Critical Gemini CLI Vulnerability Allows Arbitrary Code Execution
ID: f492695d-81b3-5d20-b94e-f98ba0768e56
STIX ID: report--f492695d-81b3-5d20-b94e-f98ba0768e56
Feed Name: ThreatCluster
Threat Score
A critical remote code execution vulnerability (CVE-2026-12537) in Google’s Gemini CLI and the google-github-actions/run-gemini-cli (affecting @google/gemini-cli < 0.39.1 and < 0.40.0-preview.3) was disclosed on June 24, 2026; it enables attackers to execute arbitrary code in CI/CD environments such as GitHub Actions, potentially leading to host-level compromise, and is rated critical under CVSS v4 — organizations using affected versions are urged to update or mitigate immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
