Description
OpenClaw before 2026.3.22 contains a webhook reply delivery vulnerability that allows attackers to rebind chat replies to unintended users by exploiting mutable username matching instead of stable numeric user identifiers. Attackers can manipulate username changes to redirect webhook-triggered replies to different users, bypassing the intended recipient binding recorded in webhook events.
Problem types
CWE-807 Reliance on Untrusted Inputs in a Security Decision
Product status
Any version before 2026.3.22
2026.3.22 (semver)
Credits
Nathan (@nexrin)
KeenSecurityLab
References
github.com/...enclaw/security/advisories/GHSA-wv46-v6xc-2qhf (GitHub Security Advisory (GHSA-wv46-v6xc-2qhf))
github.com/...ommit/630f1479c44f78484dfa21bb407cbe6f171dac87 (Patch Commit #1)
github.com/...ommit/7ade3553b74ee3f461c4acd216653d5ba411f455 (Patch Commit #2)
www.vulncheck.com/...ia-username-resolution-in-synology-chat (VulnCheck Advisory: OpenClaw < 2026.3.22 - Webhook Reply Rebinding via Username Resolution in Synology Chat)