Executive brief
OpenClaw, an open-source messaging and integration platform, was exposing authentication credentials that were embedded in gateway configuration snapshots. Users with read-only access to configuration endpoints could retrieve sensitive credentials such as usernames and passwords from baseUrl and httpUrl fields, potentially leading to unauthorized access to connected services and data exposure.
Technical details
The vulnerability is an information disclosure (CWE-200) and authorization bypass (CWE-863) in OpenClaw's config.get and channels.status endpoints. When returning read-only snapshots of gateway and channel configurations, the application failed to redact embedded credentials (userinfo) in baseUrl and related endpoint URL fields before exposure. An authenticated user with read-scoped permissions could call these endpoints to retrieve the complete URLs including embedded usernames and passwords. The fix (shipped in v2026.3.22) redacts credential-bearing fields in snapshots via updates to src/channels/account-snapshot-fields.ts and src/config/redact-snapshot.ts while preserving non-sensitive context for safe operation.
Affected products
- OpenClaw OpenClaw < 2026.3.22
Timeline
- 2026-03-26: disclosed: GHSA advisory published
- 2026-03-22: patched: Fix shipped in v2026.3.22
- 2026-03-15: other: Fix commit f020226 authored