CVE-2026-62211: OpenClaw < 2026.6.1 Credential Redaction Bypass via Trajectory Export
OpenClaw versions before 2026.6.1 contain a credential redaction bypass vulnerability in the trajectory export feature that allows lower-trust callers to access data that should remain within trusted boundaries. Attackers can exploit misconfigured input paths or feature accessibility to expose sensitive credentials and data through the export mechanism.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
OpenClawto a version that resolves this vulnerability.Fixed in 2026.6.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-62211?
The severity of CVE-2026-62211 is rated as medium with a score of 4.1.
How do I fix CVE-2026-62211?
To fix CVE-2026-62211, upgrade OpenClaw to version 2026.6.1 or later.
What does CVE-2026-62211 affect?
CVE-2026-62211 affects OpenClaw versions prior to 2026.6.1, specifically the trajectory export feature.
What type of vulnerability is CVE-2026-62211?
CVE-2026-62211 is a credential redaction bypass vulnerability.
What can attackers do with CVE-2026-62211?
Attackers can exploit CVE-2026-62211 to access sensitive data that should be restricted, via misconfigured input paths or feature accessibility.