Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Security Flaws in AI Agents Allow Code Execution

Security Flaws in AI Agents Allow Code Execution

Posted on September 2, 2026 By CWS

Several AI agents have been found vulnerable to security issues, raising concerns over user safety. Manifold Security recently unveiled eight security weaknesses in seven command-line AI coding agents. These vulnerabilities allow attackers to run unauthorized code on a developer’s machine. Despite the critical nature of these flaws, four remain unpatched as of the latest reports.

Unaddressed Security Vulnerabilities

Manifold Security has identified that these vulnerabilities can be exploited when a repository, accompanied by its .git directory, is shared via various methods such as a USB stick or a sync folder. Unlike a regular clone, this method preserves the necessary files for exploitation. While fixes have been issued for some agents, others like Hermes Agent, Qwen Code, and Grok Build remain susceptible to these issues.

OpenAI has also acknowledged similar security concerns in Codex, releasing three CVEs to address the issues. These vulnerabilities permit unauthorized code execution with user privileges, posing risks of data manipulation or deletion. The vulnerabilities were identified by distinct research groups, highlighting the widespread nature of these security gaps.

Agents Affected by Vulnerabilities

Specific agents have demonstrated weaknesses, with various versions being susceptible. For instance, goose resolved its issues in version 1.44.0, while Codex CLI and Desktop versions were patched in subsequent updates. However, Manifold’s findings indicate that agents like Claude Code and Hermes Agent are still at risk, with fixes pending for certain paths.

Notably, these vulnerabilities are not due to new flaws but stem from the underlying processes in these agents. The findings, detailed by Manifold as ‘GitSpawn,’ suggest that many agents have similar vulnerabilities, though not all have been publicly named.

Recommendations and Preventive Measures

To mitigate these risks, users are advised to inspect their .git/config files for specific configurations that could lead to exploitation, such as core.fsmonitor. Running audit commands like git config –get core.fsmonitor can help identify potential vulnerabilities. Disabling certain Git settings globally can also provide an added layer of protection.

Despite the absence of known exploitation cases, the potential for abuse remains significant. Users and vendors are encouraged to take proactive measures to safeguard their systems, including stripping configurations during background calls.

Conclusion and Future Outlook

The discovery of these vulnerabilities underscores the importance of robust security practices in AI development and use. As these agents become increasingly integrated into development workflows, ensuring their security is paramount. Moving forward, vendors and developers must prioritize patching and vigilance to protect against potential exploitation.

The Hacker News Tags:AI agents, AI security, code execution, CVE, Cybersecurity, Git configuration, Git vulnerabilities, Manifold Security, OpenAI, security flaws, Software Security, Vulnerability

Post navigation

Previous Post: AI Assists in Exploit Development for WAGO PLCs
Next Post: Anthropic Enhances Security With Enterprise Safeguards

Related Posts

Fortinet FortiGate Under Active Attack Through SAML SSO Authentication Bypass Fortinet FortiGate Under Active Attack Through SAML SSO Authentication Bypass The Hacker News
Cybercrime Group Recruits Women for IT Vishing Cybercrime Group Recruits Women for IT Vishing The Hacker News
Google’s Built-In AI Defenses on Android Now Block 10 Billion Scam Messages a Month Google’s Built-In AI Defenses on Android Now Block 10 Billion Scam Messages a Month The Hacker News
WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat Groups WinRAR Vulnerability CVE-2025-6218 Under Active Attack by Multiple Threat Groups The Hacker News
Iran-Linked RedKitten Cyber Campaign Targets Human Rights NGOs and Activists Iran-Linked RedKitten Cyber Campaign Targets Human Rights NGOs and Activists The Hacker News
BianLian and RansomExx Exploit SAP NetWeaver Flaw to Deploy PipeMagic Trojan BianLian and RansomExx Exploit SAP NetWeaver Flaw to Deploy PipeMagic Trojan The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Russian Indicted for Massive Freelance Malware Attack
  • Anthropic Enhances Security With Enterprise Safeguards
  • Security Flaws in AI Agents Allow Code Execution
  • AI Assists in Exploit Development for WAGO PLCs
  • Rockwell Automation Fixes Critical Software Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Russian Indicted for Massive Freelance Malware Attack
  • Anthropic Enhances Security With Enterprise Safeguards
  • Security Flaws in AI Agents Allow Code Execution
  • AI Assists in Exploit Development for WAGO PLCs
  • Rockwell Automation Fixes Critical Software Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark