CVE-2026-19007 | mf-yang openclaw-cn up to 0.2.1 reply-elevated.ts isApprovedElevatedSender privileges management (Issue 564)
A vulnerability has been found in mf-yang openclaw-cn up to 0.2.1 and classified as critical. This vulnerability affects the function isApprovedElevatedSender of the file src/auto-reply/reply/reply-elevated.ts. This manipulation causes improper privilege management.
The identification of this vulnerability is CVE-2026-19007. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More