PT-2025-32990 · Unknown · Cherry-Studio

Published

2025-08-13

·

Updated

2025-12-01

·

CVE-2025-54382

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cherry Studio versions prior to 1.5.2
Description Cherry Studio is a desktop client that supports multiple LLM providers. A remote code execution (RCE) issue exists in the Cherry Studio platform when connecting to streamableHttp MCP servers. The problem stems from the server’s implicit trust in the oauth auth redirection endpoints and failure to properly sanitize the URL. The vulnerable component is the handling of OAuth authentication redirection endpoints.
Recommendations Update to Cherry Studio version 1.5.2 or later.

Exploit

Fix

RCE

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-54382
GHSA-GJP6-9CVG-8W93

Affected Products

Cherry-Studio