Skip to main content

Vendor/product archive

kde / kde_applications CVEs

Beta · best-effort

3 CVEs tagged to kde / kde_applications0 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2018-19516

Published Mar 12, 2020

messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv="REFRESH" value.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-19120

Published Nov 29, 2018

The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-7252

Published Jan 18, 2015

kwalletd in KWallet before KDE Applications 14.12.0 uses Blowfish with ECB mode instead of CBC mode when encrypting the password store, which makes it easier for attackers to gues…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1