Vulnerabilities/

Gemini CLI: Remote Code Execution via workspace trust and tool allowlisting bypasses

Severity:
High

Description

Gemini CLI (@google/gemini-cli) and the run-gemini-cli GitHub Action are being updated to harden workspace trust and tool allowlisting, in particular when used in untrusted environments like GitHub Actions.

Recommendation

Update the @google/gemini-cli package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@google/gemini-cli
Anything's wrong? Let us know Last updated on April 25, 2026