Impact
The flaw resides in the Scheme Handler’s assertBrowserNavigationAllowed function within src/browser/navigation-guard.ts. By supplying a crafted url argument, an attacker can cause the function to reveal internal data that should remain confidential. The vulnerability enables information disclosure, linked to CWE-200 and CWE-284.
Affected Systems
All releases of the MF‑YANG openclaw‑cn application up to version 0.2.1 are affected. No later releases in the CNA data mention a fix, meaning systems still running those versions are at risk. The vulnerable component is the Scheme Handler, part of the openclaw‑cn codebase.
Risk and Exploitability
The CVSS base score of 5.3 indicates moderate severity. The EPSS score of less than 1% suggests a low likelihood that attackers will exploit it in the near term. The flaw is not listed in CISA’s KEV catalog. An attacker can exploit the weakness remotely by sending crafted URLs to the Scheme Handler, potentially gaining visibility into protected data. Because no patch is currently available, the risk remains high for publicly exposed instances of the navigation guard.
OpenCVE Enrichment