CVE-2026-27646 | OpenClaw up to 2026.3.6 /acp authorization (GHSA-9q36-67vc-rrwg)
A vulnerability categorized as problematic has been discovered in OpenClaw up to 2026.3.6. Impacted is an unknown function of the file /acp. Executing a manipulation can lead to incorrect authorization.
The identification of this vulnerability is CVE-2026-27646. The attack can only be executed locally. There is no exploit available.
It is advisable to upgrade the affected component.