Fndroid/clash_for_windows_pkg

Fndroid/clash_for_windows_pkg

GitHubGitHub
Unavailable
This project is no longer available (or publicly accessible) from GitHub
Releases238
Frequency1 week 12 hours
Last Release
A Windows/macOS GUI based on Clash

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

Clash for Windows v0.20.12 was discovered to contain a remote code execution (RCE) vulnerability which is exploited via overwriting the configuration file (cfw-setting.yaml).

7.8 HIGH

A misconfiguration in the Service Mode profile directory of Clash for Windows v0.19.9 allows attackers to escalate privileges and execute arbitrary commands when Service Mode is activated.

9.8 CRITICAL7.5 HIGH

Clash for Windows v0.19.8 was discovered to allow arbitrary code execution via a crafted payload injected into the Proxies name column.