In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Arbitrary Code Injection vulnerabilities in an interactive lesson.
Start learningUpgrade deepseek-tui to version 0.8.26 or higher.
Affected versions of this package are vulnerable to Arbitrary Code Injection in the task_create process, where sub-agents inherit insecure default settings for shell access and auto-approval. An attacker can execute arbitrary shell commands by crafting malicious instructions in project files that are followed without explicit user approval.