
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-53837 is an improper access control vulnerability ("failing open") in OpenClaw's Mattermost event handlers that fails to validate channel type metadata. Attackers can bypass intended Direct Message (DM) policy decisions by sending crafted Mattermost events with missing channel type information, causing restricted content to be processed without proper authorization checks. All OpenClaw versions prior to 2026.5.6 (npm package) are affected. The vulnerability was published on June 12, 2026, with a patch released as version 2026.5.6. It carries a CVSS v3.1 base score of 3.7 (Low) and a CVSS v4.0 base score of 6.3 (Medium) (GitHub Advisory, OpenClaw Advisory).
The root cause is classified as CWE-636 (Not Failing Securely / Failing Open): when OpenClaw's Mattermost event handler encounters a missing channel type field in an incoming event, it fails to a permissive state rather than rejecting the event or applying the default-deny DM policy (GitHub Advisory, OpenClaw Advisory). An attacker exploits this by crafting a Mattermost event payload that omits the channel type metadata field, causing the handler to skip the intended policy gate and process content that should be restricted. Exploitation requires network access to the OpenClaw Gateway endpoint that processes Mattermost events, and the affected feature must be enabled and reachable; attack complexity is rated High due to the prerequisite deployment conditions (OpenClaw Advisory). No public proof-of-concept code has been identified.
Successful exploitation allows an unauthenticated network attacker to bypass DM channel policy controls in OpenClaw, causing restricted Mattermost events to be processed without authorization. The primary impact is a low-severity integrity violation — unauthorized processing of content that should be gated by channel policy — with no direct confidentiality or availability impact (GitHub Advisory, OpenClaw Advisory). Practical impact is configuration-dependent: deployments where lower-trust input can reach the Mattermost event handler path, or where a single Gateway is shared among mutually untrusted users, face greater risk (OpenClaw Advisory).
channel_type (or equivalent channel type metadata) field, which is normally used by OpenClaw to determine DM policy applicability.channel_type field; unexpected or anomalous sources sending Mattermost events to the Gateway.Upgrade OpenClaw to version 2026.5.6 or later, which is the first stable patched release (OpenClaw Advisory). Until patching is possible, restrict Mattermost bot access to the OpenClaw Gateway and review channel metadata error handling in logs. As additional hardening, keep channel and tool allowlists narrow, avoid sharing a single Gateway instance among mutually untrusted users, and disable the Mattermost event handler feature if it is not actively needed (OpenClaw Advisory). Network-level controls limiting which systems can send Mattermost events to OpenClaw can further reduce exposure.
The advisory was published by maintainer steipete on the OpenClaw GitHub repository, crediting zsxsoft as the reporter and KeenSecurityLab and qclawer as sponsors of the disclosure (OpenClaw Advisory). The vulnerability received routine coverage from automated CVE tracking services and aggregators (VulnDB, INCIBE, exploit-intel.com) but no notable independent researcher commentary or significant social media discussion has been identified.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."