CVE-2026-43575 PUBLISHED

OpenClaw 2026.2.21 < 2026.4.10 - Authentication Bypass in Sandbox noVNC Helper Route

Assigner: VulnCheck
Reserved: 01.05.2026 Published: 06.05.2026 Updated: 06.05.2026

OpenClaw versions 2026.2.21 before 2026.4.10 contain an authentication bypass vulnerability in the sandbox noVNC helper route that exposes interactive browser session credentials. Attackers can access the noVNC helper route without bridge authentication to gain unauthorized access to the interactive browser session.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 9.2

Product Status

Vendor OpenClaw
Product OpenClaw
Versions Default: unaffected
  • affected from 2026.2.21 to 2026.4.10 (excl.)
  • Version 2026.4.10 is unaffected

Credits

  • smaeljaish771 reporter
  • KeenSecurityLab coordinator

References

Problem Types

  • CWE-862 Missing Authorization CWE