CVE-2025-65719
An issue in Open Source Kubectl MCP Server v1.1.1 allows attackers to execute arbitrary code on a victim system via user interaction with a crafted HTML page.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://nvd.nist.gov/vuln/detail/CVE-2025-65719, https://github.com/rohitg00/kubectl-mcp-server, https://www.ox.security/blog/cve-2025-65719-critical-rce-in-kubectl-mcp-server, https://www.ox.security/blog/kubectl-mcp-server-remote-code-execution, https://pypi.org/project/kubectl-mcp-server, https://github.com/advisories/GHSA-94gr-w3q5-rfqr