Clutter Project maintains a graphics and animation library primarily used in GNOME-based desktop environments, representing a niche but foundational component in the open-source desktop ecosystem. The recurring vulnerability signal centers on improper access control within the library's rendering and compositing interfaces. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Clutter Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-3213HIGH The gesture handling code in Clutter before 1.16.2 allows physically proximate attackers to bypass the lock screen via certain (1) mouse or (2) touch gestures. | Aug 12, 2015 | 7.2 | 18 | NO | NO |
The translate_hierarchy_event function in x11/clutter-device-manager-xi2.c in Clutter, when resuming the system, does not properly handle XIQueryDevice errors when a device has "di | Oct 17, 2013 | 2.1 | 13 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Clutter Project.
Media articles that mention a CVE ID that affects a product developed by Clutter Project — matched by CVE ID, not by vendor name.