CVE-2020-28967: Flashget

High severity, CVSS 8.8. EPSS: 8.9% chance of exploitation in the next 30 days.

FlashGet v1.9.6 was discovered to contain a buffer overflow in the 'current path directory' function. This vulnerability allows attackers to elevate local process privileges via overwriting the registers.

Affected products

Published 2021-10-22. Last modified 2026-06-17.