CVE

CVE-2020-35717

CVE-2020-35717

zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true).

Source: CVE-2020-35717

Exit mobile version