cvedb.io
CVE-2025-59834
CRITICAL · CVSS 9.8
EPSS exploitation probability: 0%
Published 2025-09-25T14:15:46.357 · Last modified 2026-06-17T09:46:47.450

Summary

ADB MCP Server is a MCP (Model Context Protocol) server for interacting with Android devices through ADB. In versions 0.1.0 and prior, the MCP Server is written in a way that is vulnerable to command injection vulnerability attacks as part of some of its MCP Server tool definition and implementation. This issue has been patched via commit 041729c.

Affected products

srmorete — adb_mcp_server

Does this affect you?

Add your gear to cvedb and we'll alert you only when srmorete ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.