AI coding agents' 0-click RCE flaw could hand attackers keys to the kingdom
2026-09-17
TheRegister.com

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
A critical zero-click vulnerability, Plugin4Shell, was discovered in major AI coding agents—Claude Code, Codex, GitHub Copilot, and Gemini CLI—allowing attackers to execute malicious code by exploiting plugin verification flaws. While Anthropic and OpenAI patched their agents, GitHub Copilot remains unpatched, exposing enterprise systems to significant risk.[AI generated]