CVE-2026-45184: Medium severity KDE Kdenlive vulnerability
Kdenlive before 26.04.1 allows dangerous proxy parameters when an attacker-controlled project file is used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-45184?
CVE-2026-45184 is classified as a medium severity vulnerability due to its potential for exploitation through manipulated project files.
How do I fix CVE-2026-45184?
To fix CVE-2026-45184, upgrade Kdenlive to version 26.04.1 or later to mitigate the risk from dangerous proxy parameters.
What are the consequences of CVE-2026-45184?
The consequences of CVE-2026-45184 can include arbitrary command execution or data exposure if an attacker manages to use a malicious project file.
Who is affected by CVE-2026-45184?
Users of Kdenlive prior to version 26.04.1 are affected by CVE-2026-45184, especially those who open project files from untrusted sources.
How can I identify if my Kdenlive version is vulnerable to CVE-2026-45184?
You can identify if your Kdenlive version is vulnerable to CVE-2026-45184 by checking if it is older than version 26.04.1.