GuardFall Vulnerability Hits 10 of 11 Popular Open-Source AI Agents — Shell Injection Bypass
A new class of vulnerability is quietly undermining the safety filters inside nearly every popular open-source AI coding agent — and the fix isn’t a simple patch. Adversa AI publicly disclosed GuardFall on June 30, 2026: a category of shell injection bypass vulnerabilities that exploit a fundamental mismatch between how AI agents inspect commands and how the shell actually executes them. Ten of eleven tested agents were vulnerable. The one safe outlier wasn’t patched — it was architected differently from the start. ...