Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-53848

MEDIUM NVD
CVSS Score 4.3
Severity MEDIUM
Published Jun 16, 2026
Vendor unknown

Description

OpenClaw before 2026.5.26 contains an exec allowlist bypass vulnerability allowing authenticated operators to execute wrapper-level side effects outside allowlisted command intent. Attackers can craft command requests that bypass allowlist validation by leveraging transparent command wrappers to perform unintended operations.

References