Google's Gemini CLI agent could run malicious code silently