Description
OpenClaw versions before 2026.6.5 contain an authentication bypass vulnerability that allows lower-trust callers to reach admin-scoped tools. Attackers can perform actions requiring stronger authorization by exploiting insufficient policy checks on configured input paths.
Published: 2026-07-17
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

OpenClaw versions prior to 2026.6.5 contain a logic flaw in which user authorization checks on admin‑scoped tools are insufficient. The vulnerability is a policy‑evasion bug that allows callers with lower trust levels to access features normally restricted to administrators, resulting in the ability to perform operations that require higher privileges. This weakness is captured by CWE‑862, Unauthorized Access: Privilege Escalation.

Affected Systems

The affected product is OpenClaw, as listed by the Vendor–Product naming in the CNA. All releases of OpenClaw before the 2026.6.5 build are vulnerable; subsequent releases are presumed fixed.

Risk and Exploitability

The CVSS score of 7.7 indicates a high‑severity threat, while the EPSS score of less than 1% suggests exploit attempts are rare but possible. The vulnerability is not cataloged in CISA’s KEV list. Attackers can exploit the weakness by invoking administrative endpoints that lack proper policy enforcement; this can be performed by any client with lower trust rather than requiring full authentication. The description does not explicitly state the attack vector, so it is inferred that the attack may be conducted remotely or locally depending on network exposure. The combination of high severity and the likelihood of exploitation places the risk at a level that warrants urgent remediation.

Generated by OpenCVE AI on July 31, 2026 at 00:55 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the OpenClaw 2026.6.5 patch or any later release that fixes the authorization controls
  • Ensure that policy configurations for admin-scoped paths require the correct trust level or role before allowing access
  • Audit the deployment to disable or tightly restrict any unused administrative tools to prevent accidental exposure

Generated by OpenCVE AI on July 31, 2026 at 00:55 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 29 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 17 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Description OpenClaw versions before 2026.6.5 contain an authentication bypass vulnerability that allows lower-trust callers to reach admin-scoped tools. Attackers can perform actions requiring stronger authorization by exploiting insufficient policy checks on configured input paths.
Title OpenClaw < 2026.6.5 Authentication Bypass via Admin Tools
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-862
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 7.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-29T18:26:16.950Z

Reserved: 2026-07-13T16:39:22.251Z

Link: CVE-2026-62207

cve-icon Vulnrichment

Updated: 2026-07-29T18:23:56.154Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T01:00:14Z

Weaknesses