
Cloud Vulnerability DB
A community-led vulnerabilities database
In openclaw@2026.3.1, the Discord voice transcript path called agentCommand(...) without senderIsOwner, and agentCommand defaults missing senderIsOwner to true.
This could allow a non-owner voice participant in the same channel to reach owner-only tool surfaces (gateway, cron) during voice transcript turns.
OpenClaw’s documented trust model is a personal assistant model (one trusted operator), not an adversarial multi-user boundary.
Relevant path:
senderIsOwner in Discord voice manager.senderIsOwner defaulted to true in agentCommand.senderIsOwner.gateway and cron are owner-only tools.Downgraded from high to medium to align with OpenClaw’s trust model and deployment assumptions:
senderIsOwner from Discord voice transcript ingress.false) when owner status is unknown for non-local/chat ingress paths.openclaw (npm)<= 2026.3.1>= 2026.3.2 (released)Source: NVD
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."