Vulnerabilities
Report: Complete Guide to CVE-2026-32919 - OpenClaw < 2026.3.11 - Unauthorized Session Reset via agent Slash Commands
CVE ID :CVE-2026-32919 Published : March 29, 2026, 1:17 p.m. | 1 hour, 33 minutes ago Description :OpenClaw before 2026.3.11 contains an authorization bypass vulnerability allowing write-scoped callers to reach admin-only session reset logic. Attackers with operator.write scope can issue agent requests containing /new or /reset slash commands to reset targeted conversation state without holding operator.admin privileges. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...