Back to IntelRead Original Source
Intel Node
Google Fixes CVSS 10 Gemini CLI CI RCE and Cursor Flaws Enable Code Execution
mediumvulnerability2026-04-30T07:07:00+00:00source excerpt
vulnerability
Source excerpt · The upstream feed supplied only part of this article.Read the original source →
Google has addressed a maximum severity security flaw in Gemini CLI -- the "@google/gemini-cli" npm package and the "google-github-actions/run-gemini-cli" GitHub Actions workflow -- that could have allowed attackers to execute arbitrary commands on host systems.