Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: libfilezilla

Found 4 matching suggestions

View:
Compact
Detailed
Permalink CVE-2019-25683
6.2 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): NONE
  • Integrity impact (I): NONE
  • Availability impact (A): HIGH
created 1 week, 5 days ago
FileZilla 3.40.0 Denial of Service via Local Search

FileZilla 3.40.0 contains a denial of service vulnerability in the local search functionality that allows local attackers to crash the application by supplying a malformed path string. Attackers can trigger the crash by entering a crafted path containing 384 'A' characters followed by 'BBBB' and 'CCCC' sequences in the search directory field and initiating a local search operation.

Affected products

FileZilla
  • ==3.40.0

Matching in nixpkgs

pkgs.libfilezilla

Modern C++ library, offering some basic functionality to build high-performing, platform-independent programs

Package maintainers

Permalink CVE-2026-1068
5.3 MEDIUM
  • CVSS version: 3.1
  • Attack vector (AV): ADJACENT_NETWORK
  • Attack complexity (AC): HIGH
  • Privileges required (PR): NONE
  • User interaction (UI): NONE
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): NONE
  • Availability impact (A): NONE
created 1 month ago
An improper certificate validation vulnerability was reported in the Lenovo …

An improper certificate validation vulnerability was reported in the Lenovo Filez application that could allow a user capable of intercepting network traffic to obtain sensitive user data from the application.

Affected products

FileZ
  • <11.1.0.35
  • <10.12.3.0

Matching in nixpkgs

pkgs.libfilezilla

Modern C++ library, offering some basic functionality to build high-performing, platform-independent programs

Package maintainers

Permalink CVE-2026-0520
2.8 LOW
  • CVSS version: 3.1
  • Attack vector (AV): LOCAL
  • Attack complexity (AC): LOW
  • Privileges required (PR): LOW
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): LOW
  • Integrity impact (I): NONE
  • Availability impact (A): NONE
created 1 month ago
A potential vulnerability was reported in the Lenovo FileZ Android …

A potential vulnerability was reported in the Lenovo FileZ Android application that, under certain conditions, could allow a local authenticated user to retrieve some sensitive data stored in a log file.

Affected products

FileZ
  • <11.1.0.37

Matching in nixpkgs

pkgs.libfilezilla

Modern C++ library, offering some basic functionality to build high-performing, platform-independent programs

Package maintainers

Permalink CVE-2026-2368
7.1 HIGH
  • CVSS version: 3.1
  • Attack vector (AV): ADJACENT_NETWORK
  • Attack complexity (AC): HIGH
  • Privileges required (PR): NONE
  • User interaction (UI): REQUIRED
  • Scope (S): UNCHANGED
  • Confidentiality impact (C): HIGH
  • Integrity impact (I): HIGH
  • Availability impact (A): HIGH
created 1 month ago
An improper certificate validation vulnerability was reported in the Lenovo …

An improper certificate validation vulnerability was reported in the Lenovo Filez application that could allow a user capable of intercepting network traffic to execute arbitrary code.

Affected products

FileZ
  • <11.1.0.35
  • <10.12.3.0

Matching in nixpkgs

pkgs.libfilezilla

Modern C++ library, offering some basic functionality to build high-performing, platform-independent programs

Package maintainers