In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Use of Incorrectly-Resolved Name or Reference vulnerabilities in an interactive lesson.
Start learningA fix was pushed into the master branch but not yet published.
@openclaw/synology-chat is a Synology Chat channel plugin for OpenClaw
Affected versions of this package are vulnerable to Use of Incorrectly-Resolved Name or Reference via the webhook-handler process. An attacker can redirect message replies to an unintended user by exploiting mutable username resolution instead of relying on a stable user identifier.