CVE-2026-27003Disclosure(openclaw / openclaw)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch openclaw openclaw systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw is a personal AI assistant. Telegram bot tokens can appear in error messages and stack traces (for example, when request URLs include `https://api.telegram.org/bot<token>/...`). Prior to version 2026.2.15, OpenClaw logged these strings without redaction, which could leak the bot token into logs, crash reports, CI output, or support bundles. Disclosure of a Telegram bot token allows an attacker to impersonate the bot and take over Bot API access. Users should upgrade to version 2026.2.15 to obtain a fix and rotate the Telegram bot token if it may have been exposed.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-522

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 2 classified signals
  • Peaked 2d ago at 3 mentions (2026-02-20); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-02-20: 3Mentions · 2026-03-01: 1Mentions · 2026-03-09: 1Patch / Workaround · 2026-03-09: 1Technical Details · 2026-02-20: 2Technical Details · 2026-03-01: 102-2003-0103-09
Signal classification3 categories
Disclosure
240.0%
General
240.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-02-203
Disclosure2General1
2026-03-011
General1
2026-03-091
Patch1
Full discourse5 posts
  • Coyote Security Scanner@CoyoteSecure
    General

    Okay, Sunday morning dev session complete, here's what we built this morning 💪🐺 Expand OpenClaw security coverage by implementing ten new CVE checks in the existing version and precondition analyzer model, with full test and doc updates. Added CVE checks: - CVE-2026-26324 (SSRF IPv4-mapped IPv6 guard bypass) - CVE-2026-26325 (http://system.run rawCommand/argv mismatch bypass) - CVE-2026-26316 (BlueBubbles webhook auth bypass) - CVE-2026-26326 (skills.status secret disclosure) - CVE-2026-27003 (Telegram token log exposure) - CVE-2026-27009 (Control UI stored XSS) - CVE-2026-26320 (deep-link prompt truncation/social engineering) - CVE-2026-27487 (macOS keychain refresh command injection) - CVE-2026-27486 (cleanup cross-process termination) - CVE-2026-27485 (skill packager symlink file disclosure) Implementation details: - Extend `_CVE_FIX_VERSIONS` with new fixed-version thresholds. - Add recursive config string/pattern helpers for indicator detection. - Add all new checks to `OpenClawSecurityAnalyzer.analyze(...)`. - Extend `_build_cve_check(...)` with optional `min_affected_version` handling for range-sensitive CVEs (used by CVE-2026-26320). - Keep existing status semantics: VULNERABLE/WARNING/SAFE/UNKNOWN. Tests: - Expand `tests/test_openclaw_security.py` to validate: - new CVE presence - version-threshold behavior - patched-version risky-config WARNING behavior - UNKNOWN behavior for all tracked CVEs Docs: - Update README OpenClaw coverage from 5 to 15 CVEs. - Add all new CVEs to "OpenClaw CVEs Covered" and "Checks Performed" tables. - Refresh OpenClaw example summary text. - Rewrite http://OpenClawCVEs.md with full 15-CVE coverage and per-check logic. Validation: - `python3 -m unittest tests/test_openclaw_security.py` (pass) - `python3 -m unittest discover -s tests` (pass, 31 tests)

    Post summary

    The post details the addition of ten new CVE checks to OpenClaw’s security analyzer, including CVE identifiers and brief technical descriptions, but does not mention PoC, exploits, active use, patches, or false positives.

    20010192
    225 followersView on X
  • ذاتي | أَتمَتة + ذكاء اصطناعي@_zatii__
    Patch

    OpenClaw 2026.3.8: 🔒 ACP provenance يتحقق مصدر الطلبات 💾 نسخ احتياطي يحمي الانتشار YOLO 📱 إنهاء تكرار Telegram 🛡️ 12+ إصلاح أمني (مثل CVE-2026-27003) نجح في إصلاح أكثر مما كسر – تقدم مستقر. #الذكاء_الاصطناعي #AI

    Post summary

    The post announces a new OpenClaw release that includes security fixes, notably CVE-2026-27003, highlighting a patch rather than an exploit or active attack.

    0001082
    280 followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-27003 📊 Severity: 6.9 🚨 Risk Level: Medium 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-27003 #CVE-2026-27003 #CVE #Medium #CyberSecurity #InfoSec https://t.co/oSUDLXHdb5

    Post summary

    The tweet is a basic CVE alert that lists the ID, severity, and a link to the NVD page, with no additional technical or exploitation details.

    0001036
    56 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-27003 OpenClaw is a personal AI assistant. Telegram bot tokens can appear in error messages and stack traces (for example, when request URLs include `https://api.telegram.o… https://www.cve.org/CVERecord?id=CVE-2026-27003

    Post summary

    The post highlights that CVE‑2026‑27003 in OpenClaw can leak Telegram bot tokens via error messages and stack traces, without mentioning a PoC, exploit, or patch.

    00000111
    56.4K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-27003 Telegram Bot Token Exposure Vulnerability in OpenClaw Prior to 2026.2.15 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-27003

    Post summary

    A new vulnerability (CVE-2026-27003) was disclosed, exposing Telegram bot tokens in OpenClaw versions before 2026.2.15. No PoC, exploit, or mitigation information is provided.

    0000049
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more