Altair is a GraphQL Client. Prior to version 5.2.5, the Altair GraphQL Client Desktop Application does not sanitize external URLs before passing them to the underlying system. Moreover, Altair GraphQL Client also does not isolate the context of the renderer process. This affects versions of the software running on MacOS, Windows, and Linux. Version 5.2.5 fixes this issue.
History

Fri, 20 Sep 2024 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-10-04T20:37:54.610Z

Updated: 2024-09-20T14:53:13.165Z

Reserved: 2023-09-22T14:51:42.340Z

Link: CVE-2023-43799

cve-icon Vulnrichment

Updated: 2024-08-02T19:52:11.325Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-04T21:15:10.127

Modified: 2023-10-10T18:52:02.820

Link: CVE-2023-43799

cve-icon Redhat

No data.