Vulnerabilities > Yank Note

DATE CVE VULNERABILITY TITLE RISK
2023-05-29 CVE-2023-31874 Incorrect Permission Assignment for Critical Resource vulnerability in Yank-Note Yank Note 3.52.1
Yank Note (YN) 3.52.1 allows execution of arbitrary code when a crafted file is opened, e.g., via nodeRequire('child_process').
network
low complexity
yank-note CWE-732
8.8