CVE-2013-1436

Source
https://cve.org/CVERecord?id=CVE-2013-1436
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-1436.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-1436
Aliases
Downstream
Withdrawn
2026-01-27T04:13:07.876424Z
Published
2014-10-06T23:55:05Z
Modified
2026-01-27T04:13:07.876424Z
Summary
[none]
Details

The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the user clicks on the xmobar window title, as demonstrated using an action tag.

References

Affected packages