Impact
A reflected cross‑site scripting vulnerability exists in the Netron desktop application. Unsanitized node names can be reflected back to the application’s interface, allowing an attacker to inject arbitrary script that can conceal nodes, trigger port scanning, or leverage a Chrome‑based vulnerability to execute code on the host. The flaw can be exploited only when a malicious or compromised model file is loaded into Netron, meaning local or privileged attackers can achieve a full compromise.
Affected Systems
All users running Netron versions 9.1.2 or earlier are affected. The vulnerability is present across the desktop builds of Netron, regardless of operating system, as the issue lies in the way node names are processed for display on every platform.
Risk and Exploitability
The CVSS score of 6.8 indicates a medium severity for this flaw. Since EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, the exploitation probability appears low, but an attacker who can supply a crafted model to a vulnerable installation can gain remote code execution. The likely attack vector involves a local or privileged adversary delivering a malicious file to a user, after which the unsanitized node names trigger the vulnerability.
OpenCVE Enrichment