CVE-2026-81833 | RooCodeInc Roo-Code up to 3.51.1 CodeIndexManager src/utils/helpers.ts optimizeQuery code injection

SecurityVulns

A vulnerability was found in RooCodeInc Roo-Code up to 3.51.1. It has been rated as problematic. Affected by this vulnerability is the function optimizeQuery of the file src/utils/helpers.ts of the component CodeIndexManager. Performing a manipulation results in code injection. This vulnerability only affects products that are no longer supported by the maintainer.

This vulnerability is known as CVE-2026-81833. Remote exploitation of the attack is possible. Furthermore, an exploit is available.

Multiple isses were reported to the vendor beforehand. They explain, that “they all apply to Roo Code, a project we no longer support – the repository was archived a while ago, and we don’t encourage anyone to use it.”VulDB Recent EntriesRead More