Critical CVE-2026-33579 Vulnerability in OpenClaw — Patch Now

OpenClaw has patched a critical security vulnerability, CVE-2026-33579, rated up to 9.8/10 in severity. The flaw exists in the /pair approve command path, which fails to properly forward the caller’s security scopes into the core authorization check.

What it means: An attacker with only pairing-level privileges — the lowest meaningful permission in an OpenClaw deployment — can silently approve device pairing requests that request operator.admin scope. Once approved, the attacking device holds full administrative access to the OpenClaw instance. No secondary exploit is needed and no user interaction is required beyond the initial pairing step.

Impact is severe. A compromised admin device can:

  • Read all connected data sources
  • Exfiltrate credentials stored in the agent’s skill environment
  • Execute arbitrary tool calls on behalf of the administrator

The vulnerability affects OpenClaw versions prior to 2026.3.28. Users should update immediately. Organizations running OpenClaw as a company-wide AI agent platform are at particular risk.

Source: Ars Technica | Sentinel One | Blink

← Back to News