CRITICAL9.8
PYSEC-2026-371
Open Source Kubectl MCP Server vulnerable to arbitrary code execution via user interaction with crafted HTML page
Quick fix
PYSEC-2026-371 — kubectl-mcp-server: upgrade to the fixed version with the command below.
pip install --upgrade 'kubectl-mcp-server>=1.2.0'Details
An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted HTML page.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/kubectl-mcp-server
Introduced in:
0Fixed in: 1.2.0Fix
pip install --upgrade 'kubectl-mcp-server>=1.2.0'References
- https://nvd.nist.gov/vuln/detail/CVE-2025-65719[ADVISORY]
- https://github.com/rohitg00/kubectl-mcp-server[PACKAGE]
- https://www.ox.security/blog/cve-2025-65719-critical-rce-in-kubectl-mcp-server[WEB]
- https://www.ox.security/blog/kubectl-mcp-server-remote-code-execution[WEB]
- https://pypi.org/project/kubectl-mcp-server[PACKAGE]
- https://github.com/advisories/GHSA-94gr-w3q5-rfqr[ADVISORY]