PT-2026-78557 · Marimo · Marimo

·

CVE-2026-75149

·

Published

2026-08-19

·

Updated

2026-08-28

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions marimo versions prior to 0.23.15
Description A code injection flaw exists in the notebook configuration handler. Attackers can execute arbitrary commands by embedding a crafted MCP server entry with a controlled command value within a notebook. When the notebook is opened in edit mode, the software launches the specified command as a local subprocess before any notebook cell is executed. This process requires no authentication or cell execution to trigger. Real-world exploitation has been observed where attackers use this method to achieve privilege escalation and lateral movement into connected cloud workloads.
Recommendations Update marimo to version 0.23.15.

Exploit

Fix

LPE

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-75149

Affected Products

Marimo