Bitwarden CLI Compromised in Supply Chain Attack
In a shocking supply chain incident, the official Bitwarden command-line interface package (@bitwarden/cli) was hijacked for approximately 90 minutes, exposing users who installed or updated during the window to credential harvesting malware.
The malicious version 2026.4.0 was published to npm and harvested:
- GitHub and npm authentication tokens
- SSH private keys
- Environment variables containing cloud secrets
- Shell history files
- Browser credentials and session data
Bitwarden detected the compromise and removed the package within 90 minutes, but the incident highlights the vulnerability of even well-audited open-source projects to supply chain attacks. Users who installed the package during the window are advised to rotate all credentials and audit their systems for persistence mechanisms.
Google Gemini CLI Remote Code Execution
A high-severity vulnerability in Google’s Gemini CLI npm package (@google/gemini-cli) enables remote code execution, particularly dangerous in CI/CD pipelines and automated development workflows.
The flaw stems from unsafe workspace trust handling and a bypass of tool allow-listing when the --yolo flag is used. Attackers can compromise build servers by feeding malicious content through pull requests or issue comments that trigger Gemini CLI automation.
This vulnerability is particularly concerning because:
- CI/CD Impact: Compromised build servers can inject malware into software releases
- Token Exposure: Build environments often have elevated cloud permissions
- Supply Chain Risk: Compromised builds can distribute malware to downstream users
Organizations using Gemini CLI in automated workflows should immediately audit their installations and implement strict input validation for any AI-processed content.
WordPress Plugins: Critical File Upload Vulnerabilities
Two WordPress plugins with millions of active installations were found to have critical vulnerabilities allowing arbitrary file uploads and complete site takeover:
- Ninja Forms – File Upload (CVE-2026-0740): CVSS 9.8 – Allows unauthenticated attackers to upload executable files
- Breeze Cache (CVE-2026-3844): CVSS 9.8 – Enables remote code execution through cache manipulation
Both vulnerabilities are being actively exploited in the wild, with threat actors deploying webshells and cryptocurrency miners on compromised sites. WordPress administrators should update both plugins immediately.
Cisco Firepower Targeted with FIRESTARTER Malware
Cisco Firepower next-generation firewalls were targeted with unpatched vulnerabilities leading to breaches and deployment of “FIRESTARTER” malware for persistence. The malware establishes covert command-and-control channels through the firewall itself, effectively turning the security device into an attack platform.
This represents a significant escalation in firewall-targeting attacks, as compromised firewalls can:
- Monitor all network traffic passing through
- Bypass security controls for lateral movement
- Maintain persistence even when endpoint security is improved
Marimo RCE: Pre-Auth Shell Access
The Marimo notebook platform (CVE-2026-39987) was found to have a critical pre-authorization remote code execution vulnerability allowing unauthenticated attackers to gain shell access and execute arbitrary system commands.
This vulnerability is particularly dangerous for internet-facing Marimo deployments, as no authentication is required for exploitation. System administrators should isolate Marimo instances from public networks and apply security patches immediately.
Firefox Privacy Flaw Enables Lifetime Tracking
Mozilla patched CVE-2026-6770, a privacy-breaking flaw in Firefox that enabled persistent, lifetime browser tracking through predictable ordering of IndexedDB metadata.
Unlike cookie-based tracking that can be cleared, this fingerprinting technique survives browser resets and private browsing sessions, creating a persistent identifier that follows users across their entire Firefox lifetime.
The Bottom Line
April 2026’s cybersecurity landscape demonstrates that no category of software is immune: from password managers to AI tools, from firewalls to browsers. The Bitwarden incident is particularly sobering—it shows that even security-focused companies with rigorous audit processes can fall victim to supply chain attacks.
Organizations must assume that any package installed from public repositories could be compromised and implement defense-in-depth strategies accordingly.