THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-w8wf-3qvj-6xqf (high) — OpenClaw Feishu permission tools could ignore per-account disablement

[GHSA] GHSA-w8wf-3qvj-6xqf (high) — OpenClaw Feishu permission tools could ignore per-account disablement

medgithub_advisoriesPublished 2026-09-03

GHSA-w8wf-3qvj-6xqf Severity: high CVE: None

OpenClaw Feishu permission tools could ignore per-account disablement

### Summary

Feishu permission tools could ignore per-account disablement. In affected versions, a lower-trust caller or configured input path could perform actions that should have required a stronger authorization or policy check.

This advisory is scoped to the named feature and

Original source: https://github.com/advisories/GHSA-w8wf-3qvj-6xqf