Server-Side Request Forgery (SSRF) in OpenClaw - #VU128588
Published: April 30, 2026
OpenClaw
Detailed vulnerability description
The vulnerability allows a remote attacker to perform server-side request forgery and cause fetched content to be re-uploaded through the channel.
The vulnerability exists due to insufficient request destination validation in QQBot reply media URL handling when processing reply media URLs as trusted media sources. A remote attacker can supply a crafted media URL to perform server-side request forgery and cause fetched content to be re-uploaded through the channel.