Sandbox browser CDP relay could expose DevTools protocol on 0.0.0.0.
openclaw< 2026.4.10>= 2026.4.10The sandbox browser CDP relay could bind too broadly, exposing Chrome DevTools Protocol access outside the intended local/sandbox source range.
The fix enforces CDP source-range restriction by default and avoids broad 0.0.0.0 exposure unless explicitly configured.
The issue was fixed in #61404. The first stable tag containing the fix is v2026.4.10, and openclaw@2026.4.14 includes the fix.
fbf11ebdb7110632f93926d0ac7b48f04cb44d77Users should upgrade to openclaw 2026.4.10 or newer. The latest npm release, 2026.4.14, already includes the fix.
Thanks to @zsxsoft, with sponsorship from @KeenSecurityLab and @qclawer for reporting this issue.
{
"cwe_ids": [
"CWE-1327",
"CWE-284"
],
"github_reviewed": true,
"github_reviewed_at": "2026-04-17T21:59:55Z",
"nvd_published_at": null,
"severity": "HIGH"
}