 100
Source reliability
93 / 100
Approximate Date
17/02/2026
Targeted Company
CLINE BOT
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
United States
USA
No other affected countries reported
Target country
United States
Affected countries
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Incident Sources
Please rotate your phone