CVE-2026-81834 | RooCodeInc Roo-Code up to 3.51.1 README File ExecaTerminalProcess code injection

SecurityVulns

A vulnerability categorized as critical has been discovered in RooCodeInc Roo-Code up to 3.51.1. Affected by this issue is the function ExecaTerminalProcess of the component README File Handler. Executing a manipulation can lead to code injection. This vulnerability only affects products that are no longer supported by the maintainer.

This vulnerability is handled as CVE-2026-81834. The attack can be executed remotely. Additionally, an exploit exists.

Multiple isses were reported to the vendor beforehand. They explain, that “they all apply to Roo Code, a project we no longer support – the repository was archived a while ago, and we don’t encourage anyone to use it.”VulDB Recent EntriesRead More