Impact
OpenClaw versions prior to 2026.5.27 contain a flaw identified as CWE‑522 that permits lower‑trust callers to trigger outbound Microsoft Teams requests and cause internal Bot Framework tokens to be exposed. Because these tokens authenticate bots to Microsoft services, disclosure could let an attacker impersonate the bot, access protected resources, or compromise downstream systems. The weakness is an unchecked credential exposure that does not require elevated privileges or special configuration beyond the default deployment.
Affected Systems
The affected product is OpenClaw’s Microsoft Teams integration component. All builds released before 2026.5.27 are vulnerable. Users who deploy these versions and expose the outbound Teams API endpoint to external or lower‑trust callers are at risk.
Risk and Exploitability
The CVSS score of 6.0 classifies the flaw as moderate severity. The EPSS score of less than 1% indicates a low likelihood of widespread exploitation at present. The vulnerability is not listed in the CISA KEV catalog. Attackers would need to send or trigger an outbound call from a lower‑trust context—such as an unauthenticated or unprivileged user—to the Teams API endpoint that inadvertently exposes the Bot Framework token. No elevated privileges or additional configuration beyond the default deployment is required.
OpenCVE Enrichment