sonirico

1 exploit Active since Jan 2026
CVE-2025-61489 WRITEUP MEDIUM WORKING POC
sonirico mcp-shell <0.3.1 - Command Injection
A command injection vulnerability in the shell_exec function of sonirico mcp-shell v0.3.1 allows attackers to execute arbitrary commands via supplying a crafted command string.
CVSS 6.5