CVE-2026-28471: OpenClaw 2026.1.14-1 < 2026.2.2 - Allowlist Bypass via displayName and Cross-Homeserver localpart Matching in Matrix Plugin
OpenClaw version 2026.1.14-1 prior to 2026.2.2, with the Matrix plugin installed and enabled, contain a vulnerability in which DM allowlist matching could be bypassed by exact-matching against sender display names and localparts without homeserver validation. Remote Matrix users can impersonate allowed identities by using attacker-controlled display names or matching localparts from different homeservers to reach the routing and agent pipeline.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-28471?
CVE-2026-28471 is considered a critical vulnerability due to the potential for unauthorized access to direct messages.
How do I fix CVE-2026-28471?
To fix CVE-2026-28471, upgrade OpenClaw to version 2026.2.2 or later.
What impact does CVE-2026-28471 have on user privacy?
CVE-2026-28471 can lead to unauthorized users bypassing allowlists, compromising user privacy.
Who is affected by CVE-2026-28471?
CVE-2026-28471 affects users of OpenClaw versions prior to 2026.2.2 when the Matrix plugin is enabled.
Is CVE-2026-28471 a zero-day vulnerability?
CVE-2026-28471 is not classified as a zero-day as a fix has been released with version 2026.2.2.