Improper Authorization in OpenClaw - CVE-2026-32898
Published: May 1, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote attacker to bypass interactive approval prompts for read-class operations.
The vulnerability exists due to improper authorization in resolvePermissionRequest, resolveToolNameForPermission, and shouldAutoApproveToolCall when processing untrusted tool metadata and permissive tool-name heuristics. A remote attacker can supply a malicious or compromised tool invocation with spoofed metadata to bypass interactive approval prompts for read-class operations.
Auto-approval decisions could be influenced by untrusted toolCall.kind values and read-like non-core tool names.