← Back to browse · API

CVE-2025-61492

Severity
CRITICAL
CVSS
10.0
EPSS
0.01924
Risk score
40.67
CISA KEV
No
PoC
No
Published
2026-01-07
Modified
2026-01-07
First seen
2026-08-07
Aliases
EUVD-2026-1174, GHSA-H4RF-624J-GJ33, PYSEC-2026-551
Products
n/a:n/a n/a
Sources
euvd EUVD-2026-1174

Description

A command injection vulnerability in the execute_command function of terminal-controller-mcp 0.1.7 allows attackers to execute arbitrary commands via a crafted input.

References