VYPR

MCP server

by HexStrike AI

CVEs (1)

  • CVE-2025-35028CriNov 30, 2025
    risk 0.60cvss 9.1epss 0.05

    By providing a command-line argument starting with a semi-colon ; to an API endpoint created by the EnhancedCommandExecutor class of the HexStrike AI MCP server, the resultant composed command is executed directly in the context of the MCP server’s normal privilege; typically,…