CVEs we hold for Tcl
Records whose assigning authority named Tcl as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-41451UAC < 3.3.0 Command Injection via User Substitution in parse_artifact.shtclahr uac CVE-2026-41450UAC < 3.3.0 Command Injection via command_collector.shtclahr uac CVE-2026-41449UAC < 3.3.0 Command Injection via run_command.shtclahr uac CVE-2026-40032UAC < 3.3.0-rc1 Command Injection via Placeholder Substitutiontclahr UAC CVE-2024-11136Arbitrary file removal via path traversal in TCL CameraTCL Camera 47 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.