CVE-2025-35028

Source
https://cve.org/CVERecord?id=CVE-2025-35028
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-35028.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-35028
Published
2025-11-30T21:27:56Z
Modified
2026-10-08T02:50:04Z
Severity
  • 9.1 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
HexStrike AI MCP Server Command Injection
Details

By providing a command-line argument starting with a semi-colon ; to an API endpoint created by the EnhancedCommandExecutor class of the HexStrike AI MCP server, the resultant composed command is executed directly in the context of the MCP server’s normal privilege; typically, this is root. There is no attempt to sanitize these arguments in the default configuration of this MCP server at the affected version (as of commit 2f3a5512 in September of 2025).

Database specific
{
    "cna_assigner": "AHA",
    "cwe_ids": [
        "CWE-78"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/35xxx/CVE-2025-35028.json"
}
References

Affected packages

Git / github.com/0x4m4/hexstrike-ai

Affected ranges

Type
GIT
Repo
https://github.com/0x4m4/hexstrike-ai
Events

Affected versions

Other
33267047667b9accfbf0fdac1c1c7ff12f3a5512

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-35028.json"