Authentication Bypass by Spoofing in OpenClaw - CVE-2026-22174
Published: May 1, 2026
OpenClaw
OpenClaw
Description
The vulnerability allows a remote attacker to disclose sensitive information.
The vulnerability exists due to authentication bypass by spoofing in loopback CDP probe handling when sending CDP reachability probes to a loopback listener. A remote attacker can bind or control the probed loopback port and read the x-openclaw-relay-token header to disclose sensitive information.
Exploitation is relevant in shared-user or shared-host deployments where an untrusted local process can race or bind the loopback relay port.