
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-62227 is a Server-Side Request Forgery (SSRF) vulnerability in OpenClaw's browser snapshot routes that fail to validate post-navigation destinations. Affecting OpenClaw versions 2026.4.14 through 2026.5.25 (Node.js package), it allows authenticated users with lower-trust access to bypass OpenClaw policy checks and reach network destinations that should have been blocked. The vulnerability was published on July 17, 2026, with the advisory originally authored by joshavant and credited to researchers zsxsoft and KeenSecurityLab. It carries a CVSS v3.1 base score of 7.7 (High) and a CVSS v4.0 base score of 4.9 (Medium) (GitHub Advisory, Github Advisory).
The root cause is classified as CWE-918 (Server-Side Request Forgery), where OpenClaw's browser snapshot routes perform initial destination validation but fail to re-validate the final destination after browser navigation redirects occur (post-navigation). This means an attacker can craft a request that initially appears to target an allowed destination, but after navigation the browser snapshot mechanism follows redirects to a blocked internal or restricted network resource without re-applying policy checks. Exploitation requires low privileges (authenticated lower-trust access) and network-level access to the OpenClaw instance; no user interaction is needed. The attack requires specific deployment conditions (Attack Requirements: Present in CVSS v4.0), meaning the browser snapshot feature must be enabled and reachable by the attacker (GitHub Advisory, Github Advisory).
Successful exploitation allows an authenticated lower-trust user to bypass OpenClaw's network policy controls and access internal or restricted network resources that should be unreachable, resulting in a high confidentiality impact on subsequent systems. There is no integrity or availability impact — the vulnerability is limited to unauthorized information disclosure from internal network destinations. Practical impact depends heavily on the operator's configuration, the sensitivity of resources reachable from the OpenClaw server's network position, and whether lower-trust input can reach the affected browser snapshot routes (GitHub Advisory, Feedly).
http://192.168.1.1/, http://169.254.169.254/ for cloud metadata, or other internal services).The primary remediation is to upgrade OpenClaw to version 2026.5.26 or later, which is the first stable patched release (GitHub Advisory). Before upgrading, operators should restrict the browser snapshot feature to trusted operators only or disable it entirely if not needed. As additional hardening measures: keep channel and tool allowlists narrow, avoid sharing a single Gateway between mutually untrusted users, implement network segmentation to restrict outbound connections from the OpenClaw application to only necessary destinations, and review access controls for browser snapshot routes (Github Advisory).
The advisory credits zsxsoft as the reporter and KeenSecurityLab as the sponsor, indicating coordinated disclosure with security research involvement (GitHub Advisory). VulnCheck assigned the CVE and published a corresponding advisory. No significant broader community discussion, media coverage, or notable researcher commentary beyond the initial disclosure has been observed at this time.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."