Feed/CVE-2024-38395
CVE-2024-38395CRITICALCVSS 9.8

CVE-2024-38395

Published Jun 15, 2024·Updated Jun 17, 2026

NVD Description

In iTerm2 before 3.5.2, the "Terminal may report window title" setting is not honored, and thus remote code execution might occur but "is not trivially exploitable."

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free