Authorization bypass through user-controlled key in OpenClaw - #VU128805
Published: May 1, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a remote user to bypass sender-scoped authorization.
The vulnerability exists due to improper access control in tools.elevated.allowFrom matching logic when evaluating elevated sender authorization. A remote user can supply broader-than-intended identity signals to bypass sender-scoped authorization.
Only certain elevated-mode configurations are vulnerable.