GHSA-92JP-89MQ-4374: Unauthenticated Sandbox Access and Context Leakage in OpenClaw

TL;DR AI
2 min readKey summary
OpenClaw had a critical authentication flaw in versions before 2026.4.9.
A middleware ordering issue and sensitive data exposure let unauthenticated attackers bypass controls and reach sandboxed browser sessions through noVNC.
The bug, tracked as GHSA-92JP-89MQ-4374, carries CVSS 9.8 and maps to CWE-287 and CWE-200.
A proof of concept exists, and the issue is fixed in OpenClaw 2026.4.9.

