Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-30616 1 Jaaz 1 Jaaz 2026-04-15 7.3 High
Jaaz 1.0.30 contains a remote code execution vulnerability in its MCP STDIO command execution handling. A remote attacker can send crafted network requests to the network-accessible Jaaz application, causing attacker-controlled commands to be executed on the server. Successful exploitation results in arbitrary command execution within the context of the Jaaz service, potentially allowing full compromise of the affected system.