A vulnerability called Plugin4Shell was disclosed on Thursday by researchers at Air Security, affecting the four most widely used AI coding agents. The flaw allows zero-click remote code execution, requiring no action from the victim.
log in to read full article