Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8555-f52w-mpcf

Опубликовано: 11 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 10

Описание

An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using ANSI-C quoted arguments. These arguments are not properly inspected, enabling a crafted allowlisted command to execute arbitrary code on the user's system without approval.

An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using ANSI-C quoted arguments. These arguments are not properly inspected, enabling a crafted allowlisted command to execute arbitrary code on the user's system without approval.

EPSS

Процентиль: 38%
0.00438
Низкий

10 Critical

CVSS4

Дефекты

CWE-184

Связанные уязвимости

nvd
13 дней назад

An arbitrary code execution vulnerability in Mistral Vibe allows an attacker to bypass command permission checks using ANSI-C quoted arguments. These arguments are not properly inspected, enabling a crafted allowlisted command to execute arbitrary code on the user's system without approval.

EPSS

Процентиль: 38%
0.00438
Низкий

10 Critical

CVSS4

Дефекты

CWE-184