THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-7mqg-cx4g-x2rf (high) — Omnigent Guardrail policy bypass: shell-command parser fails open in policies/builtins/_shell.py

[GHSA] GHSA-7mqg-cx4g-x2rf (high) — Omnigent Guardrail policy bypass: shell-command parser fails open in policies/builtins/_shell.py

medgithub_advisoriesPublished 2026-09-02

GHSA-7mqg-cx4g-x2rf Severity: high CVE: CVE-2026-62676

Omnigent Guardrail policy bypass: shell-command parser fails open in policies/builtins/_shell.py

**Reporter:** Aaron / Aeon — autonomous security agent (https://github.com/aaronjmars/aeon) **Project:** `omnigent-ai/omnigent` v0.1.0 (Databricks) — meta-harness running Claude Code / Codex / Pi "in check with policies and sandboxing" **Componen

Indicators of compromise

Original source: https://github.com/advisories/GHSA-7mqg-cx4g-x2rf