CVE 8.5 HIGH

OpenClaw < 2026.5.18 - Command Truncation in Exec Approval Display_CVE-2026-53829

8.5 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

OpenClaw before 2026.5.18 contains an approval display truncation vulnerability allowing authenticated users to hide command suffixes from approvers. Attackers can submit oversized exec commands with benign prefixes and malicious suffixes to execute unauthorized operations after approval.

AI Analysis

Command Truncation in Exec Approval Display vulnerability allowing authenticated users to execute unauthorized operations after approval.

Basic Information

ID CVE-2026-53829
Source VulnCheck
Published Jun 12, 2026 at 21:56

Affected Product

Vendor OpenClaw
Product OpenClaw
Affected Versions OpenClaw OpenClaw 0

CWE Classification

AI Assessment

AI Score 8.5 / 10
AI Severity High
Vendor OpenClaw
Product OpenClaw
Version < 2026.5.18

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.