Incorrect authorization in OpenClaw - #VU128793
Published: May 1, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote user to execute approved commands on a different node.
The vulnerability exists due to incorrect authorization in exec.approval handling for host=node requests when reusing an approval across nodes under the same operator-controlled gateway fleet. A remote user can replay an approval intended for one node for a different node to execute approved commands on a different node.
The issue affects system.run requests when node identity is not carried through approval and execution checks.