A security flaw has been discovered in Sipeed PicoClaw up...
Low severity
Unreviewed
Published
Jul 10, 2026
to the GitHub Advisory Database
•
Updated Jul 10, 2026
Description
Published by the National Vulnerability Database
Jul 10, 2026
Published to the GitHub Advisory Database
Jul 10, 2026
Last updated
Jul 10, 2026
A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9. Affected by this vulnerability is the function WebFetchTool.Execute of the file pkg/tools/integration/web.go of the component Guarded Web Fetch Flow. The manipulation results in server-side request forgery. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks. The reported GitHub issue was closed automatically due to inactivity.
References