VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_68651eea862d133227bbc7fcd32f4ed2

Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents

Published Sep 18, 2026

A flaw in four widely used AI coding agents lets someone who controls a plugin's code repository swap the plugin an agent installs for a malicious one, even when the agent locked that plugin to a specific reviewed version, security firm Air Security said on Thursday.

The firm said Anthropic has patched the flaw in Claude Code 2.1.179 and OpenAI in Codex 0.146.0, that GitHub Copilot has no

Affected AI Products

github copilot claude code anthropic copilot openai claude
Get the weekly digest. Every Monday: top AI security stories of the week. Free.