boostnote CVE 脆弱性と CVE 一覧(2)

製品(CPE): — CVE 件数: 2

boostnote 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to boostnote, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 12 / 2 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2021-41392 static/main-preload.js in Boost Note through 0.22.0 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vulnerable ipcRenderer IPC interface, which invokes the dangerous openExternal Electron API. [email protected] 9.8 7.06% 2021-09-17 2024-11-21
CVE-2018-13433 Boostnote v0.11.7 allows XSS during highlighting of Markdown text, as demonstrated by an onerror attribute of an IMG element. [email protected] 6.1 0.24% 2018-07-08 2024-11-21
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence