By vendor

Rtk-Ai vulnerabilities

Known CVEs affecting Rtk-Ai products, prioritized by severity, with SEC.co remediation and detection guidance.

1 published vulnerability

  • CVE-2026-45792MEDIUM 5.5

    RTK (Rust Token Killer), a tool that filters and compresses command outputs for large language models, contains a configuration trust vulnerability in versions before 0.32.0. An attacker who gains write access to a repository can place a malicious filter configuration file (.rtk/filters.toml) that automatically loads with highest priority, allowing them to silently modify or suppress command outputs—such as file contents, code diffs, or security scan results—before they reach an LLM. This could enable concealment of malicious code during AI-assisted code review or development workflows without the developer's knowledge.