Finding the Agent Infrastructure: What Internet Measurement Can and Cannot Say About AI Coding Tool Exposure
In September 2026, a class of vulnerabilities CVE-2026-19592 was disclosed in AI coding agents including Claude Code, Codex, Goose, Qwen Code, and Grok Build. A malicious repository can influence subprocess calls and lead to command execution on the developer's machine.
- Vulnerable: Claude Code, Codex, Goose, Qwen Code, Grok Build
- Tracked as CVE-2026-19592
- Attack is local, not visible to external scanning
- Risk affects credentials to CI, registries, and clouds
Read next
Security