tinyfiledialogs (aka tiny file dialogs) before 3.15.0 allows shell metacharacters (such as a backquote or a dollar sign) in titles, messages, and other input data. NOTE: this issue exists because of an incomplete fix for CVE-2020-36767, which only considered single and double quote characters.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-51258 | tinyfiledialogs (aka tiny file dialogs) before 3.15.0 allows shell metacharacters (such as a backquote or a dollar sign) in titles, messages, and other input data. NOTE: this issue exists because of an incomplete fix for CVE-2020-36767, which only considered single and double quote characters. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 10 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vareille tinyfiledialogs
|
|
| CPEs | cpe:2.3:a:vareille:tinyfiledialogs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Vareille tiny File Dialogs
|
Vareille tinyfiledialogs
|
Mon, 09 Sep 2024 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-77 |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-09T20:34:10.445Z
Reserved: 2023-10-30T00:00:00.000Z
Link: CVE-2023-47104
Updated: 2024-08-02T21:01:22.686Z
Status : Analyzed
Published: 2023-10-30T19:15:08.343
Modified: 2026-03-10T19:09:12.560
Link: CVE-2023-47104
No data.
OpenCVE Enrichment
No data.
EUVD