Junglewise Threat Intelligence

CVE-2026-33578: OpenClaw sender policy bypass in Google Chat and Zalouser extensions

CVE-2026-33578 · Severity: medium · CVSS 4.3 · Published 2026-03-31

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw, a tool used for managing chat bots, contains a security flaw in its Google Chat and Zalouser extensions. This flaw causes security rules meant to restrict who can talk to a bot to fail, effectively leaving the bot open to anyone in a group. As a result, unauthorized users can interact with bots and potentially access features or information that should have been restricted to specific approved senders.

Technical details

A vulnerability classified as Incorrect Authorization (CWE-863) exists in OpenClaw's Google Chat and Zalouser extensions. The issue stems from a flaw in policy resolution where route-level group allowlist policies silently downgrade to an 'open' policy instead of enforcing configured sender restrictions. An authenticated attacker (any member of an allowlisted Google Chat space or Zalouser group) can exploit this to bypass intended sender-level restrictions and interact with bots. The vulnerability is fixed in version 2026.3.28.

Affected products

  • OpenClaw OpenClaw < 2026.3.28

Timeline

  • 2026-03-29: advisory: Vendor advisory published on GitHub
  • 2026-03-31: disclosed: NVD publication date
  • 2026-03-28: patched: Version 2026.3.28 released with fix

References

Related threats