CVE Feed

    Dashboard / CVE / CVE-2026-25807

    CVE-2026-25807

    ZAI Shell is an autonomous SysOps agent designed to navigate, repair, and secure complex environments. Prior to 9.0.3, the P2P terminal sharing feature (share start) opens a TCP socket on port 5757 without any authentication mechanism. Any remote attacker can connect to this port using a simple socket script. An attacker who connects to a ZAI-Shell P2P session running in --no-ai mode can send arbitrary system commands. If the host user approves the command without reviewing its contents, the command executes directly with the user's privileges, bypassing all Sentinel safety checks. This vulnerability is fixed in 9.0.3.

    Published:Feb 9, 2026
    Last Modified:Apr 17, 2026
    EPS:Feb 9, 2026
    EPSS Score:0.00122
    CVSS Score:8.8

    Affected Products

    Vendor
    Taklaxbr
    Product
    Zai-shell
    Vendor
    Taklaxbr
    Product
    Zai Shell

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High