Gateway Plugin Subagent Fallback deleteSession Uses Synthetic operator.admin
openclaw<= 2026.3.242026.3.252026.3.24Gateway plugin subagent fallback deleteSession previously dispatched sessions.delete with a synthetic operator.admin runtime scope when no request-scoped client existed. Commit b5d785f1a59a56c3471f2cef328f7c9a6c15f3e7 binds deletion to the caller scope instead of minting admin scope.
Verified vulnerable on tag v2026.3.24 and fixed on main by commit b5d785f1a59a56c3471f2cef328f7c9a6c15f3e7.
b5d785f1a59a56c3471f2cef328f7c9a6c15f3e7{
"nvd_published_at": null,
"severity": "MODERATE",
"cwe_ids": [
"CWE-266",
"CWE-648",
"CWE-863"
],
"github_reviewed": true,
"github_reviewed_at": "2026-03-29T15:49:34Z"
}