Critical Privilege Escalation Bug in OpenClaw: Patch Now
OpenClaw users should update immediately. A recently patched vulnerability (CVE-2026-33579, CVSS 8.1–9.8) allows anyone with operator.pairing scope — the lowest-level permission in an OpenClaw deployment — to silently approve device pairing requests that ask for operator.admin. Once approved, the attacking device holds full administrative access to the OpenClaw instance. No secondary exploit or user interaction is required beyond the initial pairing step.
Security researchers at Blink called the practical impact “severe.” A compromised operator.admin device can read all connected data sources, exfiltrate credentials stored in the agent’s skill environment, and execute arbitrary tool calls on behalf of the organization.
The vulnerability was patched earlier this week alongside two others. Users running OpenClaw as a company-wide agent platform should assume any paired device with low-level access may have already been compromised and should rotate credentials and review access logs.