Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r6xh-pqhr-v4xh

Опубликовано: 04 мая 2026
Источник: github
Github: Прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

OpenClaw: MCP loopback owner context is derived from server-issued bearer tokens

Summary

MCP loopback owner context is derived from server-issued bearer tokens.

Affected Packages / Versions

  • Package: openclaw (npm)
  • Affected versions: <= 2026.4.21
  • Fixed version: 2026.4.22

Impact

The loopback MCP path accepted spoofable owner-context metadata from request headers, which could allow a non-owner loopback client to present itself as owner for owner-gated operations.

Fix

The MCP loopback runtime now issues separate owner and non-owner bearer tokens and derives senderIsOwner exclusively from which token authenticated the request. The spoofable sender-owner header is no longer emitted or trusted.

Fix Commit(s)

  • 3cb1a56bfc9579a0f2336f9cfa12a8a744332a19

Verification

  • The fix commit is contained in the public v2026.4.22 tag.
  • openclaw@2026.4.22 is published on npm and the compiled package contains the fix.
  • Focused regression coverage for this path passed before publication.

OpenClaw thanks @VladimirEliTokarev for reporting.

Пакеты

Наименование

openclaw

npm
Затронутые версииВерсия исправления

<= 2026.4.21

2026.4.22

EPSS

Процентиль: 2%
0.00112
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-284
CWE-290

Связанные уязвимости

CVSS3: 7.8
nvd
3 месяца назад

OpenClaw before 2026.4.22 derives loopback MCP owner context from spoofable server-issued bearer tokens in request headers. Non-owner loopback clients can present themselves as owner to bypass owner-gated operations by manipulating the sender-owner header metadata.

CVSS3: 7.8
fstec
4 месяца назад

Уязвимость ИИ-агента OpenClaw (ранее - ClawdBot или MoltBot), связанная с некорректной процедурой авторизации на основе списка разрешенных отправителей, позволяющая нарушителю обойти существующие механизмы безопасности

EPSS

Процентиль: 2%
0.00112
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-284
CWE-290