Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wm8r-w8pf-2v6w

Опубликовано: 02 мар. 2026
Источник: github
Github: Прошло ревью
CVSS3: 3.7

Описание

OpenClaw has Signal group allowlist authorization bypass via DM pairing-store leakage

Summary

In OpenClaw 2026.2.25, Signal group authorization under groupPolicy=allowlist could accept sender identities sourced from DM pairing-store approvals. This allowed DM pairing approvals to leak into group allowlist evaluation.

Impact

This is an authorization-boundary weakness between DM pairing and group allowlist controls. A sender approved for DM pairing could pass group checks without explicit group allowlisting.

Affected Packages / Versions

  • Package: openclaw (npm)
  • Latest published version affected: 2026.2.25
  • Vulnerable range: <= 2026.2.25
  • Patched version (planned next release): >= 2026.2.26

Fix

OpenClaw now keeps DM pairing-store entries DM-only and enforces explicit group allowlist boundaries in shared DM/group policy resolution used by Signal and other channels.

Fix Commit(s)

  • 8bdda7a651c21e98faccdbbd73081e79cffe8be0
  • 64de4b6d6ae81e269ceb4ca16f53cda99ced967a

Release Process Note

patched_versions is pre-set to the planned next release (2026.2.26). After npm publish of that version, this advisory is ready to publish without further content edits.

Thanks @tdjackey for reporting.

Пакеты

Наименование

openclaw

npm
Затронутые версииВерсия исправления

< 2026.2.26

2026.2.26

EPSS

Процентиль: 5%
0.00152
Низкий

3.7 Low

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 3.7
nvd
5 месяцев назад

OpenClaw versions prior to 2026.2.26 contain an authorization bypass vulnerability where Signal group allowlist policy incorrectly accepts sender identities from DM pairing-store approvals. Attackers can exploit this boundary weakness by obtaining DM pairing approval to bypass group allowlist checks and gain unauthorized group access.

CVSS3: 4.6
fstec
6 месяцев назад

Уязвимость ИИ-агента OpenClaw (ранее - ClawdBot или MoltBot), связанная с недостатками процедуры авторизации, позволяющая нарушителю обойти существующие механизмы безопасности

EPSS

Процентиль: 5%
0.00152
Низкий

3.7 Low

CVSS3

Дефекты

CWE-863