CVE-2026-12537High· 7.8▾ TwilightImproper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (versions prior to 0.1.22) on headless CI platforms allows an unprivileged attacker …
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.1%
0.1% → 0.2%
Improper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (versions prior to 0.1.22) on headless CI platforms allows an unprivileged attacker to achieve pre-sandbox host-level code execution a maliciously crafted .gemini/.env file.
gemini-cli < 0.39.1gemini-cli = 0.40.0run-gemini-cli < 0.1.22Upgrade past the affected range:
gemini-cli 0.39.1run-gemini-cli 0.1.22Connected by shared product, vendor, weakness, or advisory.
CVE-2026-91738Critical· 9.6Improper input validation in ANGLE in Google Chrome prior to 153.0.8010.47 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page
CVE-2026-58744High· 7.8In multiple locations, there is a possible escalation of privilege due to improper input validation
CVE-2026-57008High· 7.5In Modem, there is a possible information disclosure due to improper input validation
CVE-2026-58683High· 8.8In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation
CVE-2026-58691High· 8.4In FsmReleaseKey of fsm.c, there is a possible permission bypass due to improper input validation
CVE-2026-58718Medium· 6.7In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation