HIGH
continuedev
CVE published 2026-08-24
CVE-2026-76072
The Continue CLI is vulnerable to destructive shell commands when running in unattended mode due to an incomplete denylist. This allows for potential data destruction if an indirect prompt injection occurs. Users of the Continue CLI, especially those using headless or auto modes, should assess their exposure and verify the version they are using. The vulnerability arises from the CLI's denylist not coveri [truncated]