Security Advisory

CVE-2026-53845

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-16 18:04:56
Last updated 2026-06-16 18:55:41
Assigner VulnCheck
CVSS score 2.3
State PUBLISHED

Description

OpenClaw before 2026.5.6 contains a hook bypass vulnerability where skill commands routed through the affected dispatch path skip before-tool-call hook coverage. Attackers can exploit this by sending skill commands through the vulnerable dispatch path to bypass hook-based auditing and policy enforcement mechanisms.