Fedora Transmission 4.1.2 Clickjacking Fixes Released for Versions 43 and 44

Fedora Transmission 4.1.2 Clickjacking Fixes Released for Versions 43 and 44

First seen 5 Jun 2026, 12:10 UTC Linuxsecurity 98% similarity 57.9

Article Content

Browse articles
ThreatCluster

On June 2, 2026, CVE-2026-38978 was published, revealing a clickjacking vulnerability in the Transmission client affecting Fedora 43 and 44. This flaw allows attackers to exploit weaknesses in the WebUI and RPC response paths, potentially leading to unauthorized actions by users. The vulnerability has been addressed in Transmission version 4.1.2, which is now available for both Fedora versions. Users are advised to upgrade using the 'dnf' update program to mitigate the risk. The updates are crucial for maintaining security in systems utilizing these Fedora versions. No active exploitation has been reported yet, but the vulnerability poses a significant risk if left unpatched. Security professionals should prioritize applying these updates to protect against potential attacks.

Key Points: • CVE-2026-38978 addresses a clickjacking vulnerability in Transmission. • Affected systems include Fedora 43 and 44 with Transmission version 4.1.2. • Users are urged to apply the patch using the 'dnf' update program immediately.

ThreatCluster AI

Timeline

2026-06-02
CVE-2026-38978 published
A clickjacking vulnerability in Transmission was disclosed, affecting Fedora 43 and 44.
Linuxsecurity
2026-06-05
Transmission 4.1.2 released
The update to Transmission 4.1.2 includes fixes for the identified clickjacking vulnerability.
Linuxsecurity

Community

Browse all →

Tracked Entities in This Story