CVE-2026-32916: OpenClaw 2026.3.7 < 2026.3.11 - Authorization Bypass in Plugin Subagent Routes via Synthetic Admin Scopes
OpenClaw versions 2026.3.7 before 2026.3.11 contain an authorization bypass vulnerability where plugin subagent routes execute gateway methods through a synthetic operator client with broad administrative scopes. Remote unauthenticated requests to plugin-owned routes can invoke runtime.subagent methods to perform privileged gateway actions including session deletion and agent execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
OpenClawto a version that resolves this vulnerability.Fixed in 2026.3.11 - Compensating control
Block remote unauthenticated access to plugin-owned subagent routes at the network layer (e.g., firewall/ACL) until OpenClaw is upgraded.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-32916?
CVE-2026-32916 is considered a high severity vulnerability due to its potential for an authorization bypass.
How do I fix CVE-2026-32916?
To fix CVE-2026-32916, upgrade OpenClaw to version 2026.3.11 or later.
What are the implications of CVE-2026-32916?
The implications of CVE-2026-32916 include unauthorized access to sensitive functionalities via plugin subagent routes.
Which versions of OpenClaw are affected by CVE-2026-32916?
OpenClaw versions 2026.3.7 through 2026.3.10 are affected by CVE-2026-32916.
Is CVE-2026-32916 related to any specific functionality in OpenClaw?
Yes, CVE-2026-32916 specifically relates to the authorization bypass in plugin subagent routes.