Description
OpenClaw before 2026.5.18 contains an insufficient provenance validation vulnerability in node event handling that allows paired nodes to forge exec lifecycle events without system.run authorization. A malicious or compromised paired node can send crafted node.event messages to the gateway, steering target sessions into exec-event paths that expose capabilities the reduced node surface should not provide.
Problem types
Product status
Any version before 2026.5.18
2026.5.18 (semver)
Credits
cantinagen
Ellahi (@Ellahinator)
References
github.com/...enclaw/security/advisories/GHSA-3c6j-hq33-3jv4 (GitHub Security Advisory (GHSA-3c6j-hq33-3jv4))
www.vulncheck.com/...lifecycle-event-forgery-via-paired-node