A vulnerability was found in nextlevelbuilder GoClaw up to 3.11.3 and classified as critical. The impacted element is the function TeamTasksTool.executeComplete of the file internal/tools/team_tasks_lifecycle.go of the component Team Task Completion Handler. Executing a manipulation can lead to missing authorization.

The identification of this vulnerability is CVE-2026-10616. The attack may be launched remotely. Furthermore, there is an exploit available.

The project tagged the reported issue as bug.