Aiondadotcom · Mcp-Ssh · CVE-2025-9654
**Name of the Vulnerable Software and Affected Versions**
AiondaDotCom mcp-ssh versions through 1.0.3
**Description**
A security flaw exists in AiondaDotCom mcp-ssh related to an unknown functionality within the `file server-simple.mjs` component. Manipulation of this functionality can lead to remote command injection.
**Recommendations**
Upgrade to version 1.0.4.
Upgrade to version 1.1.0.