top of page
perceptive_background_267k.jpg

A vulnerability was found in tiddly-gittly TidGi-Desktop up to 0.13.0. This impacts an unknown function of the file src/services/wiki/wikiWorker/loadWikiTiddler…

Published:

4 juli 2026 om 22:00:00

Alert date:

5 juli 2026 om 09:01:12

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Zero-Day Vulnerabilities

A code injection vulnerability has been identified in tiddly-gittly TidGi-Desktop versions up to 0.13.0. The vulnerability exists in the file src/services/wiki/wikiWorker/loadWikiTiddlersWithSubWikis.ts within the Git Repository Import component. An attacker can exploit this vulnerability remotely by manipulating input to achieve code injection. The exploit has been publicly disclosed, increasing the risk of active exploitation. No authentication details are specified, and the exact function affected remains unknown. The public availability of the exploit makes this a high-priority issue for users of the affected software. Users are advised to review the GitHub security advisory and apply any available patches or mitigations promptly.

Technical details

Mitigation steps:

Affected products:

TidGi-Desktop up to 0.13.0

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page