Junglewise Threat Intelligence

OpenClaw session visibility check bypass in shared memory search

Severity: low · CVSS 3.1 · Published 2026-06-16

Technologies: Openclaw. Vendors: Openclaw.

Executive brief

OpenClaw is an open-source platform for orchestrating memory-based workflows. A vulnerability in its shared memory search feature could allow authenticated users to access memory entries they should not be able to see, potentially exposing sensitive data depending on what is stored and who has access to the system.

Technical details

This vulnerability is an authorization bypass (CWE-862) in OpenClaw's shared memory search functionality. An authenticated caller can bypass session visibility checks to retrieve memory entries without proper authorization. The vulnerability requires network access and authentication but no user interaction; attackers can retrieve memory entries that should be restricted to other sessions. The issue was patched in version 2026.4.29, with affected versions being 2026.4.27 and earlier. OpenClaw's threat model assumes authenticated Gateway operators are trusted; the impact depends on configuration and whether lower-trust input can reach the search path.

Affected products

  • OpenClaw OpenClaw < 2026.4.29

Timeline

  • 2026-05-28: disclosed
  • 2026-04-29: patched: Version 2026.4.29

References

Related threats