PT-2026-35222 · Ssh-Mcp · Mcp-Ssh

Blackbird_Bb

·

Published

2026-04-26

·

Updated

2026-04-26

·

CVE-2026-7039

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions tufantunc ssh-mcp versions prior to 1.5.1
Description Command injection can occur via the shell.write() function located in the src/index.ts file. This issue arises from the manipulation of the Description argument and requires the attack to be performed locally.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting the use of the shell.write() function to minimize the risk of exploitation.

Exploit

Special Elements Injection

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-7039

Affected Products

Mcp-Ssh