devika · Issues· 196 open
Open on GitHubLocally synced open issues (discussions stay on GitHub)
- #500
[ISSUE] Devika the does not search in Google
Updated Jul 30, 2026 - #717
[Bug] Unvalidated JSON Serialization in AgentStateModel Allows State Spoofing and Evaluation Poisoning
Updated Jun 19, 2026 - #716
[Bug] Critical Path Traversal and Arbitrary File Write in save_code_to_project (feature.py)
Updated Jun 9, 2026 - #715
[Bug]Code Injection in Runner.run_code enables arbitrary code execution via LLM-orchestrated paths
Updated May 23, 2026 - #714
[Bug]Code Injection in Runner.execute allows arbitrary code execution through LLM-shaped payloads
Updated May 23, 2026 - #713
[Security] Critical Stored XSS via WebSocket CORS Bypass in Devika allows Complete Session Takeover
Updated May 12, 2026 - #712
[Security] Incomplete Fix for CVE-2024-5752: Arbitrary File Write via Unsanitized `project_name` in WebSocket API
Updated May 12, 2026 - #711
[Security] Unauthenticated WebSocket CORS Bypass Leads to Remote Code Execution via Agent Control
Updated May 12, 2026 - #709
[Bug] Patcher Agent path traversal vulnerability
Updated Apr 20, 2026 - #708
[Bug] Feature Agent path traversal vulnerability
Updated Apr 20, 2026 - #707
[Bug] Coder Agent path traversal vulnerability
Updated Apr 20, 2026 - #371
Error while connecting Gemini
Updated Dec 4, 2025 - #695
[FEATURE] One should update supported LLM models manually ?
Updated Dec 3, 2025 - #681
[Security Bug] Path Traversal Vulnerability in the API.
Updated Oct 21, 2025 - #685
is this project abandoned?
Updated Sep 13, 2025