
CVE-2026-35652 OpenClaw before 2026.3.22 contains an authorization bypass vulnerability in interactive callback dispatch that allows non-allowlisted senders to execute action handle… https://www.cve.org/CVERecord?id=CVE-2026-35652
Post summary
The post gives a brief disclosure of CVE-2026-35652, outlining an authorization bypass in OpenClaw that lets unauthorized senders execute actions, but it does not provide any PoC, exploit code, patch, or evidence of active exploitation.
