Known Vulnerabilities for Xdg-utils by Freedesktop
Listed below are 5 of the newest known vulnerabilities associated with "Xdg-utils" by "Freedesktop".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54056 json | Kitty is a cross-platform GPU based terminal. In versions 0.47.0 and 0.47.1, `kitten dnd` can allow a malicious remote drag-a... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-50568 json | Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and application... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-50567 json | Fission is an open-source, Kubernetes-native serverless framework that simplifies the deployment of functions and application... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-49756 json | Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability in wojtekmach Req allows multipart parameter smugg... | Not Provided | 2026-06-08 | 2026-06-08 |
| CVE-2026-49267 json | Apache Airflow's EmailOperator and the underlying `airflow.utils.email` helpers established SMTP STARTTLS connections without... | Not Provided | 2026-06-01 | 2026-06-02 |
| CVE-2026-48713 json | Versions prior to 2.6.6 are vulnerable to prototype pollution via crafted missing-key strings when used to persist missing tr... | Not Provided | 2026-06-15 | 2026-06-16 |
| CVE-2026-48587 json | An issue was discovered in Django 5.2 before 5.2.15 and 6.0 before 6.0.6. `django.utils.cache.has_vary_header()` in Django do... | Not Provided | 2026-06-03 | 2026-06-03 |
| CVE-2026-48559 json | Lightweight Music Server (LMS) though 3.76.0 contains a stored cross-site scripting vulnerability that allows attackers to ex... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2026-48146 json | Budibase is an open-source low-code platform. Prior to 3.39.0, the OAuth2 token fetch function in packages/server/src/sdk/wor... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-47268 json | Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 0.20.0 to before... | Not Provided | 2026-06-12 | 2026-06-15 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Freedesktop | Xdg-utils | 1.1.3 | |||
| Application | Freedesktop | Xdg-utils | 1.1.2 | |||
| Application | Freedesktop | Xdg-utils | 1.1.1 | |||
| Application | Freedesktop | Xdg-utils | 1.1.0 | |||
| Application | Freedesktop | Xdg-utils | 1.0.2 | |||
| Application | Freedesktop | Xdg-utils | 1.0.1 | |||
| Application | Freedesktop | Xdg-utils | 1.0 |