OS Command Injection Vulnerability in Cherry Studio Desktop Client
CVE-2025-54074

7.7HIGH

Key Information:

Vendor

Cherryhq

Vendor
CVE Published:
13 August 2025

What is CVE-2025-54074?

Cherry Studio, a desktop client supporting multiple LLM providers, is susceptible to OS Command Injection when interacting with a compromised MCP server in HTTP Streamable mode. Attackers can exploit this vulnerability by crafting a malicious MCP server, equipped with deceptive OAuth authorization endpoints, that lures users into establishing a connection. Once connected, this can result in unauthorized command execution on the victim's system, impacting data security and integrity. Users are advised to upgrade to version 1.5.2, where this issue has been resolved.

Affected Version(s)

cherry-studio >= 1.2.5, < 1.5.2

References

CVSS V4

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.