Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Electronjs Subscribe
Filtered by product Zonote
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35717 1 Electronjs 1 Zonote 2021-01-07 3.5 LOW 9.0 CRITICAL
zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).