CVE-2024-50986: Clementine-Player Clementine
High severity, CVSS 7.3. EPSS: 1% chance of exploitation in the next 30 days.
An issue in Clementine v.1.3.1 allows a local attacker to execute arbitrary code via a crafted DLL file.
Affected products
- Clementine-Player Clementine: version 1.3.1 only
Published 2024-11-15. Last modified 2026-06-17.