CVE-2026-26328
OpenClaw is a personal AI assistant. Prior to version 2026.2.14, under iMessage `groupPolicy=allowlist`, group authorization could be satisfied by sender identities coming from the DM pairing store, broadening DM trust into group contexts. Version 2026.2.14 fixes the issue.
Vendor
Product
CWE
Yayın Tarihi
2026-02-20 00:16:15
Güncelleme
2026-02-26 18:41:00
Source Identifier
security-advisories@github.com
KEV Date Added
-