{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/ai-agent-pc-application/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:tianxi:ai_agent_pc_application:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.8,"id":"CVE-2026-19136"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["AI Agent PC Application"],"_cs_severities":["high"],"_cs_tags":["vulnerability","command-injection","cve"],"_cs_type":"advisory","_cs_vendors":["Tianxi"],"content_html":"\u003cp\u003eCVE-2026-19136 is a command injection vulnerability identified within the Tianxi AI Agent PC Application, a software package distributed within the Chinese market. The vulnerability arises from improper validation of input handled by the application when processing user-initiated links. An attacker can leverage this flaw by inducing a local user to click a specially crafted link designed to trigger the injection of operating system commands. Successful exploitation results in the execution of arbitrary code with the privileges of the logged-in user. Defenders should prioritize auditing the application's configuration and monitoring for anomalous process spawning patterns stemming from the AI agent's execution environment.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows unauthorized command execution on the victim's machine. This can lead to full system compromise, data exfiltration, or the deployment of secondary malware payloads. The impact is categorized with a CVSS v3.1 base score of 7.8, indicating high potential for system-level damage within affected environments where the Tianxi AI Agent is deployed.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eMonitor endpoint process creation logs for instances where the Tianxi AI Agent executable spawns suspicious child processes, such as cmd.exe, powershell.exe, or wscript.exe.\u003c/li\u003e\n\u003cli\u003eImplement network-level or host-based blocks for unrecognized or suspicious URI schemes associated with the Tianxi application if they are observed as delivery vectors for malformed links.\u003c/li\u003e\n\u003cli\u003eReview organizational software inventory to identify installations of the Tianxi AI Agent PC Application and restrict user access until a vendor-supplied security patch is verified and applied.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-10T23:10:32Z","date_published":"2026-09-10T23:10:32Z","id":"https://feed.craftedsignal.io/briefs/2026-09-tianxi-ai-command-injection/","summary":"A command injection vulnerability (CVE-2026-19136) in the Tianxi AI Agent PC Application allows unauthenticated local attackers to execute arbitrary system commands via specially crafted links.","title":"Command Injection Vulnerability in Tianxi AI Agent PC Application","url":"https://feed.craftedsignal.io/briefs/2026-09-tianxi-ai-command-injection/"}],"language":"en","title":"CraftedSignal Threat Feed - AI Agent PC Application","version":"https://jsonfeed.org/version/1.1"}