Known Vulnerabilities for Terminal by Microsoft
Listed below are 3 of the newest known vulnerabilities associated with "Terminal" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-81715 json | openssl_encrypt (pip package openssl-encrypt) versions <= 1.4.8 do not redact the keyserver bearer token passed as the positi... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81707 json | openssl_encrypt before 1.4.9 fails to sanitize the email field of imported identity documents, allowing attackers to inject A... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81705 json | openssl-encrypt before 1.4.9 fails to redact the file password in its --debug argv dump when the password is supplied via bun... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81696 json | openssl_encrypt versions before 1.4.9 fail to sanitize terminal control characters in file metadata printed by the info comma... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81695 json | openssl_encrypt versions before 1.4.9 fail to escape attacker-controlled key_id values printed to stderr during decrypt auto-... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81694 json | openssl-encrypt (pip package, versions <= 1.4.8) fails to sanitize filenames read from untrusted drive data (outside the AES-... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81097 json | The execute_ruby tool is documented as a read-only Ruby sandbox and is enforced by a pattern denylist together with replaceme... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-76072 json | The Continue CLI applies an incomplete denylist as its only barrier to destructive shell commands when running unattended. In... | Not Provided | 2026-08-24 | 2026-08-24 |
| CVE-2026-75483 json | powerlevel10k fails to neutralize control characters in the package.json version field when rendering the package prompt segm... | Not Provided | 2026-08-17 | 2026-08-20 |
| CVE-2026-75108 json | Next Terminal fails to enforce per-asset authorization checks on the portal ping and wake-on-LAN endpoints, allowing any auth... | Not Provided | 2026-08-17 | 2026-08-18 |