Openclaw · Openclaw · CVE-2026-35674
**Name of the Vulnerable Software and Affected Versions**
OpenClaw versions prior to 2026.5.18
**Description**
A scope bypass exists in the Gateway 'chat.send' endpoint. This issue allows clients with the `operator.write` scope to execute privileged commands by utilizing inherited external routes. This bypass circumvents the requirements for `operator.approvals` and `operator.admin` scopes, enabling unauthorized mutations of plugins, configurations, MCP, allowlists, and ACP.
**Recommendations**
Update to version 2026.5.18 or later.