Description
OpenClaw before 2026.6.5 contain an authorization bypass vulnerability in node exec approvals that allows lower-trust callers to execute actions beyond their intended authorization by using different gateway and node environments. Attackers can exploit mismatched environment configurations to persist or execute actions that exceed the caller's approved permissions.
Published: 2026-07-17
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

OpenClaw versions prior to 2026.6.5 contain an authorization bypass flaw in the node exec approvals mechanism. The vulnerability permits callers with lower trust levels to execute actions that exceed their approved permissions by manipulating gateway and node environment settings. This flaw can be exploited to persist processes or perform operations beyond the intended scope, effectively providing an unauthorized privilege increase that may compromise the confidentiality and integrity of the system.

Affected Systems

All releases of OpenClaw before 2026.6.5 are affected, regardless of the underlying Node.js version. The flaw is present in the OpenClaw application itself and is tied to the node exec approvals component, so any deployment that uses a matching gateway and node environment configuration is potentially vulnerable.

Risk and Exploitability

With a CVSS score of 7.7, the issue is considered moderate‑severe. The EPSS score of less than 1% indicates a very low current exploitation probability, and it has not yet been listed in the CISA KEV catalog. The likely attack vector involves altering or misaligning gateway and node environment settings to trigger the exec approval logic, requiring the attacker to have some level of access to the application or its deployment configuration. If successful, the attacker can execute privileged actions beyond their intended authorization, potentially leading to data manipulation or persistence mechanisms.

Generated by OpenCVE AI on July 31, 2026 at 00:49 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade OpenClaw to version 2026.6.5 or later.
  • Verify that gateway and node environment configurations are identical and correctly aligned.
  • Restrict node exec approvals to trusted callers and enforce strict role‑based access controls.

Generated by OpenCVE AI on July 31, 2026 at 00:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 29 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 17 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Description OpenClaw before 2026.6.5 contain an authorization bypass vulnerability in node exec approvals that allows lower-trust callers to execute actions beyond their intended authorization by using different gateway and node environments. Attackers can exploit mismatched environment configurations to persist or execute actions that exceed the caller's approved permissions.
Title OpenClaw < 2026.6.5 Authorization Bypass via Node Exec Approvals
First Time appeared Openclaw
Openclaw openclaw
Weaknesses CWE-863
CPEs cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Vendors & Products Openclaw
Openclaw openclaw
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 7.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Openclaw Openclaw
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-07-29T18:21:31.975Z

Reserved: 2026-07-13T16:40:10.961Z

Link: CVE-2026-62228

cve-icon Vulnrichment

Updated: 2026-07-29T18:21:27.751Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T01:00:14Z

Weaknesses