CVE-2026-32014 | OpenClaw up to 2026.2.25 deviceFamily authentication spoofing (GHSA-r65x-2hqr-j5hf)
A vulnerability was found in OpenClaw up to 2026.2.25 and classified as critical. This affects an unknown function. Executing a manipulation of the argument deviceFamily can lead to authentication bypass by spoofing.
The identification of this vulnerability is CVE-2026-32014. The attack needs to be done within the local network. There is no exploit available.
It is suggested to upgrade the affected component.