CVE-2026-25807Patch(taklaxbr / zai_shell)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch taklaxbr zai_shell systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

ZAI Shell is an autonomous SysOps agent designed to navigate, repair, and secure complex environments. Prior to 9.0.3, the P2P terminal sharing feature (share start) opens a TCP socket on port 5757 without any authentication mechanism. Any remote attacker can connect to this port using a simple socket script. An attacker who connects to a ZAI-Shell P2P session running in --no-ai mode can send arbitrary system commands. If the host user approves the command without reviewing its contents, the command executes directly with the user's privileges, bypassing all Sentinel safety checks. This vulnerability is fixed in 9.0.3.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • zai_shell

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-02-09); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
zai_shell

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-09: 1Mentions · 2026-02-10: 1Mentions · 2026-02-11: 1Patch / Workaround · 2026-02-09: 1Patch / Workaround · 2026-02-11: 1Technical Details · 2026-02-09: 1Technical Details · 2026-02-10: 1Technical Details · 2026-02-11: 102-0902-1002-11
Signal classification2 categories
Patch
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-091
Patch1
2026-02-101
Disclosure1
2026-02-111
Patch1
Full discourse3 posts
  • PulsePatch.io@pulsepatchio
    Patch

    Unauthenticated RCE (CVE-2026-25807) affects `ZAI-Shell` via its P2P sharing feature. Update `Taklaxbr ZAI-Shell` to mitigate this #RCE #Vulnerability for network-facing deployments. Details: https://www.pulsepatch.io/posts/cve-2026-25807-zai-shell-unauthenticated-rce

    Post summary

    CVE‑2026‑25807 is an unauthenticated remote code execution in ZAI‑Shell’s P2P sharing feature; updating to Taklaxbr ZAI‑Shell is advised to mitigate the vulnerability.

    0000038
    1 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-25807 ZAI Shell P2P Terminal Sharing Vulnerability Allows Unauthenticated Remote Command Execution https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-25807

    Post summary

    CVE-2026-25807 is a newly disclosed vulnerability in ZAI Shell P2P Terminal Sharing that permits unauthenticated remote command execution.

    0000080
    4.0K followersView on X
  • CVEFind.com@CveFindCom
    Patch

    [CVE-2026-25807: HIGH] ZAI Shell's P2P terminal sharing before version 9.0.3 had an unauthenticated TCP port vulnerability allowing remote attackers to execute system commands. Update to version 9.0.3 for a ...#cve,CVE-2026-25807,#cybersecurity https://cvefind.com/CVE-2026-25807

    Post summary

    ZAI Shell’s P2P terminal sharing before version 9.0.3 contains a high‑severity unauthenticated TCP port vulnerability enabling remote command execution. Users are advised to update to version 9.0.3.

    0000067
    583 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apptaklaxbrzai_shell-python-

Explore more