Vulnerabilities > Electronjs > Electron > 8.0.3

DATE CVE VULNERABILITY TITLE RISK
2022-06-13 CVE-2022-29257 Unspecified vulnerability in Electronjs Electron
Electron is a framework for writing cross-platform desktop applications using JavaScript (JS), HTML, and CSS.
network
low complexity
electronjs
7.2
2022-06-13 CVE-2022-29247 Unspecified vulnerability in Electronjs Electron
Electron is a framework for writing cross-platform desktop applications using JavaScript (JS), HTML, and CSS.
network
low complexity
electronjs
critical
9.8
2022-03-22 CVE-2022-21718 Missing Authorization vulnerability in Electronjs Electron
Electron is a framework for writing cross-platform desktop applications using JavaScript, HTML and CSS.
network
low complexity
electronjs CWE-862
5.0
2020-10-06 CVE-2020-15215 Unspecified vulnerability in Electronjs Electron
Electron before versions 11.0.0-beta.6, 10.1.2, 9.3.1 or 8.5.2 is vulnerable to a context isolation bypass.
network
high complexity
electronjs
5.6
2020-10-06 CVE-2020-15174 Unspecified vulnerability in Electronjs Electron
In Electron before versions 11.0.0-beta.1, 10.0.1, 9.3.0 or 8.5.1 the `will-navigate` event that apps use to prevent navigations to unexpected destinations as per our security recommendations can be bypassed when a sub-frame performs a top-frame navigation across sites.
network
high complexity
electronjs
7.5
2020-07-07 CVE-2020-4077 Unspecified vulnerability in Electronjs Electron
In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass.
network
low complexity
electronjs
critical
9.9
2020-07-07 CVE-2020-4076 Unspecified vulnerability in Electronjs Electron
In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass.
local
low complexity
electronjs
critical
9.0
2020-07-07 CVE-2020-4075 Files or Directories Accessible to External Parties vulnerability in Electronjs Electron
In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, arbitrary local file read is possible by defining unsafe window options on a child window opened via window.open.
network
low complexity
electronjs CWE-552
7.5
2020-07-07 CVE-2020-15096 Unspecified vulnerability in Electronjs Electron
In Electron before versions 6.1.1, 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass, meaning that code running in the main world context in the renderer can reach into the isolated Electron context and perform privileged actions.
network
low complexity
electronjs
6.8