Command Injection Vulnerability in Terminal Controller MCP by GongRzhe
CVE-2025-61492
10CRITICAL
What is CVE-2025-61492?
A command injection vulnerability exists in the execute_command function of version 0.1.7 of Terminal Controller MCP. This flaw enables attackers to execute arbitrary commands on the server by providing specially crafted input, potentially leading to unauthorized access and control over the system. Proper input validation measures must be implemented to mitigate this security risk.
