highVulnerability

GHSA-5r8f-96gm-5j6g

## Summary The `chat.send` path reused command authorization to trigger `/reset` session rotation even though direct session reset is an admin-only control-plane operation. ## Impact A write-scoped gateway caller could rotate a target session, archive the prior transcript state, and force a new session id without admin scope. ## Affected Component `src/gateway/server-methods/chat.ts, src/auto-reply/reply/session.ts` ## Fixed Versions - Affected: `<= 2026.3.24` - Patched: `>= 2026.3.28` - Latest stable `2026.3.28` contains the fix. ## Fix Fixed by commit `be00fcfccb` (`Gateway: align chat.send reset scope checks`).

Properties

ghsa_id
GHSA-5r8f-96gm-5j6g
summary
OpenClaw Gateway `operator.write` can reach admin-only session reset via `chat.send` `/reset`
severity
high
cve_id
GHSA-5r8f-96gm-5j6g
is_ghsa_only
true
ghsa_published
2026-04-01T00:00:34Z
source_url
https://github.com/advisories/GHSA-5r8f-96gm-5j6g
ghsa_updated
2026-04-01T00:00:35Z

Related Entities (4)

AFFECTS (1)

[Software]npm/OpenClaw

REPORTED_BY (1)

[Source]GitHub Advisory Database

HAS_WEAKNESS (2)

[Weakness]Improper Access Control
[Weakness]Incorrect Authorization

Explore deeper with Ninja Signal's threat intelligence graph

GHSA-5r8f-96gm-5j6g — Ninja Signal Threat Intelligence | Ninja Signal