CVE-2026-72718 | aaif-goose up to 1.43.x Review Command handler.rs git_command os command injection

SecurityVulns

A vulnerability classified as critical was found in aaif-goose goose up to 1.43.x. This affects the function git_command of the file crates/goose-cli/src/commands/review/handler.rs of the component Review Command. Executing a manipulation can lead to os command injection.

This vulnerability is registered as CVE-2026-72718. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More