Executive brief
OpenClaw is a popular open-source platform used to build and extend applications through channel extensions. The software contains a server-side request forgery (SSRF) vulnerability that allows authenticated attackers to manipulate network requests sent by channel extensions, potentially accessing restricted internal systems and sensitive data that should not be exposed externally.
Technical details
OpenClaw before version 2026.3.25 contains an SSRF vulnerability (CWE-918) in multiple channel extensions that perform raw fetch() calls against configured base URLs without proper SSRF protections. The vulnerability is an incomplete fix for a previous issue (CVE-2026-28476); while some code paths were protected with fetchWithSsrfGuard, others were missed. An authenticated attacker can rebind configured endpoints to internal or blocked destinations, allowing access to restricted resources. The fix routes vulnerable fetch() calls through the SSRF guard function, and patches are available in version 2026.3.25 and later.
Affected products
- OpenClaw OpenClaw < 2026.3.25
Timeline
- 2026-03-26: disclosed
- 2026-03-26: patched: Fix committed; version 2026.3.25 planned release
- 2026-04-10: advisory