RSS   Vulnerabilities for 'Zonote'   RSS

2021-01-01
 
CVE-2020-35717

CWE-79
 

 
zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).

 

 >>> Vendor: Electronjs 2 Products
Electron
Zonote


Copyright 2024, cxsecurity.com

 

Back to Top