#VU125261 Inclusion of Functionality from Untrusted Control Sphere in OpenClaw
Published: April 8, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a remote user to execute arbitrary code.
The vulnerability exists due to inclusion of functionality from an untrusted control sphere in built-in channel setup and login when resolving a workspace channel shadow that claims a bundled channel id before the plugin is explicitly trusted. A remote user can provide a crafted workspace plugin to execute arbitrary code.
Exploitation requires opening or using an untrusted cloned workspace, and the code may run even while the workspace plugin is still disabled.