CVE-2026-28473
Last modified
CVE-2026-28473 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. OpenClaw versions prior to 2026.2.2 contain an authorization bypass vulnerability where clients with operator.write scope can approve or deny exec approval requests by sending the /approve chat command. The /approve command path invokes exec.approval.resolve through an internal privileged gateway client, bypassing the operator.approvals permission check that protects direct RPC calls.. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
OpenClaw versions prior to 2026.2.2 contain an authorization bypass vulnerability where clients with operator.write scope can approve or deny exec approval requests by sending the /approve chat command. The /approve command path invokes exec.approval.resolve through an internal privileged gateway client, bypassing the operator.approvals permission check that protects direct RPC calls.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openclaw | Openclaw | < 2026.2.2 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-28473?
How severe is CVE-2026-28473?
How do I fix CVE-2026-28473?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-28468OpenClaw versions 2026.1.29-beta.1 prior to 2026.2.14 contai…7.7
- CVE-2026-28469OpenClaw versions prior to 2026.2.14 contain a webhook routi…8.2
- CVE-2026-2847A vulnerability was detected in UTT HiPER 520 1.7.7-160105. …7.3
- CVE-2026-28470OpenClaw versions prior to 2026.2.2 contain an exec approval…9.8
- CVE-2026-28471OpenClaw version 2026.1.14-1 prior to 2026.2.2, with the Mat…6.3
- CVE-2026-28472OpenClaw versions prior to 2026.2.2 contain a vulnerability …9.8
- CVE-2026-28474OpenClaw's Nextcloud Talk plugin versions prior to 2026.2.6 …9.8
- CVE-2026-28475OpenClaw versions prior to 2026.2.13 use non-constant-time s…3.7
- CVE-2026-28476OpenClaw versions prior to 2026.2.14 contain a server-side r…5.8
- CVE-2026-28477OpenClaw versions prior to 2026.2.14 contain an oauth state …7.1
- CVE-2026-28478OpenClaw versions prior to 2026.2.13 contain a denial of ser…8.7
- CVE-2026-28479OpenClaw versions prior to 2026.2.15 use SHA-1 to hash sandb…9.1
Are you affected by CVE-2026-28473?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
