CVE-2026-31862 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Cloud CLI (aka Claude Code UI) is a desktop and mobile UI for Claude Code, Cursor CLI, Codex, and Gemini-CLI. Prior to 1.24.0, multiple Git-related API endpoint…
Critical CVSS: 9.1

CVE-2026-31862

Cloud CLI (aka Claude Code UI) is a desktop and mobile UI for Claude Code, Cursor CLI, Codex, and Gemini-CLI. Prior to 1.24.0, multiple Git-related API endpoints use execAsync() with string interpolation of user-controlled parameters (file, branch, message, commit), allowing authenticated attackers to execute arbitrary OS commands. This vulnerability is fixed in 1.24.0.
Vendor
Cloudcli
Product
Cloud Cli
CWE
CWE-78
Yayın Tarihi
2026-03-11 18:16:25
Güncelleme
2026-03-17 19:04:29
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar