Junglewise Threat Intelligence

zeptoclaw has Shell allowlist-blocklist bypass via command/argument injection and file name wildcards

Severity: low · CVSS 3.1 · Published 2026-03-05

Technologies: zeptoclaw (crates.io). Vendors: crates.io.

Executive brief

zeptoclaw has Shell allowlist-blocklist bypass via command/argument injection and file name wildcards

Affected products

  • crates.io zeptoclaw

Related threats