CVE-2026-55580 | sonirico mcp-shell up to 0.5.x Security Validator security.go SecurityValidator.validateCommand os command injection

SecurityVulns

A vulnerability was found in sonirico mcp-shell up to 0.5.x. It has been declared as problematic. Impacted is the function SecurityValidator.validateCommand of the file security.go of the component Security Validator. Such manipulation leads to os command injection.

This vulnerability is traded as CVE-2026-55580. The attack may be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More