Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Edenfunf

#42706of 57,343
6.9Total CVSS
Vulnerabilities · 1
PT-2026-99202
6.9
2026-09-26
Unknown · Openclaw Line · CVE-2026-100566
**Name of the Vulnerable Software and Affected Versions** OpenClaw LINE versions prior to 2026.8.1 **Description** An access control issue exists where the group allowlist mode silently inherits values from the DM `allowFrom` variable when `groupAllowFrom` is not explicitly configured. This allows attackers who are members of a group to trigger the agent, bypassing intended group allowlist restrictions if the direct message access is broader than the intended group access. **Recommendations** Update to version 2026.8.1 or later. Explicitly configure the `groupAllowFrom` variable to prevent the inheritance of DM access settings.