FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

anki -- multiple vulnerabilities

Affected packages
anki < 26.9

Details

VuXML ID ce54d883-b060-11f1-b187-901b0edee044
Discovery 2026-09-14
Entry 2026-09-14

Abdo Hasani reports:

Imported note HTML may execute inside an embedded image-occlusion document that retains the editor profile's desktop API credentials. This could cross the boundary between untrusted note content and privileged desktop operations.

An improper path validation vulnerability allows an attacker to execute arbitrary code on a victim's system when they interact with a malicious flashcard deck. This vulnerability is triggered when a user right-clicks an image within the editor and selects the "Open image" action; if an embedded "<img>" tag contains a path with a dangerous extension in its src attribute, the operating system may execute the file.

References

URL https://github.com/ankitects/anki/security/advisories/GHSA-932p-crhj-v43p
URL https://github.com/ankitects/anki/security/advisories/GHSA-jw6j-j4mf-8jgm