CVE-2026-35636 | OpenClaw up to 2026.3.24 Restrictions session_status incorrect behavior order (GHSA-q2qc-744p-66r2)
A vulnerability has been found in OpenClaw up to 2026.3.24 and classified as problematic. Impacted is the function session_status of the component Restrictions Handler. This manipulation causes incorrect behavior order.
The identification of this vulnerability is CVE-2026-35636. It is possible to initiate the attack remotely. There is no exploit available.
To fix this issue, it is recommended to deploy a patch.