CVE-2026-32029 | OpenClaw up to 2026.2.20 Header X-Forwarded-For data authenticity (GHSA-2rgf-hm63-5qph / WID-SEC-2026-0472)
A vulnerability was found in OpenClaw up to 2026.2.20. It has been classified as problematic. The affected element is an unknown function of the component Header Handler. Performing a manipulation of the argument X-Forwarded-For results in insufficient verification of data authenticity.
This vulnerability is identified as CVE-2026-32029. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.