Новости компьютерной безопасности:

  Latest News

Critical “Cline” AI Agent Vulnerability Enables RCE Attacks

С сайта: Vulnerability(cybersecuritynews.com)

Critical “Cline” AI Agent Vulnerability Enables RCE Attacks

Author: Abinaya

A critical security flaw has been identified in the Cline Kanban server that allows threat actors to exfiltrate workspace data and execute arbitrary code silently and remotely.

Security researcher TheRealSpencer recently published details of this cross-origin WebSocket hijacking vulnerability affecting the widely adopted open-source AI coding assistant.

The vulnerability is tracked as CVE-2026-44211 and carries a near-maximum severity score of 9.7.

Researchers at Oasis Security noted that the issue stems from missing origin validation on the local server exposed by the package.

Developers using the affected software are at high risk simply by visiting a malicious webpage. At the same time, the server runs in the background.

Cline AI Agent Vulnerability
The core issue resides in the kanban npm package used by the Cline command-line interface.

When launched, the application starts a local WebSocket server on port 3484 without implementing authentication or checking the origin header of incoming requests.

This architectural oversight means that any external website a developer visits can establish a connection to the local server without any user intervention.

Security analysts observed that web browsers do not restrict cross-origin WebSocket connections to localhost, allowing malicious JavaScript to interact freely with the exposed endpoints.

Once connected to the runtime stream, attackers can instantly leak sensitive information, including filesystem paths, git branch details, task titles, and live AI agent chat messages.

Beyond information disclosure, the vulnerability allows remote attackers to seize control of running AI agent terminals.

The system processes these injected commands just like native user input, turning basic text injection into full remote code execution when followed by a carriage return.

Security experts have demonstrated that this can be used to execute malicious shell commands on the victim’s operating system without any direct user interaction.

Additionally, the control server endpoint can be manipulated to terminate active sessions, creating a denial-of-service condition.

The exploit is effective across any platform where Node.js and Cline are deployed, including macOS, Linux, and Windows environments.

There are currently no patched versions available for this critical vulnerability, leaving developers exposed when using older versions of the Cline CLI.

Mitigation requires significant structural changes to the application’s local web server implementation.

Following the publication by TheRealSpencer on GitHub, security professionals advised developers to validate origin headers to prevent unauthorized WebSocket upgrades.

Furthermore, generating and requiring a randomized session token at server startup would effectively block external origins from guessing the necessary connection parameters.

Until official patches are released, developers should exercise extreme caution when navigating the internet while running the Cline Kanban application.



#AI #Cyber_Security_News #Vulnerability #cyber_security #cyber_security_news

Оригинальная версия на сайте: Critical “Cline” AI Agent Vulnerability Enables RCE Attacks
Вернуться к списку новостей К свежим новостям Здесь был google AdSense.
Вместо рекламы товаров началась политическая агитация.
Отключено до получения извинений.

Вернуться к списку новостей Здесь был google AdSense.
Вместо рекламы товаров началась политическая агитация.
Отключено до получения извинений.


Новости проекта CSN:

✉ CSN.net4me.net

Обновление сайта csn.net4me.net

Обновление сайта csn.net4me.net 💻
cyber security news
  • Физически мы переехали на новый сервер. Благодарим наших подписчиков и постоянных читателей за терпение и понимание.
  • Сайт csn.net4me.net полностью адаптирован для работы по шифрованному SSL соединению.
  • Изменен механизм обработки и отображения опасных и критических уязвимостей.

Благодарим что вы с нами.


#CSN_обновление_сайта
https://csn.net4me.net/cyber_security_8301.html

Дополнительный материал

О проекте CSN

Проект CSN.net4me.net родился 16 Марта 2018 года.
Проект находится в самом начале своего развития. Конечно оформление, наполнение будет меняться. Одно останется неизменным - самые свежие новости компьютерной и сетевой безопасности.

О проекте net4me

Проект net4me.net развивался как сборник готовых решений и документации по темам компьютерной безопасности, сетевых решений и СПО (в часности linux). Темпы развития IT отрасли оказались столь быстрыми, что некоторые знания, технологии и информация о них устаревали мгновенно. Тем не менее, некоторый материал net4me.net до сих пор востребован.

Об источниках

Новости берутся CSN из открытых и доступных каждому источников. Авторы проекта стараются подбирать авторитетные и проверенные источники. Но, тем не менее, не несут ответственности за содержимое новостей. В каждой новости указывается источник этой новости, её автор и ссылка на оригинал новости.

Информация

Если вы желаете чтобы новости вашего ресурса были размещены на сайте CSN, то свяжитесь с авторами проекта csn@net4me.net и предложите ссылку на rss или xml ленту новостей вашего ресурса. Любая предложенная информация будет рассмотрена редакцией.