CVE-2020-36767: Vareille Tinyfiledialogs

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

tinyfiledialogs (aka tiny file dialogs) before 3.8.0 allows shell metacharacters in titles, messages, and other input data.

Affected products

  • Vareille Tinyfiledialogs: before 3.8.0 (fixed in 3.8.0)

Published 2023-10-30. Last modified 2026-06-17.