CVSS 10 Gemini CLI Flaw Turns CI/CD Pipelines Into RCE Attack Vectors
Google has patched a maximum-severity (CVSS 10.0) vulnerability in its Gemini CLI tooling that allowed unauthenticated attackers to achieve remote code execution by planting malicious configuration …
AML.T0051 - LLM Prompt Injection
AML.T0010 - ML Supply Chain Compromise
AML.T0047 - ML-Enabled Product or Service