Tmux Project maintains a terminal multiplexer utility with a narrow but strategically deployed footprint in system administration and development environments, where it provides session management and window control in Unix-like systems. Its observed vulnerabilities concentrate on memory-safety issues, particularly out-of-bounds writes and stack-based buffer overflows, reflecting the C-based implementation and direct handling of user input and escape sequences. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tmux Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-27347HIGH In tmux before version 3.1c the function input_csi_dispatch_sgr_colon() in file input.c contained a stack-based buffer-overflow that can be exploited by terminal output. | Nov 6, 2020 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tmux Project.
Media articles that mention a CVE ID that affects a product developed by Tmux Project — matched by CVE ID, not by vendor name.