CVE-2026-44211
Cline is an autonomous coding agent as an SDK, IDE extension, or CLI assistant. In versions 2.13.0 and prior, there is a cross-origin WebSocket hijack vulnerability in Cline Kanban servers. At time of publication, there are no publicly available patches.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/44xxx/CVE-2026-44211.json, https://github.com/cline/cline/security/advisories/GHSA-5c57-rqjx-35g2, https://nvd.nist.gov/vuln/detail/CVE-2026-44211