Home » Database

AVID-2026-R0422

Description

JetBrains Junie AI Coding Agent guidelines.md Code Execution

Details

The Junie AI coding assistant reads a guidelines.md file within a project’s .junie directory and treats the contents as additional user-level instructions when handling any request to the chat interface. Malicious instructions can be placed within this file that can cause Junie to execute unsafe commands without requiring user approval.

References

Affected or Relevant Artifacts

  • Developer: JetBrains
  • Deployer:
  • Artifact Details:
TypeName
SystemJunie AI
SystemIntelliJ IDEA
SystemPyCharm Pro
SystemGoLand
SystemCLion
SystemRider
SystemPhpStorm
SystemWebStorm
SystemRustOver
SystemRubyMine

Impact

  • (none)

Other information

  • Report Type: Advisory
  • Credits: Aaron Portnoy, Mindgard
  • Date Reported: 2025-11-14
  • Version: 0.3.1
  • AVID Entry