@google/gemini-cli

Gemini CLI
Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the @google/gemini-cli package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Command Injection

<0.39.1>=0.40.0-preview.2 <0.40.0-preview.3
  • H
Improper Neutralization of Input Used for LLM Prompting

<0.1.14

Package versions

602 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
0.42.0-preview.26 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-preview.15 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-preview.05 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260507.ga809bc7c57 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260506.g80d2690546 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260505.g8f0edcd645 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260504.g37edd1d4d4 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260502.g4e175527a2 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260501.gcaa0466411 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.42.0-nightly.20260429.g6d991139329 Apr, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L