Security Advisory

CVE-2022-41322

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-09-23 04:55:54
Last updated 2025-06-01 11:02:27
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Kitty before 0.26.2, insufficient validation in the desktop notification escape sequence can lead to arbitrary code execution. The user must display attacker-controlled content in the terminal, then click on a notification popup.