Reliance on Untrusted Inputs in a Security Decision in OpenClaw - CVE-2026-41299
Published: April 30, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote user to spoof ACP identity labels and inject reserved provenance fields.
The vulnerability exists due to reliance on untrusted inputs in a security decision in chat.send provenance handling in src/gateway/server-methods/chat.ts and src/gateway/server/ws-connection/message-handler.ts when processing self-declared client metadata from the WebSocket handshake. A remote user can supply spoofed client identity metadata to spoof ACP identity labels and inject reserved provenance fields.