RCE Vulnerability on CodeRabbit Production Servers Grants Write Access to 1M Repositories

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

RCE Vulnerability on CodeRabbit Production Servers Grants Write Access to 1M Repositories

Post by Shane1145 »

Security researchers have disclosed a critical vulnerability in CodeRabbit, a popular AI-powered code review platform, that enabled remote code execution (RCE) on production servers and unauthorized access to over one million repositories.

The vulnerability, discovered by researcher Nils Amiet and presented at Black Hat USA 2024, was responsibly disclosed and patched in January 2025.


https://cyberpress.org/rce-vulnerabilit ... ositories/
Post Reply