CVE-2026-22170 | OpenClaw up to 2026.2.21 BlueBubbles Plugin authorization (GHSA-jwf4-8wf4-jf2m)
A vulnerability was found in OpenClaw up to 2026.2.21. It has been declared as problematic. The impacted element is an unknown function of the component BlueBubbles Plugin. Executing a manipulation can lead to incorrect authorization.
This vulnerability is registered as CVE-2026-22170. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.