Credential Exposure in OpenClaw by OpenClaw Tech
CVE-2026-100569
What is CVE-2026-100569?
The OpenClaw application, distributed via npm, has a vulnerability that affects versions from 2026.4.25 to 2026.8.0. This issue arises from a flaw in the workspace environment-variable filtering that permits variables ending with '_ENDPOINT'. Specifically, an attacker can exploit this by introducing a malicious '.env' file within an untrusted workspace, allowing them to override the Azure Speech service endpoint. As a result, any request made to the Azure Speech service could inadvertently include the operator's Azure Speech key in the request header, exposing it for reuse in unauthorized contexts. The vulnerability requires the operator to run OpenClaw in a workspace that the attacker controls, with Azure Speech configured improperly. The issue has been addressed in OpenClaw version 2026.8.1.
Affected Version(s)
OpenClaw 2026.4.25 < 2026.8.1
OpenClaw 2026.8.1
