CVE-2026-95660
Last modified
CVE-2026-95660 is a medium-severity vulnerability rated 6.3/10 on the CVSS scale. A security flaw has been discovered in Moonshot AI Kimi Code up to 0.31.0. The affected element is an unknown function of the file agent-core-v2/src/agent/mcp/config-loader.ts of the component MCP Configuration Loader.
Description
A security flaw has been discovered in Moonshot AI Kimi Code up to 0.31.0. The affected element is an unknown function of the file agent-core-v2/src/agent/mcp/config-loader.ts of the component MCP Configuration Loader. The manipulation results in os command injection. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. Upgrading to version 0.31.1 is sufficient to fix this issue. It is recommended to upgrade the affected component. Beyond the trust prompt, the fix resolves fd/stty binaries to absolute paths specifically "so untrusted workspaces cannot plant bare-name executables before confirmation," fixing a secondary $PATH path-planting vector alongside the primary untrusted-.mcp.json auto-spawn.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Moonshot AI | Kimi Code | 0.1; 0.2; 0.3; 0.4; 0.5; 0.6; 0.7; 0.8; 0.9; 0.10; 0.11; 0.12; 0.13; 0.14; 0.15; 0.16; 0.17; 0.18; 0.19; 0.20; 0.21; 0.22; 0.23; 0.24; 0.25; 0.26; 0.27; 0.28; 0.29; 0.30; 0.31.0 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-95660?
How severe is CVE-2026-95660?
How do I fix CVE-2026-95660?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-95655Aureus ERP before 1.5.0 fails to scope message lookups to th…8.1
- CVE-2026-95656A vulnerability was found in dgtlmoon changedetection.io up …7.3
- CVE-2026-95657A vulnerability was determined in dgtlmoon Changedetection.i…3.5
- CVE-2026-95658MISP's WorkflowsController exposed the moduleStatelessExecut…6.9
- CVE-2026-95659MISP contains a reflected cross-site scripting (XSS) vulnera…4.8
- CVE-2026-9566A vulnerability was identified in teableio teable up to 1.9.…4.3
- CVE-2026-95661MISP contains a reflected cross-site scripting (XSS) vulnera…5.1
- CVE-2026-95665MISP contains a reflected cross-site scripting (XSS) vulnera…5.1
- CVE-2026-95666Mattermost versions 11.9.x <= 11.9.1, 11.8.x <= 11.8.5, 11.7…4.3
- CVE-2026-95667The MISP installer scripts (for Debian 12, Debian 13, Ubuntu…6.9
- CVE-2026-9567A security flaw has been discovered in GPAC up to 2.4.0. Aff…3.3
- CVE-2026-95671In MISP, the CollectionsController add() method enforced the…5.3
Are you affected by CVE-2026-95660?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
