GhostApproval Symlink Vulnerabilities Could Allow Malicious Repositories to Execute Code in AI Coding Agents
Flaw Discovered in AI Coding Assistants Poses Security Risks Recent research by Wiz has unveiled a significant vulnerability within six widely used AI coding assistants that allows potentially malicious code projects to gain unauthorized control over a developer’s system. This flaw, dubbed “GhostApproval,” permits an assistant to manipulate sensitive files…