


Perceptive Security
SOC/SIEM Consultancy

OpenClaw before 2026.4.22 derives loopback MCP owner context from spoofable server-issued bearer tokens in request headers. Non-owner loopback clients can prese…
Published:
5 mei 2026 om 22:00:00
Alert date:
6 mei 2026 om 21:05:32
Source:
nvd.nist.gov
Identity & Access, Web Technologies
OpenClaw versions before 2026.4.22 contain a critical authentication bypass vulnerability where loopback MCP owner context is derived from spoofable server-issued bearer tokens in request headers. Non-owner loopback clients can manipulate the sender-owner header metadata to present themselves as owners and bypass owner-gated operations. This represents a significant privilege escalation vulnerability that allows unauthorized access to restricted functionality. The vulnerability has been addressed in version 2026.4.22 with proper token validation mechanisms.
Technical details
Mitigation steps:
Affected products:
OpenClaw
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-44118
https://github.com/openclaw/openclaw/commit/3cb1a56bfc9579a0f2336f9cfa12a8a744332a19
https://github.com/openclaw/openclaw/security/advisories/GHSA-r6xh-pqhr-v4xh
https://www.vulncheck.com/advisories/openclaw-owner-context-spoofing-via-bearer-token-header
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
