Anonymous edits have been disabled on the wiki. If you want to contribute please login or create an account.


Warning for game developers: PCGamingWiki staff members will only ever reach out to you using the official press@pcgamingwiki.com mail address.
Be aware of scammers claiming to be representatives or affiliates of PCGamingWiki who promise a PCGW page for a game key.

Topic on Store talk:GOG.com

Aemony (talkcontribs)

Original text on this page prior to its migration to StructuredDiscussions:

This was taken off the page, but GOG Galaxy is still vulnerable to CVE-2020-24574, a privilege escalation attack. They were [called on on Reddit a month ago](https://www.reddit.com/r/gog/comments/putc8m/gog_galaxy_20_serious_security_issue_over_1_year/). There's no fix listed in the Galaxy [release notes](https://support.gog.com/hc/en-us/articles/360003936637-GOG-GALAXY-Changelog?product=gog), and even if there were they've claimed to fix this once before. In the time since reporting, they've accumulated similar issues [CVE-2020-15528 / CVE-2020-15529](https://daniels-it-blog.blogspot.com/2020/07/gog-galaxy-escalation-of-privileges.html), also unfixed. --47.5.174.115 21:03, 7 November 2021 (UTC)