
CVE-2026-45000 OpenClaw before 2026.4.20 contains a server-side request forgery vulnerability in browser CDP profile creation that skips strict-mode SSRF policy checks. Attackers ca… https://www.cve.org/CVERecord?id=CVE-2026-45000
Post summary
The text announces the server‑side request forgery in OpenClaw’s CDP profile creation, noting the SSRF bypass, but provides no PoC, exploit, patch, or evidence of active exploitation.
