Lucene search

K
osvGoogleOSV:GHSA-6H98-CF9G-VMG2
HistoryMay 13, 2022 - 1:41 a.m.

Electron vulnerable to URL spoofing via PDFium

2022-05-1301:41:15
Google
osv.dev
13
electron
version 1.7.0 - 1.7.5
url spoofing
pdfium
vulnerability
arbitrary pdfs
hacker control

EPSS

0.001

Percentile

35.6%

Electron version 1.7.0 - 1.7.5 is vulnerable to a URL Spoofing problem when opening PDFs in PDFium resulting loading arbitrary PDFs that a hacker can control.

EPSS

0.001

Percentile

35.6%

Related for OSV:GHSA-6H98-CF9G-VMG2