ZeroHour
Exploit-DBpublished ()ingested

[remote] mcp-server-kubernetes 3.8.x - Argument Injection

highExploit / PoCimportance 50
AI summary · glm-5.3

Argument injection in mcp-server-kubernetes 3.8.x MCP server could allow AI clients to execute unintended Kubernetes operations.

Exploit-DB entry 52638 documents an argument injection vulnerability in mcp-server-kubernetes version 3.8.x, a Model Context Protocol server that lets AI assistants interact with Kubernetes clusters. Crafted input can inject additional arguments into commands executed by the server, potentially enabling unauthorized operations or command execution against the cluster. This highlights growing security concerns around MCP servers bridging LLM agents and infrastructure.

  • Argument injection in mcp-server-kubernetes 3.8.x
  • Public exploit published on Exploit-DB
  • Could enable unintended operations against Kubernetes clusters
  • Relevant to securing MCP servers used by AI agents
Full article

mcp-server-kubernetes 3.8.x - Argument Injection

This source does not provide full text. Read it at exploit-db.com.