Skip to main content

Vendor/product archive

mintty_project / mintty CVEs

Beta · best-effort

5 CVEs tagged to mintty_project / mintty2 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2025-1052

Published Feb 11, 2025

Mintty Sixel Image Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected install…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-39726

Published Oct 26, 2023

An issue in Mintty v.3.6.4 and before allows a remote attacker to execute arbitrary code via crafted commands to the terminal.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-47583

Published Oct 19, 2023

Terminal character injection in Mintty before 3.6.3 allows code execution via unescaped output to the terminal.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2021-28848

Published Jun 3, 2021

Mintty before 3.4.5 allows remote servers to cause a denial of service (Windows GUI hang) by telling the Mintty window to change its title repeatedly at high speed, which results…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1