Kdenlive before 26.04.1 allows dangerous proxy parameters when an attacker-controlled project file is used.
| Vendor | Product | Versions |
|---|---|---|
| kde | kdenlive | 0 |
Updated affected versions to include 26.04.0, changed severity to HIGH, and noted that no exploit exists.
Initial creation