PT-2026-99221 · Npm · Openclaw

·

CVE-2026-100585

·

Published

2026-09-26

·

Updated

2026-09-26

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions OpenClaw versions prior to 2026.7.1
Description The openclaw npm package fails to enforce owner-only authorization for Claude Code permission prompts sent via the MCP channel bridge. This allows an authorized non-owner with channel command access to approve or deny pending permission requests intended for the owner, enabling actions to proceed without the owner's consent. The impact varies based on the requested host capabilities and the specific pending action.
Recommendations Update to version 2026.7.1.

Exploit

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-100585
GHSA-P5G8-M35V-7M82

Affected Products

Openclaw