CVE-2026-28469Disclosure(openclaw / openclaw)

LOWCVSS 8.2 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

OpenClaw versions prior to 2026.2.14 contain a webhook routing vulnerability in the Google Chat monitor component that allows cross-account policy context misrouting when multiple webhook targets share the same HTTP path. Attackers can exploit first-match request verification semantics to process inbound webhook events under incorrect account contexts, bypassing intended allowlists and session policies.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-639

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • openclaw

Threat summary

  • 5 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 4 signals
  • Disclosure: 5 classified signals
  • Peaked 2d ago at 2 mentions (2026-03-06); latest day: 1
  • 5 total mentions across 4 days

Affected systems

Vendors
Products
openclaw

Deep dive

Activity timeline5 mentions / 4d
01122Mentions · 2026-03-05: 1Mentions · 2026-03-06: 2Mentions · 2026-03-07: 1Mentions · 2026-03-10: 1Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 1Technical Details · 2026-03-07: 1Technical Details · 2026-03-10: 103-0503-0603-0703-10
Signal classification1 categories
Disclosure
5100.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-051
Disclosure1
2026-03-062
Disclosure2
2026-03-071
Disclosure1
2026-03-101
Disclosure1
Full discourse5 posts
  • DailyCVE@dailycve
    Disclosure

    🔴 OpenClaw, Authorization Bypass, #CVE-2026-28469 (Critical) https://dailycve.com/openclaw-authorization-bypass-cve-2026-28469-critical/

    Post summary

    An announcement of a critical authorization bypass vulnerability CVE-2026-28469 affecting OpenClaw. No further details, PoC, or exploit information are provided.

    0000044
    167 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-28469 OpenClaw versions prior to 2026.2.14 contain a webhook routing vulnerability in the Google Chat monitor component that allows cross-account policy context misrouting … https://www.cve.org/CVERecord?id=CVE-2026-28469

    Post summary

    The text announces a new vulnerability in OpenClaw’s Google Chat monitor component, describing a webhook routing flaw that enables cross‑account policy misrouting. No PoC, exploit, or patch details are provided.

    00000146
    56.6K followersView on X
  • RedPacket Security@RedPacketSec
    Disclosure

    CVE Alert: CVE-2026-28469 - OpenClaw - OpenClaw - https://www.redpacketsecurity.com/cve-alert-cve-2026-28469-openclaw-openclaw/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-28469 #openclaw #

    Post summary

    The post alerts to CVE-2026-28469 affecting OpenClaw and directs readers to a link for further information.

    0000085
    3.5K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-28469 - Critical OpenClaw versions prior to 2026.2.14 contain a webhook routing vulnerability in the Google Chat monitor component that allows cross-account policy context misrouting when multiple webhook... https://www.thehackerwire.com/vulnerability/CVE-2026-28469/ https://t.co/RISQgKk1Ou

    Post summary

    The tweet announces CVE-2026-28469, describing a webhook routing flaw in OpenClaw leading to cross‑account policy misrouting, but provides no PoC, exploit, or patch details.

    0000054
    125 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-28469: CRITICAL] OpenClaw < 2026.2.14 has a critical vulnerability in Google Chat monitor, enabling attackers to misroute requests and bypass security policies, risking unauthorized access.#cve,CVE-2026-28469,#cybersecurity https://cvefind.com/CVE-2026-28469

    Post summary

    The tweet announces CVE-2026-28469, a critical flaw in OpenClaw’s Google Chat monitor that allows attackers to misroute requests and bypass security policies, but provides no proof of concept, exploit code, or patch information.

    0000082
    596 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenclawopenclaw-node.js-

Explore more