VYPR

Shotcut

by Shotcut

Source repositories

CVEs (2)

  • CVE-2025-65834CriDec 16, 2025
    risk 0.64cvss 9.8epss 0.00

    Meltytech Shotcut 25.10.31 is vulnerable to Buffer Overflow. A memory access violation occurs when processing MLT project files with manipulated width and height parameters. By setting these values to extremely large numbers, the application attempts to allocate excessive memory…

  • CVE-2020-24619MedSep 22, 2020
    risk 0.00cvss 5.9epss 0.01

    In mainwindow.cpp in Shotcut before 20.09.13, the upgrade check misuses TLS because of setPeerVerifyMode(QSslSocket::VerifyNone). A man-in-the-middle attacker could offer a spoofed download resource.