Skip to content
MediumVulnerability

GHSA-rj5c-58rq-j5g5: FastMCP vulnerable to windows command injection in FastMCP Cursor installer via server_name

Published
Record updated
View JSON
Affected
  • fastmcp < 2.13.0
Fixed in
2.13.0
Known exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.
EPSS
0.2%

Summary

A command-injection flaw (CWE-78) in FastMCP's Cursor installer lets an attacker who controls the server_name field run arbitrary OS commands on Windows hosts running fastmcp install cursor. The server_name value is embedded unescaped in a cursor:// deeplink, which is opened with shell=True through cmd.exe /c start, so cmd metacharacters such as & or | spawn an attacker-chosen process.

Mitigation

The source does not state a fix yet. Check the original advisory for updates.