CVE-2026-25710Disclosure

LOWCVSS 7.0 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The new upstream added a privileged D-Bus helper called plasmaloginauthhelper, which suffers from multiple issues, e.g.aA compromised plasmalogin service account can chown() arbitrary files in the system.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-250

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 10 mentions across 6 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 8 signals
  • Disclosure: 8 classified signals
  • General: 2 classified signals
  • Peaked 5d ago at 3 mentions (2026-03-06); latest day: 1
  • 10 total mentions across 6 days

Deep dive

Activity timeline10 mentions / 6d
01223Mentions · 2026-03-06: 3Mentions · 2026-03-07: 3Mentions · 2026-04-21: 1Mentions · 2026-04-28: 1Mentions · 2026-04-29: 1Mentions · 2026-05-13: 1Patch / Workaround · 2026-04-21: 1Technical Details · 2026-03-06: 2Technical Details · 2026-03-07: 3Technical Details · 2026-04-21: 1Technical Details · 2026-04-28: 1Technical Details · 2026-05-13: 103-0603-0704-2104-2804-2905-13
Signal classification2 categories
Disclosure
880.0%
General
220.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-063
Disclosure1General2
2026-03-073
Disclosure3
2026-04-211
Disclosure1
2026-04-281
Disclosure1
2026-04-291
Disclosure1
2026-05-131
Disclosure1
Full discourse10 posts
  • Open Source Security mailing list@oss_security
    Disclosure

    CVE-2026-25710: plasma-login-manager: Weaknesses in plasmaloginauthhelper https://www.openwall.com/lists/oss-security/2026/04/27/1 New display manager component in KDE. Privileged D-Bus helper, which suffers from defense-in-depth issues allowing the plasmalogin service user to escalate to root in various ways.

    Post summary

    The post announces a privilege‑escalation vulnerability in KDE's plasma‑login‑manager caused by defense‑in‑depth weaknesses in the plasmaloginauthhelper component.

    03091770
    4.7K followersView on X
  • ナタリー 🌙@Absolcasso
    Disclosure

    CVE-2026-25710: Anthropic's own Git MCP server had an argument injection flaw that allowed RCE. If the protocol creator's reference implementation ships with vulnerabilities, imagine what third-party servers look like. Always verify before connecting. 🌙

    Post summary

    The post reports an argument injection flaw in Anthropic's Git MCP server (CVE-2026-25710) that enables remote code execution, without providing a PoC, exploit, patch, or evidence of active exploitation.

    0002065
    69 followersView on X
  • FOSS Force@FOSSForce
    Disclosure

    The SUSE team finds security issues in Plasma's Login Manager and explain them here: plasma-login-manager: Weaknesses in plasmaloginauthhelper (CVE-2026-25710) https://buff.ly/r1Ys9k6

    Post summary

    SUSE has reported new weaknesses in Plasma Login Manager, identified as CVE-2026-25710, and provided a link for further details.

    0001077
    2.6K followersView on X
  • ナタリー 🌙@Absolcasso
    Disclosure

    Anthropic's own Git MCP server had an argument injection flaw (CVE-2026-25710) allowing RCE. If the protocol creator's reference implementation ships vulnerable, imagine community MCP servers running unaudited. Scan before you trust. 🌙

    Post summary

    The note announces a remote code execution vulnerability due to argument injection in Anthropic's Git MCP server (CVE-2026-25710), warning that community servers may run vulnerable reference implementations and urging a security scan before trust.

    0001068
    69 followersView on X
  • ナタリー 🌙@Absolcasso
    Disclosure

    CVE-2026-25710: Anthropic's own Git MCP server had an argument injection flaw that led to RCE. If the protocol creator's reference implementation ships with this kind of bug, imagine what's lurking in the 1,000+ community MCP servers nobody has audited. Scan first. 🌙

    Post summary

    The post announces CVE-2026-25710, noting an argument injection flaw that causes RCE in Anthropic's Git MCP server, warning of broader risks in un-audited community servers.

    0001068
    69 followersView on X
  • ナタリー 🌙@Absolcasso
    General

    ecting.We're seeing a severe lag between AI capabilities and MCP security. Between the RCE flaw in nmap-mcp-server (CVE-2026-3484) and Anthropic's Git server flaw (CVE-2026-25710), we can't blindly trust 3rd-party tools. Always scan MCP servers before connecting.

    Post summary

    The statement references two CVEs—an RCE flaw in nmap-mcp-server (CVE-2026-3484) and a Git server flaw in Anthropic (CVE-2026-25710)—but does not provide proof-of-concept, exploit code, patch, or active exploitation details, simply urging caution.

    0001056
    69 followersView on X
  • ナタリー 🌙@Absolcasso
    General

    今日だけでもCVE-2026-3484、CVE-2026-25710、ContextCrush、PleaseFix。MCPとAIエージェント周辺で新しい脆弱性が次々と出てる。共通点はどれもランタイムの挙動が想定外だったこと。静的な信頼スコアだけでは守れない → https://mcp-guard.abcas.jp

    Post summary

    The post lists several new CVEs affecting MCP and AI-agent environments, highlighting unexpected runtime behavior but offering no technical specifics or remediation steps.

    0001061
    68 followersView on X
  • ナタリー 🌙@Absolcasso
    Disclosure

    CVE-2026-25710: Anthropic's own Git MCP server had an argument injection flaw leading to RCE. If even the protocol authors ship vulnerabilities in their reference implementations, what does that say about the thousands of community MCP servers with no security review?

    Post summary

    The post reports CVE‑2026‑25710 as an argument injection vulnerability in Anthropic’s Git MCP server that enables remote code execution, underscoring risks in community‑maintained servers.

    0001053
    68 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-25710 Privilege Escalation in Plasma Login D-Bus Helper via Arbitrary File Ownership https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-25710

    Post summary

    CVE-2026-25710 is identified as a privilege‑escalation flaw in Plasma Login’s D‑Bus helper due to arbitrary file ownership abuse; the announcement references a Vulmon detail page for further technical info.

    0000063
    4.0K followersView on X
  • Jasper@Tristin_0a
    Disclosure

    CVE-2026-3484 + CVE-2026-25710: MCP Server 接连爆出 RCE 漏洞。你的 agent 有多少无审批写操作?MCP 审批护栏包 = 白名单+审批+回滚+审计。首单试单 0.0052 USDT/call。回复「首单试单」或 DM workflow,15分钟回样例。#MCP #EnterpriseAI

    Post summary

    The post announces two new RCE vulnerabilities (CVE-2026-3484 and CVE-2026-25710) on MCP Server and promotes a mitigation package, but no active exploitation, PoC, or exploit code is provided.

    0000032
    173 followersView on X

Explore more