Plugin4Shell zero-click vulnerability found in AI code assistants
A "Plugin4Shell zero-click flaw" has reportedly been discovered impacting several AI code assistants, including Claude Code, Codex, and Copilot, as detailed by pasqualepillitteri.it. This vulnerability raises significant security concerns for developers relying on these tools. Concurrently, TechRepublic has published an article discussing alternatives to Claude Code, which, in the context of the reported flaw, suggests a market response to the security implications or a general re-evaluation of these AI coding platforms.
2 articles from 2 outlets covered this story. The underlying claim is sourced from a demo.
What do all outlets agree on?
2 outlets covered “Plugin4Shell zero-click vulnerability found in AI code assistants”. All of them report the following:
- A zero-click flaw named Plugin4Shell affects AI code assistants
- Claude Code, Codex, and Copilot are among the AI code assistants involved
Which outlets covered this?
All 2 articles found on this story, grouped by the stance of the piece. Every link goes to the original publisher.