AI Coding Agents Face Critical Plugin4Shell RCE Flaw Bypassing SHA-Pinning Security
A zero-click RCE vulnerability dubbed Plugin4Shell affects major AI coding agents including GitHub Copilot, Anthropic Claude Code, OpenAI Codex, and Google Gemini CLI. The flaw bypasses SHA-pinning mechanisms in plugin marketplaces, allowing attackers to swap trusted plugins with malicious code and execute it without user interaction.