{"data":{"id":"d65363ef-a81a-4f70-9f5d-3384b48a2922","title":"Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode","summary":"Marimo, a notebook software, had a high-severity security flaw (CVE-2026-75149) that let attackers run malicious commands through a specially crafted notebook file when opened in edit mode, before any notebook cells executed. The vulnerability was a code injection issue (inserting harmful code into a program) affecting versions before 0.23.15 and rated 8.7-8.8 on the severity scale.","solution":"Update to Marimo version 0.23.15 or later. According to the source, \"Marimo has addressed the issue in version 0.23.15\" and \"Users running an affected release should move to a version outside the affected range.\" The fix includes a PEP 723 hardening patch that treats notebook metadata as attacker-controlled and removes dangerous configuration sections (ai, mcp, completion, secrets, server) through an allowlist approach.","labels":["security"],"sourceUrl":"https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html","publishedAt":"2026-08-25T12:43:51.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":["Marimo"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-08-25T12:43:51.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["integrity","availability"],"aiComponentTargeted":"framework","llmSpecific":false,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}