Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-11491

Опубликовано: 08 окт. 2025
Источник: nvd
CVSS3: 6.3
CVSS2: 6.5
EPSS Низкий

Описание

A vulnerability was found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The impacted element is the function CommandManager of the file src/command-manager.ts. Performing manipulation results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

EPSS

Процентиль: 74%
0.00856
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 6.3
github
25 дней назад

A vulnerability was found in wonderwhy-er DesktopCommanderMCP up to 0.2.13. The impacted element is the function CommandManager of the file src/command-manager.ts. Performing manipulation results in os command injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

EPSS

Процентиль: 74%
0.00856
Низкий

6.3 Medium

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-77