Description
OpenClaw versions before 2026.6.8 contain an authorization bypass vulnerability in OpenAI-compatible HTTP model overrides that allows lower-trust callers to perform actions requiring stronger authorization checks. Attackers can exploit misconfigured input paths to bypass admin authorization policies and execute restricted operations.
Published: 2026-07-13
Score: 7.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

OpenClaw versions before 2026.6.8 contain an authorization bypass vulnerability in the OpenAI‑compatible HTTP model override endpoint that allows callers with lower trust levels to perform actions normally protected by stronger authorization checks. The flaw, identified as CWE‑862 and CWE‑863, enables attackers to manipulate input so as to bypass administrative policies and execute restricted operations, potentially leading to unauthorized configuration changes or privileged function execution.

Affected Systems

OpenClaw software, all releases prior to 2026.6.8 running on node.js environments. Systems that expose the HTTP model override capability to external callers without proper authorization controls are affected.

Risk and Exploitability

The CVSS score of 7.2 indicates a moderate‑to‑high severity. The EPSS score of less than 1% suggests the likelihood of exploitation is very low, and the vulnerability is not listed in CISA KEV, implying no known active attacks. The likely attack vector is a crafted HTTP request targeting the model override endpoint on a publicly reachable OpenClaw instance; a successful exploit would grant the attacker privileges normally reserved for administrators, enabling configuration tampering or other privileged actions. Although current exploitation risk is low, the weakness in the authorization model warrants prompt attention.

Generated by OpenCVE AI on July 31, 2026 at 11:16 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade OpenClaw to version 2026.6.8 or newer.
  • Disable the HTTP model override feature or restrict it to trusted internal networks only.
  • Review the authorization logic for privileged endpoints to ensure that model override cannot bypass administrative checks.

Generated by OpenCVE AI on July 31, 2026 at 11:16 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 14 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 13 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Description OpenClaw versions before 2026.6.8 contain an authorization bypass vulnerability in OpenAI-compatible HTTP model overrides that allows lower-trust callers to perform actions requiring stronger authorization checks. Attackers can exploit misconfigured input paths to bypass admin authorization policies and execute restricted operations.
Title OpenClaw < 2026.6.8 Authorization Bypass via HTTP Model Override
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-862
CWE-863
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 7.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L'}

cvssV4_0

{'score': 7.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-14T13:04:34.632Z

Reserved: 2026-07-13T16:36:32.095Z

Link: CVE-2026-62186

cve-icon Vulnrichment

Updated: 2026-07-14T13:04:31.021Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T11:30:05Z

Weaknesses