loom records
2 published records for vendor loom.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
2 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2024-23742Proof of concept | An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilloom · loom · CWE-94 | Critical9.8 | — | 1.7% | Jan 27, 2024 |
36Monitor | CVE-2019-14432No exploit | Incorrect authentication of application WebSocket connections in Loom Desktop for Mac up to 0.16.0 allows remote code execution from either loom · loom · CWE-287 | High8.8 | — | 2.3% | Aug 7, 2019 |
- CVE-2024-2374240Plan
An issue in Loom on macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClil
CriticalCVSS 9.8Proof of conceptEPSS 2%loom · loomJan 27, 2024
- CVE-2019-1443236Monitor
Incorrect authentication of application WebSocket connections in Loom Desktop for Mac up to 0.16.0 allows remote code execution from either
HighCVSS 8.8No exploitEPSS 2%loom · loomAug 7, 2019