notion CVE Vulnerabilities & CVE List (2)

Products (CPE): — CVEs: 2

notion vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to notion, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 12 of 2 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-23745 In Notion Web Clipper 1.0.3(7), a .nib file is susceptible to the Dirty NIB attack. NIB files can be manipulated to execute arbitrary commands. Additionally, even if a NIB file is modified within an application, Gatekeeper may still permit the execution of the application, enabling the execution of arbitrary commands within the application's context. NOTE: the vendor's perspective is that this is simply an instance of CVE-2022-48505, cannot properly be categorized as a product-level vulnerabilit [email protected] 9.8 1.98% 2024-01-31 2024-11-21
CVE-2024-23743 Notion through 3.1.0 on macOS might allow code execution because of RunAsNode and enableNodeClilnspectArguments. NOTE: the vendor states "the attacker must launch the Notion Desktop application with nonstandard flags that turn the Electron-based application into a Node.js execution environment." [email protected] 3.3 0.37% 2024-01-28 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence