CVE-2026-53845

Severity CVSS v4.0:
LOW
Type:
CWE-693 Protection Mechanism Failure
Publication date:
16/06/2026
Last modified:
16/06/2026

Description

OpenClaw before 2026.5.6 contains a hook bypass vulnerability where skill commands routed through the affected dispatch path skip before-tool-call hook coverage. Attackers can exploit this by sending skill commands through the vulnerable dispatch path to bypass hook-based auditing and policy enforcement mechanisms.