Marimo is a reactive Python notebook application that contains a critical pre-authentication remote code execution vulnerability in versions prior to 0.23.0. The terminal WebSocket endpoint /terminal/ws fails to properly validate user authentication, allowing unauthenticated attackers to establish connections and obtain shell access. This vulnerability affects the core functionality of the marimo application, impacting any deployment where the affected versions are in use. The vulnerability has a high FAUCET Risk Score of 87.0/100 and presents a severe threat due to its unauthenticated attack vector and minimal complexity requirements. An attacker can exploit this flaw without any credentials or authentication tokens, directly connecting to the terminal endpoint to execute arbitrary system commands with the privileges of the marimo process. The lack of authentication checks means any network-accessible marimo instance running an affected version is immediately exploitable. The vulnerability is actively being exploited in the wild and has been designated for inclusion on the Known Exploited Vulnerabilities (KEV) catalog, indicating confirmed real-world exploitation activity. This high-visibility status combined with the straightforward nature of the attack makes prompt patching to version 0.23.0 or later a critical priority for all marimo users and organizations operating this software.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 0.23.0CPE matchmatch criteria | cpe:2.3:a:coreweave:marimo:*:*:*:*:*:python:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.