CVE-2026-35647 is an access control vulnerability affecting OpenClaw versions prior to 2026.3.25, whereby verification notices bypass configured direct message policies and can be sent to unpaired peers. The flaw stems from insufficient access validation mechanisms that fail to properly enforce DM restrictions before message transmission, allowing attackers to circumvent intended communication boundaries. The vulnerability carries a CVSS score of 5.3 (Medium severity) with a network-based attack vector requiring no special privileges or user interaction. While the attack complexity is low, the impact is limited to integrity violations without affecting confidentiality or system availability. The EPSS score of 0.00037 indicates minimal real-world exploitation probability to date. There is currently no evidence of active exploitation or public exploit code availability. The vulnerability does not appear on the Known Exploited Vulnerabilities catalog and shows no community activity on relevant security tracking lists, suggesting limited immediate threat. Organizations using affected OpenClaw versions should apply the patch when operationally feasible, though the low exploitation risk does not warrant emergency remediation procedures.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 2026.3.25CPE match | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* | ||
< 2026.3.25CPE matchmatch criteria | cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.