0x

guest@0xbase ~$ read-only mode. Posting requires EU location.

Cline Kanban Server Cross-Origin WebSocket Hijacking Vulnerability (CVE-2026-44211) (oasis.security)

· 67d ago · Report · Spotlight this ·
0xBASE INTEL BRIEF
  • CVSS 9.7 vulnerability in Cline Kanban Server
  • Cross-origin WebSocket hijacking enables RCE
  • Local development tools highlighted as attack surface

"Researchers discovered a critical CVSS 9.7 vulnerability in the Cline Kanban AI coding assistant that allowed remote code execution via WebSocket hijacking, emphasizing the need to treat local development tools as potential attack surfaces."

Discussion Matrix

0 segments

no comments yet.