TGViewer
CloudSec Wine CloudSec Wine @cloud_sec · 2.27K subscribers
Post #1582 130
⚠️ Discovering and exploiting a remote code execution vulnerability in OpenCode

Datadog Security Labs found GHSA-632h-h47v-g4x4 in OpenCode: the unauthenticated /global/upgrade API endpoint accepted arbitrary npm tarball URLs, enabling RCE via a crafted cross-origin HTML form submission bypassing CORS.

https://securitylabs.datadoghq.com/articles/opencode-upgrade-remote-code-execution

#RCE
  • ❤ 1
  • 👍 1
  • 🔥 1
More from @cloud_sec
  1. Oct 8, 2026🤖 How DigitalOcean Manages Credentials for Autonomous Agents DigitalOcean Managed Agents…
  2. Oct 7, 2026👩‍💻 Storm-3168: Agentic-driven cloud attacks using compromised service principals Storm-…
  3. Oct 6, 2026🤖 Securing the software factory at machine speed GitLab's CISO argues that agentic AI dev…
  4. Oct 5, 2026🤖 Throw Away the Playbook: Security in the AI-Native SDLC We, as an industry, should have…
  5. Oct 2, 2026🔴 Strengthen your CI/CD pipeline with new Secure Source Manager capabilities Google Cloud…
  6. Oct 1, 2026🔶 Exploring the new AWS Sign Up experience This post will explore what this new concept d…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →