CVE-2021-28117

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/03/2021
Last modified:
15/10/2024

Description

libdiscover/backends/KNSBackend/KNSResource.cpp in KDE Discover before 5.21.3 automatically creates links to potentially dangerous URLs (that are neither https:// nor http://) based on the content of the store.kde.org web site. (5.18.7 is also a fixed version.)

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kde:discover:*:*:*:*:*:*:*:* 5.21.3 (excluding)