CyberSec.Space Logo
返回 CVE 浏览器

CVE-2026-53812

HIGH
7.7
CVSS Severity Score
EPSS Score0.1570%
EPSS Percentile0.89th
Published2026年6月11日
Last Modified2026年6月12日

Vulnerability Description

OpenClaw before 2026.5.18 contains a server-side request forgery vulnerability in browser control that allows authenticated users to bypass private-network navigation checks through Playwright act interactions. Attackers can trigger navigation to private-network targets via action-triggered redirects and subsequently read restricted page content using browser evaluation capabilities.

Affected Platforms (CPE)

No CPE configurations currently published for this record.

References & Advisories

相关漏洞威胁