These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2026-16198 is an authentication bypass vulnerability in Sipeed PicoClaw up to 0.2.9. The vulnerability is located in an unknown function of the file web/backend/middleware/access_control.go of the component First Run Setup. An attacker can exploit this vulnerability by manipulating the argument allowed_cidrs, which results in authentication bypass using an alternate channel. The attack may be initiate [truncated]
A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The affected element is the function handleMessageReceive of the file pkg/channels/feishu/feishu_64.go of the component Group Message Handler. Such manipulation leads to missing authorization. The attack can be launched remotely. This vulnerability allows remote attackers to manipulate the function without proper authorization, pot [truncated]
A server-side request forgery vulnerability has been identified in Sipeed PicoClaw up to 0.2.9. The impacted function is isPrivateOrRestrictedIP in the file pkg/tools/integration/web.go of the component web_fetch. This weakness allows for server-side request forgery attacks, which can be initiated remotely. A patch has been made available to address this issue. The vulnerability has a CVSS score of 2.1, i [truncated]
CVE-2026-16195 is a security flaw in Sipeed PicoClaw up to 0.2.9. The issue affects the dispatchIncoming function in pkg/channels/wecom/wecom.go, leading to incorrect authorization. This vulnerability can be exploited remotely and has a CVSS score of 2.1, classified as Low severity. The exploit has been released to the public and may be used for attacks. Users of Sipeed PicoClaw up to version 0.2.9 should [truncated]
A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. The issue lies in the NewContextBuilder function of the pkg/agent/context.go file, leading to local inclusion of functionality from an untrusted control sphere. The attack requires local access and has been publicly disclosed. The GitHub issue related to this vulnerability was closed automatically with the label 'not planned' by a bot.
CVE-2026-16083 is a security flaw in Sipeed PicoClaw up to 0.2.9. The vulnerability affects the webhook.ParseRequest function in the LINE Webhook component, located in pkg/channels/line/line.go. This flaw allows for authentication bypass by capture-replay. The attack can be launched remotely. According to the provided information, the exploit has been released to the public and may be used for attacks. A [truncated]
A vulnerability was identified in Sipeed PicoClaw up to 0.2.9, affecting the function ExecTool.executeRun of the file pkg/agent/pipeline_execute.go. The manipulation of the argument cwe leads to time-of-check time-of-use. The attack must be carried out locally. This vulnerability has a low CVSS score of 1.9 and is considered low severity. Users of Sipeed PicoClaw up to 0.2.9 should review and apply patche [truncated]
A vulnerability was determined in Sipeed PicoClaw up to 0.2.9, affecting an unknown function of the file web/backend/api/auth.go. Executing a manipulation can lead to cross-site request forgery. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Users of Sipeed PicoClaw up to version 0.2.9 should be aware of this cross-site request forgery vulnerability and t [truncated]
A vulnerability was detected in Sipeed PicoClaw up to 0.2.9. This vulnerability affects the function rt.ReloadConfig of the file pkg/channels/pico/pico.go. Performing a manipulation of the argument message.send results in missing authorization. It is possible to initiate the attack remotely. The vulnerability has a CVSS score of 2.1 and is considered Low severity. Users should review and apply patches to [truncated]
A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. This affects the function IPAllowlist of the file web/backend/middleware/access_control.go of the component Launcher, leading to improper access controls. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The name of the patch is 3126. Users should apply the patch to remediate this is [truncated]
A weakness has been identified in Sipeed PicoClaw up to 0.2.9, affecting some unknown functionality of the file pkg/channels/mqtt/mqtt.go of the component MQTT Channel Handler. This manipulation of the argument client_id causes incorrect authorization. The attack is possible to be carried out remotely. Users should review the CVE record and NVD detail page for more information.
A security flaw has been discovered in Sipeed PicoClaw up to 0.2.9, affecting the function WebFetchTool.Execute of the file pkg/tools/integration/web.go of the component Guarded Web Fetch Flow. This vulnerability results in server-side request forgery (SSRF) and can be executed remotely. Users of Sipeed PicoClaw up to 0.2.9 should be aware of this vulnerability and take necessary precautions to protect th [truncated]
CVE-2026-36045 describes an OS command injection vulnerability in picoclaw versions v0.1.2 and earlier. The vulnerability exists in the ExecTool component (pkg/tools/shell.go), specifically within the guardCommand() function. This function attempts to restrict shell command execution using a denylist of 8 regular expressions, but the denylist is incomplete and can be bypassed. The CVE was published on 202 [truncated]