CVE-2026-19022: Command Injection in OpenHands
A command injection vulnerability exists in OpenHands up to version 0.62.0 in the function initialize_repo within the file OpenHands/resolver/send_pull_request.py. This vulnerability allows remote attackers with limited privileges to execute arbitrary commands. The vulnerable code path was removed in version 1.7.0. No official patch or fix advisory is provided, but upgrading to version 1.7.0 or later appears to mitigate the issue.
AI Analysis
Technical Summary
CVE-2026-19022 describes a command injection vulnerability in OpenHands versions up to 0.62.0. The flaw resides in the initialize_repo function of the OpenHands/resolver/send_pull_request.py file, enabling remote attackers with low privileges to execute arbitrary commands. The vendor removed the affected code path in version 1.7.0, effectively addressing the vulnerability. There is no explicit vendor advisory or patch link available, and the original GitHub issue report was deleted. The CVSS v3.1 base score is 6.3 (medium severity), reflecting network attack vector, low attack complexity, low privileges required, no user interaction, and impacts on confidentiality, integrity, and availability.
Potential Impact
The vulnerability allows remote attackers with limited privileges to perform command injection, potentially leading to unauthorized command execution. This can impact confidentiality, integrity, and availability of the affected system. However, there are no known exploits in the wild reported. The affected code was removed in version 1.7.0, which mitigates the vulnerability.
Mitigation Recommendations
Upgrade OpenHands to version 1.7.0 or later, where the vulnerable code path has been removed. Since no official patch or advisory is provided, this upgrade is the recommended remediation. Monitor vendor channels for any future advisories or patches. No additional mitigation actions are specified by the vendor.
CVE-2026-19022: Command Injection in OpenHands
Description
A command injection vulnerability exists in OpenHands up to version 0.62.0 in the function initialize_repo within the file OpenHands/resolver/send_pull_request.py. This vulnerability allows remote attackers with limited privileges to execute arbitrary commands. The vulnerable code path was removed in version 1.7.0. No official patch or fix advisory is provided, but upgrading to version 1.7.0 or later appears to mitigate the issue.
CVSS v4.0
Score 5.3medium
Affected software
pkg:github/openhands/OpenHandsRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-19022 describes a command injection vulnerability in OpenHands versions up to 0.62.0. The flaw resides in the initialize_repo function of the OpenHands/resolver/send_pull_request.py file, enabling remote attackers with low privileges to execute arbitrary commands. The vendor removed the affected code path in version 1.7.0, effectively addressing the vulnerability. There is no explicit vendor advisory or patch link available, and the original GitHub issue report was deleted. The CVSS v3.1 base score is 6.3 (medium severity), reflecting network attack vector, low attack complexity, low privileges required, no user interaction, and impacts on confidentiality, integrity, and availability.
Potential Impact
The vulnerability allows remote attackers with limited privileges to perform command injection, potentially leading to unauthorized command execution. This can impact confidentiality, integrity, and availability of the affected system. However, there are no known exploits in the wild reported. The affected code was removed in version 1.7.0, which mitigates the vulnerability.
Mitigation Recommendations
Upgrade OpenHands to version 1.7.0 or later, where the vulnerable code path has been removed. Since no official patch or advisory is provided, this upgrade is the recommended remediation. Monitor vendor channels for any future advisories or patches. No additional mitigation actions are specified by the vendor.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-f5cw-432q-pfqr
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-19022"]
- Ecosystems
- []
- Database Specific Severity
- MODERATE
- Cvss Version
- 3.1
Threat ID: 6a74cf9fbf8831d5391b0560
Added to database: 08/06/2026, 18:17:03 UTC
Last enriched: 08/06/2026, 19:10:58 UTC
Last updated: 08/07/2026, 03:40:59 UTC
Views: 2
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.