PT-2026-60616 · Openclaw · Openclaw

·

CVE-2026-62206

·

Published

2026-07-17

·

Updated

2026-07-17

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions OpenClaw versions prior to 2026.6.9
Description Discord moderation actions lack proper authorization. This allows a lower-trust caller or a configured input path to execute moderation tasks that should require a stronger authorization or policy check. The actual impact is determined by the operator's configuration and whether lower-trust input can access the affected path.
Recommendations Update to version 2026.6.9 or later.

Exploit

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-62206
GHSA-F6P7-6326-VF7V

Affected Products

Openclaw