CVE-2026-72913 | kovidgoyal Kitty up to 0.48.1 DCS Handlers kitty/window.py handle_remote_echo os command injection

SecurityVulns

A vulnerability labeled as critical has been found in kovidgoyal Kitty up to 0.48.1. This issue affects the function handle_remote_echo of the file kitty/window.py of the component DCS Handlers. Such manipulation leads to os command injection.

This vulnerability is listed as CVE-2026-72913. The attack may be performed from remote. There is no available exploit.

The affected component should be upgraded.VulDB Recent EntriesRead More