Executive brief
OpenClaw is a library used for managing Google Chat integrations. A security flaw in how it handles group policies allows unauthorized users to bypass access controls by exploiting mutable chat room names. An attacker could rename a chat space to match a protected group's name, potentially gaining access to restricted resources or sensitive data.
Technical details
OpenClaw before version 2026.3.25 is vulnerable to an authorization bypass (CWE-807, CWE-863) in its Google Chat group policy enforcement mechanism. The vulnerability stems from the system's reliance on mutable 'displayName' attributes of Google Chat spaces for security decisions rather than stable, immutable identifiers. An attacker with low privileges can trigger a policy rebinding by changing a space's display name or creating a name collision, effectively tricking the authorization logic into granting access to protected resources. The fix, introduced in commit 11ea1f6, mandates the use of stable group IDs for all access decisions and fails closed on deprecated room keys.
Affected products
- OpenClaw openclaw <= 2026.3.24
Timeline
- 2026-03-26: patched: Fix committed to main branch
- 2026-04-09: disclosed: NVD publication of CVE-2026-35617
- 2026-04-10: advisory: GitHub Advisory Database entry published