PT-2026-31954 · Openclaw · Openclaw
Peng Zhou
·
Published
2026-03-30
·
Updated
2026-04-10
·
CVE-2026-35619
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
OpenClaw versions prior to 2026.3.24
Description
OpenClaw contains an authorization bypass issue in the HTTP '/v1/models' endpoint. The endpoint does not enforce operator read scope requirements, allowing attackers with only 'operator.approvals' scope to enumerate gateway model metadata. This bypasses the stricter WebSocket RPC authorization checks. The HTTP compatibility route allows access to model metadata without the necessary 'operator.read' scope, creating an inconsistency between the WebSocket RPC and HTTP surfaces.
Recommendations
Update to version 2026.3.24 or later.
Fix
Improper Access Control
Incorrect Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Openclaw