← Back

Kde

kde

191 CVEs • 56 products

Products (56)

Click to collapse
Toggle
Kde
kde
Konqueror
konqueror
Kde Sc
kde_sc
Kmail
kmail
Koffice
koffice
Kdelibs
kdelibs
Kpdf
kpdf
Kdegraphics
kdegraphics
K Mail
k-mail
Kde Workspace
kde-workspace
Ark
ark
Kword
kword
Kauth
kauth
Kvt
kvt
Kmplayer
kmplayer
Kio Extras
kio-extras
Messagelib
messagelib
Ktexteditor
ktexteditor
Trojita
trojita
Okular
okular
Paste Applet
paste_applet
Ktv
ktv
Kdeutils
kdeutils
Klisa
klisa
Kopete
kopete
Quanta
quanta
Dcopserver
dcopserver
Arts
arts
Kdebase
kdebase
Libkhtml
libkhtml
Ksirc
ksirc
Kget
kget
Kcheckpass
kcheckpass
Kde Pim
kde_pim
Plasma Desktop
plasma-desktop
Kde Runtime
kde-runtime
Kde Frameworks
kde_frameworks
Karchives
karchives
Kscreenlocker
kscreenlocker
Kde Cli Tools
kde-cli-tools
Kio
kio
Plasma
plasma
Kconfig
kconfig
Amarok
amarok
Kdeconnect
kdeconnect
Discover
discover
Kimageformats
kimageformats
Kate
kate
Kcron
kcron
Kde Beta 3
kde_beta_3
Kcoreaddons
kcoreaddons

CVEs (191)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kde
1Kcoreaddons
May 5, 2026
Apr 28, 2026
N/A· v4
7.8 HIGH· v3
N/A· v2
In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading to an escape from the...Show more
In KDE KCoreAddons before 6.25, KShell::quoteArgs is intended to safely quote arguments so that they can be passed to a shell command. This parsing does not adequately handle metacharacters, leading to an escape from the shell. All applications relying on this method in a security-critical path to handle user input are affected and could be exploited. In particular, because sendInput() sends a string to a terminal, a control character such as \x01 can be used during injection.Show less
1Kde
1Plasma Workspace
Nov 4, 2025
Jul 5, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on...Show more
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.Show less
1Kde
1Plasma Workspace
Nov 21, 2024
Feb 11, 2024
N/A· v4
3.7 LOW· v3
2.6 LOW· v2
A vulnerability, which was classified as problematic, was found in KDE Plasma Workspace up to 5.93.0. This affects the function EventPluginsManager::enabledPlugins of the file components/calendar/eventpluginsmanager.cpp...Show more
A vulnerability, which was classified as problematic, was found in KDE Plasma Workspace up to 5.93.0. This affects the function EventPluginsManager::enabledPlugins of the file components/calendar/eventpluginsmanager.cpp of the component Theme File Handler. The manipulation of the argument pluginId leads to path traversal. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The patch is named 6cdf42916369ebf4ad5bd876c4dfa0170d7b2f01. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-253407. NOTE: This requires write access to user's home or the installation of third party global themes.Show less
1Kde
1Kcron
Nov 21, 2024
Feb 26, 2022
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
KDE KCron through 21.12.2 uses a temporary file in /tmp when saving, but reuses the filename during an editing session. Thus, someone watching it be created the first time could potentially intercept the file the followi...Show more
KDE KCron through 21.12.2 uses a temporary file in /tmp when saving, but reuses the filename during an editing session. Thus, someone watching it be created the first time could potentially intercept the file the following time, enabling that person to run unauthorized commands.Show less
1Kde
2Kate
Ktexteditor
Nov 21, 2024
Feb 11, 2022
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
The LSP (Language Server Protocol) plugin in KDE Kate before 21.12.2 and KTextEditor before 5.91.0 tries to execute the associated LSP server binary when opening a file of a given type. If this binary is absent from the...Show more
The LSP (Language Server Protocol) plugin in KDE Kate before 21.12.2 and KTextEditor before 5.91.0 tries to execute the associated LSP server binary when opening a file of a given type. If this binary is absent from the PATH, it will try running the LSP server binary in the directory of the file that was just opened (due to a misunderstanding of the QProcess API, that was never intended). This can be an untrusted directory.Show less
1Kde
1Kmail
Nov 21, 2024
Aug 10, 2021
N/A· v4
5.3 MEDIUM· v3
3.5 LOW· v2
In KDE KMail 19.12.3 (aka 5.13.3), the SMTP STARTTLS option is not honored (and cleartext messages are sent) unless "Server requires authentication" is checked.
1Kde
1Trojita
Nov 21, 2024
Aug 10, 2021
N/A· v4
3.7 LOW· v3
4.3 MEDIUM· v2
In KDE Trojita 0.7, man-in-the-middle attackers can create new folders because untagged responses from an IMAP server are accepted before STARTTLS.
1Kde
1Kimageformats
Nov 21, 2024
Jul 1, 2021
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
KDE KImageFormats 5.70.0 through 5.81.0 has a stack-based buffer overflow in XCFImageFormat::loadTileRLE.
1Kde
1Messagelib
Nov 21, 2024
Jun 2, 2021
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
KDE Messagelib through 5.17.0 reveals cleartext of encrypted messages in some situations. Deleting an attachment of a decrypted encrypted message stored on a remote server (e.g., an IMAP server) causes KMail to upload th...Show more
KDE Messagelib through 5.17.0 reveals cleartext of encrypted messages in some situations. Deleting an attachment of a decrypted encrypted message stored on a remote server (e.g., an IMAP server) causes KMail to upload the decrypted content of the message to the remote server. With a crafted message, a user could be tricked into decrypting an encrypted message and then deleting an attachment attached to this message. If the attacker has access to the messages stored on the email server, then the attacker could read the decrypted content of the encrypted message. This occurs in ViewerPrivate::deleteAttachment in messageviewer/src/viewer/viewer_p.cpp.Show less
1Kde
1Discover
Nov 21, 2024
Mar 20, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
libdiscover/backends/KNSBackend/KNSResource.cpp in KDE Discover before 5.21.3 automatically creates links to potentially dangerous URLs (that are neither https:// nor http://) based on the content of the store.kde.org we...Show more
libdiscover/backends/KNSBackend/KNSResource.cpp in KDE Discover before 5.21.3 automatically creates links to potentially dangerous URLs (that are neither https:// nor http://) based on the content of the store.kde.org web site. (5.18.7 is also a fixed version.)Show less
1Kde
1Partition Manager
Nov 21, 2024
Oct 26, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
An issue was discovered in KDE Partition Manager 4.1.0 before 4.2.0. The kpmcore_externalcommand helper contains a logic flaw in which the service invoking D-Bus is not properly checked. An attacker on the local machine...Show more
An issue was discovered in KDE Partition Manager 4.1.0 before 4.2.0. The kpmcore_externalcommand helper contains a logic flaw in which the service invoking D-Bus is not properly checked. An attacker on the local machine can replace /etc/fstab, and execute mount and other partitioning related commands, while KDE Partition Manager is running. the mount command can then be used to gain full root privileges.Show less
2Kde
Opensuse
3Backports Sle
KdeconnectLeap
Nov 21, 2024
Oct 7, 2020
N/A· v4
5.5 MEDIUM· v3
4.9 MEDIUM· v2
In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of CPU, memory, or network connection slots, aka a Denial of Service attac...Show more
In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of CPU, memory, or network connection slots, aka a Denial of Service attack.Show less
5Canonical
DebianFedoraproject+2 more
5Ark
Debian LinuxFedora+2 more
Nov 21, 2024
Sep 2, 2020
N/A· v4
3.3 LOW· v3
4.3 MEDIUM· v2
In KDE Ark before 20.08.1, a crafted TAR archive with symlinks can install files outside the extraction directory, as demonstrated by a write operation to a user's home directory.
5Canonical
DebianFedoraproject+2 more
5Ark
Debian LinuxFedora+2 more
Nov 21, 2024
Aug 3, 2020
N/A· v4
3.3 LOW· v3
4.3 MEDIUM· v2
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.
2Debian
Kde
2Debian Linux
Kmail
Nov 21, 2024
Jul 27, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
KDE KMail 19.12.3 (aka 5.13.3) engages in unencrypted POP3 communication during times when the UI indicates that encryption is in use.
1Kde
1Amarok
Nov 21, 2024
May 20, 2020
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A remote user can create a specially crafted M3U file, media playlist file that when loaded by the target user, will trigger a memory leak, whereby Amarok 2.8.0 continue to waste resources over time, eventually allows at...Show more
A remote user can create a specially crafted M3U file, media playlist file that when loaded by the target user, will trigger a memory leak, whereby Amarok 2.8.0 continue to waste resources over time, eventually allows attackers to cause a denial of service.Show less
1Kde
1Kio Extras
Nov 21, 2024
May 9, 2020
N/A· v4
3.3 LOW· v3
2.1 LOW· v2
fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a...Show more
fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.Show less
1Kde
1Kmail
Nov 21, 2024
Apr 17, 2020
N/A· v4
6.5 MEDIUM· v3
6.4 MEDIUM· v2
An issue was discovered in KDE KMail before 19.12.3. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make KMail attach local files to a composed email...Show more
An issue was discovered in KDE KMail before 19.12.3. By using the proprietary (non-RFC6068) "mailto?attach=..." parameter, a website (or other source of mailto links) can make KMail attach local files to a composed email message without showing a warning to the user, as demonstrated by an attach=.bash_history value.Show less
3Debian
FedoraprojectKde
3Debian Linux
FedoraOkular
Nov 21, 2024
Mar 24, 2020
N/A· v4
5.3 MEDIUM· v3
6.8 MEDIUM· v2
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
1Kde
1Kde Applications
Nov 21, 2024
Mar 12, 2020
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv="REFRESH" value.