Vulnerabilities (CVE)

Filtered by vendor Waycrate Subscribe
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-27817 1 Waycrate 1 Swhkd 2023-12-10 3.6 LOW 4.4 MEDIUM
SWHKD 1.1.5 consumes the keyboard events of unintended users. This could potentially cause an information leak, but is usually a denial of functionality.
CVE-2022-27816 1 Waycrate 1 Swhkd 2023-12-10 3.3 LOW 7.1 HIGH
SWHKD 1.1.5 unsafely uses the /tmp/swhks.pid pathname. There can be data loss or a denial of service.
CVE-2022-27818 1 Waycrate 1 Swhkd 2023-12-10 6.4 MEDIUM 9.1 CRITICAL
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.sock pathname. There can be an information leak or denial of service.
CVE-2022-27819 1 Waycrate 1 Swhkd 2023-12-10 4.0 MEDIUM 5.3 MEDIUM
SWHKD 1.1.5 allows unsafe parsing via the -c option. An information leak might occur but there is a simple denial of service (memory exhaustion) upon an attempt to parse a large or infinite file (such as a block or character device).
CVE-2022-27815 1 Waycrate 1 Swhkd 2023-12-10 6.2 MEDIUM 7.8 HIGH
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.pid pathname. There can be an information leak or denial of service.
CVE-2022-27814 1 Waycrate 1 Swhkd 2023-12-10 2.1 LOW 3.3 LOW
SWHKD 1.1.5 allows arbitrary file-existence tests via the -c option.