CVE-2026-55581 | sonirico mcp-shell up to 0.5.x Shell Command Execution executor.go exec.CommandContext command os command injection

SecurityVulns

A vulnerability categorized as critical has been discovered in sonirico mcp-shell up to 0.5.x. The impacted element is the function exec.CommandContext of the file executor.go of the component Shell Command Execution. Executing a manipulation of the argument command can lead to os command injection.

This vulnerability is handled as CVE-2026-55581. The attack can be executed remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More