// Alert

Gemini threat report

Researchers disclosed sandbox escape vulnerabilities in Gemini CLI and three other AI coding agents (Cursor, Codex, Antigravity). The escapes exploit a trust boundary where sandboxed agents can write files that are later read and executed by trusted tools outside the sandbox. Attackers can inject malicious instructions via prompts in documentation, dependencies, or diffs to achieve local command execution on the developer's machine.

// Get alerts for Gemini