CVE-2026-54056 | kovidgoyal kitty up to 0.47.1 kittens/dnd/drop.go utils.CreateAt link following (GHSA-r892-cv7q-fw8x)
A vulnerability was found in kovidgoyal kitty up to 0.47.1 and classified as critical. Affected by this vulnerability is the function utils.CreateAt of the file kittens/dnd/drop.go. Such manipulation leads to link following.
This vulnerability is documented as CVE-2026-54056. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More