OpenClaw Server-Side Request Forgery Vulnerability in QQ Bot Media Fetch Paths
Vulnerability
A server-side request forgery (SSRF) vulnerability has been identified in OpenClaw versions prior to 2026.4.8. This vulnerability exists in the QQ Bot media download paths, where SSRF protection is bypassed. Attackers can exploit unprotected media fetch endpoints to access internal resources and circumvent allowlist policies.
Impact
Exploitation of this vulnerability allows for server-side request forgery, enabling attackers to access internal resources by exploiting unprotected media fetch endpoints.
Reproduction
The vulnerability can be reproduced by sending a request to an unprotected media fetch endpoint in the QQ Bot extension of OpenClaw. This endpoint will bypass the SSRF protection and allow access to internal resources.
Remediation
Users can upgrade to OpenClaw version 2026.4.8 or later to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
