PT-2026-49033 · Openclaw · Openclaw

Cantinagen

+1

·

Published

2026-06-12

·

Updated

2026-06-12

·

CVE-2026-53829

CVSS v3.1

8.0

High

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
OpenClaw before 2026.5.18 contains an approval display truncation vulnerability allowing authenticated users to hide command suffixes from approvers. Attackers can submit oversized exec commands with benign prefixes and malicious suffixes to execute unauthorized operations after approval.

Fix

UI Misrepresentation of Critical Information

Weakness Enumeration

Related Identifiers

CVE-2026-53829

Affected Products

Openclaw