VYPR
Critical severity9.3NVD Advisory· Published Aug 18, 2026· Updated Sep 8, 2026

CVE-2026-75913

CVE-2026-75913

Description

CodeWhale (codewhale / codewhale-tui) versions >= 0.8.41 and < 0.8.64 contain an argument injection vulnerability in the git_show tool. The model-supplied rev parameter is passed unvalidated into the git show argv without an --end-of-options sentinel, so a value beginning with --output= is interpreted as a git flag. Because the tool is registered as auto-approved and advertised as read-only, an attacker (via a malicious repository combined with prompt injection) can cause an unprompted arbitrary file write at the privilege of the invoking user, targeting sensitive files such as ~/.ssh/authorized_keys, ~/.bashrc, or ~/.gitconfig. Fixed in 0.8.64 by adding rev validation.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
deepseek-tuicrates.io
>= 0.3.27, <= 0.8.41—
deepseek-tuinpm
>= 0.3.27, < 0.8.410.8.41
codewhale-tuicrates.io
>= 0.8.41, < 0.8.640.8.64
codewhalenpm
>= 0.8.41, < 0.8.640.8.64

Affected products

1

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.