Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Warp may allow terminal output to access the local clipboard through OSC 52
Vulnerability Description
Warp is an agentic development environment. From 0.2021.04.25.23.05.stable_00 until 0.2026.05.06.15.42.stable_01, Warp allows terminal output to request access to the local system clipboard. A malicious remote host, remote program, or other attacker-controlled terminal output source can trigger clipboard reads or writes without a separate confirmation step. This crosses the trust boundary between untrusted terminal output and the user's local desktop clipboard. This vulnerability is fixed in 0.2026.05.06.15.42.stable_01.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Vulnerability Type
缺省权限不正确
Vulnerability Title
Warp 权限许可和访问控制问题漏洞
Vulnerability Description
Warp是Warp公司开源的一个远程管理软件。 Warp 0.2021.04.25.23.05.stable_00版本至0.2026.05.06.15.42.stable_01之前版本存在权限许可和访问控制问题漏洞,该漏洞源于允许终端输出请求访问本地系统剪贴板,可能导致恶意的远程主机、远程程序或其他攻击者控制的终端输出源触发剪切板读取或写入,而无需单独的确认步骤。
CVSS Information
N/A
Vulnerability Type
N/A