Sipeed

Picoclaw

14 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.39%
  • Veröffentlicht 18.07.2026 23:30:18
  • Zuletzt bearbeitet 21.07.2026 15:16:32

A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. The impacted element is an unknown function of the file web/backend/middleware/access_control.go of the component First Run Setup. Performing a manipulation of the argument allowed_cidrs re...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 18.07.2026 23:00:12
  • Zuletzt bearbeitet 20.07.2026 19:17:19

A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMessageReceive of the file pkg/channels/feishu/feishu_64.go of the component Group Message Handler. Such manipulation leads to missi...

Exploit
  • EPSS 0.29%
  • Veröffentlicht 18.07.2026 22:45:13
  • Zuletzt bearbeitet 22.07.2026 16:17:11

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. Impacted is the function isPrivateOrRestrictedIP of the file pkg/tools/integration/web.go of the component web_fetch. This manipulation causes server-side request forgery. The attack can ...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 18.07.2026 22:30:10
  • Zuletzt bearbeitet 20.07.2026 14:16:54

A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This issue affects the function dispatchIncoming of the file pkg/channels/wecom/wecom.go of the component Group Message Handler. The manipulation results in incorrect authorization. ...

  • EPSS 0.4%
  • Veröffentlicht 18.07.2026 09:17:08
  • Zuletzt bearbeitet 21.07.2026 04:16:49

A weakness has been identified in Sipeed PicoClaw up to 0.2.9. This impacts the function web_fetch of the file pkg/tools/integration/web.go. This manipulation causes server-side request forgery. Remote exploitation of the attack is possible. The expl...

Exploit
  • EPSS 0.11%
  • Veröffentlicht 18.07.2026 09:15:09
  • Zuletzt bearbeitet 20.07.2026 19:17:18

A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. Affected is the function NewContextBuilder of the file pkg/agent/context.go. Such manipulation leads to inclusion of functionality from untrusted control sphere. The attack ne...

Exploit
  • EPSS 0.43%
  • Veröffentlicht 18.07.2026 08:30:09
  • Zuletzt bearbeitet 20.07.2026 18:16:50

A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. This affects the function webhook.ParseRequest of the file pkg/channels/line/line.go of the component LINE Webhook. The manipulation results in authentication bypass by capture-repla...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 18.07.2026 08:15:07
  • Zuletzt bearbeitet 22.07.2026 16:17:11

A vulnerability was identified in Sipeed PicoClaw up to 0.2.9. The impacted element is the function ExecTool.executeRun of the file pkg/agent/pipeline_execute.go. The manipulation of the argument cwe leads to time-of-check time-of-use. The attack mus...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 18.07.2026 07:45:09
  • Zuletzt bearbeitet 20.07.2026 15:16:35

A vulnerability was determined in Sipeed PicoClaw up to 0.2.9. The affected element is an unknown function of the file web/backend/api/auth.go. Executing a manipulation can lead to cross-site request forgery. The attack can be launched remotely. The ...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 10.07.2026 02:00:08
  • Zuletzt bearbeitet 10.07.2026 16:16:26

A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. This vulnerability affects the function rt.ReloadConfig of the file pkg/channels/pico/pico.go. Performing a manipulation of the argument message.send results in missing authorization. It is...