Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Security Flaws in AI Agents Allow Code Execution

Security Flaws in AI Agents Allow Code Execution

Posted on September 2, 2026 By CWS

Several AI agents have been found vulnerable to security issues, raising concerns over user safety. Manifold Security recently unveiled eight security weaknesses in seven command-line AI coding agents. These vulnerabilities allow attackers to run unauthorized code on a developer’s machine. Despite the critical nature of these flaws, four remain unpatched as of the latest reports.

Unaddressed Security Vulnerabilities

Manifold Security has identified that these vulnerabilities can be exploited when a repository, accompanied by its .git directory, is shared via various methods such as a USB stick or a sync folder. Unlike a regular clone, this method preserves the necessary files for exploitation. While fixes have been issued for some agents, others like Hermes Agent, Qwen Code, and Grok Build remain susceptible to these issues.

OpenAI has also acknowledged similar security concerns in Codex, releasing three CVEs to address the issues. These vulnerabilities permit unauthorized code execution with user privileges, posing risks of data manipulation or deletion. The vulnerabilities were identified by distinct research groups, highlighting the widespread nature of these security gaps.

Agents Affected by Vulnerabilities

Specific agents have demonstrated weaknesses, with various versions being susceptible. For instance, goose resolved its issues in version 1.44.0, while Codex CLI and Desktop versions were patched in subsequent updates. However, Manifold’s findings indicate that agents like Claude Code and Hermes Agent are still at risk, with fixes pending for certain paths.

Notably, these vulnerabilities are not due to new flaws but stem from the underlying processes in these agents. The findings, detailed by Manifold as ‘GitSpawn,’ suggest that many agents have similar vulnerabilities, though not all have been publicly named.

Recommendations and Preventive Measures

To mitigate these risks, users are advised to inspect their .git/config files for specific configurations that could lead to exploitation, such as core.fsmonitor. Running audit commands like git config –get core.fsmonitor can help identify potential vulnerabilities. Disabling certain Git settings globally can also provide an added layer of protection.

Despite the absence of known exploitation cases, the potential for abuse remains significant. Users and vendors are encouraged to take proactive measures to safeguard their systems, including stripping configurations during background calls.

Conclusion and Future Outlook

The discovery of these vulnerabilities underscores the importance of robust security practices in AI development and use. As these agents become increasingly integrated into development workflows, ensuring their security is paramount. Moving forward, vendors and developers must prioritize patching and vigilance to protect against potential exploitation.

The Hacker News Tags:AI agents, AI security, code execution, CVE, Cybersecurity, Git configuration, Git vulnerabilities, Manifold Security, OpenAI, security flaws, Software Security, Vulnerability

Post navigation

Previous Post: AI Assists in Exploit Development for WAGO PLCs
Next Post: Anthropic Enhances Security With Enterprise Safeguards

Related Posts

Iran-Linked Hackers Hits Israeli Sectors with New MuddyViper Backdoor in Targeted Attacks Iran-Linked Hackers Hits Israeli Sectors with New MuddyViper Backdoor in Targeted Attacks The Hacker News
Critical Grist-Core Vulnerability Allows RCE Attacks via Spreadsheet Formulas Critical Grist-Core Vulnerability Allows RCE Attacks via Spreadsheet Formulas The Hacker News
Behavioral Analytics Crucial in AI Cybersecurity Threats Behavioral Analytics Crucial in AI Cybersecurity Threats The Hacker News
Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure The Hacker News
How to Integrate AI into Modern SOC Workflows How to Integrate AI into Modern SOC Workflows The Hacker News
U.S. Charges Yemeni Hacker Behind Black Kingdom Ransomware Targeting 1,500 Systems U.S. Charges Yemeni Hacker Behind Black Kingdom Ransomware Targeting 1,500 Systems The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks
  • Russian Enterprises Face Threats from Cyber Groups
  • TP-Link Camera Vulnerabilities Threaten User Privacy
  • AI-Driven Data Breach Notified to Spanish Authorities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks
  • Russian Enterprises Face Threats from Cyber Groups
  • TP-Link Camera Vulnerabilities Threaten User Privacy
  • AI-Driven Data Breach Notified to Spanish Authorities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark