{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/gh05tcrew/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:gh05tcrew:pentestagent:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-90617"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["PentestAgent (up to commit cf882dabea3ed91cef016cdd115e5426315665a2)","PentestAgent (\u003c= cf882dabea3ed91cef016cdd115e5426315665a2)"],"_cs_severities":["high"],"_cs_tags":["remote-code-execution","cve","pentest-tool","cve-2026-90618","command-injection","rce"],"_cs_type":"advisory","_cs_vendors":["GH05TCREW"],"content_html":"\u003cp\u003eCVE-2026-90617 is a remote OS command injection vulnerability residing in the MCP HTTP Server component of the GH05TCREW PentestAgent, specifically within the \u003ccode\u003erun_task\u003c/code\u003e function of \u003ccode\u003einterface/main.py\u003c/code\u003e. The vulnerability affects all versions of PentestAgent up to commit \u003ccode\u003ecf882dabea3ed91cef016cdd115e5426315665a2\u003c/code\u003e. Given that this tool is designed for penetration testing purposes, the exposure of a remote RCE vulnerability is significant. An unauthenticated remote attacker can supply malicious input that is improperly sanitized before being passed to the underlying operating system shell. As the project utilizes a rolling release strategy and the fix is currently an unmerged pull request, users must monitor the project repository for the final patch. This flaw is actively being discussed in public forums, increasing the risk of exploitation by unauthorized actors against environments where PentestAgent is deployed.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows for unauthenticated remote code execution with the privileges of the PentestAgent service. In a typical penetration testing environment, this could lead to the full compromise of the testing host, exposure of sensitive credentials, internal network reconnaissance, and lateral movement. The lack of a stable versioned release makes tracking vulnerable instances challenging, and the nature of the tool suggests that compromised instances may hold high-value target information.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize monitoring for any network activity involving the MCP HTTP Server component of PentestAgent. Given the lack of a formal release, monitor the GH05TCREW repository for the merge of the fix associated with CVE-2026-90617. Until the fix is applied, restrict access to the PentestAgent interface to trusted IP addresses only, using firewall rules or network segmentation to prevent external access.\u003c/p\u003e\n","date_modified":"2026-09-14T03:29:49Z","date_published":"2026-09-14T03:29:40Z","id":"https://feed.craftedsignal.io/briefs/2026-09-14-cve-2026-90617/","summary":"A critical remote command injection vulnerability (CVE-2026-90617) exists in the MCP HTTP Server component of GH05TCREW PentestAgent, allowing unauthenticated attackers to execute arbitrary OS commands via the run_task function.","title":"Remote Command Injection in GH05TCREW PentestAgent","url":"https://feed.craftedsignal.io/briefs/2026-09-14-cve-2026-90617/"}],"language":"en","title":"CraftedSignal Threat Feed - GH05TCREW","version":"https://jsonfeed.org/version/1.1"}