Skip to content

OpenClaw's Telegram message_reaction authorization bypass allows unauthorized system-event injection

High severity GitHub Reviewed Published Feb 26, 2026 in openclaw/openclaw

No open alerts for this advisory

Give feedback on Dependabot alerts