A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.2. Affected is the function isSafeBin of the file internal/tools/exec_approval.go. The manipulation leads to improper authorizatio…
Medium CVSS 6.3
Summary
A vulnerability was identified in nextlevelbuilder GoClaw up to 3.13.2. Affected is the function isSafeBin of the file internal/tools/exec_approval.go. The manipulation leads to improper authorization. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/nextlevelbuilder/goclaw/
- https://github.com/nextlevelbuilder/goclaw/issues/1206
- https://github.com/nextlevelbuilder/goclaw/issues/1214
- https://vuldb.com/cve/CVE-2026-16121
- https://vuldb.com/submit/856827
- https://vuldb.com/vuln/379830
- https://vuldb.com/vuln/379830/cti
Timeline
- nvd_ingest NVD