Description
OpenClaw before 2026.3.11 contains an authorization bypass vulnerability allowing channel commands to mutate protected sibling-account configuration despite configWrites restrictions. Attackers with authorized access on one account can execute channel commands like /config set channels.<provider>.accounts.<id> to modify configuration on target accounts with configWrites: false.
Published: 2026-03-31
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized cross‑account configuration manipulation
Action: Apply patch
AI Analysis

Impact

OpenClaw versions prior to 2026.3.11 allow an attacker to bypass the configWrites access control by using channel commands. The vulnerability, classified as CWE‑639, lets a user with authorization on one account execute commands such as "/config set channels.<provider>.accounts.<id>" to alter the configuration of another account that has configWrites disabled. This grants the attacker the ability to change service settings or potentially disrupt operations on those target accounts, compromising confidentiality and availability of the affected configurations.

Affected Systems

The affected product is OpenClaw OpenClaw. All installations running a version earlier than 2026.3.11 are vulnerable, regardless of the underlying node.js runtime specified in the CPE string. Users should verify the exact patch level and ensure they are on 2026.3.11 or later to eliminate the bypass.

Risk and Exploitability

The CVSS score of 7.1 indicates high severity, while the EPSS score is not available. The vulnerability is not listed in CISA’s KEV catalog. The likely attack vector is a legitimate authorized user who can issue channel commands; no additional access requirements are stated, so an attacker with any authorized account on the platform could exploit the weakness. The exploit does not require privileged elevation outside the normal command context, making it relatively easy to abuse for users who gain or already possess account access.

Generated by OpenCVE AI on March 31, 2026 at 12:23 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor patch that lifts OpenClaw to version 2026.3.11 or later. If an immediate upgrade is not possible, restrict or disable the use of channel commands that modify configuration, especially "/config set" directives. Monitor configuration files for unauthorized changes and enforce that all accounts have configWrites set to true as a mitigative posture.

Generated by OpenCVE AI on March 31, 2026 at 12:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 31 Mar 2026 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 31 Mar 2026 11:45:00 +0000

Type Values Removed Values Added
Description OpenClaw before 2026.3.11 contains an authorization bypass vulnerability allowing channel commands to mutate protected sibling-account configuration despite configWrites restrictions. Attackers with authorized access on one account can execute channel commands like /config set channels.<provider>.accounts.<id> to modify configuration on target accounts with configWrites: false.
Title OpenClaw < 2026.3.11 - Account-Scoped configWrites Policy Bypass via Channel Commands
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-639
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-03-31T15:38:38.564Z

Reserved: 2026-03-17T11:31:33.584Z

Link: CVE-2026-32976

cve-icon Vulnrichment

Updated: 2026-03-31T15:38:34.849Z

cve-icon NVD

Status : Received

Published: 2026-03-31T12:16:29.470

Modified: 2026-03-31T12:16:29.470

Link: CVE-2026-32976

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-03-31T20:38:59Z

Weaknesses