Skip to content

OpenClaw: Strict browser SSRF bypass in Playwright redirect handling leaves private targets reachable

Moderate severity GitHub Reviewed Published Apr 8, 2026 in openclaw/openclaw • Updated Apr 9, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts