CVE-2025-61492

10.0CRITICAL

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via a crafted input.

发布于: 1/7/2026更新于: 1/8/2026

描述

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via a crafted input.

AI分析AI驱动

参考资料