CVE-2026-30311
auto-approval module
Ridvay Code's command auto-approval module contains a critical OS command injection vulnerability that renders its whitelist security mechanism completely ineffective. The system relies on fragile regular expressions to parse command structures; while it attempts to intercept dangerous operations, it fails to account for standard Shell command substitution Ridvay Code (specifically$(...)and backticks ...). An attacker can construct a command such as git log --grep="$(malicious_command)", forcing Syntx to misidentify it as a safe git operation and automatically approve it. The underlying She...
- CVSS
- 9.8
- EPSS
- 1.66% 74.3% percentile
- CISA KEV
- Not listed
- Published
- 2026.04.01