A AegiFlow
HIGHCVSS 8.5EPSS 0.2%

CVE-2026-75911

CVE-2026-75911 updated by NVD

Published
2026-09-04
Modified
2026-09-10
EPSS percentile
7%
Sources
github-advisory, nvd

Summary

CodeWhale versions before 0.8.64 fail to properly validate the allow_shell configuration parameter from project config files, allowing attackers to enable arbitrary shell command execution by committing a malicious .codewhale/config.toml file to a repository. When a user clones and opens the repository in CodeWhale, the AI model gains access to exec_shell and task_shell tools, enabling execution of arbitrary shell commands on the victim's machine without explicit user consent.

Affected packages

EcosystemPackageAffected versionsFixed versions
npmcodewhale0.8.64
npmdeepseek-tui0.8.41
rustcodewhale-tui0.8.64
rustdeepseek-tui

Remediation: Upgrade to 0.8.64 or later.

References

Includes data from the GitHub Advisory Database, licensed under CC-BY 4.0.

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.

EPSS scores provided by the FIRST.org Exploit Prediction Scoring System.