Authorization Bypass in OpenClaw Affects Security of ClickClack Feature
CVE-2026-62209
7.6HIGH
What is CVE-2026-62209?
The OpenClaw software prior to version 2026.6.5 contains a vulnerability that allows an authorization bypass through its ClickClack agent-mode dispatch feature. This flaw could enable lower-trust callers to perform actions without proper policy validation, potentially compromising system security when the feature is enabled and accessible.
Affected Version(s)
OpenClaw 2026.5.10 < 2026.6.5
OpenClaw 2026.6.5
