CVE-2026-100531: Authorization Bypass Through User-Controlled Key in openclaw slack
The openclaw slack npm package before version 2026.8.1 has an authorization bypass vulnerability in its Slack download-file handler. This flaw allows an authenticated user restricted to a single conversation to download files from other conversations if they know or obtain the file identifier, bypassing conversation-level authorization checks. The vulnerability does not allow listing of arbitrary files nor does it bypass Slack authentication itself. The issue is fixed in version 2026.8.1.
AI Analysis
Technical Summary
CVE-2026-100531 is an authorization bypass vulnerability in the @openclaw/slack npm package prior to version 2026.8.1. The flaw occurs because the download-file handler relies on share metadata to verify file ownership within a conversation. When this metadata is missing, the authorization check fails open, allowing an authenticated user with access to one conversation to download files from other conversations by using known file identifiers. This does not affect Slack authentication or allow file enumeration. The vulnerability is resolved in version 2026.8.1.
Potential Impact
An authenticated user with restricted access to a single Slack conversation can access file contents from other conversations by exploiting this flaw. This leads to unauthorized data disclosure across conversation boundaries within the openclaw slack package context. The vulnerability does not enable bypassing Slack authentication or listing arbitrary files, limiting the scope to file download access if file identifiers are known or obtained.
Mitigation Recommendations
Upgrade the @openclaw/slack npm package to version 2026.8.1 or later, where this authorization bypass vulnerability is fixed. No other mitigation is indicated by the vendor advisory.
CVE-2026-100531: Authorization Bypass Through User-Controlled Key in openclaw slack
Description
The openclaw slack npm package before version 2026.8.1 has an authorization bypass vulnerability in its Slack download-file handler. This flaw allows an authenticated user restricted to a single conversation to download files from other conversations if they know or obtain the file identifier, bypassing conversation-level authorization checks. The vulnerability does not allow listing of arbitrary files nor does it bypass Slack authentication itself. The issue is fixed in version 2026.8.1.
CVSS v4.0
Score 7.1high
Affected software
openclaw
slack
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-100531 is an authorization bypass vulnerability in the @openclaw/slack npm package prior to version 2026.8.1. The flaw occurs because the download-file handler relies on share metadata to verify file ownership within a conversation. When this metadata is missing, the authorization check fails open, allowing an authenticated user with access to one conversation to download files from other conversations by using known file identifiers. This does not affect Slack authentication or allow file enumeration. The vulnerability is resolved in version 2026.8.1.
Potential Impact
An authenticated user with restricted access to a single Slack conversation can access file contents from other conversations by exploiting this flaw. This leads to unauthorized data disclosure across conversation boundaries within the openclaw slack package context. The vulnerability does not enable bypassing Slack authentication or listing arbitrary files, limiting the scope to file download access if file identifiers are known or obtained.
Mitigation Recommendations
Upgrade the @openclaw/slack npm package to version 2026.8.1 or later, where this authorization bypass vulnerability is fixed. No other mitigation is indicated by the vendor advisory.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulnCheck
- Date Reserved
- 2026-09-26T01:00:40.148Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6ab72eeef7a7c54106c273bc
Added to database: 09/26/2026, 02:33:18 UTC
Last enriched: 09/26/2026, 02:48:03 UTC
Last updated: 09/26/2026, 03:17:33 UTC
Views: 4
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.