todesktop CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

todesktop vulnerability overview

Aggregates CVE and security vulnerability intelligence across all todesktop-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-67231 A reflected cross-site scripting (XSS) vulnerability in ToDesktop Builder v0.33.1 allows attackers to execute arbitrary code in the context of a user's browser via a crafted payload. [email protected] 5.9 0.04% 2026-01-23 2026-01-29
CVE-2025-67230 Improper permissions in the handler for the Custom URL Scheme in ToDesktop Builder v0.33.0 allows attackers with renderer-context access to invoke external protocol handlers without sufficient validation. [email protected] 7.1 0.01% 2026-01-23 2026-01-29
CVE-2025-67229 An improper certificate validation vulnerability exists in ToDesktop Builder v0.32.1 This vulnerability allows an unauthenticated, on-path attacker to spoof backend responses by exploiting insufficient certificate validation. [email protected] 9.8 0.01% 2026-01-23 2026-01-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence