OpenCode is an open source AI coding agent. Prior to 1.0.216, OpenCode automatically starts an unauthenticated HTTP server that allows any local process (or any website via permissive CORS) to execute arbitrary shell commands with the user's privileges. This vulnerability is fixed in 1.0.216.
PoC: CVE-2026-22812
CVE-2026-22812
PoC: ai-agent-security-research
Open security research on AI coding agent infrastructure. Agent-executable remediation manifests for CVE-2026-22812 and CVE-2026-22813.
PoC: CVE-2026-22812
OpenCode < v1.0.216 - Unauthenticated RCE
PoC: opencode-secure
Security-hardened fork of OpenCode - Fixes CVE-2026-22812 (CVSS 8.8 RCE) that upstream refuses to patch
PoC: CVE-2026-22812
CVE-2026-22812 - OpenCode Unauthenticated RCE-Nuclei template for scan
PoC: Ashwesker-CVE-2026-22812
CVE-2026-22812
PoC: CVE-2026-22812-Exp
CVE-2026-22812 - OpenCode Unauth RCE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free