OpenClaw before 2026.5.4 contains an authorization bypass vulnerability in the bundled device-pair plugin that allows non-owner authorized chat senders to issue device-pairing bootstrap codes without proper scope validation. Attackers with chat command access can create setup codes to enroll devices with operator/node capabilities, granting persistent credentials until manual removal.
| Vendor | Product | Versions |
|---|---|---|
| openclaw | openclaw | 0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| open source | openclaw | cert_advisory | 90% |
Updated affected versions to include 2026.5.3, changed severity to CRITICAL, and noted that the vulnerability is actively exploited.
Initial creation