PULSE
LIVE36signals / 24h
FEED
ransomgenesis reclama a Boyum IT Solutions (HOT!) · DK · Technologyransomgenesis reclama a C.A. Walker Construction · US · Manufacturingransomqilin reclama a Audio Precision, Inc · US · Technologyransomgammax reclama a AguAseo · CO · Energy & Utilitiesransomsecurotrop reclama a MAG USA Inc · US · Manufacturingransomsection9 reclama a And where does the newborn go from here? The net is vast and infinite. · Not Foundransomincransom reclama a PARTNERED HEALTH GROUP · AU · Healthcareransomcmdorganization reclama a Contact Group · AU · Professional Servicesransomincransom reclama a sslf.local · US · Not Foundransomqilin reclama a TenSparrows · US · Not Foundransomcmdorganization reclama a Collge Mont Notre-Dame de Sherbrooke · CA · Educationransomqilin reclama a Db Tarimsal Enerji · TR · Agriculture and Food Productionransomcmdorganization reclama a Rondout Electric · US · Energy & Utilitiesransomqilin reclama a Byonyks · US · Technologyransomgenesis reclama a Boyum IT Solutions (HOT!) · DK · Technologyransomgenesis reclama a C.A. Walker Construction · US · Manufacturingransomqilin reclama a Audio Precision, Inc · US · Technologyransomgammax reclama a AguAseo · CO · Energy & Utilitiesransomsecurotrop reclama a MAG USA Inc · US · Manufacturingransomsection9 reclama a And where does the newborn go from here? The net is vast and infinite. · Not Foundransomincransom reclama a PARTNERED HEALTH GROUP · AU · Healthcareransomcmdorganization reclama a Contact Group · AU · Professional Servicesransomincransom reclama a sslf.local · US · Not Foundransomqilin reclama a TenSparrows · US · Not Foundransomcmdorganization reclama a Collge Mont Notre-Dame de Sherbrooke · CA · Educationransomqilin reclama a Db Tarimsal Enerji · TR · Agriculture and Food Productionransomcmdorganization reclama a Rondout Electric · US · Energy & Utilitiesransomqilin reclama a Byonyks · US · Technology
← All CVEs
CVE WatchJul 20, 2026

CVE-2026-45184

Kdenlive before 26.04.1 allows dangerous proxy parameters when an attacker-controlled project file is used.

CVSS

6.5

Medium

EPSS

0.1%

p5

KEV

Exploit Today

1

0-100

Published: May 9, 2026 · Last modified: Jul 20, 2026 · CWE-829

EPSS · 30d
0.1%EPSS · 30 days0.1%
2026-07-022026-07-29
Technical description

Kdenlive before 26.04.1 allows dangerous proxy parameters when an attacker-controlled project file is used.

Official references
Related CVEs
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-661417.4 HIG
1.1%
0Exim before 4.99.5 allows .forward privilege escalation because force_command for a pipe transport is mishandled.13h
CVE-2026-659088.6 HIG
2.7%
1In JetBrains PyCharm before 2026.1.4, 2026.2 arbitrary code execution via malicious Python executable was possible on untrusted project open7d
CVE-2026-648117.8 HIG
2.7%
1In JetBrains IntelliJ IDEA before 2026.2 arbitrary code execution was possible before granting project trust via development container configuration2d
CVE-2026-648098.4 HIG
3.8%
1In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via the configured interpreter2d
CVE-2026-648088.4 HIG
3.8%
1In JetBrains PhpStorm before 2026.2 arbitrary code execution was possible before granting project trust via project tooling2d
CVE-2026-648077.8 HIG
2.7%
1In JetBrains WebStorm before 2026.2 arbitrary code execution was possible via a project-supplied linter configuration2d