CVE-2026-18992 | zhayujie CowAgent up to 2.1.1 Self-Evolution Review Agent executor.py _select_tools authorization (Issue 2904)

SecurityVulns

A vulnerability identified as critical has been detected in zhayujie CowAgent up to 2.1.1. This vulnerability affects the function _select_tools of the file agent/evolution/executor.py of the component Self-Evolution Review Agent. Performing a manipulation results in incorrect authorization.

This vulnerability is reported as CVE-2026-18992. The attack is possible to be carried out remotely. Moreover, an exploit is present.VulDB Recent EntriesRead More