Unrated severityNVD Advisory· Published Oct 6, 2014· Updated Jun 16, 2026
CVE-2013-1436
CVE-2013-1436
Description
The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the user clicks on the xmobar window title, as demonstrated using an action tag.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: < 0.11.2
cpe:2.3:a:xmonad:xmonad-contrab:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:xmonad:xmonad-contrab:*:*:*:*:*:*:*:*range: <=0.11.1
- cpe:2.3:a:xmonad:xmonad-contrab:0.11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.