Description
OpenClaw before 2026.4.27 contains an authorization bypass vulnerability in QQBot pre-dispatch slash commands that allows authenticated senders to skip allowFrom policy checks. Attackers can invoke slash commands before configured access control policies are applied, potentially triggering command handling from blocked senders depending on operator configuration.
Published: 2026-06-12
Score: 8.2 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

OpenClaw before version 2026.4.27 contains a flaw in QQBot’s pre‑dispatch slash command handling that allows authenticated senders to skip the allowFrom policy checks. The vulnerability lets a legitimate user invoke slash commands before the configured access control policies are applied, which can trigger command handling from senders that should normally be blocked. This split in execution control can lead to unauthorized command execution, data leakage, or unintended system behavior, with a CVSS score of 8.2 indicating a high severity. The weakness is classified as CWE‑863, indicating an authorization bypass. Affected users may therefore face significant integrity and availability risks if their commands are executed without proper authorization.

Affected Systems

The affected product is OpenClaw, version 2026.4.27 and earlier. Administrators running any pre‑2026.4.27 release of OpenClaw that utilizes QQBot slash commands are vulnerable. No specific sub‑version range beyond “before 2026.4.27” is listed, so any deployment of that product series that has not been upgraded is at risk.

Risk and Exploitability

The vulnerability requires an authenticated sender but does not expose any external attack surface beyond normal QQBot usage; the attack vector is internal to the application. The EPSS score is not available, so the contemporary likelihood of exploitation remains unknown, but the CVSS rating of 8.2 highlights the potential impact should the flaw be leveraged. The vulnerability is not yet listed in the CISA KEV catalog, indicating that known exploits have not been publicly reported. However, the nature of the bypass makes the creation of an exploit straightforward for an attacker with legitimate credentials, and the absence of a mitigated version increases urgency.

Generated by OpenCVE AI on June 12, 2026 at 23:37 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade OpenClaw to version 2026.4.27 or later, which removes the authorization bypass.
  • Verify that QQBot access control policies are enabled and correctly configured to block unauthorized senders.
  • Audit all slash command handlers to confirm that policy checks occur after dispatch and that no privileged functionality is exposed to users lacking permission.
  • Monitor system logs for unexpected slash command activity from authorized senders and investigate any anomalies.

Generated by OpenCVE AI on June 12, 2026 at 23:37 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 12 Jun 2026 22:15:00 +0000

Type Values Removed Values Added
Description OpenClaw before 2026.4.27 contains an authorization bypass vulnerability in QQBot pre-dispatch slash commands that allows authenticated senders to skip allowFrom policy checks. Attackers can invoke slash commands before configured access control policies are applied, potentially triggering command handling from blocked senders depending on operator configuration.
Title OpenClaw < 2026.4.27 - Authorization Bypass in QQBot Pre-dispatch Slash Commands
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-863
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N'}

cvssV4_0

{'score': 8.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-06-12T21:56:58.552Z

Reserved: 2026-06-10T21:16:58.212Z

Link: CVE-2026-53834

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-12T22:16:55.090

Modified: 2026-06-12T22:16:55.090

Link: CVE-2026-53834

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-12T23:45:26Z

Weaknesses