Showing 1 vulnerability on this page for ms-agent

Signals CISA KEV Ransomware Nuclei
modelscope vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Command injection vulnerability in ModelScope's ms-agent

A command injection vulnerability in ModelScope's ms-agent versions v1.6.0rc1 and earlier exists, allowing an attacker to execute arbitrary operating system commands through crafted prompt-derived input.

CWE-77CWE-94Mar 2, 2026
CVSS6.5v3.1EPSS1.61%PoCs3SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX