← العودة للجدول
CVE-2026-53816
CVE-2026-53816 — OpenClaw before 2026.5.18 contains an insufficient provenance validation vulnera
📅 2026-06-11
🟠 High 🔥 No NVD Exploit Vulnerability CVSS 7.2

📋 الوصف الكامل

OpenClaw before 2026.5.18 contains an insufficient provenance validation vulnerability in node event handling that allows paired nodes to forge exec lifecycle events without system.run authorization. A malicious or compromised paired node can send crafted node.event messages to the gateway, steering target sessions into exec-event paths that expose capabilities the reduced node surface should not

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-53816

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-53816 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←