CVE-2026-22035

Greenshot is an open source Windows screenshot utility. Versions 1.3.310 and below arvulnerable to OS Command Injection through unsanitized filename processing. The FormatArguments method in ExternalCommandDestination.cs:269 uses string.Format() to insert user-controlled filenames directly into shell commands without sanitization, allowing attackers to execute arbitrary commands by crafting malicious filenames containing shell metacharacters. This issue is fixed in version 1.3.311.
Configurations

Configuration 1 (hide)

cpe:2.3:a:getgreenshot:greenshot:*:*:*:*:*:*:*:*

History

17 Jun 2026, 10:19

Type Values Removed Values Added
References () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj - Vendor Advisory, Exploit () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj - Exploit, Vendor Advisory
Summary
  • (es) Greenshot es una utilidad de captura de pantalla de código abierto para Windows. Las versiones 1.3.310 e inferiores son vulnerables a la inyección de comandos del sistema operativo a través del procesamiento de nombres de archivo no saneados. El método FormatArguments en ExternalCommandDestination.cs:269 utiliza string.Format() para insertar nombres de archivo controlados por el usuario directamente en comandos de shell sin saneamiento, lo que permite a los atacantes ejecutar comandos arbitrarios al crear nombres de archivo maliciosos que contienen metacaracteres de shell. Este problema está corregido en la versión 1.3.311.

27 Jan 2026, 19:11

Type Values Removed Values Added
CPE cpe:2.3:a:getgreenshot:greenshot:*:*:*:*:*:*:*:*
First Time Getgreenshot greenshot
Getgreenshot
References () https://github.com/greenshot/greenshot/commit/5dedd5c9f0a9896fa0af1d4980d875a48bf432cb - () https://github.com/greenshot/greenshot/commit/5dedd5c9f0a9896fa0af1d4980d875a48bf432cb - Patch
References () https://github.com/greenshot/greenshot/releases/tag/v1.3.311 - () https://github.com/greenshot/greenshot/releases/tag/v1.3.311 - Release Notes
References () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj - () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj - Vendor Advisory, Exploit

08 Jan 2026, 19:15

Type Values Removed Values Added
References () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj - () https://github.com/greenshot/greenshot/security/advisories/GHSA-7hvw-q8q5-gpmj -

08 Jan 2026, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-08 01:15

Updated : 2026-06-17 10:19


NVD link : CVE-2026-22035

Mitre link : CVE-2026-22035

CVE.ORG link : CVE-2026-22035


JSON object : View

Products Affected

getgreenshot

  • greenshot
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')