CVE-2026-105789

Source
https://cve.org/CVERecord?id=CVE-2026-105789
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-105789.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-105789
Aliases
  • GHSA-85w2-wggf-rw49
Published
2026-10-06T14:07:25Z
Modified
2026-10-07T02:47:27Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:L CVSS Calculator
Summary
Microsoft UFO: Arbitrary file write in the Linux MCP `execute_command` tool
Details

Microsoft UFO is an open-source framework for intelligent automation across devices and platforms. Prior to 3.0.9, the execute_command tool in ufo/client/mcp/http_servers/linux_mcp_server.py treats sort and uniq as read-only commands while the free-form command parameter can select their file-output forms. An authenticated caller can use sort -o or the optional second uniq operand to create or overwrite files writable by the UFO server process without shell metacharacters, because the allowed binary opens the destination itself and the argument policy does not reject the operation. This can corrupt configuration or other writable data and disrupt the service, but the demonstrated primitive does not directly disclose files or establish arbitrary code execution. This issue is fixed in version 3.0.9.

Database specific
{
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
        "CWE-184",
        "CWE-88"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/105xxx/CVE-2026-105789.json"
}
References

Affected packages

Git / github.com/microsoft/ufo

Affected ranges

Type
GIT
Repo
https://github.com/microsoft/ufo
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "fixed": "3.0.9"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Affected versions

3.*
3.0.6
3.0.7
v3.*
v3.0.0
v3.0.1
v3.0.2
v3.0.3
v3.0.4
v3.0.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-105789.json"