Command Execution Vulnerability in mcp-shell by Sonirico
CVE-2026-55580
8.6HIGH
What is CVE-2026-55580?
The mcp-shell tool from Sonirico, designed for secure and auditable command execution, is vulnerable due to improper initialization of security settings. In versions prior to 0.6.0, the Security.Enabled configuration was set to false by default. Consequently, if the MCP_SHELL_SEC_CONFIG_FILE is unset, the application operates in an unsecured state, allowing an attacker connected through standard input to execute arbitrary operating system commands with the privileges of the mcp-shell process. This vulnerability arises from the omission of a security policy as the default documented configuration for the tool, posing significant risks to system integrity.
Affected Version(s)
mcp-shell < 0.6.0
