Junglewise Threat Intelligence

OpenClaw MSTeams thread history sender allowlist bypass via Graph API

Severity: low · CVSS 3.1 · Published 2026-04-28

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is a popular tool for managing and filtering Microsoft Teams communications. A vulnerability allows attackers with valid authentication to bypass message filtering restrictions and retrieve team conversations that should have been blocked by sender allowlists, potentially exposing sensitive communications that organizations intended to restrict.

Technical details

OpenClaw before version 2026.3.31 fails to properly enforce sender allowlist restrictions when fetching Microsoft Teams thread history through the Microsoft Graph API. The vulnerability is classified as improper restriction of rendered UI layers before remote access (CWE-441). An authenticated attacker can retrieve thread messages that should be filtered by sender allowlists by directly accessing the Graph API, bypassing the application's message filtering logic. The fix is available in version 2026.3.31 and later.

Affected products

  • OpenClaw OpenClaw <=2026.3.28

Timeline

  • 2026-03-31: disclosed
  • 2026-03-31: patched: Fix released in version 2026.3.31
  • 2026-04-28: advisory

References

Related threats