CVE-2026-10176 | Aider-AI Aider 0.86.3 Code Generation Workflow sql injection (Issue 5077 / EUVD-2026-33496)
A vulnerability described as critical has been identified in Aider-AI Aider 0.86.3. Affected by this issue is some unknown functionality of the component Code Generation Workflow. Executing a manipulation can lead to sql injection.
This vulnerability is handled as CVE-2026-10176. The attack can be executed remotely. Additionally, an exploit exists.
The project was informed of the problem early through an issue report but has not responded yet.