Executive brief
OpenClaw, a plugin-based software framework, contains a flaw in how it handles plugin installations. An authorized user with high-level access could bypass security policies to perform actions or install components beyond their intended permissions. This could lead to unauthorized changes to the system's configuration or the persistence of unauthorized software.
Technical details
An incorrect authorization vulnerability (CWE-863) exists in OpenClaw's plugin install wrappers. The root cause is a failure to correctly enforce the install policy check when the feature is enabled. A network-based attacker with high privileges (such as a Gateway operator) can bypass these checks to execute or persist actions that should be restricted by policy. The impact is primarily to system integrity, as it allows for unauthorized modifications. The issue is resolved in version 2026.6.9.
Affected products
- OpenClaw OpenClaw 2026.6.5 to 2026.6.8
Timeline
- 2026-06-30: advisory: GHSA-wgq8-x5wm-g4rw published
- 2026-07-13: disclosed: NVD publication date