Robuta

https://seclists.org/fulldisclosure/2026/Apr/1 Full Disclosure: [KIS-2026-06] MetInfo CMS = 8.1 (weixinreply.class.php) PHP Code Injection... full disclosure8 1code injectionkiscms https://ghost.org/tutorials/use-code-injection-in-ghost/ How to use Code Injection in Ghost May 9, 2024 - Code Injection is a powerful, convenient tool to add CSS, JS, and more to your Ghost site. Learn how to get the most out of it in this tutorial. how to usecode injectionghost https://devblogs.microsoft.com/oldnewthing/20260423-00/?p=112261 Another crash caused by uninstaller code injection into Explorer - The Old New Thing Apr 23, 2026 - Inadvertently destroying a staircase while standing on it. old new thingcode injectionanothercrashcaused https://thehackernews.com/2026/04/google-patches-antigravity-ide-flaw.html Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution Antigravity Strict Mode bypass disclosed Jan 7, 2026, patched Feb 28, enables arbitrary code execution via fd -X flag. prompt injectioncode executiongooglepatchesantigravity https://phoenix.security/claude-code-leak-to-vulnerability-three-cves-in-claude-code-cli-and-the-chain-that-connects-them/ Three CVEs in Claude Code CLI: Shell Injection to Exfiltration Apr 6, 2026 - CVE-2026-35020, CVE-2026-35021, CVE-2026-35022: three CWE-78 command injections in Claude Code CLI chain into credential exfiltration. v2.1.91 callback... claude codethreecvesclishell