Vulnerability Description
OpenClaw before 2026.4.2 accepts non-loopback cleartext ws:// gateway endpoints and transmits stored gateway credentials over unencrypted connections. Attackers can forge discovery results or craft setup codes to redirect clients to malicious endpoints, disclosing plaintext gateway credentials.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openclaw | Openclaw | < 2026.4.2 |
Related Weaknesses (CWE)
References
- https://github.com/openclaw/openclaw/commit/a941a4fef9bc43b2973c92d0dcff5b8a4262Patch
- https://github.com/openclaw/openclaw/security/advisories/GHSA-83f3-hh45-vfw9Vendor Advisory
- https://www.vulncheck.com/advisories/openclaw-cleartext-credential-transmission-Third Party Advisory
FAQ
What is CVE-2026-40045?
CVE-2026-40045 is a vulnerability with a CVSS score of 5.7 (MEDIUM). OpenClaw before 2026.4.2 accepts non-loopback cleartext ws:// gateway endpoints and transmits stored gateway credentials over unencrypted connections. Attackers can forge discovery results or craft se...
How severe is CVE-2026-40045?
CVE-2026-40045 has been rated MEDIUM with a CVSS base score of 5.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-40045?
Check the references section above for vendor advisories and patch information. Affected products include: Openclaw Openclaw.