HIGH8.8npm
GHSA-9mm9-rqhj-j5mx· CVE-2026-49987repomix Vulnerable to Command Injection (RCE) via `--remote-branch` Argument Injection
Modified: 7/1/2026
package
pkg:npm/repomix
repomix Vulnerable to Command Injection (RCE) via `--remote-branch` Argument Injection
Modified: 7/1/2026
repomix: attach_packed_output can bypass file-read secret scanning for supported local files
Modified: 7/1/2026