{"id":"CVE-2026-75913","title":"CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool","summary":"CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-opt…","severity":"critical","cvss":9.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:H","cwe":["CWE-73","CWE-88"],"vendor":"deepseek-tui","product":"deepseek-tui","affected":["deepseek-tui >= 0.3.27, <= 0.8.41","deepseek-tui >= 0.3.27, < 0.8.41","codewhale-tui >= 0.8.41, < 0.8.64","codewhale >= 0.8.41, < 0.8.64"],"patched":["deepseek-tui 0.8.41","codewhale-tui 0.8.64","codewhale 0.8.64"],"published":"2026-08-18","updated":"2026-09-08","sourceUpdated":"2026-09-08T20:32:39.347","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-75913","references":[{"url":"https://github.com/Hmbown/CodeWhale/commit/9a34b5034d29f05d1f28fa61b04719ca6a741020","label":"disclosure@vulncheck.com"},{"url":"https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-7j5w-7r7x-9v27","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/codewhale-before-argument-injection-via-git-show","label":"disclosure@vulncheck.com"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-75913"},{"url":"https://github.com/advisories/GHSA-7j5w-7r7x-9v27"}],"tags":["nvd","ghsa","rust"],"epss":0.0033,"epssPercentile":0.2642,"aliases":["GHSA-7j5w-7r7x-9v27"],"ecosystem":"rust","ingestedAt":"2026-09-04T18:25:57.175Z","slug":"CVE-2026-75913","body":"## Overview\n\nCodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options sentinel, so a value beginning with --output= is interpreted as a git flag. Because the tool is registered as auto-approved and advertised as read-only, an attacker (via a malicious repository combined with prompt injection) can cause an unprompted arbitrary file write at the privilege of the invoking user, targeting sensitive files such as ~/.ssh/authorized_keys, ~/.bashrc, or ~/.gitconfig. Fixed in 0.8.64 by adding rev validation.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Package advisory (CVE-2026-75913)\n\nAffected packages:\n\n- `deepseek-tui >= 0.3.27, <= 0.8.41`\n- `deepseek-tui >= 0.3.27, < 0.8.41`\n- `codewhale-tui >= 0.8.41, < 0.8.64`\n- `codewhale >= 0.8.41, < 0.8.64`\n\nPatched in:\n\n- `deepseek-tui 0.8.41`\n- `codewhale-tui 0.8.64`\n- `codewhale 0.8.64`\n\nSource: https://github.com/advisories/GHSA-7j5w-7r7x-9v27","depth":"midnight","depthScore":51,"depthScoreParts":{"impact":51.2,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[{"seq":8204,"id":"CVE-2026-75913","ts":1788919992064,"field":"severity","old":"high","new":"critical"},{"seq":8013,"id":"CVE-2026-75913","ts":1788919280370,"field":"severity","old":"critical","new":"high"},{"seq":7822,"id":"CVE-2026-75913","ts":1788916352213,"field":"severity","old":"high","new":"critical"},{"seq":7631,"id":"CVE-2026-75913","ts":1788915297077,"field":"severity","old":"critical","new":"high"},{"seq":7440,"id":"CVE-2026-75913","ts":1788912712169,"field":"severity","old":"high","new":"critical"},{"seq":7249,"id":"CVE-2026-75913","ts":1788911331010,"field":"severity","old":"critical","new":"high"},{"seq":7053,"id":"CVE-2026-75913","ts":1788909075422,"field":"severity","old":"high","new":"critical"},{"seq":6865,"id":"CVE-2026-75913","ts":1788907391121,"field":"severity","old":"critical","new":"high"},{"seq":6667,"id":"CVE-2026-75913","ts":1788905441771,"field":"severity","old":"high","new":"critical"},{"seq":6485,"id":"CVE-2026-75913","ts":1788903459329,"field":"severity","old":"critical","new":"high"},{"seq":6421,"id":"CVE-2026-75913","ts":1788901910435,"field":"severity","old":"high","new":"critical"}]}