google-github-actions/run-gemini-cli

google-github-actions/run-gemini-cli

Releases23
Frequency1 week 4 days
Last Release
Stars2.02K
A GitHub Action invoking the Gemini CLI.

CVE History

CVEPublishedCVSS v3CVSS v2

Improper Neutralization used in an OS Command in the container launcher in Google Gemini CLI (versions prior to 0.39.1) and run-gemini-cli GitHub Action (versions prior to 0.1.22) on headless CI platforms allows an unprivileged attacker to achieve pre-sandbox host-level code execution a maliciously crafted .gemini/.env file.