CVE-2026-40037 | OpenClaw up to 2026.3.30/2026.4.7 Request Body redirect (GHSA-qx8j-g322-qj6m)
A vulnerability, which was classified as problematic, has been found in OpenClaw up to 2026.3.30/2026.4.7. The affected element is an unknown function of the component Request Body Handler. The manipulation leads to open redirect.
This vulnerability is listed as CVE-2026-40037. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.