FreeRDP before 3.28.0 treats lines beginning with forward...
High severity
Unreviewed
Published
Jul 21, 2026
to the GitHub Advisory Database
Description
Published by the National Vulnerability Database
Jul 20, 2026
Published to the GitHub Advisory Database
Jul 21, 2026
FreeRDP before 3.28.0 treats lines beginning with forward slash in RDP files as raw command-line options, exposing the entire CLI parser surface to untrusted files. Attackers can craft malicious RDP files with /rdp2tcp, /cert:ignore, or /drive options to execute arbitrary commands, bypass certificate validation, or expose local filesystems without user interaction.
References