Improper Authorization in OpenClaw - #VU126447
Published: April 17, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote user to bypass authorization for Matrix room control commands.
The vulnerability exists due to improper access control in Matrix room control-command authorization when handling room traffic from senders learned from the Matrix DM pairing store. A remote user can send messages in a target Matrix room to bypass authorization for Matrix room control commands.
Exploitation requires a sender already present in the pairing store and able to send to the target Matrix room.