Privilege Escalation Vulnerability in OpenClaw by OpenClaw
CVE-2026-42432
7.3HIGH
What is CVE-2026-42432?
OpenClaw prior to version 2026.4.8 is susceptible to a vulnerability that allows an attacker to exploit previously paired nodes. By circumventing the necessary re-pairing authentication, an attacker can execute privileged commands on the local assistant system without administrative permissions. This security weakness poses significant risks, enabling unauthorized access and control over the device.
Affected Version(s)
OpenClaw 0 < 2026.4.8
OpenClaw 2026.4.8
