Medium severity6.3NVD Advisory· Published Jul 14, 2026· Updated Jul 15, 2026
CVE-2026-15624
CVE-2026-15624
Description
A vulnerability has been found in nextlevelbuilder GoClaw 3.13.3-beta.3. Affected by this vulnerability is the function bytePlusDownloadVideo of the file internal/tools/create_video_byteplus.go of the component invoke Endpoint. The manipulation of the argument output.video_url leads to server-side request forgery. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.
Affected products
1- Range: 3.13.3-beta.3
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.