A critical RCE vulnerability (CVSS 10) in Google’s Gemini CLI has been patched.
The flaw could allow attackers to execute code in CI/CD pipelines, while Cursor AI vulnerabilities show how prompt injection can lead to unintended execution.
sctocs.com/google-gemin...
Google fixes a critical CVSS 10 Gemini CLI CI RCE flaw, while Cursor vulnerabilities enable code execution, raising concerns in developer tools security.