CyberRota Analysis
AI-GeneratedVersions of OpenClaw between 2026.7.1 and 2026.8.1 are vulnerable to a server-side request forgery (SSRF) due to improper DNS validation, allowing attackers to exploit DNS rebinding to access restricted resources on a Synology NAS. This vulnerability poses a high risk, particularly for organizations using Synology Chat, as it could lead to unauthorized data exposure. Users of affected versions should prioritize upgrading to 2026.8.1 or disable remote URL attachment forwarding to mitigate the risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
OpenClaw is an npm-distributed gateway application. In versions >= 2026.7.1 and < 2026.8.1, Synology Chat attachment delivery could lose DNS pinning: the Gateway validated a single DNS result for a supplied file URL but then passed the original hostname to the Synology NAS, where it could resolve to a different destination. When attachment delivery accepted a remotely influenced hostname, an attacker could use DNS rebinding to make the NAS fetch a private or otherwise policy-denied resource and return its contents to the addressed conversation (server-side request forgery). Practical impact depends on NAS routing, resolver behavior, and the response available at the private destination. The issue is fixed in 2026.8.1; as a workaround, disable remote URL attachment forwarding in Synology Chat.