Skip to content

MCPA-2026-0059

mediumrce-vectorsCVSS 6.3

OpenHands resolver command injection in initialize_repo (CVE-2026-19022)

OpenHands (PyPI: openhands-ai) up to 0.62.0: the initialize_repo function in resolver/send_pull_request.py passes attacker-influenced input into a shell command, allowing remote command injection through the resolver's pull-request flow. The vendor deleted the original issue report; the affected file was removed by the 1.x restructure (reported as gone in 1.7.0), so the range is recorded as last_affected 0.62.0 per the public advisory.

Affected packages

EcosystemPackageAffected versions
pypiopenhands-ai
>= 0, <= 0.62.0

Identifiers

CVE-2026-19022GHSA-f5cw-432q-pfqrCWE-74

References

Timeline

  • Published: 2026-08-06

← All advisories