Credential Exposure in OpenClaw by OpenClaw Tech
CVE-2026-100569

6.8MEDIUM

Key Information:

Vendor

Openclaw

Status
Vendor
CVE Published:
26 September 2026

What is CVE-2026-100569?

The OpenClaw application, distributed via npm, has a vulnerability that affects versions from 2026.4.25 to 2026.8.0. This issue arises from a flaw in the workspace environment-variable filtering that permits variables ending with '_ENDPOINT'. Specifically, an attacker can exploit this by introducing a malicious '.env' file within an untrusted workspace, allowing them to override the Azure Speech service endpoint. As a result, any request made to the Azure Speech service could inadvertently include the operator's Azure Speech key in the request header, exposing it for reuse in unauthorized contexts. The vulnerability requires the operator to run OpenClaw in a workspace that the attacker controls, with Azure Speech configured improperly. The issue has been addressed in OpenClaw version 2026.8.1.

Affected Version(s)

OpenClaw 2026.4.25 < 2026.8.1

OpenClaw 2026.8.1

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

qc9c
.