CVE-2023-27035

An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notifications, record user audio and other unspecified impacts via embedded website on the canvas page.
Configurations

Configuration 1 (hide)

cpe:2.3:a:obsidian:obsidian:1.1.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-05-01 22:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-27035

Mitre link : CVE-2023-27035

CVE.ORG link : CVE-2023-27035


JSON object : View

Products Affected

obsidian

  • obsidian
CWE
CWE-276

Incorrect Default Permissions