OpenClaw before 2026.4.2 fails to filter Slack thread context by sender allowlist, allowing non-allowlisted messages to enter agent context. Attackers can inject unauthorized thread messages through allowlisted user replies to bypass sender access controls and manipulate model context.
References
Configurations
History
No history.
Information
Published : 2026-04-23 22:16
Updated : 2026-06-17 10:46
NVD link : CVE-2026-41358
Mitre link : CVE-2026-41358
CVE.ORG link : CVE-2026-41358
JSON object : View
Products Affected
openclaw
- openclaw
CWE
CWE-346
Origin Validation Error
