Unpreventable top-level navigation
수정: 2026. 3. 13.
package
pkg:npm/electron
Unpreventable top-level navigation
수정: 2026. 3. 13.
Electron: Out-of-bounds read in second-instance IPC on macOS and Linux
수정: 2026. 4. 6.
Renderers can obtain access to random bluetooth device without permission in Electron
수정: 2023. 11. 8.
Electron: HTTP Response Header Injection in custom protocol handlers and webRequest
수정: 2026. 4. 6.
Chromium Remote Code Execution in electron
수정: 2023. 11. 8.
Electron: Use-after-free in offscreen child window paint callback
수정: 2026. 4. 6.
Context isolation bypass in Electron
수정: 2026. 3. 13.
Electron: AppleScript injection in app.moveToApplicationsFolder on macOS
수정: 2026. 4. 6.
Electron vulnerable to URL spoofing via PDFium
수정: 2023. 11. 8.
Electron vulnerable to Heap Buffer Overflow in NativeImage
수정: 2025. 7. 1.
Context isolation bypass via Promise in Electron
수정: 2026. 3. 13.
AutoUpdater module fails to validate certain nested components of the bundle
수정: 2023. 11. 8.
Electron vulnerable to remote command execution
수정: 2023. 11. 8.
ASAR Integrity bypass via filetype confusion in electron
수정: 2024. 9. 18.
Electron vulnerable to out-of-package code execution when launched with arbitrary cwd
수정: 2023. 11. 8.
Electron: Use-after-free in WebContents fullscreen, pointer-lock, and keyboard-lock permission callbacks
수정: 2026. 4. 6.
Electron: Use-after-free in offscreen shared texture release() callback
수정: 2026. 4. 6.
Electron Vulnerable to Code Execution by Re-Enabling Node.js Integration
수정: 2023. 11. 8.
Electron: USB device selection not validated against filtered device list
수정: 2026. 4. 6.
Heap buffer overflow in GPU
수정: 2023. 11. 8.
Electron: Use-after-free in download save dialog callback
수정: 2026. 4. 6.
Electron: Renderer command-line switch injection via undocumented commandLineSwitches webPreference
수정: 2026. 4. 6.
Electron: Crash in clipboard.readImage() on malformed clipboard image data
수정: 2026. 4. 8.
Electron: Named window.open targets not scoped to the opener's browsing context
수정: 2026. 4. 8.
Arbitrary file read via window-open IPC in Electron
수정: 2026. 3. 13.
Electron protocol handler browser vulnerable to Command Injection
수정: 2023. 11. 8.
High severity vulnerability that affects electron
수정: 2023. 11. 8.
Electron's Content-Secrity-Policy disabling eval not applied consistently in renderers with sandbox disabled
수정: 2023. 11. 8.
Context isolation bypass via contextBridge in Electron
수정: 2026. 3. 13.
Electron webPreferences vulnerability can be used to perform remote code execution
수정: 2023. 11. 8.
IPC messages delivered to the wrong frame in Electron
수정: 2026. 3. 13.
libwebp: OOB write in BuildHuffmanTable
수정: 2026. 2. 4.
Electron: Context Isolation bypass via contextBridge VideoFrame transfer
수정: 2026. 4. 6.
Electron: Unquoted executable path in app.setLoginItemSettings on Windows
수정: 2026. 4. 6.
Electron: Use-after-free in PowerMonitor on Windows and macOS
수정: 2026. 4. 6.
Context isolation bypass via leaked cross-context objects in Electron
수정: 2026. 3. 13.
Electron's sandboxed renderers can obtain thumbnails of arbitrary files through the nativeImage API
수정: 2026. 3. 13.
Compromised child renderer processes could obtain IPC access without nodeIntegrationInSubFrames being enabled
수정: 2023. 11. 8.
Electron: Registry key path injection in app.setAsDefaultProtocolClient on Windows
수정: 2026. 4. 6.
Exfiltration of hashed SMB credentials on Windows via file:// redirect
수정: 2023. 11. 8.
Electron context isolation bypass via nested unserializable return value
수정: 2023. 11. 8.
Electron: Buffer performs incorrect byte length calculations resulting in heap buffer under/overflow
수정: 2026. 6. 15.
Electron affected by libvpx's heap buffer overflow in vp8 encoding
수정: 2024. 2. 15.
Electron: Incorrect origin passed to permission request handler for iframe requests
수정: 2026. 4. 6.
Electron has ASAR Integrity Bypass via resource modification
수정: 2025. 9. 5.
Remote Code Execution in electron
수정: 2023. 11. 8.
Electron: Service worker can spoof executeJavaScript IPC replies
수정: 2026. 4. 6.
electron ASAR Integrity bypass by just modifying the content
수정: 2025. 7. 1.
Electron: nodeIntegrationInWorker not correctly scoped in shared renderer processes
수정: 2026. 4. 6.