{"id":"GHSA-94gr-w3q5-rfqr","summary":"Open Source Kubectl MCP Server vulnerable to arbitrary code execution via user interaction with crafted HTML page","details":"An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted HTML page.","aliases":["CVE-2025-65719","PYSEC-2026-371"],"modified":"2026-06-29T12:26:44.050945480Z","published":"2026-05-12T18:30:38Z","database_specific":{"nvd_published_at":"2026-05-12T17:16:15Z","cwe_ids":["CWE-94"],"severity":"CRITICAL","github_reviewed":true,"github_reviewed_at":"2026-06-18T20:09:14Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-65719"},{"type":"PACKAGE","url":"https://github.com/rohitg00/kubectl-mcp-server"},{"type":"WEB","url":"https://www.ox.security/blog/cve-2025-65719-critical-rce-in-kubectl-mcp-server"},{"type":"WEB","url":"https://www.ox.security/blog/kubectl-mcp-server-remote-code-execution"}],"affected":[{"package":{"name":"kubectl-mcp-server","ecosystem":"npm","purl":"pkg:npm/kubectl-mcp-server"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.2.0"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/05/GHSA-94gr-w3q5-rfqr/GHSA-94gr-w3q5-rfqr.json"}},{"package":{"name":"kubectl-mcp-server","ecosystem":"PyPI","purl":"pkg:pypi/kubectl-mcp-server"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.2.0"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/05/GHSA-94gr-w3q5-rfqr/GHSA-94gr-w3q5-rfqr.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}