CVE-2026-35653 | OpenClaw up to 2026.3.23 /reset-profile authorization (GHSA-xp9r-prpg-373r)
A vulnerability classified as problematic has been found in OpenClaw up to 2026.3.23. Affected by this vulnerability is an unknown functionality of the file /reset-profile. The manipulation leads to incorrect authorization.
This vulnerability is listed as CVE-2026-35653. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.