Security Advisory

CVE-2026-59261

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-08 16:01:14
Last updated 2026-07-20 17:45:55
Assigner VulnCheck
CVSS score 8.4
State PUBLISHED

Description

OpenClaw before 2026.5.28 contains a credential exposure vulnerability where workspace dotenv files can override provider credentials. Attackers with lower-trust access to configured input paths can expose sensitive data and credentials that should remain within trusted boundaries.