VendorsWaycrateswhkdall versions
Vulnerabilities

Waycrate swhkd

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2022-27818
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.sock pathname. There can be an information leak or denial of service.
Published 2022-04-07 · Modified
9.1EPSS 0.018
CVE-2022-27815
SWHKD 1.1.5 unsafely uses the /tmp/swhkd.pid pathname. There can be an information leak or denial of service.
Published 2022-03-29 · Modified
7.8EPSS 0.005
CVE-2022-27816
SWHKD 1.1.5 unsafely uses the /tmp/swhks.pid pathname. There can be data loss or a denial of service.
Published 2022-03-30 · Modified
7.1EPSS 0.005
CVE-2022-27819
SWHKD 1.1.5 allows unsafe parsing via the -c option. An information leak might occur but there is a simple denial of service (memory exhaustion) upon an attempt to parse a large or infinite file (such as a block or character device).
Published 2022-04-07 · Modified
5.3EPSS 0.009
CVE-2022-27817
SWHKD 1.1.5 consumes the keyboard events of unintended users. This could potentially cause an information leak, but is usually a denial of functionality.
Published 2022-04-14 · Modified
4.4EPSS 0.005
CVE-2022-27814
SWHKD 1.1.5 allows arbitrary file-existence tests via the -c option.
Published 2022-04-14 · Modified
3.3EPSS 0.005