← Volver al buscador de CVEs

CVE-2026-15626

nextlevelbuilder GoClaw

Descripción

A vulnerability was determined in nextlevelbuilder GoClaw 3.13.3-beta.3. This affects the function writeFile of the file internal/providers/acp/tool_bridge.go of the component ACP ToolBridge Workspace Handler. This manipulation causes path traversal. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

CVSS 6.3EPSS 0.294%Riesgo 0.65
Ver fuente
Publicación
2026-07-14 04:17:04
Versiones afectadas
<=3.13.3-beta.3
Tipo
Software crítico
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L