CVE-2026-30303Disclosure(matterai / axon_code)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The command auto-approval module in Axon Code contains an OS Command Injection vulnerability, rendering its whitelist security mechanism ineffective. The vulnerability stems from the incorrect use of an incompatible command parser (the Unix-based shell-quote library) to analyze commands on the Windows platform, coupled with a failure to correctly handle Windows CMD-specific escape sequences (^). Attackers can exploit this discrepancy between the parsing logic and the execution environment by constructing payloads such as git log ^" & malicious_command ^". The Axon Code parser is deceived by the escape characters, misinterpreting the malicious command connector (&) as being within a protected string argument and thus auto-approving the command. However, the underlying Windows CMD interpreter ignores the escaped quotes, parsing and executing the subsequent malicious command directly. This allows attackers to achieve arbitrary Remote Code Execution (RCE) after bypassing what appears to be a legitimate Git whitelist check.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • axon_code

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-03-28); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
axon_code

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-28: 1Mentions · 2026-03-29: 1Technical Details · 2026-03-28: 1Technical Details · 2026-03-29: 103-2803-29
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • CosmicBytez@CosmicBytez
    Disclosure

    Security Advisory: CVE-2026-30303 — Axon Code OS Command Injection via Whitelist Bypass https://labs.cosmicbytez.ca/security/cve-2026-30303 #Cybersecurity #InfoSec #CVE #PatchNow

    Post summary

    The advisory announces CVE-2026-30303, an OS command injection vulnerability caused by whitelist bypass, but does not provide exploitation details, patches, or evidence of active exploitation.

    0000022
    1 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-30303 - Critical The command auto-approval module in Axon Code contains an OS Command Injection vulnerability, rendering its whitelist security mechanism ineffective. The vulnerability stems from the inco... https://www.thehackerwire.com/vulnerability/CVE-2026-30303/ https://t.co/cdMad7qR1d

    Post summary

    A critical OS Command Injection vulnerability has been disclosed in Axon Code’s command auto‑approval module; no evidence of active exploitation, patch, or PoC is provided.

    0000043
    163 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmatteraiaxon_code---

Explore more