Openclaw cli: OpenClaw's Zalouser allowlist authorization matched mutable group names by default (CVE-2026-32975)
Description
OpenClaw CLI versions up to 2026.3.11 have a vulnerability in the Zalouser allowlist authorization where mutable group names were accepted instead of stable group IDs. This allowed different groups with the same display name to be mistakenly authorized, weakening channel authorization and potentially allowing messages from unintended groups to reach the agent. The issue is fixed in version 2026.3.12 by requiring stable group identifiers for allowlist authorization.
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
OpenClaw's Zalouser allowlist mode accepted mutable group names and normalized slugs as authorization matches instead of requiring stable group IDs. This flaw allowed an attacker to reuse the same display name as an allowlisted group to bypass authorization checks in deployments using name-based `channels.zalouser.groups` entries with permissive sender allowlists. The vulnerability weakens channel authorization for Zalouser group routing, potentially allowing messages from unintended groups to reach the agent. The vulnerability affects openclaw versions from 2026.1.29 up to but not including 2026.3.12. The issue is fixed in openclaw 2026.3.12 by matching allowlist authorization against stable group identifiers.
Potential Impact
The vulnerability weakens channel authorization by allowing messages from unintended groups to be accepted if they share the same display name as an allowlisted group. This could lead to unauthorized message routing within the Zalouser group system, potentially causing unauthorized access or message delivery to agents relying on group name-based authorization.
Mitigation Recommendations
A patch is available and should be applied. Users should update openclaw to version 2026.3.12 or later, where allowlist authorization matches stable group identifiers instead of mutable group names. This update fully mitigates the vulnerability.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- BREW-openclaw-cli-CVE-2026-32975
- Osv Schema Version
- 1.7.3
- Ecosystems
- ["Homebrew"]
Threat ID: 6ac245b412601ec6a3166b41
Added to database: 10/04/2026, 12:25:24 UTC
Last enriched: 10/04/2026, 12:59:01 UTC
Last updated: 10/04/2026, 16:08:37 UTC
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.