CVE-2026-41300CWE-372

OpenClaw < 2026.3.31 - Preservation of Attacker-Discovered Endpoints in Remote Onboarding

Medium · published April 20, 2026

CVSS v4.0
6.9
EPSS
0%
Percentile
16.5
In the wild
Unconfirmed
What it is

OpenClaw before 2026.3.31 contains a trust-decline vulnerability that preserves attacker-discovered endpoints in remote onboarding flows. Attackers can route gateway credentials to malicious endpoints by having their discovered URL survive the trust decline process into manual prompts requiring operator acceptance.

The record
Technical detail
CVSS v4.0
6.9 · MEDIUM
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
EPSS
0.00252 · 16.5th percentile
Weakness
CWE-372 · Incomplete Internal State Distinction
Published
2026-04-20T23:08Z
EPSS history
Timeline
  • 20 APR 23:08Z
    OpenClaw < 2026.3.31 - Preservation of Attacker-Discovered Endpoints in Remote Onboarding
    cvelistv5