CVE-2026-15329

Source
https://cve.org/CVERecord?id=CVE-2026-15329
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-15329.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-15329
Published
2026-07-10T03:30:08.320Z
Modified
2026-07-16T03:31:01.908069268Z
Severity
  • 2.1 (Low) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:P CVSS Calculator
Summary
zhayujie CowAgent Browser Tool browser_tool.py BrowserTool._do_navigate information disclosure
Details

A vulnerability was found in zhayujie CowAgent up to 2.1.0. This issue affects the function BrowserTool.donavigate of the file agent/tools/browser/browser_tool.py of the component Browser Tool. Performing a manipulation results in information disclosure. The attack can be initiated remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.

Database specific
{
    "cwe_ids": [
        "CWE-200",
        "CWE-284"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/15xxx/CVE-2026-15329.json",
    "cna_assigner": "VulDB"
}
References

Affected packages

Git / github.com/zhayujie/cowagent

Affected ranges

Type
GIT
Repo
https://github.com/zhayujie/cowagent
Events
Database specific
{
    "extracted_events": [
        {
            "introduced": "2.0"
        },
        {
            "last_affected": "2.0"
        },
        {
            "introduced": "2.1.0"
        },
        {
            "last_affected": "2.1.0"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

2.*
2.0
2.0.0
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.0.6
2.0.7
2.0.8
2.0.9
2.1.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-15329.json"