CVE-2013-7220: Gnome Gnome-Shell

Medium severity, CVSS 4.6. EPSS: 0.4% chance of exploitation in the next 30 days.

js/ui/screenShield.js in GNOME Shell (aka gnome-shell) before 3.8 allows physically proximate attackers to execute arbitrary commands by leveraging an unattended workstation with the keyboard focus on the Activities search.

Affected products

  • Gnome Gnome-Shell: up to and including 3.7.92; version 3.0.0 only; version 3.0.0.1 only; version 3.0.0.2 only; version 3.0.1 only; version 3.0.2 only; …

Published 2014-04-29. Last modified 2026-06-17.