CVE-2026-100575
8.8 HIGHpublic exploit availablePublished 2026-09-26 · Updated 2026-09-28
AI risk analysis
- Summary
- OpenClaw Slack versions before 2026.8.1 allow unauthorized participants to bypass sender policies and access tools and data intended for authorized agents, posing a significant security risk.
- Exploitability
- Exploitation is relatively straightforward as disallowed participants can trigger Slack agents, making it easy for attackers to gain unauthorized access.
- Blast radius
- If exploited, this flaw could lead to unauthorized access to sensitive tools and data, potentially compromising the integrity and confidentiality of the Slack environment.
- Detection
- No reliable host or network indicator is derivable from the published description.
- Prioritized remediation
- Upgrade to OpenClaw Slack version 2026.8.1 or later.
auth-bypassdata-accessslack
Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.
NVD description
OpenClaw Slack versions before 2026.8.1 fail to properly enforce sender allowlists in multi-person direct messages. Disallowed participants can trigger Slack agents and access tools and data granted to those agents by bypassing configured sender policies.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-862
Public exploit & PoC references
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-100587PoC
- HIGHCVE-2026-100617PoC
- CRITICALCVE-2026-101000PoC
- CRITICALCVE-2026-15958
- HIGHCVE-2026-16561
- HIGHCVE-2026-16605
- HIGHCVE-2026-17070
- HIGHCVE-2026-17613PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.