CVE-2026-100553: OpenClaw 2026.6.9 before 2026.8.1 Cross-Context Policy Bypass via Feishu unpin
OpenClaw versions >= 2026.6.9 and < 2026.8.1 do not declare the native chatId parameter as a delivery target in the Feishu unpin feature, so unpin requests can bypass the shared same-provider cross-context target check. When tools.message.crossContext.allowWithinProvider is disabled, an admitted (authenticated) sender can remove a pin from another Feishu group that the sender and the configured account are otherwise permitted to access, bypassing the intended cross-context message mutation policy. Feishu membership and group authorization still apply, and the demonstrated impact is limited to message mutation (pin removal). The issue is fixed in 2026.8.1.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
OpenClawto a version that resolves this vulnerability.Fixed in 2026.8.1
Event History
Frequently Asked Questions
Who can exploit this issue?
An authenticated sender admitted to the OpenClaw environment can exploit it if they and the configured account are permitted to access the target Feishu group. Feishu membership and group authorization still restrict which groups and pins can be affected.
Is an installation affected when cross-context actions are disabled?
Yes. The bypass specifically applies when tools.message.crossContext.allowWithinProvider is disabled, because Feishu unpin requests can evade the intended same-provider cross-context target check.
What is the impact of successful exploitation?
The demonstrated impact is limited to removing a pin in another accessible Feishu group. The provided information does not indicate confidentiality or availability impact.
What versions should be remediated?
OpenClaw versions from 2026.6.9 up to, but not including, 2026.8.1 are affected. Upgrade to 2026.8.1, which fixes the issue.