CVE-2026-37751
nicheOS Command Injection in 23blocks-OS ai-maestro v0.24.17
CVE-2026-37751 is an OS command injection vulnerability (CWE-78) in the killSessionSync function in lib/agent-runtime.ts of 23blocks-OS ai-maestro v0.24.17. An attacker who can send crafted input to the session-kill path can have that input executed as operating-system commands, because the function fails to adequately neutralize special command characters before use. Successful exploitation yields arbitrary command execution with the privileges of the ai-maestro process, with high impact to confidentiality, integrity, and availability, reflected in the critical CVSS 3.1 score of 9.8 (network vector, low complexity, no privileges or user interaction required). The available data identifies only v0.24.17 as affected, and no fixed version or broader affected range is specified. There is currently no evidence of in-the-wild exploitation, no known public proof-of-concept, the issue is not in CISA KEV, and EPSS estimates a roughly 1.6% (74th percentile) probability of exploitation within 30 days.
What to do: Upgrade 23blocks-OS ai-maestro beyond v0.24.17 as soon as the vendor publishes a patched release, and monitor the vendor's advisories since no fixed version is named in the current data. Until patched, restrict network access to hosts running ai-maestro (the vector is unauthenticated over the network) and review whether untrusted input can reach the killSessionSync/session-kill functionality. Given no known exploitation, standard patch prioritization applies, but do not defer remediation if the component is internet-reachable.
| 23blocks-OS ai-maestro | v0.24.17 (only version listed in the data; no fixed version or other affected ranges specified) |
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
An OS command injection vulnerability in the killSessionSync function (lib/agent-runtime.ts) of 23blocks-OS ai-maestro v0.24.17 allows attackers to execute arbitrary commands via a crafted input.
- Weakness
- CWE-78
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.