Junglewise Threat Intelligence

OpenClaw Nextcloud Talk room authorization bypass via name collision

Severity: low · CVSS 3.1 · Published 2026-04-10

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw integrates with Nextcloud Talk to enable collaboration room functionality within business communications platforms. The vulnerability allows an attacker with existing access to create or identify a room with a name similar to a protected room, then use that similarly-named room to bypass authorization policies meant to restrict access to specific protected rooms. This could result in unauthorized access to sensitive conversations or data stored in protected Nextcloud Talk rooms.

Technical details

The vulnerability is a policy confusion / authorization bypass issue (CWE-807, CWE-639, CWE-863) in OpenClaw's Nextcloud Talk integration. The root cause is that room authorization matching was performed against colliding room display names rather than stable, unique room tokens. An attacker who has valid credentials and integration permissions can create or reference a room with a name that collides with a protected room name in the allowlist policy, bypassing the intended access controls. The attack requires authentication (PR:L) and involves network access to the integration endpoints. The fix, shipped in version 2026.3.22 and confirmed in versions 2026.3.23 and 2026.3.23-2, changes the authorization logic to key room identity on stable room tokens (in `extensions/nextcloud-talk/src/policy.ts` and `extensions/nextcloud-talk/src/inbound.ts`) instead of display names, eliminating name-based collisions.

Affected products

  • OpenClaw openclaw < 2026.3.22

Timeline

  • 2026-03-24: disclosed: Advisory GHSA-xhq5-45pm-2gjr published
  • 2026-03-22: patched: Fix released in version 2026.3.22
  • 2026-04-10: advisory: Duplicate advisory GHSA-5f7h-p83x-5vc2 published, later withdrawn
  • 2026-04-18: other: Duplicate advisory GHSA-5f7h-p83x-5vc2 withdrawn as duplicate of GHSA-xhq5-45pm-2gjr

References