CVE-2026-15625: Nextlevelbuilder Goclaw

Medium severity, CVSS 6.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability was found in nextlevelbuilder GoClaw 3.11.3. Affected by this issue is the function ExecApprovalManager.CheckCommand of the file internal/tools/exec_approval.go. The manipulation results in incomplete blacklist. The attack can be executed remotely. The exploit has been made public and could be used.

Affected products

Published 2026-07-14. Last modified 2026-07-14.