Description
OpenClaw versions before 2026.8.1 contain an authorization scope widening vulnerability in file-transfer allow-always approvals that allows attackers to reuse standing grants for unreviewed paths. Attackers can exploit glob metacharacter interpretation and node display name reuse to access sibling paths or different nodes beyond the operator's original approval scope.
Published: 2026-09-26
Score: 7.4 High
EPSS: n/a
KEV: No
Impact: Elevation of Privilege via Authorization Widening
Action: Immediate Patch
AI Analysis

Impact

OpenClaw versions earlier than 2026.8.1 contain an authorization scope widening vulnerability in the file‑transfer module’s allow‑always approvals. The flaw lets an attacker re‑use standing grant rights to submit file‑transfer requests for paths that were not originally approved. By exploiting glob metacharacter handling and node display name reuse, the attacker can reach sibling or unrelated nodes beyond the operator’s intended scope, effectively bypassing authorization checks.

Affected Systems

The vulnerability affects all OpenClaw installations using releases older than 2026.8.1. This includes every instance of the OpenClaw product that has not yet applied the 2026.8.1 update or later.

Risk and Exploitability

The CVSS score of 7.4 signals a high‑severity compromise risk. Though no EPSS value is available, the lack of a KEV listing does not diminish the potential for exploitation; attackers with access to the file‑transfer interface could elevate privileges and access unauthorized file paths. Because the flaw relies on configuration mistakes and glob interpretation, the attack can be carried out remotely by users who have already been granted file‑transfer permissions, but the window of exposure widens when allow‑always approvals are enabled.

Generated by OpenCVE AI on September 26, 2026 at 03:46 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the OpenClaw 2026.8.1 update or later to remove the allow‑always approvals flaw.
  • Review all existing file‑transfer approvals and restrict any that use glob characters or non‑explicit paths.
  • Disable glob metacharacter processing in the file‑transfer module or sanitize input paths to prevent unintended path resolution.
  • Revoke standing grants that exceed the intended authorization scope and enforce strict path validation for future requests.

Generated by OpenCVE AI on September 26, 2026 at 03:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 26 Sep 2026 02:30:00 +0000

Type Values Removed Values Added
Description OpenClaw versions before 2026.8.1 contain an authorization scope widening vulnerability in file-transfer allow-always approvals that allows attackers to reuse standing grants for unreviewed paths. Attackers can exploit glob metacharacter interpretation and node display name reuse to access sibling paths or different nodes beyond the operator's original approval scope.
Title OpenClaw before 2026.8.1 Authorization Scope Widening via File-Transfer
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-863
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:*:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 6.4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 7.4, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-26T02:18:31.110Z

Reserved: 2026-09-26T01:00:40.148Z

Link: CVE-2026-100529

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-26T03:16:58.217

Modified: 2026-09-26T03:16:58.217

Link: CVE-2026-100529

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-26T04:00:05Z

Weaknesses