CVE-2026-16120

A vulnerability was determined in nextlevelbuilder GoClaw up to 3.13.3-beta.3. This impacts the function matchesAllowlist/extractBin of the file internal/tools/exec_approval.go. Executing a manipulation can lead to incorrectly-resolved name. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Configurations

No configuration.

History

18 Jul 2026, 14:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-18 14:17

Updated : 2026-07-20 19:17


NVD link : CVE-2026-16120

Mitre link : CVE-2026-16120

CVE.ORG link : CVE-2026-16120


JSON object : View

Products Affected

No product.

CWE
CWE-706

Use of Incorrectly-Resolved Name or Reference