Fcitx 5 is a lightweight, open-source input method framework primarily used in Linux desktop environments for handling multilingual text input, with a narrow product footprint centered on the core Fcitx 5 application. Its disclosures reflect buffer-handling weaknesses typical of C-based system libraries, particularly classic buffer-overflow conditions in input processing. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fcitx 5 Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-37311HIGH Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the application's listening port. | Feb 3, 2023 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fcitx 5 Project.
Media articles that mention a CVE ID that affects a product developed by Fcitx 5 Project — matched by CVE ID, not by vendor name.