Lucene search

K
osvGoogleOSV:CVE-2020-35717
HistoryJan 01, 2021 - 10:15 a.m.

CVE-2020-35717

2021-01-0110:15:12
Google
osv.dev
6
zonote
software
xss vulnerability
remote code execution

AI Score

6.6

Confidence

High

EPSS

0.018

Percentile

88.3%

zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).

AI Score

6.6

Confidence

High

EPSS

0.018

Percentile

88.3%

Related for OSV:CVE-2020-35717