A vulnerability identified as critical has been detected in nextlevelbuilder GoClaw up to 3.13.2. Affected is the function
isSafeBin of the file internal/tools/exec_approval.go. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2026-16121. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.