Description
OpenClaw versions prior to 2026.2.25 fail to enforce sender authorization checks for interactive callbacks including block_action, view_submission, and view_closed in shared workspace deployments. Unauthorized workspace members can bypass allowFrom restrictions and channel user allowlists to enqueue system-event text into active sessions.
Problem types
CWE-863: Incorrect Authorization
Product status
Any version before 2026.2.25
2026.2.25 (semver)
Credits
tdjackey
References
github.com/...enclaw/security/advisories/GHSA-x2ff-j5c2-ggpr (GitHub Security Advisory (GHSA-x2ff-j5c2-ggpr))
github.com/...ommit/ce8c67c314b93f570f53c2a9abc124e1e3a54715 (Patch Commit)
www.vulncheck.com/...ractive-callbacks-via-sender-check-skip (VulnCheck Advisory: OpenClaw < 2026.2.25 - Authorization Bypass in Interactive Callbacks via Sender Check Skip)