Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-62211

Опубликовано: 17 июл. 2026
Источник: nvd
CVSS3: 5
EPSS Низкий

Описание

OpenClaw versions before 2026.6.1 contain a credential redaction bypass vulnerability in the trajectory export feature that allows lower-trust callers to access data that should remain within trusted boundaries. Attackers can exploit misconfigured input paths or feature accessibility to expose sensitive credentials and data through the export mechanism.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openclaw:openclaw:*:*:*:*:*:node.js:*:*
Версия до 2026.6.1 (исключая)

EPSS

Процентиль: 2%
0.00111
Низкий

5 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 5
github
27 дней назад

OpenClaw versions before 2026.6.1 contain a credential redaction bypass vulnerability in the trajectory export feature that allows lower-trust callers to access data that should remain within trusted boundaries. Attackers can exploit misconfigured input paths or feature accessibility to expose sensitive credentials and data through the export mechanism.

EPSS

Процентиль: 2%
0.00111
Низкий

5 Medium

CVSS3

Дефекты

CWE-532