Description
OpenClaw versions 2026.6.5 before 2026.6.9 contain a vulnerability in the plugin install wrappers that could skip the install policy (authorization) check. When the affected feature is enabled and reachable, a lower-trust caller or a configured input path could execute or persist actions beyond the caller's intended authorization. Impact depends on the operator's configuration and whether lower-trust input can reach the affected path. The issue is fixed in 2026.6.9.
Published: 2026-07-13
Score: 6.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability resides in OpenClaw’s plugin install wrappers, which skip the configured install policy (authorization) check when the plugin install feature is enabled and reachable. A caller with lower trust or an input path that can reach the vulnerable code can trigger plugin installation or persistence actions that the caller is not entitled to perform. This flaw, identified as CWE‑863, allows an attacker to exercise privileged actions or maintain persistence beyond the permissions granted to the user.

Affected Systems

OpenClaw installations running any version prior to 2026.6.9, specifically 2026.6.5 through 2026.6.8, are affected. The flaw exists only when the plugin install feature is enabled; systems with the feature disabled or with restrictive installation policies are not impacted.

Risk and Exploitability

The CVSS score of 6.9 classifies the vulnerability as medium severity, while the EPSS score of <1% indicates a low likelihood of exploitation. The attack requires network access to a reachable OpenClaw instance and the ability to invoke the plugin install endpoint. Based on the description, it is inferred that the attack vector involves network access to the plugin install endpoint, as the input does not explicitly state it. If a lower‑trust caller can reach the vulnerable path, the attacker may execute or persist unauthorized actions, but the overall risk remains moderate due to the restrictive conditions for exploitation.

Generated by OpenCVE AI on July 31, 2026 at 11:13 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to OpenClaw version 2026.6.9 or later to receive the fix that prevents the authorization check bypass.
  • If upgrading is not immediately possible, disable the plugin install feature or enforce a strict installation policy so that the vulnerable endpoint cannot be reached by lower‑trust callers.
  • Restrict network access to the plugin install endpoint, ensuring only trusted users or internal systems can invoke it, thereby limiting the attack surface.

Generated by OpenCVE AI on July 31, 2026 at 11:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 16 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 13 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Description OpenClaw versions 2026.6.5 before 2026.6.9 contain a vulnerability in the plugin install wrappers that could skip the install policy (authorization) check. When the affected feature is enabled and reachable, a lower-trust caller or a configured input path could execute or persist actions beyond the caller's intended authorization. Impact depends on the operator's configuration and whether lower-trust input can reach the affected path. The issue is fixed in 2026.6.9.
Title OpenClaw 2026.6.5 < 2026.6.9 Authentication Bypass via Plugin Install
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-863
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 4.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-15T14:26:14.293Z

Reserved: 2026-07-13T16:36:32.095Z

Link: CVE-2026-62193

cve-icon Vulnrichment

Updated: 2026-07-15T14:26:09.976Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T11:15:05Z

Weaknesses