Feeds.4Sysops
Sandbox Escapes Affect Major AI Coding Tools
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Pillar Research revealed vulnerabilities in four AI coding agents: Cursor, Codex, Gemini CLI, and Antigravity, allowing sandbox escapes without direct attacks. The agents can write files that trusted tools outside the sandbox execute, leading to potential unauthorized actions. The research, published as 'The Week of Sandbox Escapes,' identifies four failure modes and highlights that many vulnerabilities have been patched. Specific CVEs include CVE-2026-48124 for Cursor, which was fixed in version 3.0.0. Other issues affected Codex and Gemini CLI, with patches released by OpenAI and Google. The findings emphasize the need for better governance of AI coding tools as they become integral to development workflows.
Key Points: • Four AI coding agents are vulnerable to sandbox escapes via file writes. • Pillar Research identified four failure modes in their recent findings. • Several vulnerabilities have been patched, but risks remain due to agent behavior.