Leonvanzyl · Autocoder · CVE-2026-30352
**Name of the Vulnerable Software and Affected Versions**
leonvanzyl autocoder commit 79d02a
**Description**
A remote code execution (RCE) issue exists in the '/devserver/start' endpoint. This allows attackers to execute arbitrary code by providing a crafted `command` parameter.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.