CVE-2026-100587

8.8

OpenClaw · OpenClaw

OpenClaw versions before 2026.7.1 contain an authorization bypass vulnerability allowing non-owner channel senders to install malicious plugins and execute processes with application privileges.

Executive summary

An authorization bypass vulnerability in OpenClaw allows authenticated attackers to execute arbitrary code and install unauthorized plugins, posing a high risk to system integrity and confidentiality.

Vulnerability

This is a Missing Authorization flaw (CWE-862) occurring within the Codex computer-use installation command. The vulnerability allows any authenticated user with channel access to bypass owner verification, enabling the execution of MCP processes and installation of plugins with the privileges of the OpenClaw user.

Business impact

The vulnerability carries a CVSS score of 8.8, reflecting its high severity and potential for significant impact. Successful exploitation allows an attacker to gain unauthorized control over the application environment, potentially leading to full compromise of host system data integrity and unauthorized service operations. Such access could result in severe operational disruption and the potential for lateral movement within the host infrastructure.

Remediation

Immediate Action: Upgrade OpenClaw to version 2026.7.1 or later to remediate the authorization check flaw.

Proactive Monitoring: Review application access logs for unexpected Codex installation commands or unauthorized plugin registration events originating from non-owner accounts.

Compensating Controls: Implement strict network segmentation and restrict channel access to authorized users only to minimize the exposure of the vulnerable installation endpoint.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Given the high CVSS score and the critical nature of authorization bypass vulnerabilities, organizations should treat this as a high-priority update. Administrators must ensure all OpenClaw instances are updated to version 2026.7.1 immediately to eliminate the risk of arbitrary plugin installation and unauthorized code execution.

More OpenClaw CVEs all →

History

  1. Disclosed CVE record published
  2. Collected by CVE Brief via github
  3. Analyst report written
  4. Published in the daily brief high section

Sources

Originally found and disclosed by wwwvwwvwwwwwvwwvw, per the CVE Program record.