CVE-2025-61492

10.0CRITICAL

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via a crafted input.

Published: 1/7/2026Updated: 1/8/2026

Description

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via a crafted input.

AI AnalysisPowered by AI

References