CVE-2026-16126

Source
https://cve.org/CVERecord?id=CVE-2026-16126
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-16126.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-16126
Published
2026-07-18T15:45:08.996Z
Modified
2026-07-22T05:30:08.688143608Z
Severity
  • 5.5 (Medium) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P CVSS Calculator
Summary
zevorn rt-claw Swarm RPC Receiver swarm.c handle_rpc_request authorization
Details

A vulnerability was determined in zevorn rt-claw up to 0.2.0. The impacted element is the function handlerpcrequest of the file claw/services/swarm/swarm.c of the component Swarm RPC Receiver. This manipulation causes incorrect authorization. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/16xxx/CVE-2026-16126.json",
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-285",
        "CWE-863"
    ]
}
References

Affected packages

Git / github.com/zevorn/rt-claw

Affected ranges

Type
GIT
Repo
https://github.com/zevorn/rt-claw
Events
Database specific
{
    "source": "AFFECTED_FIELD",
    "extracted_events": [
        {
            "introduced": "0.1"
        },
        {
            "last_affected": "0.1"
        },
        {
            "introduced": "0.2.0"
        },
        {
            "last_affected": "0.2.0"
        }
    ]
}

Affected versions

0.*
0.1
0.2.0
v0.*
v0.1.0
v0.2.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-16126.json"