OpenClaw: Gateway Plugin Subagent Fallback `deleteSession` Uses Synthetic `operator.admin`
Moderate severity
GitHub Reviewed
Published
Mar 26, 2026
in
openclaw/openclaw
•
Updated Apr 18, 2026
Description
Published to the GitHub Advisory Database
Mar 29, 2026
Reviewed
Mar 29, 2026
Last updated
Apr 18, 2026
Summary
Gateway Plugin Subagent Fallback
deleteSessionUses Syntheticoperator.adminAffected Packages / Versions
openclaw<= 2026.3.242026.3.252026.3.24Details
Gateway plugin subagent fallback
deleteSessionpreviously dispatchedsessions.deletewith a syntheticoperator.adminruntime scope when no request-scoped client existed. Commitb5d785f1a59a56c3471f2cef328f7c9a6c15f3e7binds deletion to the caller scope instead of minting admin scope.Verified vulnerable on tag
v2026.3.24and fixed onmainby commitb5d785f1a59a56c3471f2cef328f7c9a6c15f3e7.Fix Commit(s)
b5d785f1a59a56c3471f2cef328f7c9a6c15f3e7References