{"schema_version":1,"title":"Mosaxiv Clawlet vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 5 vulnerabilities in Mosaxiv Clawlet: 0 in the last 7 days and 5 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-16017, was published on 17 July 2026.","url":"https://junglewise.ai/threats/technologies/clawlet","json_url":"https://junglewise.ai/threats/technologies/clawlet.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/clawlet","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":0,"all_time":5,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":5,"last_365_days":5},"latest":[{"cve":"CVE-2026-16017","cvss":6.3,"slug":"cve-2026-16017-mosaxiv-clawlet-missing-authorization-in-cron-chat-tool","title":"mosaxiv clawlet missing authorization in cron Chat Tool","severity":"medium","exploited":false,"published_at":"2026-07-17T15:16:46.157+00:00","url":"https://junglewise.ai/threats/cve-2026-16017-mosaxiv-clawlet-missing-authorization-in-cron-chat-tool"},{"cve":"CVE-2026-15621","cvss":5.3,"slug":"cve-2026-15621-mosaxiv-clawlet-workspace-bypass-via-hardlink-in-file-tools","title":"mosaxiv clawlet workspace bypass via hardlink in File Tools","severity":"medium","exploited":false,"published_at":"2026-07-14T01:16:17.033+00:00","url":"https://junglewise.ai/threats/cve-2026-15621-mosaxiv-clawlet-workspace-bypass-via-hardlink-in-file-tools"},{"cve":"CVE-2026-15620","cvss":6.3,"slug":"cve-2026-15620-mosaxiv-clawlet-ssrf-in-tools-webfetch","title":"mosaxiv clawlet SSRF in tools.webFetch","severity":"medium","exploited":false,"published_at":"2026-07-14T01:16:16.867+00:00","url":"https://junglewise.ai/threats/cve-2026-15620-mosaxiv-clawlet-ssrf-in-tools-webfetch"},{"cve":"CVE-2026-15619","cvss":6.3,"slug":"cve-2026-15619-mosaxiv-clawlet-ssrf-in-web-fetch-function","title":"mosaxiv clawlet SSRF in web_fetch function","severity":"medium","exploited":false,"published_at":"2026-07-14T00:16:18.823+00:00","url":"https://junglewise.ai/threats/cve-2026-15619-mosaxiv-clawlet-ssrf-in-web-fetch-function"},{"cve":"CVE-2026-15618","cvss":6.3,"slug":"cve-2026-15618-mosaxiv-clawlet-protection-mechanism-failure-in-guardexeccommand","title":"mosaxiv clawlet protection mechanism failure in guardExecCommand","severity":"medium","exploited":false,"published_at":"2026-07-14T00:16:18.647+00:00","url":"https://junglewise.ai/threats/cve-2026-15618-mosaxiv-clawlet-protection-mechanism-failure-in-guardexeccommand"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":5},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[],"technology":{"hub":true,"name":"Mosaxiv Clawlet","slug":"clawlet","vendor":{"name":"Mosaxiv","slug":"mosaxiv","url":"https://junglewise.ai/threats/vendors/mosaxiv"},"aliases":[],"category":"library","homepage":"https://pypi.org/project/clawlet/","repo_url":"https://github.com/mosaxiv/clawlet","description":"clawlet is a lightweight, asynchronous web crawler framework for Python.","url":"https://junglewise.ai/threats/technologies/clawlet"},"most_severe":[{"cve":"CVE-2026-16017","cvss":6.3,"slug":"cve-2026-16017-mosaxiv-clawlet-missing-authorization-in-cron-chat-tool","title":"mosaxiv clawlet missing authorization in cron Chat Tool","severity":"medium","exploited":false,"published_at":"2026-07-17T15:16:46.157+00:00","url":"https://junglewise.ai/threats/cve-2026-16017-mosaxiv-clawlet-missing-authorization-in-cron-chat-tool"},{"cve":"CVE-2026-15620","cvss":6.3,"slug":"cve-2026-15620-mosaxiv-clawlet-ssrf-in-tools-webfetch","title":"mosaxiv clawlet SSRF in tools.webFetch","severity":"medium","exploited":false,"published_at":"2026-07-14T01:16:16.867+00:00","url":"https://junglewise.ai/threats/cve-2026-15620-mosaxiv-clawlet-ssrf-in-tools-webfetch"},{"cve":"CVE-2026-15619","cvss":6.3,"slug":"cve-2026-15619-mosaxiv-clawlet-ssrf-in-web-fetch-function","title":"mosaxiv clawlet SSRF in web_fetch function","severity":"medium","exploited":false,"published_at":"2026-07-14T00:16:18.823+00:00","url":"https://junglewise.ai/threats/cve-2026-15619-mosaxiv-clawlet-ssrf-in-web-fetch-function"},{"cve":"CVE-2026-15618","cvss":6.3,"slug":"cve-2026-15618-mosaxiv-clawlet-protection-mechanism-failure-in-guardexeccommand","title":"mosaxiv clawlet protection mechanism failure in guardExecCommand","severity":"medium","exploited":false,"published_at":"2026-07-14T00:16:18.647+00:00","url":"https://junglewise.ai/threats/cve-2026-15618-mosaxiv-clawlet-protection-mechanism-failure-in-guardexeccommand"},{"cve":"CVE-2026-15621","cvss":5.3,"slug":"cve-2026-15621-mosaxiv-clawlet-workspace-bypass-via-hardlink-in-file-tools","title":"mosaxiv clawlet workspace bypass via hardlink in File Tools","severity":"medium","exploited":false,"published_at":"2026-07-14T01:16:17.033+00:00","url":"https://junglewise.ai/threats/cve-2026-15621-mosaxiv-clawlet-workspace-bypass-via-hardlink-in-file-tools"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}