AI News

Plugin4Shell Zero-Click RCE Vulnerability Disclosed: Two of Four AI Coding Assistants Still Unpatched

On September 18, 2026, security firm AIR disclosed the Plugin4Shell vulnerability, which lets attackers bypass SHA pinning by forging Git branches and conduct zero-click RCE against Claude Code, Codex, GitHub Copilot, and Gemini CLI. Anthropic and OpenAI have released patches, while Microsoft and Google have responded differently, highlighting the fragility of supply chain trust assumptions in the AI agent ecosystem.

AI Safety 供应链漏洞 代码助手
104