CVE-2026-100575

8.8

OpenClaw · Slack

OpenClaw Slack versions before 2026.8.1 fail to enforce sender allowlists in group messages, allowing unauthorized participants to access Slack agent tools and data.

Executive summary

A critical authorization bypass in OpenClaw Slack allows authenticated users to access restricted agent tools and sensitive data by circumventing sender policies.

Vulnerability

This vulnerability is a missing authorization flaw (CWE-862) occurring within multi-person direct messages. It allows an authenticated user, who is not on the configured allowlist, to trigger Slack agents and interact with tools or data that should be restricted to authorized participants.

Business impact

The exploitation of this flaw could lead to significant data exposure and unauthorized execution of actions within Slack agents. Given the CVSS score of 8.8, this represents a high-risk scenario where internal workflows and sensitive information are accessible to unauthorized parties, potentially resulting in internal data breaches or the manipulation of automated processes.

Remediation

Immediate Action: Update OpenClaw Slack to version 2026.8.1 or later to implement the necessary sender allowlist enforcement.

Proactive Monitoring: Review Slack agent access logs for requests originating from unexpected or non-authorized group participants.

Compensating Controls: Restrict Slack agent access permissions globally until the update is applied, and audit existing group direct message memberships to minimize exposure.

Exploitation status

Public Exploit Available: No

Analyst recommendation

The severity of this vulnerability necessitates immediate attention, particularly for organizations relying on Slack agents for sensitive automation. Administrators should prioritize upgrading to version 2026.8.1 immediately to close the authorization gap and prevent unauthorized access to internal tools.

More OpenClaw CVEs all →

History

  1. Disclosed CVE record published
  2. Collected by CVE Brief via github
  3. Analyst report written
  4. Published in the daily brief high section

Sources