VYPR

KTextEditor

by KDE

CVEs (2)

  • CVE-2022-23853HigFeb 11, 2022
    risk 0.51cvss 7.8epss 0.01

    The LSP (Language Server Protocol) plugin in KDE Kate before 21.12.2 and KTextEditor before 5.91.0 tries to execute the associated LSP server binary when opening a file of a given type. If this binary is absent from the PATH, it will try running the LSP server binary in the…

  • CVE-2018-10361HigApr 25, 2018
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in KTextEditor 5.34.0 through 5.45.0. Insecure handling of temporary files in the KTextEditor's kauth_ktexteditor_helper service (as utilized in the Kate text editor) can allow other unprivileged users on the local system to gain root privileges. The…