CVE-2026-28467 | OpenClaw up to 2026.2.1 server-side request forgery (GHSA-wfp2-v9c7-fh79)
A vulnerability classified as critical has been found in OpenClaw up to 2026.2.1. This issue affects some unknown processing. The manipulation leads to server-side request forgery.
This vulnerability is uniquely identified as CVE-2026-28467. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.