CVE-2026-32037
OpenClaw versions prior to 2026.2.22 fail to consistently validate redirect chains against configured mediaAllowHosts allowlists during MSTeams media downloads. Attackers can supply or influence attachment URLs to force redirects to non-allowlisted targets, bypassing SSRF boundary controls.
Vendor
Product
CWE
Yayın Tarihi
2026-03-19 22:16:39
Güncelleme
2026-03-23 17:15:11
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-
Kategoriler
Referanslar
https://github.com/openclaw/openclaw/commit/73d93dee64127a26f1acd09d0403b794cdeb4f5c
https://github.com/openclaw/openclaw/commit/b34097f62df9d1960cc22600269cd3f3284e2124
https://github.com/openclaw/openclaw/security/advisories/GHSA-w76h-8m22-hpgh
https://www.vulncheck.com/advisories/openclaw-redirect-chain-bypass-of-media-host-allowlist-in-msteams-attachment-handling