Strict browser SSRF bypass in Playwright redirect handling leaves private targets reachable.
Strict browser SSRF checks could miss Playwright request-time navigation to private targets.
OpenClaw is a user-controlled local assistant. This advisory is scoped to the OpenClaw trust model and does not assume a multi-tenant service boundary.
openclaw (npm)2026.3.82026.4.8The issue was fixed on main and is available in the patched npm version listed above. The verified fixed tree is commit d7c3210cd6f5fdfdc1beff4c9541673e814354d5.
The fix was re-checked against main before publication, including targeted regression tests for the affected security boundary.
Thanks @smaeljaish771 for reporting.
{
"cwe_ids": [
"CWE-918"
],
"github_reviewed": true,
"github_reviewed_at": "2026-04-09T17:36:59Z",
"nvd_published_at": "2026-04-28T19:37:46Z",
"severity": "MODERATE"
}