CVE-2026-22172: OpenClaw < 2026.3.12 - Scope Elevation in WebSocket Shared-Auth Connections
OpenClaw versions prior to 2026.3.12 contain an authorization bypass vulnerability in the WebSocket connect path that allows shared-token or password-authenticated connections to self-declare elevated scopes without server-side binding. Attackers can exploit this logic flaw to present unauthorized scopes such as operator.admin and perform admin-only gateway operations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22172?
CVE-2026-22172 is classified as a high severity vulnerability due to the potential for unauthorized scope elevation.
What causes CVE-2026-22172?
CVE-2026-22172 arises from an authorization bypass vulnerability in the WebSocket connect path in OpenClaw.
How do I fix CVE-2026-22172?
To mitigate CVE-2026-22172, upgrade OpenClaw to version 2026.3.12 or later.
What versions of OpenClaw are affected by CVE-2026-22172?
OpenClaw versions prior to 2026.3.12 are affected by CVE-2026-22172.
What type of applications are impacted by CVE-2026-22172?
CVE-2026-22172 impacts applications utilizing WebSocket shared-auth connections in OpenClaw.