Openclaw cli: OpenClaw's MSTeams attachment redirect handling could bypass configured media host allowlists (CVE-2026-32037)
Description
OpenClaw CLI versions up to 2026.2.21-2 have a vulnerability in the MSTeams media download flow where redirect handling can bypass configured media host allowlists. This allows redirect chains to non-allowlisted targets, weakening server-side request forgery (SSRF) protections. The issue is fixed in the planned release 2026.2.22.
CVSS v3.1
Score 6.0medium
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The OpenClaw CLI package (npm) has a vulnerability (CVE-2026-32037) in its MSTeams media download functionality. Specifically, redirect handling in attachment paths does not consistently enforce the configured mediaAllowHosts allowlist, allowing redirect chains to non-allowlisted hosts before accepting fetched content. This flaw can be exploited by attackers who can supply or influence attachment URLs, potentially bypassing SSRF boundary controls. The vulnerability affects versions up to and including 2026.2.21-2 and is addressed in the upcoming 2026.2.22 release. Fix commits include 73d93dee64127a26f1acd09d0403b794cdeb4f5c and b34097f62df9d1960cc22600269cd3f3284e2124.
Potential Impact
Attackers able to control or influence attachment URLs in MSTeams media download flows can bypass the configured mediaAllowHosts allowlist via redirect chains. This weakens SSRF protections by allowing requests to non-allowlisted hosts, potentially exposing internal or sensitive resources. The impact includes limited confidentiality, integrity, and availability consequences as indicated by the CVSS vector.
Mitigation Recommendations
A patch is available and planned for release in version 2026.2.22. Users should upgrade to this version once published to remediate the vulnerability. Until then, no additional vendor-recommended mitigations are specified.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- BREW-openclaw-cli-CVE-2026-32037
- Osv Schema Version
- 1.7.3
- Ecosystems
- ["Homebrew"]
- Cvss Version
- 3.1
Threat ID: 6ac245bb12601ec6a3166be4
Added to database: 10/04/2026, 12:25:31 UTC
Last enriched: 10/04/2026, 13:03:51 UTC
Last updated: 10/04/2026, 16:08:37 UTC
Views: 1
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.