Electerm has an unvalidated shell.openExternal that allows arbitrary protocol execution via terminal link click
Modified: 5/8/2026
package
pkg:npm/electerm
Electerm has an unvalidated shell.openExternal that allows arbitrary protocol execution via terminal link click
Modified: 5/8/2026
electerm's encrypt method not safe enough
Modified: 6/9/2026
Electerm's full process.env exposed to renderer via window.pre.env
Modified: 5/8/2026
electerm has Path Traversal in Zmodem and Trzsz Download Filename Handling
Modified: 7/2/2026
Electerm Local code through electerm's single-instance socket
Modified: 7/6/2026
electerm has Command Injection via runLinux funtion
Modified: 5/12/2026
Electerm runWidget has a path traversal that leads to arbitrary code execution
Modified: 5/8/2026
Electerm: Importing unsafe bookmark data could lead to unsafe operation when clicking local type bookmark
Modified: 6/9/2026
Electerm users can run dangrous code through link or command line
Modified: 5/13/2026
Electerm Security Vulnerability: RCE via malicious SSH server filename in openFileWithEditor
Modified: 5/8/2026
electerm has Command Injection in File System Operations (rmrf, mv, cp)
Modified: 7/2/2026
electerm: electerm_install_script_CommandInjection Vulnerability Report
Modified: 5/11/2026
electerm allows unauthorized users to execute arbitrary commands
Modified: 5/20/2026