End of life: 3/23/2025, Latest version: 4.5.2
End of life: 3/23/2025, Latest version: 4.5.2
End of life: 12/15/2024, Latest version: 4.4.4
End of life: 12/15/2024, Latest version: 4.4.4
WeeChat before 4.4.2 has an integer overflow and resultant buffer overflow at core/core-string.c when there are more than two billion items in a list. This affects stringfreesplitshared , stringfreesplit, stringfreesplitcommand, and stringfreesplittags.
End of life: 8/17/2024, Latest version: 4.3.6
End of life: 8/17/2024, Latest version: 4.3.6
End of life: 5/26/2024, Latest version: 4.2.3
End of life: 5/26/2024, Latest version: 4.2.3
End of life: 1/21/2024, Latest version: 4.1.3
End of life: 1/21/2024, Latest version: 4.1.3
End of life: 10/15/2023, Latest version: 4.0.8
End of life: 10/15/2023, Latest version: 4.0.8
End of life: 6/24/2023, Latest version: 3.8
End of life: 6/24/2023, Latest version: 3.8
End of life: 1/8/2023, Latest version: 3.7.1
End of life: 1/8/2023, Latest version: 3.7.1
End of life: 10/9/2022, Latest version: 3.6
End of life: 10/9/2022, Latest version: 3.6
WeeChat (aka Wee Enhanced Environment for Chat) 3.2 to 3.4 before 3.4.1 does not properly verify the TLS certificate of the server, after certain GnuTLS options are changed, which allows man-in-the-middle attackers to spoof a TLS chat server via an arbitrary certificate. NOTE: this only affects situations where weechat.network.gnutlscasystem or weechat.network.gnutlscauser is changed without a WeeChat restart.
End of life: 7/10/2022, Latest version: 3.5
End of life: 7/10/2022, Latest version: 3.5
End of life: 3/27/2022, Latest version: 3.4.1
End of life: 3/27/2022, Latest version: 3.4.1
End of life: 12/18/2021, Latest version: 3.3
End of life: 12/18/2021, Latest version: 3.3
End of life: 9/19/2021, Latest version: 3.2.1
End of life: 9/19/2021, Latest version: 3.2.1
End of life: 6/13/2021, Latest version: 3.1
End of life: 6/13/2021, Latest version: 3.1