


Perceptive Security
SOC/SIEM Consultancy

CodeWhale is a DeepSeek + MiMo coding agent in terminal. Prior to 0.8.26, the task_create tool spawns durable sub-agents that inherit two insecure defaults, all…
Published:
27 May 2026 at 22:00:00
Alert date:
28 May 2026 at 19:09:38
Source:
nvd.nist.gov
Security Tools, Supply Chain & Dependencies
CodeWhale coding agent versions prior to 0.8.26 contain a privilege escalation vulnerability where the task_create tool spawns sub-agents with insecure defaults. Two critical settings default to true: allow_shell and auto_approve. When users approve what appears to be a benign task creation request, spawned sub-agents silently receive unrestricted shell access without additional approval. The vulnerability stems from insecure default configurations in config.rs and task_manager.rs files. This allows potential unauthorized command execution through seemingly legitimate task approval workflows. The issue has been resolved in version 0.8.26.
Technical details
Mitigation steps:
Affected products:
CodeWhale
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-45374
https://github.com/Hmbown/CodeWhale/security/advisories/GHSA-72w5-pf8h-xfp4
https://github.com/Hmbown/DeepSeek-TUI/releases/tag/v0.8.26
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
