A vulnerability categorized as critical has been discovered in OpenClaw up to 2026.5.2. This issue affects some unknown processing of the component allowFrom Feature. The manipulation results in authentication bypass by spoofing.

This vulnerability is known as CVE-2026-53823. It is possible to launch the attack remotely. No exploit is available.

It is advisable to upgrade the affected component.