CVE-2020-35717
01.01.2021, 10:15
zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).
Vendor | Product | Version |
---|---|---|
electronjs | zonote | 𝑥 ≤ 0.4.0 |
𝑥
= Vulnerable software versions
References