Kovidgoyal

Kitty

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.02%
  • Published 20.04.2025 00:00:00
  • Last modified 24.04.2025 15:46:35

open_actions.py in kitty before 0.41.0 does not ask for user confirmation before running a local executable file that may have been linked from an untrusted document (e.g., a document opened in KDE ghostwriter).

Exploit
  • EPSS 5.52%
  • Published 21.12.2020 20:15:12
  • Last modified 24.04.2025 17:39:27

The Graphics Protocol feature in graphics.c in kitty before 0.19.3 allows remote attackers to execute arbitrary code because a filename containing special characters can be included in an error message.