Junglewise Threat Intelligence

CVE-2026-26328: OpenClaw iMessage group allowlist authorization bypass via DM pairing store

CVE-2026-26328 · Severity: low · CVSS 3.1 · Published 2026-02-18

Technologies: clawdbot (npm), Openclaw. Vendors: npm, Openclaw.

Executive brief

OpenClaw is a Node.js library for managing iMessage bot integrations and command authorization. A flaw in group allowlist authorization logic allows senders who are approved in direct message (DM) pairing to bypass group-level authorization controls, potentially enabling unauthorized command execution in group chats that should restrict those senders.

Technical details

This is an authorization bypass vulnerability in the iMessage group allowlist enforcement (CWE-284, CWE-863). The vulnerable code in src/imessage/monitor/monitor-provider.ts derives effectiveGroupAllowFrom by combining both the static group allowlist and DM pairing-store identities (storeAllowFrom), causing identity checks meant for direct messages to leak into group chat authorization. An authenticated sender approved via DM pairing can satisfy group authorization even if not explicitly listed in groupAllowFrom, weakening the boundary between DM and group contexts. No user interaction or elevated privileges are required; the attacker only needs to be a previously-paired DM contact. Patches are available in openclaw >= 2026.2.14 and clawdbot >= 2026.2.14.

Affected products

  • OpenClaw openclaw <= 2026.2.13
  • OpenClaw clawdbot <= 2026.1.24-3

Timeline

  • 2026-02-18: disclosed: Advisory GHSA-g34w-4xqq-h79m published
  • 2026-02-18: patched: Fixes available in openclaw >= 2026.2.14 and clawdbot >= 2026.2.14

References

Related threats