OpenClaw Server-Side Request Forgery Vulnerability in QQ Bot Media Fetch Paths

Vulnerability

A server-side request forgery (SSRF) vulnerability has been identified in OpenClaw versions prior to 2026.4.8. This vulnerability exists in the QQ Bot media download paths, where SSRF protection is bypassed. Attackers can exploit unprotected media fetch endpoints to access internal resources and circumvent allowlist policies.

Impact

Exploitation of this vulnerability allows for server-side request forgery, enabling attackers to access internal resources by exploiting unprotected media fetch endpoints.

Reproduction

The vulnerability can be reproduced by sending a request to an unprotected media fetch endpoint in the QQ Bot extension of OpenClaw. This endpoint will bypass the SSRF protection and allow access to internal resources.

Remediation

Users can upgrade to OpenClaw version 2026.4.8 or later to address this vulnerability.

Added: Apr 28, 2026, 8:41 PM
Updated: Apr 28, 2026, 8:41 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
5.7
remediation
0.0
relevance
6.9
threat
4.8
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.