PT-2026-99230 · Openclaw · Openclaw

·

CVE-2026-100594

·

Published

2026-09-26

·

Updated

2026-09-28

CVSS v4.0

7.1

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions OpenClaw versions prior to 2026.7.1
Description An authorization bypass exists in the '/export-trajectory' endpoint, allowing non-owner senders to request and receive trajectory bundles intended only for the owner. This occurs due to insufficient authorization checks, enabling attackers to access prompts, model messages, tool schemas, runtime events, and local path metadata from affected sessions.
Recommendations Update to version 2026.7.1 or later. Restrict access to the '/export-trajectory' endpoint as a temporary mitigation measure.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-100594
GHSA-89CW-7452-CFRF

Affected Products

Openclaw