---
id: CVE-2026-53833
title: >-
  OpenClaw before 2026.4.29 contains an authorization bypass vulnerability in
  the QQBot streaming command that allows authenticated senders to mutate
  configuration without explicit allowFrom restrictions
summary: >-
  OpenClaw before 2026.4.29 contains an authorization bypass vulnerability in
  the QQBot streaming command that allows authenticated senders to mutate
  configuration without explicit allowFrom restrictions. Attackers can modify
  QQBot streami…
severity: high
cvss: 7.7
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'
cwe:
  - CWE-290
vendor: openclaw
product: openclaw
affected:
  - openclaw < 2026.4.29
patched:
  - openclaw 2026.4.29
published: '2026-06-12'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T16:17:20.123'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-53833'
references:
  - url: >-
      https://github.com/openclaw/openclaw/security/advisories/GHSA-jvm4-4j77-39p6
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/openclaw-authorization-bypass-via-qqbot-streaming-command
    label: disclosure@vulncheck.com
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-06-15T18:17:32.717266Z'
epss: 0.00287
epssPercentile: 0.19398
ingestedAt: '2026-10-08T16:52:14.688Z'
---

## Overview

OpenClaw before 2026.4.29 contains an authorization bypass vulnerability in the QQBot streaming command that allows authenticated senders to mutate configuration without explicit allowFrom restrictions. Attackers can modify QQBot streaming configuration outside intended admin policy by reaching the affected command without non-wildcard allowlist entry requirements.

## Affected

- `openclaw < 2026.4.29`

## Remediation

Upgrade past the affected range:

- `openclaw 2026.4.29`
