Unrated severityNVD Advisory· Published Jul 10, 2026· Updated Jul 10, 2026
zhayujie CowAgent Message Endpoint channel.py authorization
CVE-2026-15332
Description
A security flaw has been discovered in zhayujie CowAgent up to 2.1.0. The impacted element is an unknown function of the file channel/channel.py of the component Message Endpoint. The manipulation results in missing authorization. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
Affected products
1Patches
Vulnerability mechanics
References
5- github.com/zhayujie/CowAgent/issues/2874mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-15332mitrethird-party-advisory
- vuldb.com/submit/853105mitrethird-party-advisory
- vuldb.com/vuln/377275mitrevdb-entry
- vuldb.com/vuln/377275/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.