#VU125206 Incorrect authorization in OpenClaw
Published: April 8, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a local user to execute arbitrary code.
The vulnerability exists due to improper access control in the gateway local shared-auth reconnect handling when processing silent local reconnect scope-upgrade requests. A local user can trigger a silent reconnect that auto-approves a scope upgrade to reach node remote code execution.
The issue can silently widen a paired device scope from operator.read to operator.admin without explicit pairing approval.