CVE-2018-19516
MEDIUMKDE Applications <18.12.0 - Info Disclosure
Title source: llmDescription
messagepartthemes/default/defaultrenderer.cpp in messagelib in KDE Applications before 18.12.0 does not properly restrict the handling of an http-equiv="REFRESH" value.
Scores
CVSS v3
5.3
EPSS
0.0039
EPSS Percentile
59.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Classification
CWE
CWE-20
Status
published
Affected Products (1)
kde/kde_applications
< 18.12
Timeline
Published
Mar 12, 2020
Tracked Since
Feb 18, 2026