Impact
The vulnerability permits a local attacker to bypass authorization checks in the createChatSdkBridge.setup function of NanoClaw’s MCP Server Approval component, allowing unauthorized interactions with the chat SDK bridge. This is a classic improper authorization flaw (CWE-266, CWE-285) that can let an attacker manipulate protected resources or perform privileged actions that should not be available to them.
Affected Systems
The flaw affects nanocoai NanoClaw versions up to 2.0.64. Any installation of these releases may be vulnerable, with the CPE indicating all variants of the product are potentially impacted until a secure version is released.
Risk and Exploitability
The CVSS score of 4.8 reflects a moderate severity, while the EPSS score of less than 1% indicates a very low probability of exploitation at present. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires local access or the ability to influence local input to the server, so remote attackers cannot leverage this flaw without first gaining local foothold. No publicly known remote exploitation has been documented.
OpenCVE Enrichment