CNNVD-202601-1875 Information

CNNVD ID

CNNVD-202601-1875

CVE-2026-22812

  • CNNVD Published: 2026-01-12

Description (Chinese)

opencode是Anomaly开源的一个AI编程智能体。 opencode 1.0.216之前版本存在安全漏洞,该漏洞源于自动启动未经身份验证的HTTP服务器,可能导致执行任意shell命令。

Description (English)

Opencode is an AI programming intelligence from Anomaly Open Source. Pre-version 1.216 of opencode contains a security loophole arising from the automatic activation of an unidentified HTTP server, which may result in the execution of an arbitrary shell order.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Anomaly

Published

2026-01-12

Last Modified

2026-02-24

References

https://github.com/anomalyco/opencode/security/advisories/GHSA-vxw4-wv6m-9hhh

Patch

https://github.com/anomalyco/opencode/releases

Share on: