๐Ÿ” CVE Alert

CVE-2026-41527

MEDIUM 6.9
CVSS Score
6.9
EPSS Score
0.0%
EPSS Percentile
0th

KDE Kleopatra before 26.08.0 on Windows allows local users to obtain the privileges of a Kleopatra user, because there is an error in the mechanism (KUniqueService) for ensuring that only one instance is running.

CWE CWE-670
Vendor kde
Product kleopatra
Published Apr 21, 2026
Last Updated Apr 21, 2026
Stay Ahead of the Next One

Get instant alerts for kde kleopatra

Be the first to know when new medium vulnerabilities affecting kde kleopatra are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

KDE / Kleopatra
0 < 26.08.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/KDE/kleopatra/releases commits.kde.org: https://commits.kde.org/kleopatra/73471abb92d99c56354adb582bfaec2764c22b79 kde.org: https://kde.org/info/security/advisory-20260408-1.txt