Memory Exhaustion Vulnerability in Deskflow Keyboard and Mouse Sharing App
CVE-2026-65976

6.5MEDIUM

Key Information:

Vendor

Deskflow

Status
Vendor
CVE Published:
17 August 2026

What is CVE-2026-65976?

A vulnerability in Deskflow, a keyboard and mouse sharing application, allows a connected peer to exploit the clipboard functionality. Versions 1.17.0 to 1.26.0.300 are susceptible due to the application failing to properly validate the size of data being appended. This weakness may allow excessive data to be processed leading to memory exhaustion issues, which could disrupt service and affect application performance. The vulnerability has been resolved in version 1.26.0.300 and users are advised to update to this version or later to mitigate associated risks.

Affected Version(s)

deskflow >= 1.17.0, < 1.26.0.300

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.