
CVE-2026-41361: OpenClaw SSRF guard bypass via IPv6 special‑use ranges (CVSS 7.1). Affected: OpenClaw < 2026.3.28. Remote network exploit, no auth required. Fixed in 2026.3.28+. #OpenClaw #CVE
Post summary
An unauthenticated remote network exploitation via an SSRF guard bypass in OpenClaw using IPv6 special‑use ranges is disclosed (CVSS 7.1) and has been fixed in version 2026.3.28+.

