OpenClaw before 2026.3.22 contains a privilege escalation vulnerability where bootstrap setup codes are not bound to intended device roles and scopes during pairing. Attackers can exploit this during first-use device pairing to escalate privileges beyond their intended role and scope.
During the device first-use pairing procedure, bootstrap configuration codes are not bound to specific device roles or permission scopes. The lack of this binding means that an attacker who can participate in the pairing process may use bootstrap codes in a manner unintended by the manufacturer. As a result, it is possible to obtain higher privileges than those that should be granted to a given role or device.
An attacker can escalate their privileges beyond the intended role level and scope (privilege escalation), gaining unauthorized access to OpenClaw system functions or resources restricted to privileged users or roles.
OpenClaw should be updated to version 2026.3.22 or later, in which bootstrap codes are properly bound to device roles and permission scopes during pairing. Patch details are available in the manufacturer's references and in commit a600c72ed7d0045a27f58bf031d2b36ecb0141c9 in the GitHub repository.
OpenClaw in all versions before 2026.3.22
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XOpenclaw
APPOpenclaw< 2026.3.22
Related vulnerabilities
OpenClaw: ominięcie uwierzytelniania przez nieodświeżane tokeny bearer po rotacji SecretRef
OpenClaw: privilege escalation przez pominięcie zdarzeń async exec w heartbeat
OpenClaw: Authentication Bypass w trasie pomocniczej sandbox noVNC
OpenClaw: ekspozycja Chrome DevTools Protocol poza sandbox
OpenClaw — Auth Bypass w walidacji Feishu webhook umożliwia RCE