CVE-2025-6514 is a vulnerability in mcp-remote, an OAuth proxy for MCP servers, that allows a malicious MCP server to trigger OS command injection, leading to remote code execution on the client machine and potential credential theft.
CVE-2025-6514 is a vulnerability in mcp-remote, an OAuth proxy for MCP servers, that allows a malicious MCP server to trigger OS command injection, leading to remote code execution on the client machine and potential credential theft.