@google/gemini-cli

Gemini CLI
Licenses: Apache-2.0

Direct Vulnerabilities

Known vulnerabilities in the @google/gemini-cli package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • C
Command Injection

<0.39.1>=0.40.0-preview.2 <0.40.0-preview.3
  • H
Improper Neutralization of Input Used for LLM Prompting

<0.1.14

Package versions

624 VERSIONS IN TOTAL See all versions
versionpublisheddirect vulnerabilities
0.45.0-preview.128 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.45.0-preview.027 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.45.0-nightly.20260530.g01391407130 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.45.0-nightly.20260529.gc82e2b59729 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.45.0-nightly.20260528.g5cac7c10f28 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.45.0-nightly.20260527.g41c9260ca27 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.44.128 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.44.027 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.44.0-preview.022 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L
0.44.0-nightly.20260521.g57c42a5c421 May, 2026
  • 0
    C
  • 0
    H
  • 0
    M
  • 0
    L