Security Advisory

CVE-2026-73479

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-13 21:17:37
Last updated 2026-08-14 16:29:25
Assigner VulnCheck
CVSS score not scored
State PUBLISHED

Description

dua-cli fails to filter terminal escape sequences when printing marked file paths after exiting the TUI interface. Attackers can craft file names containing OSC/CSI escape sequences that are interpreted by the terminal emulator when printed, enabling title spoofing, clipboard manipulation, or other escape-sequence attacks.