Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
IT NachrichtenNow Trump says he's creating an AI Force(19.09.2026 um 21:22 Uhr)
Sichere ProgrammierungHow I Built an Offline AI-Powered HTML to WordPress Theme Generator(19.09.2026 um 20:24 Uhr)
Sichere ProgrammierungThe model is the easy part. What building Dantiva taught me(19.09.2026 um 20:35 Uhr)
Sichere ProgrammierungHow CIDS Should Handle Conflicting Security Signals.(19.09.2026 um 20:46 Uhr)
IT NachrichtenNow Trump says he's creating an AI Force(19.09.2026 um 21:22 Uhr)
Sichere ProgrammierungHow I Built an Offline AI-Powered HTML to WordPress Theme Generator(19.09.2026 um 20:24 Uhr)
Sichere ProgrammierungThe model is the easy part. What building Dantiva taught me(19.09.2026 um 20:35 Uhr)
Sichere ProgrammierungHow CIDS Should Handle Conflicting Security Signals.(19.09.2026 um 20:46 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

38C3 - AI Meets Git: Unmasking Security Flaws in Qodo Merge

Author: media.ccc.de - Bewertung: 0x - Views:10

The whole world is talking about AI, and developers are no exception. When a developer hears about a tool that can help them handle git pull requests using AI, it is likely that they will start using it for their open source project.

This is precisely what's happening with Qodo Merge (formerly PR-Agent), an open source tool that can help review and handle git pull requests by using AI to provide feedback and suggestions to developers. It is getting adopted by more and more open source projects, including popular ones.

It is so easy to add new features by relying on external tools, yet the consequences on security can be catastrophic.

Indeed, if the tool contains security vulnerabilities, the project using it may become vulnerable too and may grant anyone permissions to perform unexpected actions without realizing it. But everyone wants to use AI so security may be overlooked.

We found multiple vulnerabilities in Qodo Merge that may lead to privilege escalation on Gitlab, getting write access to Github repositories and leaking Github repository secrets. Additionally we found multiple high profile Github repositories using Qodo Merge with a configuration that makes them vulnerable, such as highly popular projects, government official repositories, self-driving automotive industry projects, blockchains and more.

In this talk we go through what Qodo Merge is, how it can be used, how it works, how it can be exploited, what projects are affected and what are the impacts. We also mention remediation steps to fix these issues.

Qodo (formerly CodiumAI) develops an open source tool called Qodo Merge (formerly PR-Agent). This tool can be setup to automatically analyze pull requests on a Gitlab, Github or Bitbucket project.

Qodo Merge uses AI to perform various tasks that may help a developer handle a pull request, such as:
* Summarizing a pull request
* Suggesting code changes to improve a pull request
* Generating a CHANGELOG file entry for a pull request
* Answering questions about a pull request
* and more

In this talk, we describe vulnerabilities we found in Qodo Merge that may lead to privilege escalation on Gitlab, write access to Github repositories and leaking secrets of Github repositories.

We mention popular open source projects that are vulnerable because they started using Qodo Merge, and discuss how to protect your project from these attacks.

We also talk about the multiple ways we tried to report those vulnerabilities to the developers of Qodo Merge and the lack of a way for security people to contact them. Finally, we describe the current security posture of the project regarding the vulnerabilities we found.

Nils Amiet

https://events.ccc.de/congress/2024/hub/event/ai-meets-git-unmasking-security-flaws-in-qodo-merge/

#38c3 #Security

Licensed to the public under http://creativecommons.org/licenses/by/4.0

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten 38C3 - AI Meets Git: Unmasking Security Flaws in Qodo Merge

Thematisch verwandte Begriffe: 38C3, Meets, Unmasking, Security · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-61591 | djust provides Phoenix LiveView-style reactive server-side rendering for…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick