CVE-2024-42029
EUVD-2024-3940527.07.2024, 04:15
xdg-desktop-portal-hyprland (aka an XDG Desktop Portal backend for Hyprland) before 1.3.3 allows OS command execution, e.g., because single quotes are not used when sending a list of app IDs and titles via the environment.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| xdg | desktop_portal_hyperland | 𝑥 < 1.3.3 | ADP |
References