Description
OpenClaw before 2026.4.10 contains an improper network binding vulnerability in the sandbox browser CDP relay that exposes Chrome DevTools Protocol on 0.0.0.0. Attackers can access the DevTools protocol outside intended local sandbox boundaries by exploiting the overly broad binding configuration.
Problem types
CWE-1188 Initialization of a Resource with an Insecure Default
Product status
Any version before 2026.4.10
2026.4.10 (semver)
Credits
R1kko1337
References
github.com/...enclaw/security/advisories/GHSA-525j-hqq2-66r4 (GitHub Security Advisory (GHSA-525j-hqq2-66r4))
github.com/...ommit/fbf11ebdb7110632f93926d0ac7b48f04cb44d77 (Patch Commit)
www.vulncheck.com/...sure-via-overly-broad-cdp-relay-binding (VulnCheck Advisory: OpenClaw < 2026.4.10 - Chrome DevTools Protocol Exposure via Overly Broad CDP Relay Binding)