Vulnerabilities (CVE)

Filtered by vendor Electronjs Subscribe
Filtered by product Zonote
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-35717 1 Electronjs 1 Zonote 2024-11-21 3.5 LOW 9.0 CRITICAL
zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).