Junglewise Threat Intelligence

OpenClaw incorrect authorization in Slack plugin approval gate

Severity: medium · CVSS 0 · Published 2026-07-02

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is a gateway platform that integrates with Slack to manage plugin actions. A flaw in the Slack plugin's approval process allowed users who were only authorized to approve execution commands to also approve plugin-specific actions. This could lead to unauthorized plugin operations being performed if an organization relies on separate approval levels for different types of tasks.

Technical details

An incorrect authorization vulnerability (CWE-863) exists in OpenClaw's Slack plugin where the 'exec' approver gate was used to validate plugin actions. In affected versions, a Slack user with permissions limited to execution approvals could successfully resolve and authorize plugin-specific approval requests. This bypasses the intended separation of duties between different approval roles. The vulnerability is reachable if the Slack plugin feature is enabled and configured with specific approval gates. A patch is available in version 2026.5.12.

Affected products

  • OpenClaw openclaw < 2026.5.12

Timeline

  • 2026-05-28: disclosed
  • 2026-07-02: advisory
  • 2026-05-12: patched: First stable patched version

References