CVE-2026-90818 | netease-youdao LobsterAI 2026.6.15/2026.8.28/2026.9.3/2026.9.4 Browser Network Configuration openclawConfigSync.ts OpenClawConfigSync.buildBrowserConfig server-side request forgery
A vulnerability categorized as problematic has been discovered in netease-youdao LobsterAI 2026.6.15/2026.8.28/2026.9.3/2026.9.4. Impacted is the function OpenClawConfigSync.buildBrowserConfig of the file src/main/libs/openclawConfigSync.ts of the component Browser Network Configuration. The manipulation results in server-side request forgery.
This vulnerability is known as CVE-2026-90818. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The reported GitHub issue was closed automatically due to inactivity.VulDB Recent EntriesRead More