Vulnerability GHSA-g7fw-3gjp-g5hf

Medium Risk
MEDIUM RISK
CVSS Score: 6.5
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
7 hours ago
October 05, 2026 at 11:27 PM UTC
OpenClaw: Channel read actions could skip target allowlists
2026.2.2 - 2026.8.1-beta.3
2026.2.2 - 2026.8.1-beta.3

Summary

OpenClaw: Channel read actions could skip target allowlists

Details

Summary

Channel read actions could skip target allowlists. In affected versions, explicit read targets in Microsoft Teams, Feishu, Matrix, and Google Chat could reach channels or rooms outside the configured read policy.

This advisory is scoped to caller-supplied targets for message, reaction, pin, member, and related metadata reads in the named plugins. It does not change OpenClaw's trusted-operator model or create per-user isolation within one Gateway.

Impact

A lower-trust sender or steered agent with access to a channel read action could retrieve content or metadata from a target excluded by the operator's channel allowlist. Practical impact depends on the bot account's platform permissions.

Patched Versions

The first stable patched version is 2026.8.1.

Mitigations

upgrade each affected channel plugin to 2026.8.1 or later. Before upgrading, disable explicit-target read actions or limit the connected bot account to allowed channels at the platform level.

Timeline

Published
7 hours ago
October 05, 2026 at 11:27 PM UTC
Fixed (2026.8.1)
1 month ago
August 31, 2026 at 02:00 AM UTC
Fixed (2026.8.1)
1 month ago
August 31, 2026 at 02:00 AM UTC
Fixed (2026.8.1)
1 month ago
August 31, 2026 at 02:01 AM UTC
Fixed (2026.8.1)
Unknown
Unknown
Last Modified
7 hours ago
October 05, 2026 at 11:45 PM UTC