Filtered by vendor Electronjs Subscriptions
Filtered by product Zonote Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-35717 1 Electronjs 1 Zonote 2024-11-21 9.0 Critical
zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).