Kritische Lücke bei Claude Code, OpenAI Codex, GitHub Copilot und Gemini CLI

Bei der Sicherheitslücke Plugin4Shell laden Coding-Agenten Schadcode und führen ihn automatisch aus. Anthropic und OpenAI haben gepatcht, GitHub reagiert nicht.
Read the full story at heise online ↗
ImpactNotable 30/100
Why it mattersRule-based estimate: no strong signals; trust 7/10.
RegionsGermany
Published4 h ago (Mon, 21 Sep 2026 12:05:00 GMT)
RetrievedMon, 21 Sep 2026 14:01:16 GMT via atom
ClassifiedMon, 21 Sep 2026 14:01:31 GMT by heuristic
AuthorManuel Masiero