{"id":"GHSA-8j86-h8gg-797p","summary":"GPT Researcher MCP STDIO configuration allows remote command execution","details":"An issue in Open Source GPT Researcher v3.3.7 allows attackers to execute arbitrary commands on a victim system via user interaction with a crafted HTML page.","aliases":["CVE-2025-65720"],"modified":"2026-10-02T22:45:04.328870147Z","published":"2026-07-16T00:31:33Z","database_specific":{"cwe_ids":["CWE-77"],"severity":"CRITICAL","github_reviewed":true,"github_reviewed_at":"2026-10-02T22:38:48Z","nvd_published_at":"2026-07-15T22:16:45Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-65720"},{"type":"PACKAGE","url":"https://github.com/assafelovic/gpt-researcher"},{"type":"WEB","url":"https://www.ox.security/blog/gpt-researcher-remote-code-execution"},{"type":"WEB","url":"https://www.ox.security/blog/mcp-supply-chain-advisory-rce-vulnerabilities-across-the-ai-ecosystem"}],"affected":[{"package":{"name":"gpt-researcher","ecosystem":"PyPI","purl":"pkg:pypi/gpt-researcher"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0.14.5"},{"last_affected":"0.14.7"}]}],"versions":["0.14.5","0.14.6","0.14.7"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/07/GHSA-8j86-h8gg-797p/GHSA-8j86-h8gg-797p.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}