SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-62211

MEDIUM · CVSS 5 EPSS 0.11% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

OpenClaw versions prior to 2026.6.1 are vulnerable due to a credential redaction bypass in the trajectory export feature, allowing unauthorized access to sensitive data. This vulnerability can be exploited by attackers through misconfigured input paths, potentially leading to the exposure of confidential credentials. Organizations using affected versions should prioritize remediation to safeguard their data integrity and prevent unauthorized access.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-62211
Severity
MEDIUM
CVSS
5
EPSS
0.11%

Original NVD Description

OpenClaw versions before 2026.6.1 contain a credential redaction bypass vulnerability in the trajectory export feature that allows lower-trust callers to access data that should remain within trusted boundaries. Attackers can exploit misconfigured input paths or feature accessibility to expose sensitive credentials and data through the export mechanism.

Related CVEs

Other vulnerabilities affecting the same vendor(s)