Security Advisory

CVE-2026-62227

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-17 00:07:05
Last updated 2026-07-17 18:05:54
Assigner VulnCheck
CVSS score 4.9
State PUBLISHED

Description

OpenClaw 2026.4.14 before 2026.5.26 contain a server-side request forgery vulnerability in browser snapshot routes that fail to validate post-navigation destinations. Attackers with lower-trust access can bypass OpenClaw policy checks to reach network destinations that should have been blocked.