Executive brief
Claude-in-mobile is a tool that automates interaction with mobile and desktop applications through ADB, iOS Simulator, and desktop APIs. A vulnerability in version 3.10.2 allows attackers with local access to execute arbitrary operating system commands by injecting specially crafted input through the ADB client, potentially gaining full control of the host system.
Technical details
The vulnerability is an OS command injection (CWE-78) in the execSync function of src/adb/client.ts. The root cause is improper handling of user-supplied input passed directly to Node.js execSync() with string interpolation, allowing shell metacharacters (particularly standalone '&') to bypass the validateShellCommand denylist. The attack requires local access to the tool and involves crafting a malicious command string that breaks out of the intended command context. An attacker can execute arbitrary code with the privileges of the process running claude-in-mobile. The vulnerability is patched in version 3.10.3 (commit a86d9e55694c98a122943eeff859461d0b9aa6d6) by migrating from string-based execSync to argv-form execFileSync, eliminating shell interpretation of user input.
Affected products
- AlexGladkov claude-in-mobile 3.10.2
Timeline
- 2026-08-27: disclosed
- 2026-05-31: patched: Version 3.10.3 includes fix commit a86d9e55694c98a122943eeff859461d0b9aa6d6