
CVE-2026-35656 OpenClaw before 2026.3.22 contains an authentication bypass vulnerability in the X-Forwarded-For header processing when trustedProxies is configured, allowing attacke… https://www.cve.org/CVERecord?id=CVE-2026-35656
Post summary
The text announces an authentication bypass flaw in OpenClaw versions before 2026.3.22, triggered by the X‑Forwarded‑For header with trustedProxies enabled, but offers no details on patches, exploits, or wild usage.
