{"id":"GHSA-x7cf-6gp3-q5f8","title":"Duplicate Advisory: MCP Streamable HTTP redirects could forward configured custom headers to another origin","summary":"Duplicate Advisory: MCP Streamable HTTP redirects could forward configured custom headers to another origin","severity":"medium","cvss":7.1,"cwe":["CWE-522"],"vendor":"openclaw","product":"openclaw","ecosystem":"pip","affected":["openclaw < 2026.5.12"],"published":"2026-06-16","updated":"2026-06-17","source":"GHSA","sourceUrl":"https://github.com/advisories/GHSA-x7cf-6gp3-q5f8","references":[{"url":"https://github.com/openclaw/openclaw/security/advisories/GHSA-rjxq-qqhf-8hwh"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-53840"},{"url":"https://www.vulncheck.com/advisories/openclaw-custom-header-leakage-via-mcp-streamable-http-cross-origin-redirects"},{"url":"https://github.com/advisories/GHSA-x7cf-6gp3-q5f8"}],"tags":["ghsa","pip"],"ingestedAt":"2026-06-29T14:31:47.664Z","slug":"GHSA-x7cf-6gp3-q5f8","body":"## Overview\n\n## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-rjxq-qqhf-8hwh. This link is maintained to preserve external references.\n\n## Original Description\nOpenClaw before 2026.5.12 contains an information disclosure vulnerability in streamable-http MCP servers that forwards operator-configured custom headers during cross-origin redirects. Attackers controlling or compromising an MCP endpoint can redirect requests to exfiltrate sensitive headers like API keys or tenant-routing credentials to attacker-controlled origins.\n\n## Affected packages\n\n- `openclaw < 2026.5.12`\n\n## Remediation\n\nRefer to the advisory for the patched release.","depth":"sunlit","depthScore":39,"depthScoreParts":{"impact":39.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}