{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-16085","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2026-07-17T13:50:10.945Z","datePublished":"2026-07-18T09:15:09.590Z","dateUpdated":"2026-07-20T19:10:46.153Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2026-07-18T09:15:09.590Z"},"title":"Sipeed PicoClaw context.go NewContextBuilder inclusion of functionality from untrusted control sphere","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-829","lang":"en","description":"Inclusion of Functionality from Untrusted Control Sphere"}]}],"affected":[{"vendor":"Sipeed","product":"PicoClaw","versions":[{"version":"0.2.0","status":"affected"},{"version":"0.2.1","status":"affected"},{"version":"0.2.2","status":"affected"},{"version":"0.2.3","status":"affected"},{"version":"0.2.4","status":"affected"},{"version":"0.2.5","status":"affected"},{"version":"0.2.6","status":"affected"},{"version":"0.2.7","status":"affected"},{"version":"0.2.8","status":"affected"},{"version":"0.2.9","status":"affected"}],"cpes":["cpe:2.3:a:sipeed:picoclaw:*:*:*:*:*:*:*:*"]}],"descriptions":[{"lang":"en","value":"A security vulnerability has been detected in Sipeed PicoClaw up to 0.2.9. Affected is the function NewContextBuilder of the file pkg/agent/context.go. Such manipulation leads to inclusion of functionality from untrusted control sphere. The attack needs to be performed locally. The exploit has been disclosed publicly and may be used. The reported GitHub issue was closed automatically with the label \"not planned\" by a bot."}],"metrics":[{"cvssV4_0":{"version":"4.0","baseScore":4.8,"vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P","baseSeverity":"MEDIUM"}},{"cvssV3_1":{"version":"3.1","baseScore":5.3,"vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R","baseSeverity":"MEDIUM"}},{"cvssV3_0":{"version":"3.0","baseScore":5.3,"vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R","baseSeverity":"MEDIUM"}},{"cvssV2_0":{"version":"2.0","baseScore":4.3,"vectorString":"AV:L/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR"}}],"timeline":[{"time":"2026-07-17T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2026-07-17T02:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2026-07-17T15:55:34.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"Eric-i (VulDB User)","type":"reporter"},{"lang":"en","value":"VulDB CNA Team","type":"coordinator"}],"references":[{"url":"https://vuldb.com/vuln/379797","name":"VDB-379797 | Sipeed PicoClaw context.go NewContextBuilder inclusion of functionality from untrusted control sphere","tags":["vdb-entry","technical-description"]},{"url":"https://vuldb.com/vuln/379797/cti","name":"VDB-379797 | CTI Indicators (IOB, IOC, IOA)","tags":["signature","permissions-required"]},{"url":"https://vuldb.com/cve/CVE-2026-16085","name":"CVE-2026-16085 | CVE Analysis and Report","tags":["third-party-advisory"]},{"url":"https://vuldb.com/submit/852947","name":"Submit #852947 | Sipeed PicoClaw <= 0.2.9 Inclusion of Functionality from Untrusted Control Sphere (CWE-829)","tags":["third-party-advisory"]},{"url":"https://github.com/sipeed/picoclaw/issues/3075","tags":["exploit","issue-tracking"]},{"url":"https://github.com/sipeed/picoclaw/","tags":["product"]}]},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-07-20T16:59:41.575670Z","id":"CVE-2026-16085","options":[{"Exploitation":"poc"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-07-20T19:10:46.153Z"}}]}}