Junglewise Threat Intelligence

OpenClaw bootstrap token replay in pairing scope widening

Severity: low · CVSS 3.1 · Published 2026-06-16

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is a node package used for managing gateway operations and pairing authorization. A vulnerability in versions before 2026.5.12 allows attackers with access to pending bootstrap tokens to replay them with wider scopes than originally intended, potentially gaining unauthorized pairing authority. This could enable unauthorized configuration changes or access expansion if an attacker can reach the affected feature.

Technical details

The vulnerability is a bootstrap token replay issue (improper privilege management, CWE-269) affecting OpenClaw's pending pairing scope validation. An attacker with access to a pending bootstrap token can reuse the token before approval and expand the requested scope set beyond its intended limits. The attack requires access to the token and an enabled, reachable pairing feature; it does not break OpenClaw's trusted-operator model for authenticated operators or installed plugins. The vulnerability was patched in version 2026.5.12; versions up to and including 2026.5.10-beta.2 are affected.

Affected products

  • OpenClaw OpenClaw <= 2026.5.10-beta.2

Timeline

  • 2026-05-28: disclosed
  • 2026-05-28: patched: Fixed in version 2026.5.12
  • 2026-06-16: other: Advisory GHSA-h9h6-pwqv-j9hv published
  • 2026-06-18: other: Advisory GHSA-h9h6-pwqv-j9hv withdrawn as duplicate of GHSA-9v8j-9c9g-w66c

References

Related threats