Description
A vulnerability was identified in 0xshariq github-mcp-server up to 52e764a7d66eac1726fce02ca7bb5a638571801a. This issue affects the function child_process.exec of the file src/github.ts of the component Git Remove MCP Tool. Such manipulation of the argument File leads to os command injection. The attack can be executed remotely. The exploit is publicly available and might be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The project was informed of the problem early through an issue report but has not responded yet.
Published: 2026-09-30
Score: 5.3 Medium
EPSS: 1.1% Low
KEV: No
Impact: Remote code execution via OS command injection
Action: Apply Mitigation
AI Analysis

Impact

A flaw has been found in versions of 0xshariq github‑mcp‑server where the child_process.exec function in src/github.ts accepts a File parameter that can be constructed by an attacker. This allows arbitrary OS command injection, giving the attacker the ability to execute any shell command on the host. The vulnerability is exploitation by remote actors and can lead to full compromise of the affected system, enabling data exfiltration, modification or destruction.

Affected Systems

The affected product is the Git Remove MCP Tool maintained under the 0xshariq github‑mcp‑server repository. All deployments that use any unreleased commit up to the vulnerable hash 52e764a7d66eac1726fce02ca7bb5a638571801a are susceptible. Because the project follows a rolling release model, the specific version numbers of affected releases are not published, and the project has yet to respond to the issue.

Risk and Exploitability

The CVSS score is 5.3, indicating a moderate level of severity, and the EPSS score is not available. Since the vulnerability is publicly documented and exploitable via remote input, the risk is amplified when the tool is exposed to the internet or untrusted users. The feature is not listed in the CISA KEV catalog, but the lack of output from the project suggests a potential window for exploitation. Administrators should treat this as a potential remote code execution threat when the tool is accessible over the network.

Generated by OpenCVE AI on September 30, 2026 at 07:21 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest commit that removes or fixes the vulnerable child_process.exec call, or remove that function entirely if no fixed release exists.
  • Ensure that any data entering the File argument is strictly validated and sanitized before being passed to child_process.exec.
  • If a fix is not available, restrict the tool’s network exposure or disable the functionality that triggers command execution, and run it inside a restricted environment such as a container with limited privileges.
  • Stay informed by monitoring the project’s issue tracker and applying new releases promptly.

Generated by OpenCVE AI on September 30, 2026 at 07:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 30 Sep 2026 02:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was identified in 0xshariq github-mcp-server up to 52e764a7d66eac1726fce02ca7bb5a638571801a. This issue affects the function child_process.exec of the file src/github.ts of the component Git Remove MCP Tool. Such manipulation of the argument File leads to os command injection. The attack can be executed remotely. The exploit is publicly available and might be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The project was informed of the problem early through an issue report but has not responded yet.
Title 0xshariq github-mcp-server Git Remove MCP Tool github.ts child_process.exec os command injection
First Time appeared 0xshariq
0xshariq github-mcp-server
Weaknesses CWE-77
CWE-78
CPEs cpe:2.3:a:0xshariq:github-mcp-server:*:*:*:*:*:*:*:*
Vendors & Products 0xshariq
0xshariq github-mcp-server
References
Metrics cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:C'}

cvssV3_0

{'score': 6.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:C'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

0xshariq Github-mcp-server
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-30T02:30:09.228Z

Reserved: 2026-09-29T17:46:56.197Z

Link: CVE-2026-102906

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2026-09-30T03:16:58.150

Modified: 2026-09-30T14:04:38.183

Link: CVE-2026-102906

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-30T07:30:17Z

Weaknesses
  • CWE-77

    Improper Neutralization of Special Elements used in a Command ('Command Injection')

  • CWE-78

    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')