Unrated severityNVD Advisory· Published Aug 6, 2026
mf-yang openclaw-cn reply-elevated.ts isApprovedElevatedSender privileges management
CVE-2026-19007
Description
A vulnerability was determined in mf-yang openclaw-cn up to 0.2.1. This vulnerability affects the function isApprovedElevatedSender of the file src/auto-reply/reply/reply-elevated.ts. This manipulation causes improper privilege management. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=0.2.1
Patches
Vulnerability mechanics
References
5- github.com/mf-yang/openclaw-cn/issues/564mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-19007mitrethird-party-advisory
- vuldb.com/submit/862643mitrethird-party-advisory
- vuldb.com/vuln/386390mitrevdb-entrytechnical-description
- vuldb.com/vuln/386390/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.