CodeWhale rlm_eval before 0.8.64 Remote Code Execution 漏洞概述 CVE: CVE-2026-75858 CVSS: 8.5 CWE: CWE-94 Improper Control of Generation of Code ('Code Injection') 发布日期: 8/18/2026 描述: CodeWhale (packages codewhale / codewhale-tui) 版本 >= 0.8.41 和 = 0.8.33, = 0.8.33, = 0.8.41, = 0.8.41, < 0.8.64 修复方案 升级到 CodeWhale 0.8.64 或更高版本。 参考链接 GitHub Security Advisory Patch Commit 贡献者 sai-sh