Impact
A function in the script src/wezterm_executor.ts of the switch_pane/write_to_specific_pane component accepts an argument from request.params.arguments.pane_id that is used directly in an operating‑system command call. Manipulation of this parameter allows an attacker to inject arbitrary commands, elevating the local operation to remote command execution. The vulnerability is exploitable over the network and a proof‑of‑concept exists in the public issue tracker.
Affected Systems
The affected product is wezterm-mcp version 0.1.0, developed by hiraishikentaro. The vulnerability resides in the switch_pane/write_to_specific_pane interface of the code repository linked in the advisory.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity. No EPSS score is currently available, and the vulnerability is not listed in the CISA KEV catalog. The reported exploit can be initiated remotely via the web interface, and an early issue report has been filed with the maintainer, but no official fix has yet been released.
OpenCVE Enrichment