Skip to content
Noroxi

electron records

5 published records for vendor electron.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

5 records
  • GitHub Electron before 1.6.8 allows remote command execution because of a nodeIntegration bypass vulnerability.

    HighCVSS 8.1No exploitEPSS 7%

    electron · electronAug 5, 2017

  • electron-updater: Cross-origin redirect leaks `PRIVATE-TOKEN` and mixed-case `Authorization` credentials in `builder-util-runtime`

    HighCVSS 8.2No exploitEPSS 0%

    electron · builder-util-runtimeJun 30, 2026

  • electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib`

    HighCVSS 7.8No exploitEPSS 0%

    electron · electron-builderJun 30, 2026

  • Code Signing Bypass on Windows in electron-updater < 6.3.0-alpha.6

    HighCVSS 7.5No exploitEPSS 0%

    electron · electron-builderJul 9, 2024

  • electron-builder's NSIS installer - execute arbitrary code on the target machine (Windows only)

    HighCVSS 7.3No exploitEPSS 0%

    electron · electron-builderMar 6, 2024