CVE-2026-53821 | OpenClaw up to 2026.5.17 Websocket Connection authorization (GHSA-qjpc-qf9m-xwmr / EUVD-2026-36609)
A vulnerability identified as critical has been detected in OpenClaw up to 2026.5.17. The impacted element is an unknown function of the component Websocket Connection Handler. This manipulation causes missing authorization.
The identification of this vulnerability is CVE-2026-53821. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.