Xmonad is a minimalist tiling window manager for X11 that emphasizes configurability through functional programming, with vulnerability exposure centered on its contribution mechanisms and dynamic code handling. The durable signal reflects the inherent risks of runtime code generation and injection vulnerabilities that arise from allowing users to compose and evaluate window-management logic dynamically. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xmonad over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-1436HIGH The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the | Oct 6, 2014 | 7.5 | 32 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xmonad.
Media articles that mention a CVE ID that affects a product developed by Xmonad — matched by CVE ID, not by vendor name.