Filtered by vendor Leanote Subscriptions
Filtered by product Desktop Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2017-1000492 1 Leanote 1 Desktop 2024-09-16 N/A
Leanote-desktop version v2.5 is vulnerable to a XSS which leads to code execution due to enabled node integration
CVE-2024-0849 1 Leanote 1 Desktop 2024-09-05 5.5 Medium
Leanote version 2.7.0 allows obtaining arbitrary local files. This is possible because the application is vulnerable to LFR.