logo

Critical Gemini CLI Vulnerability Allows Arbitrary Code Execution

ID: f492695d-81b3-5d20-b94e-f98ba0768e56

STIX ID: report--f492695d-81b3-5d20-b94e-f98ba0768e56

Feed Name: ThreatCluster

Threat Score
85/100

Date Published: 2026-06-29

Date Updated: 2026-07-02

...
...

A critical remote code execution vulnerability (CVE-2026-12537) in Google’s Gemini CLI and the google-github-actions/run-gemini-cli (affecting @google/gemini-cli < 0.39.1 and < 0.40.0-preview.3) was disclosed on June 24, 2026; it enables attackers to execute arbitrary code in CI/CD environments such as GitHub Actions, potentially leading to host-level compromise, and is rated critical under CVSS v4 — organizations using affected versions are urged to update or mitigate immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.