PT-2026-78557 · Marimo · Marimo
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
marimo versions prior to 0.23.15
Description
A code injection flaw exists in the notebook configuration handler. Attackers can execute arbitrary commands by embedding a crafted MCP server entry with a controlled
command value within a notebook. When the notebook is opened in edit mode, the software launches the specified command as a local subprocess before any notebook cell is executed. This process requires no authentication or cell execution to trigger. Real-world exploitation has been observed where attackers use this method to achieve privilege escalation and lateral movement into connected cloud workloads.Recommendations
Update marimo to version 0.23.15.
Exploit
Fix
LPE
RCE
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Marimo