| Bug | bookworm | trixie | forky | sid | Description |
|---|
| CVE-2026-95835 | vulnerable | vulnerable | vulnerable | vulnerable | Missing Authorization in the askpass escape code handler in kitty from ... |
| CVE-2026-95834 | vulnerable | vulnerable | vulnerable | vulnerable | Use After Free in the drag source path of the drag and drop protocol i ... |
| CVE-2026-95832 | vulnerable | vulnerable | vulnerable | vulnerable | Improper Neutralization of Special Elements in Output Used by a Downst ... |
| CVE-2026-80432 | vulnerable | vulnerable | vulnerable | vulnerable | Missing Authorization in the drop handling path of the drag and drop p ... |
| CVE-2026-80431 | vulnerable | vulnerable | vulnerable | vulnerable | Out-of-bounds Write in the natural width branch of the text sizing pro ... |
| CVE-2026-80430 | vulnerable | vulnerable | vulnerable | vulnerable | Improper Link Resolution Before File Access in the drag source staging ... |
| CVE-2026-72913 | vulnerable | vulnerable | fixed | fixed | Kitty is a cross-platform GPU based terminal. Prior to 0.48.2, the @ki ... |
| CVE-2026-54057 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. In versions prior to 0.4 ... |
| CVE-2026-54055 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. In versions prior to 0.4 ... |
| CVE-2026-42851 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. In versions prior to 0.4 ... |
| CVE-2026-42850 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. In versions prior to 0.4 ... |
| CVE-2026-33642 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. In versions 0.46.2 and b ... |
| CVE-2026-33633 | vulnerable | fixed | fixed | fixed | Kitty is a cross-platform GPU based terminal. Versions 0.46.2 and belo ... |
| CVE-2025-43929 | vulnerable (no DSA) | fixed | fixed | fixed | open_actions.py in kitty before 0.41.0 does not ask for user confirmat ... |