CNNVD-202601-1574 Information

CNNVD ID

CNNVD-202601-1574

CVE-2026-22035

  • CNNVD Published: 2026-01-08

Description (Chinese)

GreenShot是GreenShot公司的一款适用于 Windows 的轻量级屏幕截图软件工具。 GreenShot 1.3.310及之前版本存在安全漏洞,该漏洞源于文件名处理不当,可能导致OS命令注入。

Description (English)

GreenShot is a lightweight screenshot software tool for Windows from GreenShot. There is a security loophole in GreenShot 1.3.310 and earlier versions, which stems from the mishandling of the file name, which could lead to the injection of an OS order.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

GreenShot

Published

2026-01-08

Last Modified

2026-02-24

References

https://github.com/greenshot/greenshot/commit/5dedd5c9f0a9896fa0af1d4980d875a48bf432cb https://github.com/greenshot/greenshot/releases/tag/v1.3.311 https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj

Patch

https://getgreenshot.org/downloads/

Share on: